URLhaus Database

You are currently viewing the URLhaus database entry for https://club-figueroa.com/wp-content/public/vl/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:938339
URL: https://club-figueroa.com/wp-content/public/vl/
URL Status:Offline
Host: club-figueroa.com
Date added:2020-12-22 13:29:04 UTC
Last online:2021-01-20 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-12-22 13:30:06 UTC to abuse{at}ovh[dot]net)
Takedown time:28 days, 20 hours, 30 minutes Bad (down since 2021-01-20 10:00:27 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-22INV #581 FOR PO #0033560868.docdoc a61add91d1ec99ec85463137cdefd5a4f56e2bc5885b00b4fdb840347ed6ab4eVirustotal results 44.44%Heodo
2020-12-22UF0419 invoicing.docdoc 92888947fd26e79a007b4813b402232e8c2d8759a09c4a09df45de70229b9087Virustotal results 46.67% Heodo
2020-12-22December Invoice.docdoc d54ba8a8a51f5b139f174c012bb6cb5d21135722e679bbb89e7eebc2c20c1988n/a Heodo
2020-12-22taKB-120120.docdoc 444375a3b3688df32d82a340886c981fa89d5a8bbfce94d811cacee5d39c2e7dn/a Heodo
2020-12-22Payment.docdoc 1c87d4a758e100db631379b9d6462129efaf1cc3f2f68c39d23082283495fdaan/a Heodo
2020-12-22Form.docdoc 382bdfcc6d008bf43aec410d276a8d5a062e4664bd75989fb5033f5599639f9en/a Heodo
2020-12-22Electronic form.docdoc 26cc3dc599e7c6668069ec3d25e56886ab7363ddf2d903fc85f62033063c6347Virustotal results 43.55% Heodo
2020-12-22form.docdoc 12f838b1c2ed2f0cb4894b0b914b4492a91c20081f537c1590abb5c60b9994cbVirustotal results 39.68% Heodo
2020-12-22Electronic form.docdoc fb888f92c6e162fbffb452a01ed94f8f9913fb0a5ca7c9aa32809b3fec2279d1n/a Heodo
2020-12-22Inv_35105.docdoc 19e8d382a8d268c0daa99c59d6e6a199006770f0a1d51ee76c78332ea48f8bc6Virustotal results 45.16% Heodo
2020-12-22Invoice 00Ltd6Tt.docdoc 9c8fa69bad491103df4b3b4120c63eacc1b0d1d084009f9c2c61dceb5fbe308bVirustotal results 41.27% Heodo
2020-12-22December Invoice.docdoc 53acfe21fbd1ee22493a6eebbf0895b5f7baeaeaba30e87fb5eb642ce75a92e8n/a Heodo
2020-12-2222094.docdoc 1c4ed6bb74630c2de7b4c9987378a5fb97a463f1ef6ab2890f14bdbb02b86f2cVirustotal results 36.51% Heodo
2020-12-22INV_58178.docdoc 561fb47c39935ee155573f6116397e25af84def6ab20e6f06530f837e4067c53n/a Heodo
2020-12-22Invoice 00xe8Lzq.docdoc ee1bff0cec76fccdfeb9b7270fb3dcbd4570f4ae9b2a803c792ee28e07d54181n/a Heodo
2020-12-22Invoice.docdoc ee400ceb5719ec55ff700a05ff717638fff1a0b99f8d46092fd7745068de1b04n/aHeodo
2020-12-22Copy invoice #93520.docdoc 1380765ab9b35c44da4bbca1d0bed1da4a8c3060dfa51c541766fbbdb30e5751n/a Heodo
2020-12-22mQlhE-120120.docdoc 8fcff59bdcd800f1efdbda24b71a60be6f35e4ee549cb9c592f671e1be7cdbd1Virustotal results 38.10% Heodo