URLhaus Database

You are currently viewing the URLhaus database entry for http://segmentsolutions.com/tjnDE-FuBQhD6b_my-P6N/INVOICE/xerox/En_us/Past-Due-Invoices/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:97799
URL: http://segmentsolutions.com/tjnDE-FuBQhD6b_my-P6N/INVOICE/xerox/En_us/Past-Due-Invoices/
URL Status:Offline
Host: segmentsolutions.com
Date added:2018-12-19 14:41:21 UTC
Last online:2019-03-18 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2018-12-19 14:42:10 UTC to postmaster{at}myhostcenter[dot]com)
Takedown time:2 months, 29 days, 1 hours, 33 minutes Bad (down since 2019-03-18 16:16:03 UTC)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-01-04this-site-is-virus.docdoc c2e393ff568f4a87ce48011f10664138e569710f56ddc0462aa7f36bdad5ecadVirustotal results 0.00%
2018-12-21PAY494478542.docdoc bae1d4bc9d17b509679c741ac0b7a88b28a46886869556077b2dac1feb14653dVirustotal results 16.67% Heodo
2018-12-21US92877683970645435.docdoc d2bbabcfbbd1459291c0e7f5b35b743491ef30984a5394548f92b4ad8e3f71c6n/a Heodo
2018-12-21ATT3451764837.docdoc a1b6ba620e6dae846af5bbd471ed8c5cb84abb122d262a330e8550032e6b90faVirustotal results 16.67% Heodo
2018-12-21US4793437592831125623.docdoc 0a29be2888d9f34c85dc70522c8f7bb46a7c504f3343a4023a1ae8b95619cf65n/a Heodo
2018-12-21ATT94393895804.docdoc 6eaa3124eefa8eaac9a12b09037f398b37e6fbe3e3867e996ddf70b4f6ed555an/a Heodo
2018-12-212582858103589.docdoc 4e3f2a410ee352327ac3538061d9bc4b5af82bdc3e9a93d8aeac58f1e87bf360n/a Heodo
2018-12-21999131631809.docdoc 5cad192a789f67750bc61c85746ffefacd9a1084e64e877b19761d8af3e01417n/a Heodo
2018-12-218391981159806.docdoc e75eabba5ecd2843cb70935d7d6ad7045e031f57b52f4bdf5fe04f136d91ea8dn/a Heodo
2018-12-21PAY50824801387167.docdoc 4a848d3552f9e5c102a5beb770d727704969dc2049b7ffa2714c03106148a4f4n/a Heodo
2018-12-21PAY62616306413951.docdoc b3a07fe6e8deec0a4bb72cd33320cd3e22f13d46fe4d2928dd439adcdebea3c7n/a Heodo
2018-12-21US504550288.docdoc 35d69c999becbfbaf3563c934a851c9e90e1850e07506dc011f851447aa3dce1n/a Heodo
2018-12-21PAY97959879051.docdoc d9e32bb26bff81b53df36f9f48345895b2e2c06c30fd467f2c0c964243e5c3f9Virustotal results 20.00% Heodo
2018-12-2188829698568.docdoc bccddf643a7199aa666fae5d914cba3c86f31be9ed7828966d5d855b9e0ef104n/a Heodo
2018-12-20493890877798286.docdoc 0e2a18b41184c5fe2f6d9e5205303252c7ae9dad15b1e50774f2e384eb527682n/a Heodo
2018-12-20PAY084976319278.docdoc 13843568dc3110ae29d47b8be9617e00947ec81223863635e5056432062bbe1cn/a Heodo
2018-12-20ATT45255707153343938.docdoc ef8cd8c96f4ce08a00b941b4fe9406f82e3f8cd086095b8dfb422ec882e14262Virustotal results 21.67% Heodo
2018-12-20PAY5695009444726912.docdoc 90c8b32c4a85e61c97e87cf9387459ccf7061f3f6ecfc37fc003ef2650fe335eVirustotal results 21.67% Heodo
2018-12-20US1438623222353327.docdoc 39223a9cee974527c8538ff76f9df28d50218c4b080cde7249d2b3fee7e6710bVirustotal results 22.03% Heodo
2018-12-20ATT5660953099509356.docdoc 2dc727a19af157fddc015a1a4ea42abfc09dd7a70040a1da7965a4ce6b3baedfn/a Heodo
2018-12-20ATT16008012107.docdoc 4d1a0829f456f4be6c5cf565ddd53106275453946eaedd061d83c7f082121742Virustotal results 20.00% Heodo
2018-12-20ATT499327034582849996.docdoc 9ed11279e4650bc7f72b554339510c611fe59003caf9ca90071bb82afa12341dVirustotal results 20.00% Heodo
2018-12-20PAY57791561378567831973.docdoc 3eca7c19d9dce371da73440abaa0b049673097cf6dd9450cf827c0866e97b888Virustotal results 21.31% Heodo
2018-12-209775352734551689080.docdoc 2bc19f1a55b61ebc203dbda2b2aab16e0b47508db2f868532c9b44e1555a9019Virustotal results 22.03% Heodo
2018-12-20ATT25358187205141103476.docdoc 2cae7098baf7ba6b8ca1b9ec37e5a1391a1867b8ecd20cf47065cf40d1125c0dVirustotal results 26.67% Heodo
2018-12-20PAY8297045559447009.docdoc 82c8667d9a8fc1e0b2e6544334f8783861edae4444125797edb1ca7c9d9b239cVirustotal results 27.12% Heodo
2018-12-200460735237442847.docdoc ff0bd259761812d0f4df0e2454e5cb6bd076fbf6d52a7896fc7d9224b12a610an/a Heodo
2018-12-20ATT0532484078226264206.docdoc 2d4e3189de630a5c8e28a9f42e2d9559d2e82923b1a2aa8013e3659466186b7fVirustotal results 27.12% Heodo
2018-12-20ATT749390597176340397.docdoc b98143e9cddef8410389d6e051f04290e049af16e616ad87b5174b9ad61ce7c4Virustotal results 26.67% Heodo
2018-12-20US08004487725.docdoc cb6cf978c042342d394d8e705ba911d35650262696b327c0c883d5727cd6b6efVirustotal results 33.90% Heodo
2018-12-20ATT3486920989086416.docdoc 200e9f0ffaa1c07ee596212059e01280bbaccfa6c22d54414068c28d30a81160Virustotal results 26.67% Heodo
2018-12-20PAY34579938369822362058.docdoc ad84c8dd3e88723cce2c443ccdb6c10c500d14fd7c551f7bd4d47e9606d9d6deVirustotal results 27.12% Heodo
2018-12-20US7965675742734.docdoc ce6a3827d80dadf24a1ff096e1a0a6984b08e84208432289f68d5e1b478748ebn/a Heodo
2018-12-20PAY3288899355691599447.docdoc 92e39ac764a910ffc06acf41e43187003fcdc10d4076faa2640a4ac79e924ccen/a Heodo
2018-12-20PAY2216413185728568266.docdoc 867930f654e2761ee1433ca2effffaaf1e24adc57bd8faa9ba5a9fb1b54ebed5n/a Heodo
2018-12-20ATT72755603781594786238.docdoc 56a37928d0549592fe5cb4b33066c442ef2b37ec15612d5777cde3f44ab7fa2en/a Heodo
2018-12-20US5689954234029.docdoc d64cae7e0840e557ce0d4bd8f0b043ac1831d4c963dbffb4dbb494874296b91aVirustotal results 26.67% Heodo
2018-12-20US647720505839.docdoc 85386588dc3f29e5f3bbde3ab9fc6cba826c293bbfce11b6c3f1a4403f9e2ae8n/a Heodo
2018-12-201841938395831871887.docdoc 4b980be36fd3227dde92fa9793da100159b14b7568158bb3cc172496a10bbc5cVirustotal results 26.32% Heodo
2018-12-20ATT6012876591746.docdoc 96c616f321105d84ccd07c68d46b436cb0dd38d34174846b9d06c548dc5df076Virustotal results 32.20% Heodo
2018-12-20PAY86394823148685489.docdoc 54ac7a1f7883dafa447da786e2515e3d38899c36c8ee1771b3cad28362e17f31n/a 
2018-12-20387898640172149.docdoc c1f6092805c75d956bc46360f7a83c1a7e09775f36670a7a59acf5d229c45de7n/a Heodo
2018-12-20US20887027174.docdoc 28559b64089e5e96cbb2df9281d93f6d1e296b808809d466d021b143ea134cden/a Heodo
2018-12-20US338006412.docdoc f60a83c0d7504d45fb2a142be3cee2168c5580e0dc1cf4f25a18f98c5b76792an/a Heodo
2018-12-20US63785196082077.docdoc 048c88143ab1f2be57af3ae1e83e72ac5187402554a2a4205c471879dfb4dc89n/a 
2018-12-20ATT2484327550130380227.docdoc f170a4cb0f7f8bde8084cde3a538b54b1f5e497a60c192b3b03eecd6a7f468d6Virustotal results 27.59% Heodo
2018-12-20US50682463947622.docdoc 473afedf9a265f8a21780c8171a9a6376b69e9be0e458a5c5ec1e557960519a8n/a Heodo
2018-12-20ATT575632999660497515.docdoc 1f35933dddd94297f1d5950c56cfe7721980e6852bfa7cb5bfcc89db67fbce90n/a Heodo
2018-12-20US24303789071045344088.docdoc 25d978be43da4852e2e30be4695aa979756b648e79ff1abd5ece05c023fb3935n/a Heodo
2018-12-20US8517089885.docdoc 2c7f66896be89629ec812b27ce7e2a37320d04b9c6669ec2b11fa63ac1615ed9n/a Heodo
2018-12-20ATT7944784513478905.docdoc 5422fcd6587573adfe722f31846969096eb819cd64197cd6e3eb1164ab4edfa6n/a Heodo
2018-12-20US60638657574911020.docdoc 3c03e769486f2c79eaa7e599df900015ffb18587a8dc596a933313034bb8cbffn/a Heodo
2018-12-20PAY52719916341.docdoc 346dcbc99820690fc0665a0c4076dab8df55b3c1e2430820353a2e87b0c38fd8n/a Heodo
2018-12-20US7022246811457528656.docdoc a5b7bb8e5fed53fe2f1f96d8f8e36caf7a5611852e55209bc54a43287222f075n/a Heodo
2018-12-20PAY67449848732310.docdoc 58ceb5f7fd6f71eef8b8aeb0b226a91f49041d1ad67025a8d5083facb55bbd7fn/a Heodo
2018-12-20PAY01421278109148.docdoc de7871ad870e48f1dbbb8caf1396ff568f9a9f21b56940255279ef004c3dc747Virustotal results 25.42% 
2018-12-20753531889462610.docdoc a99b84469cc4f9c76eabd80ac0985f6b4c9cf898a91d5538fd43223d24f7c699n/a Heodo
2018-12-194671859251.docdoc 602f0166f2978578fe63709018464d5d04f1c87cf852b7dbe17616ee839190bfVirustotal results 23.33% 
2018-12-19ATT453962041831033.docdoc 1d79af859a391823a797f6da301a4b6ce7dad9af0c906ed2bd98d259bcf27012Virustotal results 24.14% Heodo
2018-12-1927377525623674474341.docdoc d7dad079c927b2a813afb05a8ed63c96bd1fc51493211a333353190bd17364e3Virustotal results 23.73% 
2018-12-19ATT2845075367.docdoc 3a9037168a2fb85124dc05cf766dcceb8afc4a13f96a2751ffaf0d1c56ba2023Virustotal results 25.42% Heodo
2018-12-19ATT292208419.docdoc 2991a0069fac7acd2653ea38f215f45b80109fcea485ad7b4eb403c2910cef65n/a Heodo
2018-12-19PAY918566670766288.docdoc 97a8bbc96f1008fafa19b6b236584efe2eb83468572ed8d57f4d51827e98364bVirustotal results 23.33% Heodo
2018-12-19360247290503765.docdoc 1b4a3dc52d69a4ad565f61c91ab2170fe4433d5a573c6b29dca5286ced933832Virustotal results 25.42% Heodo
2018-12-19US4586019986387652349.docdoc 496ce2697cd55557a8aff83e217e25b29c8ee4fdf0244840b8bd47e966338417Virustotal results 26.23% Heodo
2018-12-19PAY33870790261619.docdoc b1860aea8f9db8d2b56563cc583ff86d1614e9f0833630a6f66f71b01b4e99dbVirustotal results 24.59% Heodo
2018-12-19US3181611935.docdoc ac17f5bd46ca6bfa6459703b1cb3a425fffb75f70ad5ca614271e1324660a6ceVirustotal results 28.33% Heodo
2018-12-19ATT816607008.docdoc 84aafbf9d47a7a0ae083e19095bd77adbe89cbac7654a1b2e06287149630017cn/a Heodo