URLhaus Database

You are currently viewing the URLhaus database entry for http://www.crossboexim.com/DE_de/WTVYIL4033832/GER/DOC-Dokument/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:103523
URL: http://www.crossboexim.com/DE_de/WTVYIL4033832/GER/DOC-Dokument/
URL Status:Offline
Host: www.crossboexim.com
Date added:2019-01-15 12:37:31 UTC
Last online:2019-01-18 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-01-15 12:38:07 UTC to abuse{at}digitalocean[dot]com)
Takedown time:3 days, 4 hours, 17 minutes Bad (down since 2019-01-18 16:55:40 UTC)
Tags:emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-01-15this-site-is-virus.docdoc c2e393ff568f4a87ce48011f10664138e569710f56ddc0462aa7f36bdad5ecadVirustotal results 0.00%
2019-01-1516_Januar_2019_21_58_38_Uhr.docdoc 1abdb7044de2d11edf413a4e3a8b661d4fccabefd7b6e82334b6be08686a59b0Virustotal results 18.97% Heodo
2019-01-1516_Januar_2019_21_43_40_Uhr.docdoc a38828d94c38717c5b6c9c0ab04d792a7770e3737a1a8951259844e0d50990aaVirustotal results 18.97% Heodo
2019-01-152019_Januar.docdoc d10be6e5a5cd1b04b0e1faae92ba4e29f6aae6c55877a8ca9c21a52bb24b653eVirustotal results 16.67% Heodo
2019-01-1516_Januar_2019_0178552601.docdoc 449e1c3c24a918b1b1ece85fe541330bc522b91d13b73280bc4774367f7c1895Virustotal results 17.54% Heodo
2019-01-152019_Januar_20_45_31_Uhr.docdoc c4e9a55d7216e9cc61f60eb936609b2bdcfa62cea320f9577008ab3c43f126b5Virustotal results 16.39% Heodo
2019-01-152019_Januar_20_15_37_Uhr.docdoc c6bb5b80feae0cb8669f710efb1799e37fc24bcf6fac4c98735f1062cd32cab8Virustotal results 15.00% Heodo
2019-01-152019_Januar.docdoc 71916eb78ce88fc298f25df2ebd8bdc253af4188e7f38e69d1b419f79102151bVirustotal results 13.79% Heodo
2019-01-152019_Januar_19_16_36_Uhr.docdoc 45731bfd7a8aa8a0e042aa513315ba0d9142d4e8f2b07e1b0e2858549d196e41Virustotal results 16.95% Heodo
2019-01-1515_Januar_2019.docdoc 3167e21837d0a08b94460340a97c2f26883fb122d6284c2a1645ca8f0d8f5aefVirustotal results 16.67% Heodo
2019-01-1515_Januar_2019_18_46_27_Uhr.docdoc e18ac5345546b11319dde33e33421c03eddfeb44bc0d366114a452b6bc6aad6bVirustotal results 16.95% Heodo
2019-01-152019_Januar.docdoc 261e09d049e9361cf9229130dcf41d429f5805a9495bc1dd41203251a46c9122Virustotal results 20.00% Heodo
2019-01-1515_Januar_2019_18_19_40_Uhr.docdoc d5cbad799be2d48d6c9f1be1a05aebd9662c1bc646a6841cbf858523b5caaf93Virustotal results 15.00% Heodo
2019-01-152019_Januar_18_04_22_Uhr.docdoc 54a10493652ed3ec5948775d594e34bc5b30412fbc030fe7b663a5f4a6c6ceaaVirustotal results 15.25% Heodo
2019-01-152019_Januar_9889468485.docdoc f14055daae4f5a0ebffa07aa7c73d881291e32174b175e919a8c80382e88a5beVirustotal results 15.52% Heodo
2019-01-1515_Januar_2019.docdoc 02399c48e148b053be872b0b2109ee53ab9aca9f59a030f77de00a8d9fe86239Virustotal results 15.25% Heodo
2019-01-1515_Januar_2019.docdoc b0d858c9dc5f9159c61d8ff59f1aa0d974083be435c1a9b420cf5939e14c0cb1n/a Heodo
2019-01-1515_Januar_2019.docdoc 981db5daa08ed93a9edba672c6246fb4559f285e230c84762719532bd0ef2968n/a Heodo
2019-01-152019_Januar_16_41_24_Uhr.docdoc 17b5e7612847bb2c36c8997d5f70d560635771e9fd376b74dd866dc317ccbc1dVirustotal results 15.25% Heodo
2019-01-152019_Januar.docdoc 36850dbe3c26f69a78ed92d9248b12a0d9c4377c9df320aeb0a442cade11dbaan/a Heodo
2019-01-1515_Januar_2019.docdoc f29c223ae46ab265ece7b1522518a96833f94b45cdb31683b7a18b2aa5038a33Virustotal results 20.00% Heodo
2019-01-152019_Januar_15_45_26_Uhr.docdoc 8814926242e7b4db726f1a6370265554057d70d71c1c069d7bfe65155d1c5f72Virustotal results 16.67% Heodo
2019-01-1515_Januar_2019.docdoc 119545a364e6db2b30cbf99fdf510aad717cb31f4d26d309735640cded017618Virustotal results 14.04% Heodo
2019-01-152019_Januar_3567409782.docdoc 84e1ec8bcde10b012eeb74dcdd14529c05a80e948ea3ef26a980d67a7fc24a47Virustotal results 16.95% Heodo
2019-01-1515_Januar_2019_14_51_29_Uhr.docdoc 129e1c6d214bd17b8f19b27e2135217c78c4158d012b9b0281fed792d7e771c2Virustotal results 16.67% Heodo
2019-01-1515_Januar_2019.docdoc 8a82572416da119fc0a3995eb20a2250b1a9c83f6ae490ff3aa437244855f520Virustotal results 15.52% Heodo
2019-01-152019_Januar_14_13_44_Uhr.docdoc 7bbcf2576a8308492711259461ea83b43579f2783f650a8cc53e058d767c0963Virustotal results 17.24% Heodo
2019-01-1515_Januar_2019.docdoc 5b86f9abc92ce2fb20a23e4b3357e467c16302eef8c175f3d370792ad47488efVirustotal results 15.00% Heodo
2019-01-152019_Januar_13_34_20_Uhr.docdoc d75be3c827f21a9964aa08b108abe78417f7e9aa7af84a038dca8e1a1d20a1fbVirustotal results 15.25% Heodo