URLhaus Database

You are currently viewing the URLhaus database entry for http://www.restoran-maligan.com/De/HERLEBSRO9612047/Rechnungs/DETAILS/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:103540
URL: http://www.restoran-maligan.com/De/HERLEBSRO9612047/Rechnungs/DETAILS/
URL Status:Offline
Host: www.restoran-maligan.com
Date added:2019-01-15 12:38:25 UTC
Last online:2019-01-31 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-01-15 12:40:22 UTC to abuse{at}nl[dot]leaseweb[dot]com)
Takedown time:15 days, 19 hours, 39 minutes Bad (down since 2019-01-31 08:19:26 UTC)
Tags:emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-01-15this-site-is-virus.docdoc c2e393ff568f4a87ce48011f10664138e569710f56ddc0462aa7f36bdad5ecadVirustotal results 0.00%
2019-01-1516_Januar_2019.docdoc 23298fc98b790d4b24444d2edbf0233c16d56b7d9519bcf9f9e320c798292673n/a Heodo
2019-01-152019_Januar.docdoc dadfe9c8cf19b0f55b98147b72ba7e0849bae74e74cf4445830636027819729cVirustotal results 16.95% Heodo
2019-01-1516_Januar_2019_8013547185.docdoc 1abdb7044de2d11edf413a4e3a8b661d4fccabefd7b6e82334b6be08686a59b0Virustotal results 18.97% Heodo
2019-01-1516_Januar_2019.docdoc b04cc6ff3c8cd2f5cbc1fb7c11a92ab0fd6d2a1e5ce3a3af751b41ab98f2ef40Virustotal results 17.54% Heodo
2019-01-1516_Januar_2019.docdoc a9960b744b8f8a9c986d0394fa8c45af582c56dad78476cd88b9ff02ea6dd0a9Virustotal results 16.39% Heodo
2019-01-1516_Januar_2019.docdoc 449e1c3c24a918b1b1ece85fe541330bc522b91d13b73280bc4774367f7c1895Virustotal results 17.54% Heodo
2019-01-152019_Januar.docdoc e23f4d9bccca4aeeba5d0fe21ecdbfe35c733e182e93bd5d19a83f50d8d1d364Virustotal results 16.67% Heodo
2019-01-152019_Januar_8795688115.docdoc 784f5ff294989088c4d13237fb0f14cdcfb3394387250d645e40ec57af05be31Virustotal results 15.38% Heodo
2019-01-1515_Januar_2019.docdoc 71916eb78ce88fc298f25df2ebd8bdc253af4188e7f38e69d1b419f79102151bVirustotal results 13.79% Heodo
2019-01-1515_Januar_2019_19_25_57_Uhr.docdoc 98081b4049e02b007390f7f3d833d1ba526812f966828d0972dfb8e1faeeaf6cn/a Heodo
2019-01-152019_Januar_19_11_53_Uhr.docdoc a8c8e126000bf6c7761b0784528b7ea4f93f3d967fc5e5e8f4644afc2d4fc8fdn/a Heodo
2019-01-1515_Januar_2019_3496940935.docdoc 3167e21837d0a08b94460340a97c2f26883fb122d6284c2a1645ca8f0d8f5aefVirustotal results 16.67% Heodo
2019-01-152019_Januar_0992550721.docdoc a016a676a1623fe33c04d041ddbffd963a2db3e560442c0e8245455f624b40a5Virustotal results 15.00% Heodo
2019-01-152019_Januar.docdoc 261e09d049e9361cf9229130dcf41d429f5805a9495bc1dd41203251a46c9122Virustotal results 16.95% Heodo
2019-01-152019_Januar_9541227160.docdoc 106cf7ada1f5b7a586d3f26c562afc7c0295548fda86f68c76ec4bdaa1031061Virustotal results 15.00% Heodo
2019-01-1515_Januar_2019_17_45_49_Uhr.docdoc f14055daae4f5a0ebffa07aa7c73d881291e32174b175e919a8c80382e88a5ben/a Heodo
2019-01-1515_Januar_2019_17_30_52_Uhr.docdoc 02399c48e148b053be872b0b2109ee53ab9aca9f59a030f77de00a8d9fe86239Virustotal results 15.25% Heodo
2019-01-1515_Januar_2019.docdoc b8d7643d4bf9c7feb6cc2508eae6b1947b220064f8877ef53b7bb89f3a6d0639Virustotal results 15.25% Heodo
2019-01-152019_Januar_16_35_54_Uhr.docdoc d1a8020bbc1e0ee0a51f48e4ecdff9e7e3a8630f593c5f43377f7971e41d35d8Virustotal results 15.00% Heodo
2019-01-1515_Januar_2019_16_08_43_Uhr.docdoc cfedb49ef13185d61f0e08af6c1f08fa2014e4106c974f532448ebdee25bc07eVirustotal results 18.64% Heodo
2019-01-152019_Januar_7544027230.docdoc f29c223ae46ab265ece7b1522518a96833f94b45cdb31683b7a18b2aa5038a33Virustotal results 20.00% Heodo
2019-01-1515_Januar_2019.docdoc 8814926242e7b4db726f1a6370265554057d70d71c1c069d7bfe65155d1c5f72Virustotal results 16.67% Heodo
2019-01-1515_Januar_2019.docdoc 84e1ec8bcde10b012eeb74dcdd14529c05a80e948ea3ef26a980d67a7fc24a47Virustotal results 16.95% Heodo
2019-01-152019_Januar_14_59_33_Uhr.docdoc 5b1c5214098aa9bb07ddc10866b568cbbdaa34460e16a3f9102c2fe141fe2907Virustotal results 16.95% Heodo
2019-01-152019_Januar.docdoc 8a82572416da119fc0a3995eb20a2250b1a9c83f6ae490ff3aa437244855f520Virustotal results 15.52% Heodo
2019-01-152019_Januar_7445476132.docdoc 7bafc608fb484289406a5b2c890dace41e2be0f9f136f58f7281dad55486ef44Virustotal results 16.67% Heodo
2019-01-1515_Januar_2019_0630408330.docdoc 1aa782f15ab8588b726a67018060f02a66223d1859a8b19a12a7f07f5675de7dVirustotal results 16.67% Heodo
2019-01-152019_Januar_13_26_30_Uhr.docdoc 3cb6fcfe19e3416a24697cc2a79f90d508866c7c635712340a78e8e6c7f0469eVirustotal results 20.34% Heodo