URLhaus Database

You are currently viewing the URLhaus database entry for http://zbancuri.ro/AMAZON/Transaction_details/2019-01/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:105237
URL: http://zbancuri.ro/AMAZON/Transaction_details/2019-01/
URL Status:Offline
Host: zbancuri.ro
Date added:2019-01-18 00:50:48 UTC
Last online:2019-02-27 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-01-18 00:52:19 UTC to abuse{at}nshost[dot]ro)
Takedown time:1 month, 10 days, 14 hours, 26 minutes Bad (down since 2019-02-27 15:18:34 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-02-25n/aunknown b98f3cb864172b078fddf42b859576a1f5be90ebe0f07467365a195ec4bcfa30n/a 
2019-01-22n/aunknown ba14540ce0c9b80bea123bf0c9bad88bbd4b4d19aa181cdb4af4d4a79dc78200n/a 
2019-01-20n/aunknown 5bd435a5e1aa90f64becfa9f2364121c0103f3235c7232a38a9af7de9baaca3fn/a 
2019-01-19order_details_file.docdoc df66d61e06a75c80e95ebd79271bf756406d57aba0f4d75c748b9d0b6cc19cb0Virustotal results 29.31% Heodo
2019-01-18this-site-is-virus.docdoc c2e393ff568f4a87ce48011f10664138e569710f56ddc0462aa7f36bdad5ecadVirustotal results 3.39%
2019-01-18eFILE_Order_Details.docdoc 72176d6cd70cf9563a71058aaa0e416034b07465043dbbab9d0d08e16d030584Virustotal results 20.00% Heodo
2019-01-18order_details_file.docdoc 3553ff9236d640518f6293464d195c54e09923c8ff3778b6d396b269db26d221Virustotal results 19.64% Heodo
2019-01-18ORDER_DETAILS.docdoc f3dec3f962420b0f89fdc8641f8be2fb4dd62f17ea8bbbc3c3d248972a27ee9bVirustotal results 17.24% Heodo
2019-01-18ORDER_DETAILS_FORM.docdoc 18280cee4d189eea9b95d4f07baa53444e3a9b05247b35232fc6a5816fe06749Virustotal results 15.79% Heodo
2019-01-18ORDER_DETAILS_FORM.docdoc 2733dd72f6b359338d45634fe7cfc056eda24f7768ba731127e60c44f7b13cc4Virustotal results 15.25% Heodo
2019-01-18order_details_form.docdoc 286a006c5a234d046fce445f9d20a3b31c2b44efbf150c370d846af5ec9ad773Virustotal results 17.54% Heodo
2019-01-18order_details_form.docdoc 3760eda0abdc4814f6282b8f4e2017aad141a8deae174afa178c0f1c8eda6488Virustotal results 17.54% Heodo
2019-01-18ORDER_DETAILS.docdoc 9fc27a96b05c8073523eab381213a739061436e9fef71c440aa00ad6200d30b6n/a Heodo
2019-01-18order_details.docdoc 9be651c4bd88257b189c537ab004fb0a47953aca915c904a83a393933537c485Virustotal results 15.79% Heodo
2019-01-18eFILE_Order_Details.docdoc a9e2968322b3b28cbfc706215b56b3e533f677c3acacedbd3310fee9914b9096n/a Heodo
2019-01-18ORDER_DETAILS_FORM.docdoc d228fbb3552efadcc650b0f6e27b86ccef55e35cf1c9ea19e72266a425650db5Virustotal results 17.86% Heodo
2019-01-18eForm_Order_Details.docdoc ad9a74e704111bf469c71c7605927b49e18c3ae99777da199b7bbaa476111406Virustotal results 15.52% Heodo
2019-01-18ORDER_DETAILS.docdoc 5f9b5c74110c695c857b609530d2e7ace9b3e58e35b6cd408f75caa3335c459aVirustotal results 19.64% Heodo
2019-01-18ORDER_DETAILS_FORM.docdoc f17b1ed59a6d16f9065728b2d49a8ca8af17e15329aa925c6294ef2e03f37d78Virustotal results 15.52% Heodo
2019-01-18ORDER_DETAILS_FILE.docdoc 45f53463ec37b8bec85ea0e78799de032e6966ccfc3f14c100f0e316160d37c9Virustotal results 25.00% Heodo
2019-01-18eFILE_Order_Details.docdoc a30e968f803ff756228bea3510939acffd01fe685adf1fe66efb39627aded66aVirustotal results 20.00% Heodo
2019-01-18eForm_Order_Details.docdoc 47df8e11aae0fd049dbcde0bc19450c593b35765c639c2fdca46f68c76bbd2feVirustotal results 19.64% Heodo
2019-01-18eForm_Order_Details.docdoc 246a531f2265da99bb0a46e4ed970c5bf50b2f6459a548481beaddaa7de4e13dVirustotal results 18.97% Heodo
2019-01-18order_details_file.docdoc 07dc78036004dfe7abbe5b602ff826ab441c40c7c7fdf3588208739e7420a3b4Virustotal results 19.64% Heodo
2019-01-18ORDER_DETAILS.docdoc b3ce02cecd5cc96b5e4e035f8925ae23b7f8984c685a1b4615ef5014229117baVirustotal results 17.54% Heodo
2019-01-18eFILE_Order_Details.docdoc 81bc8e1c7bd13be3817b37a1884e106b35c47c85625dd366d0c5435848eb5487Virustotal results 21.43% Heodo
2019-01-18eForm_Order_Details.docdoc 142cb54dc3af1e7a68930c5fc98ad835e3a72e2f6a81ab6205ca885bf4b8cd4cVirustotal results 19.30% Heodo
2019-01-18ORDER_DETAILS_FILE.docdoc dc9d7edc8a7dc5c6203827c94ae815548a262cc8e22a7e3a86e631677d00730dVirustotal results 17.54% Heodo
2019-01-18order_details.docdoc 67d7ae57fd97223ad95e2c2f46e6e7690e055629f7036d208ad186c3e5d39685Virustotal results 17.24% Heodo
2019-01-18ORDER_DETAILS_FORM.docdoc f7681e0685273420576af3ff87daea7a881f29fec40d5461abcb87d021aeb48bVirustotal results 17.24% Heodo
2019-01-18order_details.docdoc a4d5a5338d7b11b08245e21d46a3cf01936195f3df53440b6e84cf16c52b091cVirustotal results 19.64% Heodo
2019-01-18order_details_form.docdoc 5ee41118500f8e3811ac79301c690ac28614bab29d242896de431b8b98a0e592Virustotal results 17.86% Heodo
2019-01-18order_details_form.docdoc f14f0fcd054ebfc54888bf364497101bc3aad6ade91ec382f62b8ef4a8ce94dcn/a Heodo
2019-01-18order_details.docdoc 2f7a8e8ae8374d20cbb0359dc146ee4840ddaa07ff390843bcdba8f1294e25dfVirustotal results 17.24% Heodo
2019-01-18order_details_form.docdoc 05668fd9ef981bb76d0d65eb3008772586be66450e1f2554f0033c4eb95747efVirustotal results 22.41% Heodo
2019-01-18order_details.docdoc 42c64f140ba3e3d41e321236796f7fbc5d0169f8415843dc248b115021f94e69Virustotal results 18.97% Heodo
2019-01-18order_details_file.docdoc cd0eb47314bef3f14a63f39478ad9fc7399f968650e2b2663cab63c834172adfVirustotal results 29.09% Heodo
2019-01-18order_details.docdoc b61bdd8510e17b96736563d91dc1a8b02ed452171abbe364cdcfc16b4606985dn/a Heodo