URLhaus Database

You are currently viewing the URLhaus database entry for http://app.htetznaing.com/Telekom/Transaktion/012019/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:119492
URL:http://app.htetznaing.com/Telekom/Transaktion/012019/
URL Status:Offline
Host:app.htetznaing.com
Date added:2019-02-07 16:07:19 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Not listed
SURBL:Not listed
Reporter:@Cryptolaemus1
Abuse complaint sent (?): Yes (2019-02-07 16:08:07 UTC to abuse{at}digitalocean[dot]com)
Takedown time:21 hours, 2 minutes Good
Tags:doc emotet epoch1 heodo

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-02-08JAN2019rechnung.docdocb9cb4dd02b666bf11b073458b9bd0ba3a3bb2c6b40d9fa81097193c2698af304Virustotal results 19 / 58 (32.76)Heodo
2019-02-082019_01_rechnung.docdoc63323b9b68fc5110ae3c48f539a080b8de1f1e993ffb459afefd63167beb41dbVirustotal results 19 / 56 (33.93)
2019-02-08rechnung.docdoc847e718fa1dca436c5f8e20e88bbc016bb163b7eaeedd68824ff85fab88f2efaVirustotal results 19 / 57 (33.33)Heodo
2019-02-08JAN2019rechnung.docdocb188780333e44aeb7e1c17274b873ebcb55871f108bd83ac0bbb80c18e577014Virustotal results 20 / 57 (35.09)Heodo
2019-02-082019JAN_rechnung.docdocbd3d15d857d6c4ce292c7417fa78020bd3ae433853596183755ef46bbee650f1n/aHeodo
2019-02-082019_01_rechnung.docdocd051a1a32df24aab3550aadcf200791fe2e7bf2d6c1f7007a5372b0a8e56b535n/a
2019-02-082019_01rechnung.docdocd07f3d2888b6807be50bca7d46736fc2e737b91a9e4cad807dbcf367dc0dba43Virustotal results 21 / 57 (36.84)Heodo
2019-02-082019_01rechnung.docdoc94d912c0ff99d8548a179edee06098080fb8b677ccbad693ce094930175abeb7Virustotal results 20 / 56 (35.71)Heodo
2019-02-08rechnung_01_2019.docdocd625818a5829b7d566ff44e3dd244123afbdce9980d6f68294c2847674a67139Virustotal results 19 / 57 (33.33)
2019-02-082019JAN_rechnung.docdoc043fdd6faacdb0d66e24a88f61f06937fd83999ea27350cbcfd5793fe4b881f5Virustotal results 19 / 56 (33.93)Heodo
2019-02-08JAN2019rechnung.docdoc947a43c3460542aaa0d48da7ee8d18849858741d61f3c9dac3f5c68514859d60Virustotal results 18 / 57 (31.58)Heodo
2019-02-08rechnung_01_2019.docdoc6a871c2dbfdae1a9468a5c0eb169a8850296995629d5b47a9fcd6f9a49aade14Virustotal results 22 / 57 (38.60)Heodo
2019-02-08rechnung_01_2019.docdoc0e86882514dfca518615de8ec20db86063eb82b36fd0d0dd438350f766931256Virustotal results 22 / 57 (38.60)Heodo
2019-02-08rechnung_01_2019.docdoc9db5be09c4f30a600cdecb42c16cb9715d13ba967939266f1ee3812295f23d45n/aHeodo
2019-02-08JAN2019rechnung.docdoce527b2917a1a537d5d78d71db102dc024c8f4cbc39b21c54f6f69b31241e42daVirustotal results 21 / 57 (36.84)Heodo
2019-02-082019JAN_rechnung.docdoc05ff7cc553755b3c69082e6e4a92f2a4b5167a9ab5eb2be40e2d190e0ae5d56bVirustotal results 19 / 57 (33.33)Heodo
2019-02-082019JAN_rechnung.docdocd3cd30e417c8eb4cf848bdafde99838f10847534993f05fd79ceafa24d812152n/aHeodo
2019-02-082019JAN_rechnung.docdoc0cf386db6ef92da42a1ce478727593a6438d900bc820b1cdcd6aea93c600b73bn/aHeodo
2019-02-08JAN2019rechnung.docdocf734605ff9cefe0fb5bdcdf6b84aaa03a7ba79b424328dee4a4206f21e6a025dn/a
2019-02-082019_01_rechnung.docdoc1e746afa50cc85348ed0a47cfe251242cf2f801c3fec540f0d91b795c11d240en/aHeodo
2019-02-082019_01_rechnung.docdoc3723bd2f29fea06590d482dd0f98274192c97c01991a7d7f2cdc5a74eb51eec3Virustotal results 18 / 58 (31.03)Heodo
2019-02-08JAN2019_rechnung.docdoceb1343835dd5b8c99473a1e1ca7fd50743be2c9d9b286f80b564de6e020e766dVirustotal results 18 / 56 (32.14)Heodo
2019-02-082019JAN_rechnung.docdoc89232e0ce2f758bba708b8b17089fe80eac82201f1311f29e24976c86020e646n/a
2019-02-082019JAN_rechnung.docdocaa7d362c0a8e7ca047c1ffbf64adc168ddd12f99fcba9841ec5104c3ef9b378dVirustotal results 19 / 56 (33.93)Heodo
2019-02-07JAN2019_rechnung.docdoc0cd62b03d38d473ad2d63129e6768b0ce4e78669e2d7c982fc1d4f118927c1a0n/aHeodo
2019-02-072019_01rechnung.docdoca29204b37ffa2bb3fd89de533ea33c33d9ddc64898bfcf610db17a0a9817b920Virustotal results 18 / 58 (31.03)Heodo
2019-02-07JAN2019_rechnung.docdocdd2888ae190b36017b4f507f294beda213a93bdb2dc34f44a5c3a92c16a1d597Virustotal results 18 / 56 (32.14)Heodo
2019-02-07rechnung.docdoc47e03341ad49a69ef5cf75882d83267770506dfb053a49ae5bd182deab2ae0e8n/aHeodo
2019-02-07rechnung_01_2019.docdoc8b34937814fcbb2c983c7119f789a6be5622f6ec292f43c29d66ede185ae2755n/aHeodo
2019-02-072019_01rechnung.docdoc0fb1891062a2efc47b2fe69391e3a7a42673afdbb21d834af3ad3ac36b56ecf0Virustotal results 21 / 56 (37.50)Heodo
2019-02-07rechnung.docdoc2040db0d5d56164e190c12b79bae2b1a78d267cbea78cd3da1c83c2abeadec97Virustotal results 19 / 57 (33.33)Heodo
2019-02-07rechnung.docdoc1ea02f40f79ad4c530c0bf0138d7b49d995977ad2187e7b231e0f89a020839fcn/a
2019-02-07rechnung.docdoc5e22b84fa8335690dd9ed17c234a81f49919d8d3f4e0b1469cd07f966f0eabfbVirustotal results 19 / 56 (33.93)Heodo
2019-02-07rechnung_01_2019.docdocc861a16b06cc2e1c474580d1d77742488b1500b294fc80773505214a8658deddVirustotal results 19 / 56 (33.93)Heodo
2019-02-072019_01_rechnung.docdoc149735e48cb3e377e66b3d1c155bfe6f15858b502d1ea591f800be8ba0b96152Virustotal results 19 / 57 (33.33)Heodo
2019-02-072019JAN_rechnung.docdocba796576b006589983d1b4ed041f5fe446246cc3823d3b3ca8c6d61ac643cc68Virustotal results 19 / 57 (33.33)Heodo
2019-02-072019_01_rechnung.docdoc551d077ac455bb7327fddf567acc71305d3eed0afbdd099823d5222611c7b3a1Virustotal results 19 / 56 (33.93)Heodo
2019-02-072019_01_rechnung.docdoc788d5bb87879fca4fec80a7ab909d74baf2cb634036860e37ebdaa7f44b49674Virustotal results 19 / 58 (32.76)Heodo
2019-02-07rechnung_01_2019.docdocc45eebfad7df2ad94cdef3bd2558c2da4519c477fb02e5771441040a661fe08bVirustotal results 19 / 58 (32.76)Heodo
2019-02-072019_01_rechnung.docdoc8110c8c6a67b74f7668d91467b9be9eaa2afb88a7738521eccd1335d7153f6acVirustotal results 19 / 56 (33.93)Heodo
2019-02-07rechnung_01_2019.docdoc9ea22e4299d15e87a1a3bcc03ae6e930cf89db5cb3c48cc65c3724744b17b03fVirustotal results 19 / 58 (32.76)Heodo
2019-02-07JAN2019_rechnung.docdoc394359aecd115f2c4512d3c0537aa34b1d8a5cf9d1f968db47514d6d02352eb6Virustotal results 18 / 55 (32.73)Heodo
2019-02-072019_01_rechnung.docdocb5054aa36e418b42ec4e2ef8a2ffdd5c01780dca65d907208adb9300ebbcda93n/aHeodo