URLhaus Database

You are currently viewing the URLhaus database entry for http://agemars.dev.kubeitalia.it/DE_de/REPPSOOF3613334/DE_de/Zahlung/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:121511
URL: http://agemars.dev.kubeitalia.it/DE_de/REPPSOOF3613334/DE_de/Zahlung/
URL Status:Offline
Host: agemars.dev.kubeitalia.it
Date added:2019-02-11 11:32:03 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL :Not listed
SURBL :Not listed
Quad9 :Status unknown
AdGuard :Not blocked
Reporter:@spamhaus
Abuse complaint sent (?): Yes (2019-02-11 11:34:02 UTC to abuse{at}tiscali[dot]it)
Takedown time:1 day, 5 hours, 34 minutes Poor (down since 2019-02-12 17:08:54 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-02-122404367625.docdoc 3eeb2bd103fd19d9e5528555be0cff169c33bf513a6bf9708569a37cc6cdbc05n/aHeodo
2019-02-12AAG278549154928.docdoc 8be846317fa0deec67c07cd689b59ba7231c4244b490329e6dd4b74ab9fccc74Virustotal results 25.00%Heodo
2019-02-12ENBG0407718755966820_2019.docdoc 55ebd19889089904c2494e1ec0233a09440d4b8c4943680f1b6b0ea47ffab2daVirustotal results 28.07%
2019-02-127904852595798386589_2019.docdoc 7f2d2be9e8393c8a38c1e3e948b27bb4660bba4623be31894dca25318542414en/aHeodo
2019-02-12281869564737940601.docdoc b9b5ba5b34fb541bf6ce836b103d3b213fb5d0d1bb023dec4a809e5200ffadebn/aHeodo
2019-02-12Y35238777550648369_2019.docdoc 319e696035318ad81de588cb10ae0540adb5a0c841549d3726c72715c6540026Virustotal results 28.07%
2019-02-123044151232143.docdoc 9e500ad2ac11e0f355d7966992ecb085244e777b278f5d8d13568cc4b256e089Virustotal results 25.00%Heodo
2019-02-12093006740806839052.docdoc ec841b5a6810a726a78d53afac2e809bd0be8758248ec41dfc49424654f45ff7Virustotal results 27.27%Heodo
2019-02-12E0771505235160_2019.docdoc 53eca122ec298ea4f73562092ce57e2c8809f9ac46ee2b331be21fab5ac39d90Virustotal results 23.64%Heodo
2019-02-123388525618840876624.docdoc b5a0c38797bc6759adb5a0f83f9082f753996e6afd68959d4d49e2efb0e8243bVirustotal results 24.56%Heodo
2019-02-12ZJ08886270303612687689_2019.docdoc 2fa71247c8825a9732ab1f9cbb884b16932ac72a89c4e786809862b3caae3791n/a
2019-02-12WMQU413769819167151548.docdoc 660f59af3b4995bfcd65aa162e38adb7f017a89f1215a0e5e59bb415750a145bVirustotal results 26.32%Heodo
2019-02-1292657861845597.docdoc 67ad8f8c59359d0fe14ff3bb37b7a1b8087c13a2845ced8322e816447f187ca2Virustotal results 26.32%Heodo
2019-02-127198576742840428862_2019.docdoc 0d20173df64fdc23a85ab3a0af60c6cecbe277e28988f8f069e22cb7b7e4a9c2Virustotal results 26.32%
2019-02-12FBP97492891640.docdoc 233b98ead2663e8a2f9b16daeefa134cb0b4f34a83efc98203d50bee258344c4Virustotal results 26.32%Heodo
2019-02-12FRLC06831461914357814467.docdoc 83244c85d4d7759b679274ea13747a43cd68716c6f5203e6912007a4b0d5eec1Virustotal results 27.59%Heodo
2019-02-12636800370259.docdoc c68c32b90b04710d7c9cdd124a1dcb2039197933d5f50657562845257a7e94ebVirustotal results 26.79%Heodo
2019-02-12XN6775884244_2019.docdoc 38b3d3c9d5a1fca3c1d52bf5cea0f12dbb6eed43161014a9ece3b36547fc241aVirustotal results 26.32%Heodo
2019-02-12SK3417453513304809_2019.docdoc 1752081807ecbd810df1a3ad2ce1dd236496157eb3900e3698dddbffcd7d4853Virustotal results 28.07%Heodo
2019-02-12NKVV482060270050447538_2019.docdoc 0c8e741589605619729a828df74bcabaa6f69e44002c8b17ea3e222a2a2f77bfVirustotal results 28.07%Heodo
2019-02-121120726059202763755_2019.docdoc 4bfe096f665b09283637bad2494c92d2c6377e90d18f53f03f15e70f8af9b990Virustotal results 25.86%Heodo
2019-02-12F7887819053329.docdoc 4c6058f9d89d3cf4dc7c61fdee6dfe45d2f406a79554f74a7daea9691a6d43b8n/a
2019-02-12H86713849100677_2019.docdoc e837f29478fbb117d9fe612c32c39d435426ef558810aa4ebed6a7a1bb50d039Virustotal results 34.55%Heodo
2019-02-12OUY48398951287005809403.docdoc 351d6749c1c9ffd96287534fe1e8f8d71226f6ce875dd1e8d7c520201b1c40c8Virustotal results 33.33%Heodo
2019-02-1228684918264945_2019.docdoc f9986dd2ae83e3df36388da8cc498d686f3b07bf0ebad2f2c70cd943f0686f10n/aHeodo
2019-02-1244626804156158536.docdoc a3cc3a8cc9de4d1b921d23425a289cd85ae07088a55a617a25fcb54f2ec0908bVirustotal results 29.82%Heodo
2019-02-12TOIO9396323882_2019.docdoc 2a22d6133c9722f3c8bc22989cdc67bcaa4d081739d137bbdb211f14460e5113n/a
2019-02-12CVT2336156010391357_2019.docdoc 7c88696e5791acf0f93a9c56dbc624ba75d30646a10c26814ee7da6715bf02dbn/aHeodo
2019-02-120630732617412535_2019.docdoc 4a8bb9d6db463eb2bd29137005dbbf52650fdf6e4fe53910d800db9e091697e9n/aHeodo
2019-02-12UW48727565399500941_2019.docdoc b512f47e2fa25638b3ecb8e18f832fb198dc42257ad8a67e27c6c23b9ee33740n/aHeodo
2019-02-1246448916183.docdoc 5cf352b52c4e5ea601e3a5d3635baf0672f4597adde4424a11e8a69fa254f5den/aHeodo
2019-02-1206548132508996_2019.docdoc 15f90b490df222a36c3566ad4895befb2bc62782e471fd1d5e0267be99b83b2bVirustotal results 26.79%
2019-02-12T42061988810035447648_2019.docdoc 62abb3e0501213ead06b9bb14456ae32b462f728492ad673031eb76f82abd947n/aHeodo
2019-02-122681025227127473_2019.docdoc c3d5cc485f5846410332d2dd7c68aa0ffc32748e1ff0a0dda6604b02084da360Virustotal results 26.32%Heodo
2019-02-11022636334082_2019.docdoc b05dab8ce4e21ec035844ff2b22093153e5a9e09faaafcd0724e0ab133e7cf22Virustotal results 28.07%Heodo
2019-02-11A255696789202_2019.docdoc fa576257dd49739553b4e8b44d7a78e583592d131f7dc319f634897b24989232n/aHeodo
2019-02-11YEXM84740856540643924698_2019.docdoc 9414679bd8f2f0be79b5e4fb7f1f412c07bd7ee0b6b09bcc34e8eda48e51026aVirustotal results 27.45%Heodo
2019-02-11633803284577049432_2019.docdoc 573535084604b0b83c8f96541e6f360de8be4443c04238484ef8013ff536f381n/a
2019-02-11W915461879_2019.docdoc 21c6ca0ab11cb70de291b3c0f719ea6e9b5c70297391a4148b06bf66c77c53c9n/a
2019-02-11RH4834120499066375.docdoc d1df17ec2fd32b9514f8874aab3bf4591d00bd30cd084cace80b1c5d1c6d2d6dVirustotal results 26.79%Heodo
2019-02-116272959469109.docdoc 7c63ca32aa91ee7480e3b29cc4e63cca1f71daf286c2259c9d23a98155064a22Virustotal results 26.32%Heodo
2019-02-11ENU5789663342516759_2019.docdoc 8e0c5ea52d143274ed4ba08d7c7629f0b6ba35867b1be32aa39cf5043c4a3c18Virustotal results 27.27%Heodo
2019-02-11B254864417.docdoc 5d5ba9f5bd3057f7501e53f61e8308d09eab9dbe2fb75ff4f3be5d4b97847263Virustotal results 27.59%Heodo
2019-02-11YIYH1731842935336254.docdoc 4c1c56bde40e88eb6c18e59119548f37f1546fd0705d5ced00e0574283b9848dVirustotal results 28.07%Heodo
2019-02-118005920930_2019.docdoc f3ccf8ce8ff7386022e858466899407a8d426d3d6240c90277c5584ebeba5a2fn/aHeodo
2019-02-11384908903120019030.docdoc 0326a97197cb921ee1dc3c98aef3eb55237a248e9a6f2b73fdf5c1a30e732f0fn/aHeodo
2019-02-11QHK5161032996_2019.docdoc 35659cc974e742d9d1a884cf4fd8183741b8f9f2f3b15723f971cfa662ba9055Virustotal results 30.36%Heodo
2019-02-11EIN93865493124031986262.docdoc adf829de459655d8ed5ff10aa2d49bc45e059b6bd16564522442c92adb6a3cf6Virustotal results 26.79%Heodo
2019-02-115843914631_2019.docdoc 101f4cb92a14ec64e6644a1859c429c4a06e9b3b30b783a6cdf8ab37306d2a93Virustotal results 28.07%Heodo
2019-02-11089761234445119.docdoc 6c978d820911669b4b00a5c9216785bb1322a8f86d85f04f0af41e6c21c04058Virustotal results 26.32%
2019-02-11XAAK4934797086434738_2019.docdoc 5bee70325eba14e5693c6ee994186c66fb460bc04a5dfccb56eda3b5f5488b7eVirustotal results 28.07%
2019-02-11MT821527005.docdoc 38e695287e8f00318c9009714baa096011bc690bf697d4f318a11af808d2f4a0Virustotal results 28.57%Heodo
2019-02-11R63586489520518.docdoc 05919c6605a91f25c145bc7e10e5d19e59300520b3071c780bee8dd2a68b04b3Virustotal results 28.07%Heodo
2019-02-111353701846120_2019.docdoc 67d61a98699495d3b3b3ff3fc9e152523c2288e8951d6bbc665671d4f5e1dce3Virustotal results 25.00%Heodo
2019-02-11855553379750940098_2019.docdoc 212c5b2a5b059683e08f535aeb9c4ab7ae2a6f844b84d61c493a5cc3788fc50dVirustotal results 26.32%Heodo
2019-02-11UOV4187903567590.docdoc 6e927c5d6fa40f1dcd1a2de07aeb18c9468f72308cc039e83ed24c3405b01acfVirustotal results 29.82%
2019-02-11072035268067560968.docdoc 6e8e71a57d133c332c1abfbcc1c8a811563a5a5ea182d63746873d2bae6dd136n/aHeodo
2019-02-119139869475459774224_2019.docdoc f565d48c0e009732ef3c6e22e0ffcf5ae82c5dcaed1bd7f103e1c23dedd3695fn/a
2019-02-11HDV8529409820687382_2019.docdoc dda7d2efddf2a5e0dbea93269b369fbad043ff9b6eea7796da361a201ef033f9Virustotal results 29.82%
2019-02-11486309589829.docdoc 72e9c76cc8eaf062bc6464aaa26c220c842c900faab93a661e2551866d25a9c3Virustotal results 30.91%Heodo
2019-02-11J541160320.docdoc 30813284567b1ebfff18ac68912ed213602ca94db7fb9aa0e4cea762fb5fc7a1Virustotal results 28.57%Heodo
2019-02-111687717022351932.docdoc 276b5e4e98abfb0680e5157be418285fd61523894deee674de3be11aec7e2e5cVirustotal results 32.14%Heodo
2019-02-118439606651715.docdoc d6a3b6a5d6b6ebf87ce75d0851355a31351df20df1268ae35283a43b39eacdadVirustotal results 32.14%Heodo
2019-02-11514254626261802_2019.docdoc 06c42235a3ff621a78a0825032ef9df39f25a6a1608a32881a151519f97556e8Virustotal results 26.79%Heodo
2019-02-11224398973765_2019.docdoc 000baf1efbd0dc7e573c779362f769ab452d20b16223a044e0ab6b55e4298ea6Virustotal results 28.07%