URLhaus Database

You are currently viewing the URLhaus database entry for http://kingscargogroup.com/Telekom/RechnungOnline/01_19/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:122394
URL: http://kingscargogroup.com/Telekom/RechnungOnline/01_19/
URL Status:Offline
Host: kingscargogroup.com
Date added:2019-02-12 11:57:11 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL :Not listed
SURBL :Not listed
Quad9 :Not blocked
AdGuard :Not blocked
Reporter:@Cryptolaemus1
Abuse complaint sent (?): Yes (2019-02-12 11:58:20 UTC to abuse{at}amazonaws[dot]com)
Takedown time:1 day, 16 hours, 34 minutes Poor (down since 2019-02-14 04:32:59 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-02-142019_01rechnung.docdoc f596bdd66454e9d2f00391920394679dacc80ec65d77e5cacfb01f73b3fafb8dVirustotal results 32.14%Heodo
2019-02-14JAN2019_rechnung.docdoc cebe799eb13204e363f9d18a0be2885e4668ca32ffbe1bcbe0d6071ddc5fe541Virustotal results 31.48%
2019-02-14rechnung_01_2019.docdoc 4941777a3a7e4899df063ba472ea528865537ce43178b5db6aed072e61bc500cn/aHeodo
2019-02-14rechnung_01_2019.docdoc d31d8513d07a01c8cd627c745d0959263d122f95729d2cfcf951c9e8f741f2deVirustotal results 30.36%Heodo
2019-02-142019JAN_rechnung.docdoc e95846c16abcb48406d3e68b89c6c57335d72683501f7a9bd60d2e7894fedaa2Virustotal results 27.27%
2019-02-14rechnung.docdoc 48cad76efb958c7d247a27f4636d464536d78174b5379f744c86be9b22020fd8Virustotal results 27.27%Heodo
2019-02-14rechnung_01_2019.docdoc 36e96af0d786eeefe5749d3b60ab2dfa044ca4da0644012c8c15dc5a6df36e17n/a
2019-02-142019_01_rechnung.docdoc c131a04ef143915bef40c4816d7c065d86f15e1e00b15f26500895151f466fedn/aHeodo
2019-02-142019_01_rechnung.docdoc 646a4bfb639145a8babab15ee88b8ff1744e68dbbc59f9085d4e2321171873deVirustotal results 26.79%Heodo
2019-02-14rechnung_01_2019.docdoc 30af6a16431fa52b727d75db674bec79d21b4687876ee26f57c137dcaeea5ca1Virustotal results 26.79%
2019-02-13JAN2019rechnung.docdoc 8e610df0d3b2a0b27aecd4d74baa2303621a4e1cdcdfd62a9a0518ad813276den/a
2019-02-132019_01rechnung.docdoc 2f65ba0ecfd26fa06e238822d9c0f8bc60b0dcd003afbd7568b1fd1ee6bbd191Virustotal results 17.24%
2019-02-132019_01rechnung.docdoc 8050b4496e395a91f1363fc1af60a243811a170eccefe723b8f04e93e403a013Virustotal results 19.30%Heodo
2019-02-13JAN2019rechnung.docdoc 46bce1e470af13227d4949322b92cacd5a4bae10eabb3fc5cd46fa2f34b76a29Virustotal results 18.18%Heodo
2019-02-132019JAN_rechnung.docdoc 15b0891d13aefc17adf3ba8fdf570dba763f32661aa72177b4dad8e9c3da74dbVirustotal results 17.24%Heodo
2019-02-13JAN2019rechnung.docdoc 9e0d36cfd8196baeed740ebf985200c58f5fb8c9ca4e51a22b5d17588592664cVirustotal results 17.86%Heodo
2019-02-132019_01rechnung.docdoc e87d937b5348dc1ff3387cb3b974d14ed08f3e198f8bfea03b7124f7f40a79cbVirustotal results 17.54%Heodo
2019-02-13rechnung_01_2019.docdoc 1dd4c9b26fd12bc6d730c0577b64ff7b0efb12551a6ab1795dc3ca82055d2357n/a
2019-02-13rechnung_01_2019.docdoc b1967a5b9cba0bb2df20e4f381230e8ca57a625360352119e36480dd6f7d2028Virustotal results 17.86%Heodo
2019-02-132019JAN_rechnung.docdoc 6af30cba9d84c8ab311b99a2da7448d8c52590f6353a57aa2a16190bf6289fbbVirustotal results 18.18%Heodo
2019-02-13JAN2019rechnung.docdoc 5cf60cc9a8727e35066e3ad086d10a8aeefb25cecb9e93e57befe3dc5a6e5a18Virustotal results 18.52%Heodo
2019-02-13rechnung_01_2019.docdoc 852042bbd9f6779ff384cfac5945167b3137d7d42cc8da117e11b924e4a6bee2n/aHeodo
2019-02-13JAN2019_rechnung.docdoc a530577fd77b89e6a3c3c864ad573c30558ca3f3d9d461328858d920b5f8ee3dn/aHeodo
2019-02-13rechnung.docdoc 85b5a781fc3e37715e678e6c60fdb2fbe32488a2e08bb7d5c5789ae67b87b8f4n/aHeodo
2019-02-13JAN2019_rechnung.docdoc dafee22b05d007a79529c0c13386d9cc1cbd3e877ddf40136687e85b701ba0daVirustotal results 17.54%
2019-02-13rechnung.docdoc ea31594f27362ee525951c5a3d47a94b66cdbb51a7227c4381d622df57c7c7bcn/aHeodo
2019-02-132019_01rechnung.docdoc c2e4b54a7932b96ca2075864c85597912d2ffcaaa405bed657626dc77b576c9bVirustotal results 23.21%Heodo
2019-02-132019_01_rechnung.docdoc d4b7e7faa885f62f12103a9eae627ee1ad46f68d726799be8a45f1e7eaadad8an/a
2019-02-13rechnung_01_2019.docdoc adf4a20c7d15365bb9ab64eba58030602afb74ba8e191326a9250aef4fcd9eebVirustotal results 17.54%Heodo
2019-02-13JAN2019_rechnung.docdoc ac4371a326d988ed75aaf306330a54f5ef77372649be421149ea0936febd603eVirustotal results 19.30%Heodo
2019-02-13JAN2019_rechnung.docdoc a21f14cf5dc2d8c7935dbca6445bcca1a9897996bc53643c70711405ea59fd50Virustotal results 18.52%Heodo
2019-02-13JAN2019_rechnung.docdoc 51af1bd9c9be21faa36768d9b164fecdb1804cd56ea8b8098cd5efa963849e42Virustotal results 16.36%Heodo
2019-02-13JAN2019rechnung.docdoc 6752d12b102e5a4d1659d124985edac7cca933abff7deee38e0902e21353718eVirustotal results 18.52%Heodo
2019-02-13JAN2019_rechnung.docdoc 00f03991dafaaae758848789831086c742aa81845ee5fb19a83ecabd1c414159Virustotal results 15.52%
2019-02-132019_01rechnung.docdoc b72540e462c1c4fa30f17c1c31003d63e1d772435f20cec49e17c01587b39106Virustotal results 18.97%Heodo
2019-02-13rechnung_01_2019.docdoc e3192d0ad18c7bfd98e879c8a40afb3496835792aeedf6032572072f278967c7Virustotal results 15.79%Heodo
2019-02-13JAN2019_rechnung.docdoc cfe381fcbb5c0d45a7f40822df5d5967cab21cc454387f9469a7bba8c503aa4aVirustotal results 18.18%Heodo
2019-02-13rechnung_01_2019.docdoc 7ab45f42eda01aba9f541e2c9f5c0b05f5941ee594fbd040145256adf7bf2e82Virustotal results 18.52%Heodo
2019-02-132019JAN_rechnung.docdoc cac96efc1e664c5e4b613a9ed50b0420ba4b7b934c2be982825c3e7203dd6b16Virustotal results 18.18%
2019-02-13JAN2019rechnung.docdoc 93d5b37c299fa4d7a59a35598a41240c92e7e4e7c241e7a4c84abb48d71c3efdVirustotal results 16.36%Heodo
2019-02-132019JAN_rechnung.docdoc 5142bec748ae56c16cc76f6d6480b17b93de5b2278e85b32be8d56032e51330fVirustotal results 17.65%Heodo
2019-02-132019_01_rechnung.docdoc 9606d86e7bb72309086d117efdbf55637e1b781631d02504f92f2148f1c7d122Virustotal results 15.79%
2019-02-132019_01rechnung.docdoc 1b78380dc87da33f1be03698c6fb1c97047fb83b0869db614ad78af739d239e4Virustotal results 34.55%Heodo
2019-02-132019JAN_rechnung.docdoc a191014e996660ccd4930823f3aec798e391d37abeabf9e04e6e6912becca395Virustotal results 33.33%Heodo
2019-02-132019_01_rechnung.docdoc ab09084e5321b552445689d057851b4f551c58506dbced9576b1856aa0517c39n/a
2019-02-132019JAN_rechnung.docdoc 6c1710a1a3c916f3bc8ca4eee0eab976c39fb0b24b520e8a4e9ca7e9106c84f5Virustotal results 33.93%Heodo
2019-02-132019_01rechnung.docdoc 821b71c9fd3b62272475c4311e1f54cde3a467e2a9d618a3c0657dc9da1c8000Virustotal results 33.33%Heodo
2019-02-13JAN2019rechnung.docdoc 618dfc008bdb3a3382b14ac227b0fea281aaad41f3ebb38d6596bb37717843a6Virustotal results 36.36%Heodo
2019-02-13JAN2019rechnung.docdoc 4458ae6f0ddafefff59ae71480e104dbe486a205219695877e2652ce3865b933Virustotal results 35.71%Heodo
2019-02-132019JAN_rechnung.docdoc f538ee8501fc30e1c4ae2fa514858952069c77db02f433c7211361c7de4a0342Virustotal results 33.33%
2019-02-13rechnung_01_2019.docdoc 1f80bc1a597f55db4ecbf15b6485381153514e782469db4b9e64ddcc2f8badabVirustotal results 35.09%Heodo
2019-02-13rechnung_01_2019.docdoc a05e4ab8c16c70515ea939a15cd9498e94cb939b600326d18937aa515e3fe8c2Virustotal results 33.33%Heodo
2019-02-13JAN2019rechnung.docdoc 0e7f4733841d308e03be632e980133f37432ec209e5f755a6f2f4365153279fdVirustotal results 34.55%Heodo
2019-02-132019_01rechnung.docdoc 76cd96db24625e3d9ae47f7618ac30591f6c15e7b4a3446d57c03f586737373cn/aHeodo
2019-02-13rechnung.docdoc 3722e38dfc6445a03e843fad423a8f401c24465817c2c65c7150d459851f9e1en/a
2019-02-12rechnung_01_2019.docdoc 31269fda4663bc5f6bba68346a4d151ac496cede9f82b0efebc3337aeb4d459cVirustotal results 33.93%Heodo
2019-02-12rechnung_01_2019.docdoc 6b90fbab01749462a83cc4dc452b96c77ca0b975acad0d81d8fee1720ca39d2bVirustotal results 32.14%Heodo
2019-02-12JAN2019_rechnung.docdoc e9676a11a36d147aac2c5781a8270b45eca2f2509b2c95b2b668d4d1077dce2fVirustotal results 31.48%Heodo
2019-02-12JAN2019_rechnung.docdoc e7fa0b77579a3dc649ebed6943d422820bb519ba316ba5261c07dadced0cd8c3Virustotal results 32.73%
2019-02-12JAN2019_rechnung.docdoc dd0ff448256f42d345e5c4c3fc6709f58edf50cef095a2aded59ed9524de4f45Virustotal results 32.14%Heodo
2019-02-12rechnung.docdoc bb061c9e051fbebbcabdb7783bbd4b4cd64e750d3bf3c1d31c4cb94d77749985Virustotal results 32.14%Heodo
2019-02-12JAN2019rechnung.docdoc 30d6db8fedcca6feeb2ab6f64a2c0778e0bc3bc47d55f902cb0c047bd66480e3Virustotal results 29.63%Heodo
2019-02-12JAN2019rechnung.docdoc b602df8a91e19f796e824c41677601f52e31a3aeee07add3427300d6e0f3f35fn/aHeodo
2019-02-122019_01_rechnung.docdoc 0bd765d8980595f4618b5ffafbe9d4a607fd167cf91079aa4f207cf57d1bbb6dn/aHeodo
2019-02-122019_01rechnung.docdoc bc4d532da6fa3b8bee4c159e9e96a03b3e9800e938033ed6820076fbaa05603bVirustotal results 29.82%
2019-02-12JAN2019rechnung.docdoc 0c969d5ad8febbf86af5152a0913bc56bab3951f51d15b60726e42d2e3e0bdf5Virustotal results 29.63%Heodo
2019-02-122019_01_rechnung.docdoc 5fcb69534f967d1724ceb8561472f07c1abd13cb98ea1c8d63009788c27170bfn/aHeodo
2019-02-12JAN2019_rechnung.docdoc 6e133fba8492978c68d2157f4eabc23643a0eef9d8dd2aa2a26e60d3ebf847efVirustotal results 29.09%
2019-02-122019JAN_rechnung.docdoc 558f43491473de9a3b553cb99ecbc26f670d768f637291d3873029862f1bf79cVirustotal results 27.27%Heodo
2019-02-122019JAN_rechnung.docdoc d23c7abd3719769158d6a04f512bdae7273163e74c3e8e165a387842f3430353Virustotal results 27.27%Heodo
2019-02-12rechnung_01_2019.docdoc 01a5f6ecb789da2ffa5311b070f2daf717a22cb5e6334a43fb9aeec39d69b55cVirustotal results 25.45%
2019-02-122019JAN_rechnung.docdoc 10b21a4e9c2b68e82bad16cc714b0299959fde08793c94cf82bc77056d105676Virustotal results 26.79%Heodo
2019-02-122019JAN_rechnung.docdoc ffdf67f0ce47db4d500f197eaf291d2c1d3a9c7077c1c2c65150dac0b23e3db8Virustotal results 27.27%Heodo
2019-02-122019_01rechnung.docdoc e8e4e5623d3e377465e43a2c41e4dc55f8f42fd7b6d180d35e00e72934234edfVirustotal results 25.45%Heodo
2019-02-12JAN2019_rechnung.docdoc 9037ce04ef215a748b74614bac6b49ae8112396d666e508a973a06ade1be0ef7Virustotal results 28.57%Heodo
2019-02-122019_01rechnung.docdoc 44f2ac599629b24bb197392a9795fd1aeb4d0a57d2b9b9e52f44d9a5d757d166Virustotal results 25.00%Heodo
2019-02-122019_01rechnung.docdoc 0f317e4abf5a7fd99874352c192e1e35714c8150a547d648c261fe705a2aae1fVirustotal results 27.27%Heodo
2019-02-12JAN2019rechnung.docdoc 938cfe59ca776ced6383df8ad9b496121a6b6183e4053af68a9c214141a82bc3Virustotal results 28.57%Heodo
2019-02-122019JAN_rechnung.docdoc cbe11c5f44d374df8f9f671b4668d23a0405da91a7b1215d30e288fc26c6dc07Virustotal results 25.00%Heodo
2019-02-122019_01rechnung.docdoc d023efd7eb4b52a51534b2191c9953068b1fad7348cfe6320d0353b092195fb0n/aHeodo
2019-02-122019_01_rechnung.docdoc a2dfbc8d9597e7e1eab934a350435c5b1c4d4a1ba1d4571d9db77be823dd7231Virustotal results 25.00%
2019-02-12rechnung_01_2019.docdoc 8beec0df1710604330dccbe373a36caab18e68f67f2cdbe892392e6fdb1341b1Virustotal results 27.27%Heodo
2019-02-122019_01_rechnung.docdoc aac4fb4af39506baf7344bc47cb69d019a23fc01ac9e94a64a4e02a7748ef867Virustotal results 30.00%Heodo
2019-02-12rechnung_01_2019.docdoc 5ef28cad0d97b33411fc3af948722f6b08624af3acc068fe8a407947bd8c3b02Virustotal results 23.64%Heodo