URLhaus Database

You are currently viewing the URLhaus database entry for http://keylord.com.hk/Telekom/RechnungOnline/01_19/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:123202
URL: http://keylord.com.hk/Telekom/RechnungOnline/01_19/
URL Status:Offline
Host: keylord.com.hk
Date added:2019-02-13 09:28:21 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL :Not listed
SURBL :Not listed
Quad9 :Blocked
AdGuard :Blocked link
Reporter:Anonymous
Abuse complaint sent (?): Yes (2019-02-13 09:30:12 UTC to esabuse{at}hkbnes[dot]net)
Takedown time:2 days, 10 hours, 35 minutes Poor (down since 2019-02-15 20:05:15 UTC)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-02-152019_01rechnung.docdoc 26cf13dfb811034b54c4402c63a261a4e550402931545a5e42695fd1c4bdb73fVirustotal results 19.64%Heodo
2019-02-15JAN2019rechnung.docdoc aa6fd0dccb65f1d2948060309d406b79b62be0d02ff904bf1365668e9c6a8ad7Virustotal results 19.30%
2019-02-15rechnung.docdoc 6a6b883d955728746235b16c61185dda42fd09569c15cacec2315ef594e38aeeVirustotal results 19.64%Heodo
2019-02-15JAN2019_rechnung.docdoc 94eb055dd2c9d3e339e4c12764b8f7242d4a1fe33a08e7f7820ade8c357faf93n/aHeodo
2019-02-15rechnung.docdoc 2bbf03b597e2dc3ae4fbd2958109e6f9a198d2ef04dad0bbecedf8ffdb93b35cVirustotal results 28.57%
2019-02-15rechnung.docdoc f556bca81f7517130a63352d28bb4237b61cf44b71f568f2c602ab9831c49f2an/aHeodo
2019-02-152019_01_rechnung.docdoc c31ba6c3131c3c7132790871f023e8e40c0132d3793ad8f4e292f8c2108a7476n/aHeodo
2019-02-15rechnung_01_2019.docdoc d084730c3222a57b4ca69af66213b15fc808df800fcef09536125f2b8bbb3bfcVirustotal results 21.82%Heodo
2019-02-15JAN2019rechnung.docdoc f1bd233a3b9b6b0ea6148dea17bed51f3ca0f71e23c9e6a6955b028e516bb53fn/aHeodo
2019-02-15rechnung_01_2019.docdoc 910ecee21de484ef238a555495abbe912c3fc4c6585438db6f4fb3e557482f0bVirustotal results 22.22%
2019-02-15rechnung_01_2019.docdoc b49c9a22922bebab7d767c732338eba417c0a6c2149ce8f141a886184be3c949Virustotal results 21.43%Heodo
2019-02-152019_01_rechnung.docdoc 948e256c53e10b93c327b45efe8629b3f3612cb0605a782293e26d36b1950d64Virustotal results 19.30%Heodo
2019-02-15rechnung.docdoc fdc58287932afb134d3fccb474c00fb6c5f5b71b6876f3a4171ebdfeb7737eb8Virustotal results 21.43%Heodo
2019-02-152019_01rechnung.docdoc ad1bff7ab5748a521d54db010e86dcf65d3fb23eed378927697fa4ee342ded98Virustotal results 21.43%Heodo
2019-02-142019_01_rechnung.docdoc b7a5b11180a66fb10c9957a84c517f926da64a33bfc5949a5a87d694892f30a7Virustotal results 19.64%
2019-02-14rechnung.docdoc f8336db42976d5c7ec95df0f80e52fdfe8e18c9ceefbbdc898c64ee13a43cc7aVirustotal results 18.97%Heodo
2019-02-142019_01_rechnung.docdoc 7e432eaccc7fee2b8ab0d7bfbed20b4d3b4e519e3b325d62d14df283e2e83eben/aHeodo
2019-02-142019JAN_rechnung.docdoc b0d4b233aea13f0cf2e48f64ecdc6504478090bfa5414cfa1a1ce8739c20d4d2n/aHeodo
2019-02-14JAN2019rechnung.docdoc 7624507950aee0bccf264807cf20dff21a5c3bafd476830eb29ada4b8dc8d25fn/aHeodo
2019-02-142019JAN_rechnung.docdoc c8722f847d62be9287029d2f54c8e86893502c3505665f9d5533c6d1298451bfn/aHeodo
2019-02-142019_01_rechnung.docdoc fc3b02c15bb18a64052774a9a1847b19584a83bef57e2d2620a19f17a00e0da9n/aHeodo
2019-02-14rechnung.docdoc d2e19d553d410718597203d71b480d0e42f82e6bda1b98a186ceb7524a8bb1b2n/aHeodo
2019-02-14rechnung_01_2019.docdoc 87de3380817115140976171dbb9e5aa4207f8a2dff124065a772e90df6453229n/aHeodo
2019-02-142019JAN_rechnung.docdoc c25d5989f667513420b6c5c85dfcc13c177d0e281926afd7581deabe458de83dVirustotal results 21.43%Heodo
2019-02-14rechnung_01_2019.docdoc 81d616d13c103135e9dd47b9617f4dd50abeeaaf489b09b40a5823d53ff05a66Virustotal results 21.43%Heodo
2019-02-14rechnung_01_2019.docdoc f0edfa20b32ddd99a92658da5f696222e0f1d4c99afd9e2c2a8a48b9fd7b261dVirustotal results 21.82%Heodo
2019-02-14JAN2019rechnung.docdoc e659dc03dfe534ba5abae46047a329043002e7f1560a4888a49dcf31f9958399n/a
2019-02-14rechnung_01_2019.docdoc f12e124637c07cad9b7e1ce7becc22d4e6235674806bbf5a9c219338640f8a99n/a
2019-02-142019_01_rechnung.docdoc 7bbcb13ba9df7f6d8fa33c2b581cdd1ae42407ba604bb6b4c883e41f41601590Virustotal results 21.82%
2019-02-14rechnung.docdoc 405c63169f1c46e32b7103215fbdf3b4dfeb40ed21e5c5f9d953a747d4690813n/a
2019-02-14JAN2019rechnung.docdoc 93d436758cc24dfad3d575c3794ccbed12ff44d6d9f0d76bc428c470d5b89608Virustotal results 19.30%Heodo
2019-02-14rechnung.docdoc 5e09937233d3be286d6935cedca2ff4954e7b36ecc582a2150d89686357b77een/aHeodo
2019-02-14JAN2019_rechnung.docdoc 547b9761464a9037c1aa76c52178b5d141ab790adce4e100d9fca489d1bdc461n/aHeodo
2019-02-142019_01_rechnung.docdoc ddc7f188c59c03ef24d8f5ce2f3d9d93dd9c9fb6a9072bf30700a080e17a15bbVirustotal results 21.15%
2019-02-142019_01rechnung.docdoc c2b792f0e67f6982b6bf54bfdc5e88541f7af446f8225027b7c3cc2c98953c42n/a
2019-02-14rechnung.docdoc 8fa8e6f9ce5b34d88fa570fa7630419dfadd71d24c3b29634e361dbf85bfdcd8Virustotal results 20.75%
2019-02-142019_01rechnung.docdoc 1e98f156e7ed7d59838b17ed0eed92bb7be5aa6ca24adbf309248519638c7567Virustotal results 20.37%Heodo
2019-02-14rechnung_01_2019.docdoc adb2c71003bea01e720d6237f14058785bf3721f138d4f401a6c5a46c43eb915Virustotal results 19.64%
2019-02-142019_01_rechnung.docdoc fbebf124c9bd0eb283ce8c38e47aacd82fce8d87379aa5138b0e78312e2829aeVirustotal results 19.64%Heodo
2019-02-142019_01rechnung.docdoc f04b45873ca7819656f9be1eecedf24a034d742aa8f2d16ef6ed3f53f48cf008n/aHeodo
2019-02-14rechnung_01_2019.docdoc e0b66d07b9d9bf359c10cc467446e70f0ab9261a3199175c5e52135d6aa72941n/aAdware.Adload
2019-02-142019_01rechnung.docdoc 4278120c2c57403b97a72dd9418855af55e61fdf51f89bd855ee1c9373525ebaVirustotal results 19.30%Heodo
2019-02-142019JAN_rechnung.docdoc 826e2caeb1f94cbcff9f4629f2776ba48e707a0d8720e4d26690c156b1dcf051Virustotal results 20.75%Heodo
2019-02-142019_01_rechnung.docdoc c58e7b8696794c6d5f1dd3745225d93fade8d584c4ad620296d4a37b7f0d30afVirustotal results 19.15%
2019-02-14rechnung_01_2019.docdoc 9a8638e42360c33ee43e4bde6fafa5b5ea62a164adda3b29fa7908904de76ba9Virustotal results 21.57%Heodo
2019-02-142019JAN_rechnung.docdoc 0c3de549bf74ca2a9f57ea15fea1a4f20ab1514b96eac402f517409a5b311badn/aHeodo
2019-02-14rechnung.docdoc cf04da964014299d991218169315bcd5d6d77ae67c6211bcf95158c4a461bf2dVirustotal results 19.61%Heodo
2019-02-14rechnung.docdoc b9c00ae1710ce68e605c52790689b1fc5c46a2069c795bedffbe50a38f532011n/aHeodo
2019-02-14JAN2019_rechnung.docdoc b7e66cf6b9746084770347e1766e227e536a88892530d6f8db193a485e681bf3Virustotal results 33.93%Heodo
2019-02-142019_01rechnung.docdoc 387de05e444f904a9205d836b1d5d941a3df3328e79cc81ee1fdec22a1a5e715n/aHeodo
2019-02-142019_01rechnung.docdoc 1be52ba66b2db0ac87508c275933d270a8cac113d1e7ba48fbbbac5c06fd20c9Virustotal results 31.58%Heodo
2019-02-14rechnung.docdoc 55e8b9c01ee6f006c63f736ce8f7f98bdf7b30f45740cd60e909bad5b653ef9an/aHeodo
2019-02-14JAN2019rechnung.docdoc 24accce394df4d28c0b496cacbcb0245e52c3401fccfaf14fb0ac8cf65a08ca4Virustotal results 30.91%Heodo
2019-02-14JAN2019_rechnung.docdoc 10aa53666e6b7b7535f5312e4a560134d7cca9926869dd49646c5105fd1a046fVirustotal results 31.48%
2019-02-14rechnung.docdoc f596bdd66454e9d2f00391920394679dacc80ec65d77e5cacfb01f73b3fafb8dVirustotal results 32.14%Heodo
2019-02-142019_01rechnung.docdoc cebe799eb13204e363f9d18a0be2885e4668ca32ffbe1bcbe0d6071ddc5fe541Virustotal results 31.48%
2019-02-142019JAN_rechnung.docdoc 4941777a3a7e4899df063ba472ea528865537ce43178b5db6aed072e61bc500cn/aHeodo
2019-02-142019JAN_rechnung.docdoc d31d8513d07a01c8cd627c745d0959263d122f95729d2cfcf951c9e8f741f2deVirustotal results 30.36%Heodo
2019-02-142019_01_rechnung.docdoc e95846c16abcb48406d3e68b89c6c57335d72683501f7a9bd60d2e7894fedaa2Virustotal results 27.27%
2019-02-14rechnung.docdoc 48cad76efb958c7d247a27f4636d464536d78174b5379f744c86be9b22020fd8Virustotal results 27.27%Heodo
2019-02-142019JAN_rechnung.docdoc 36e96af0d786eeefe5749d3b60ab2dfa044ca4da0644012c8c15dc5a6df36e17n/a
2019-02-14JAN2019rechnung.docdoc c131a04ef143915bef40c4816d7c065d86f15e1e00b15f26500895151f466fedn/aHeodo
2019-02-14JAN2019_rechnung.docdoc 646a4bfb639145a8babab15ee88b8ff1744e68dbbc59f9085d4e2321171873deVirustotal results 26.79%Heodo
2019-02-142019_01rechnung.docdoc 30af6a16431fa52b727d75db674bec79d21b4687876ee26f57c137dcaeea5ca1Virustotal results 26.79%
2019-02-13JAN2019_rechnung.docdoc dda878698d942e6bc8c8f114507f1a00878dcb205ef1a5569fe1e7968e4e8fbaVirustotal results 28.57%Heodo
2019-02-13rechnung.docdoc 2f65ba0ecfd26fa06e238822d9c0f8bc60b0dcd003afbd7568b1fd1ee6bbd191Virustotal results 17.24%
2019-02-13JAN2019_rechnung.docdoc 8050b4496e395a91f1363fc1af60a243811a170eccefe723b8f04e93e403a013Virustotal results 19.30%Heodo
2019-02-13JAN2019rechnung.docdoc 46bce1e470af13227d4949322b92cacd5a4bae10eabb3fc5cd46fa2f34b76a29Virustotal results 18.18%Heodo
2019-02-13JAN2019_rechnung.docdoc 15b0891d13aefc17adf3ba8fdf570dba763f32661aa72177b4dad8e9c3da74dbVirustotal results 17.24%Heodo
2019-02-13rechnung_01_2019.docdoc 9e0d36cfd8196baeed740ebf985200c58f5fb8c9ca4e51a22b5d17588592664cVirustotal results 17.86%Heodo
2019-02-132019_01_rechnung.docdoc e87d937b5348dc1ff3387cb3b974d14ed08f3e198f8bfea03b7124f7f40a79cbVirustotal results 17.54%Heodo
2019-02-132019_01_rechnung.docdoc 1dd4c9b26fd12bc6d730c0577b64ff7b0efb12551a6ab1795dc3ca82055d2357n/a
2019-02-132019JAN_rechnung.docdoc b1967a5b9cba0bb2df20e4f381230e8ca57a625360352119e36480dd6f7d2028n/aHeodo
2019-02-13JAN2019rechnung.docdoc 6af30cba9d84c8ab311b99a2da7448d8c52590f6353a57aa2a16190bf6289fbbVirustotal results 18.18%Heodo
2019-02-13rechnung_01_2019.docdoc 719dfd9b9d878b7a562166d34e3d8cf6e5f37ea40ac9148b7a464fad51adcd61Virustotal results 18.18%
2019-02-13rechnung.docdoc a530577fd77b89e6a3c3c864ad573c30558ca3f3d9d461328858d920b5f8ee3dVirustotal results 18.18%Heodo
2019-02-132019_01_rechnung.docdoc 5f1293aa97f471e1e9c032e318c9eecd6c5f579d0ebe11dd5b095a958b99d61eVirustotal results 17.86%
2019-02-13JAN2019rechnung.docdoc 3455048d655320dfe9fa1d3466a5608862008dc9f6c22dc972d44399fb1c799en/aHeodo
2019-02-13JAN2019_rechnung.docdoc 605a05f83e1cb664d4a320f2bf561013a0eced86d7d9b1be8465bb1f3687bff7Virustotal results 17.86%
2019-02-13JAN2019rechnung.docdoc 7080872d446da577eb335cd74a38c37ae31265ffb258b25ebd098091baa4184bn/aHeodo
2019-02-13rechnung.docdoc a90b540e8eece86cf545dc8a8d6c12ce00c471abeefb493f1e9956c040553535Virustotal results 21.82%Heodo
2019-02-13rechnung_01_2019.docdoc adffe4b315c0aea994b38a4bfdfa1a11efa89e4e5ecc9900ec05509580bfc882Virustotal results 21.05%
2019-02-13JAN2019rechnung.docdoc fd6d3fed5485d19798b1169fdf5e5e5101c8a0042301dd10785d1645230b6062Virustotal results 20.00%Heodo
2019-02-13rechnung.docdoc b2b2934c98c2c1b218cf95d9feb0a071a4a7b507db0cf58576b9d2a86c23188fVirustotal results 21.43%Heodo
2019-02-13rechnung.docdoc 51af1bd9c9be21faa36768d9b164fecdb1804cd56ea8b8098cd5efa963849e42Virustotal results 16.36%Heodo
2019-02-13JAN2019_rechnung.docdoc 762010819aac35827bd1a7c75b41cdcbe005b0930bd382f44b95a716fc3abb03Virustotal results 14.29%Heodo
2019-02-13JAN2019_rechnung.docdoc 3f339883556f1ddf4689050cdeb892495acde82b3adac21555682b392b90e0ddVirustotal results 20.37%Heodo
2019-02-132019_01_rechnung.docdoc 00f03991dafaaae758848789831086c742aa81845ee5fb19a83ecabd1c414159Virustotal results 15.52%
2019-02-132019_01_rechnung.docdoc b72540e462c1c4fa30f17c1c31003d63e1d772435f20cec49e17c01587b39106Virustotal results 18.97%Heodo
2019-02-13rechnung_01_2019.docdoc e3192d0ad18c7bfd98e879c8a40afb3496835792aeedf6032572072f278967c7Virustotal results 15.79%Heodo
2019-02-13rechnung.docdoc cfe381fcbb5c0d45a7f40822df5d5967cab21cc454387f9469a7bba8c503aa4aVirustotal results 18.18%Heodo
2019-02-13rechnung_01_2019.docdoc 7ab45f42eda01aba9f541e2c9f5c0b05f5941ee594fbd040145256adf7bf2e82Virustotal results 18.52%Heodo
2019-02-132019_01rechnung.docdoc cac96efc1e664c5e4b613a9ed50b0420ba4b7b934c2be982825c3e7203dd6b16Virustotal results 18.18%
2019-02-13JAN2019rechnung.docdoc 93d5b37c299fa4d7a59a35598a41240c92e7e4e7c241e7a4c84abb48d71c3efdVirustotal results 16.36%Heodo