URLhaus Database

You are currently viewing the URLhaus database entry for http://gslegno.com/De_de/MSLDAMBXHP4663794/DE_de/Fakturierung/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:124299
URL:http://gslegno.com/De_de/MSLDAMBXHP4663794/DE_de/Fakturierung/
URL Status:Offline
Host:gslegno.com
Date added:2019-02-14 09:22:05 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Not listed
SURBL:Not listed
Reporter:@spamhaus
Abuse complaint sent (?): Yes (2019-02-14 09:24:02 UTC to abuse{at}ovh[dot]net)
Takedown time:1 day, 9 hours, 3 minutes Poor
Tags:emotet heodo

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-02-15760346961741.docdocace4a55e7bd6b6da878c3614e4258464a2c2cca2b30a6548208b99c0f450f1ddVirustotal results 16 / 60 (26.67)Heodo
2019-02-15G717129412738514.docdoc54ec0210ef84a0405dbfa03cf6a3eff6e7d26433af839d80b570f518959df8fdVirustotal results 15 / 58 (25.86)Heodo
2019-02-15504373974942476_2019.docdoc40c3fadc0475331146630f65b5cd6c2b817825cf0192dfa4a7a692c78b2c74a8Virustotal results 14 / 59 (23.73)Heodo
2019-02-15534127464863_2019.docdocb018e9c1f8735a31e580b37a4f1fa7b76c8242f17610482fcf62399e332d1acdVirustotal results 14 / 59 (23.73)Heodo
2019-02-15EJ07901291534225.docdoc28997eadf97f11a8a43159b148026f5facc310eadc0ac9c52c905bc768be9634Virustotal results 14 / 58 (24.14)Heodo
2019-02-15121047776726.docdoc5514b670fdb2360d7ebe349a792c17932c31e69f9ed79d6acb22facdc2b15d02Virustotal results 13 / 59 (22.03)Heodo
2019-02-15PP175948516.docdoc1e88c6ccb939ca1abc359b1f91ad2a63ae575395c49b125f7ab06627a4e646f7Virustotal results 14 / 58 (24.14)Heodo
2019-02-150288310814002545241_2019.docdoc12179171ec85ce2e25de6dc800294ab6879b2586ecff1d02cb8b11b24e454422Virustotal results 14 / 58 (24.14)Heodo
2019-02-15FY6397242097905192.docdoc56cebaad888a13e71845249376ca9d4c4b697d2058eac1713c4d07840d320623Virustotal results 13 / 57 (22.81)
2019-02-15JEK094169743228.docdoc5e1e95bbe0fcbd1debbbdfb566674ddb244ce533a66b7476e5f936f5d7e734e9Virustotal results 11 / 55 (20.00)Heodo
2019-02-153898206714688208_2019.docdoc44115b7321d378a8bc433aa7c666f74b7090664314b02ac14ef912f9c053b19bVirustotal results 13 / 55 (23.64)Heodo
2019-02-15016484903055516.docdocf1fac57e105fc5dea493c436b5a8169a626ceb5f04e7ba277db426378936f575Virustotal results 11 / 55 (20.00)Heodo
2019-02-15410372724252_2019.docdoc1fa95942b50ba9e05216e1d14d810efce62a17e4948e0bc568593807f97935a0Virustotal results 13 / 56 (23.21)Heodo
2019-02-15110781592940934360_2019.docdocef0d92853060f64185bd1e8cbbc8120c68359c8a21925286f3d2bbb8a58000beVirustotal results 12 / 55 (21.82)Heodo
2019-02-15A5240465696659171001.docdocb3280511fa1f6561394777af7bcd63c1213031e5f4b0c39cf13e22466ef53ebdn/aHeodo
2019-02-15PBUL83370963220.docdoc4bddb7c97a45703317ead1e7b4c47a303726c38b9279e6bb20304273ea87bb1cVirustotal results 11 / 57 (19.30)Heodo
2019-02-159391362787244777167.docdocea43e44fe8202b2c586361221366d6d73c7a3f9e00b3471202c81fc8b104dd94n/aHeodo
2019-02-15138375273.docdoc7099059f10ab61e6a1d264b2971cdfdb1ff469679082d212f82f45417848b633n/aHeodo
2019-02-151472699071899_2019.docdoc87a4be5e902f75b3674c90c4d1497e6800df6bff04472afc6349235b75f7ac01n/aHeodo
2019-02-15QS86114661712464903704.docdoc10fee53ef466c2db1469b1e43e8ab0652256b13b21855ec835a07784f48c6f8bVirustotal results 10 / 54 (18.52)Heodo
2019-02-15QG45848586916283412555_2019.docdoc2edb0fc4f343fc9ac272a217b388774e5d1838f919d3dd899ea346a9bf33e899Virustotal results 11 / 55 (20.00)Heodo
2019-02-15ZN5930429685.docdoc5abf0e0ff50beae40763deb3eeb94fc9c8b1b3146fa1d4af4757a2c832a08dccVirustotal results 24 / 58 (41.38)Heodo
2019-02-156003010001927_2019.docdoc82d8ea7296ebb0ab9e0837ad5f4720a3a93873bbdf6c6f1fdfac51a161abd2f9Virustotal results 25 / 56 (44.64)Heodo
2019-02-154911114510729821225_2019.docdoc379615a4b78b1f00179c185d32c3f1b91d7969d3afd8ac3514e829d56bde3b3bVirustotal results 23 / 55 (41.82)Heodo
2019-02-15U87942074351942121_2019.docdoc32022e12de45abb4646041fa13bbaf2dc56811a16024df615ea987f875a0a008n/aHeodo
2019-02-1584858652200060514_2019.docdoc60b3e981fc794551b99dfbd3b876173a713b6a23bea42ce77a9179bd2cad4950Virustotal results 26 / 57 (45.61)Heodo
2019-02-158982193090.docdoc0a63296be569d27f409dd52ab1cac44d5354aae089de3f10812d4ee324cd60faVirustotal results 22 / 58 (37.93)Heodo
2019-02-155562344730563.docdoc61b55d0f6ef49268ecf9307f87a8c9f9644c1115a249e088eeddab021d4d4719Virustotal results 24 / 55 (43.64)Heodo
2019-02-15HMQ14126078842848.docdoc0d6916f0e3712f614cc2d1a033d68fcc5613576109a3433e8dc3bc0d691978f7n/aHeodo
2019-02-156249439720_2019.docdoc8392aae0677e08913ad51a48a0c1a13cc5d0e9284811a340ef2dddbef2c49472Virustotal results 19 / 57 (33.33)Heodo
2019-02-15909434376785446087_2019.docdoc969d18906217fb95200a191f6e85e60ca0a0d25f60b61fbdfc091bc5e6158f65Virustotal results 23 / 57 (40.35)Heodo
2019-02-150371486102_2019.docdocd937abd1fbf2905ded05aa57010c1151335e1aed5970f92a1f29062934ba5eabVirustotal results 21 / 57 (36.84)
2019-02-15K954793387.docdoc5f27f1b36393f4bb01d4367b2dad234ac11a033ec6a48e2b50975507ceab8027Virustotal results 24 / 56 (42.86)Heodo
2019-02-155523581812_2019.docdocecb4b5dd62426afe2b1945a286fee06e4428a73717ef474d717f8b223954823eVirustotal results 24 / 55 (43.64)
2019-02-14B14266524413921141056.docdoc596681297db052f2da5592bd4bdfddf1ca6c5c5eeea2c5a9779b0ae29ca74911Virustotal results 13 / 55 (23.64)Heodo
2019-02-1414309270221766751.docdoc239ff2db96ca0b04cecf3236fc042847b2a1a171dd047fd865ef370107369b76Virustotal results 12 / 56 (21.43)Heodo
2019-02-14GNC1299513961095356.docdocfd55e4422ee62676fe07fd81ae90c6654b2a334c73f50a83e85304a66994847fn/aHeodo
2019-02-14429842226683616281.docdocdfcfd7d46f89debcb0c86f66dbea82c195f70d5caeedddea0f81694ebf75088bVirustotal results 12 / 56 (21.43)Heodo
2019-02-1445038535313257_2019.docdoc6bfc0b6818eff0f51f725d888971b29b3a2de12c77fe28ec570f98bae2474b5cVirustotal results 12 / 55 (21.82)Heodo
2019-02-14C0186303622.docdocb6f6662a3c0d6f490cf441feb38e308ecdad3c4d8371036e717869366f8ad763n/aHeodo
2019-02-14AWEH0688972115_2019.docdocf7e4a0fec8190a4354973127e9f08b69eb219e7bedc91416cbbd6dab72fbfb9dVirustotal results 13 / 57 (22.81)Heodo
2019-02-146014391250213023069_2019.docdoc821ff9ebf0bdfd4c4c113a5bf6dce3577ad9efe913ac9b0f532f3b960b9b6e20Virustotal results 12 / 56 (21.43)Heodo
2019-02-148624488285728990.docdoce824c6bc43b66825ea81a7ce0d9e82270776fe7ca95e7920ddb5d680edad99a0n/aHeodo
2019-02-148253299378_2019.docdoc87dabc381ed01a1da896f7d629c5b48b16531eb71afc68835436b1b17f68d953n/aHeodo
2019-02-14422528726217995846.docdoc0d6ff348080fd6d7e225934f41e0e7e0ff09fd3b8ff79ed940805282b707f600n/aHeodo
2019-02-14888339795771126837_2019.docdoca74159acb83e97eca7da81b6f5d45772bf2a30780b05254b62abc4927f7a4b3bVirustotal results 12 / 57 (21.05)Heodo
2019-02-1456006908812.docdoc2e72e06c767772a9ace4986b7e82f22bb5a86b4ecb5c8611cee0692200d0c770Virustotal results 12 / 57 (21.05)