URLhaus Database

You are currently viewing the URLhaus database entry for http://cbmagency.com/de_DE/QBSGHSS9028403/Rechnung/DETAILS/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:140286
URL: http://cbmagency.com/de_DE/QBSGHSS9028403/Rechnung/DETAILS/
URL Status:Offline
Host: cbmagency.com
Date added:2019-02-19 23:36:05 UTC
Last online:2019-02-20 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-02-19 23:38:05 UTC to abuse{at}ovh[dot]net)
Takedown time:15 hours, 23 minutes Good (down since 2019-02-20 15:01:24 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-02-20SWXB89306525879466811_2019.docdoc 1627ebc6f0f03549d4ec97bee0e07222144588fea351f625fe62d0e601c77f89Virustotal results 16.67% Heodo
2019-02-2088588101772305959892_2019.docdoc b45fbef589e247c11410c2b8472d21a19ec0ea0a0793a6923068ded66c51c70eVirustotal results 16.67% Heodo
2019-02-20SLMO454796792445186306_2019.docdoc c7f2435124ad779cfc5bc7b62a738f33db83429629dabb14e6515ff9bc45d8c9Virustotal results 16.67% Heodo
2019-02-20D3851720441459247314.docdoc 05ed2dd638d71a8d1ea4ae8326a663533337fb54ebc89f6dee5d6b97cd43274fVirustotal results 13.73% Heodo
2019-02-20BI76271596326987.docdoc 438895e866661cfcfb92a604573f003536d9bfaa703a5a4f8dd741e78d7a0d8cVirustotal results 15.09% Heodo
2019-02-20NUS070950707368743928_2019.docdoc 4832482cde4b55dc82663fa1acf8c6e2db1160b02c2996bae697be8fd2ce99a4Virustotal results 15.09% Heodo
2019-02-20332472487711600.docdoc 78539a42ad8dc842da42bba7d5d0f809c6a6eac5acda1cd82fc5b2f81c3d2aa2Virustotal results 11.67% Heodo
2019-02-20562919603917_2019.docdoc 4b08744d3e0d988c16161a7785996a547509c7f294230e8551836f3581882aa0Virustotal results 13.56% Heodo
2019-02-20DFNA6115318390483697875_2019.docdoc 2aa47ff6d0144ff1154748d8cd557bbd225c2b0028c99912b5dc641bc5c3a23cVirustotal results 14.81% Heodo
2019-02-208393096963.docdoc c3e991852da9c8d8f3f45b862e92bb02996961794a208acd7f05bd0f7117f670Virustotal results 14.29% Heodo
2019-02-205115568929449639421_2019.docdoc 075dd87eb4035d642a0f20a0626b0c7d7546a605daa0fa069f8ac0cebba0c269n/a Heodo
2019-02-20F960609404167_2019.docdoc 805cb6a567b584fe852805905ec1eac4121942732e4c7e0f58559b015316f400Virustotal results 12.96% Heodo
2019-02-20SEJC16327959824531631.docdoc 2840874e8d65dcbd6e7765e2b7618e99490b3fbf5c17d7a9f37c2f28456ed95cVirustotal results 13.33% Heodo
2019-02-209320964386.docdoc a8cda07d93d3a83491330ac514f4c7afff52daf8af23361e79223700183e4e1cn/a Heodo
2019-02-2069710692603.docdoc 69a489ee3e5c34841b4a464f414f90d1b89829032d54e0c2b112b418b6d18cf6n/a 
2019-02-20GT67782787128407516.docdoc bb6c89aa00f79d2e1df07bb4349181466e6a9c4bc7af02875860fa304b5229fcVirustotal results 24.53% Heodo
2019-02-20W7407726676710051843.docdoc bf42448ef30e101668207b9666f593cc2b7655c2cbf4aa033628b5a19974ce72Virustotal results 18.97% Heodo
2019-02-205329053616718888_2019.docdoc 684d754348fe4516c22e8c64f13b7610e9494770941b5d2d8b1fb6e08f3733fdVirustotal results 22.81% Heodo
2019-02-20UA349254721933_2019.docdoc a8873180c77ace5f35fbc502ed6e07e015f2bcb7b97e32d4d6cd93b5e4305e0bVirustotal results 22.81% Heodo
2019-02-20401208153874840_2019.docdoc a163f9b7811e8575a5dd2e72606b26dd663c369541e318987da80e236d6d40dbVirustotal results 18.97% Heodo
2019-02-2089191783660422405.docdoc 4b82c70bc40309a9eacd0d39b939d7cfd4f9e89c343957bdc9ca2ec48f39b8aan/a Heodo
2019-02-20A0309976986.docdoc d26cb323e542115649aae35d5a1a53f14ab1ecc7bdb775327ab01eae63a19c09Virustotal results 18.97% Heodo
2019-02-20S6433139306944.docdoc a7ef0475fae9d5b4480987867ea65efa7082cb2da48dba2b4d5b672475a2f07cVirustotal results 18.97% Heodo
2019-02-20FA8642281563465846414.docdoc e699620d331516b7f74db80701de8bbfcff55f1ad20920310b972a7d99ff302dn/a Heodo
2019-02-192268524360_2019.docdoc db921e7c8f95891edee57d713697a9ee9c1002ae8667614c55d4b81449d3e4d2Virustotal results 19.30% Heodo
2019-02-19ECY985733332559564146.docdoc 7ea1916702fed47c67f6dc3a3c5f28115726604d1579a9adaf2b0332f5fca4b6n/a Heodo