URLhaus Database

You are currently viewing the URLhaus database entry for http://ylgcelik.site/file/New_invoice/xAHku-M0u_s-3MJ/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:148013
URL:http://ylgcelik.site/file/New_invoice/xAHku-M0u_s-3MJ/
URL Status:Offline
Host:ylgcelik.site
Date added:2019-02-26 19:11:03 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Not listed
SURBL:Not listed
Reporter:@spamhaus
Abuse complaint sent (?): Yes (2019-02-26 19:12:03 UTC to abuse{at}cizgi[dot]net[dot]tr)
Takedown time:17 days, 22 hours, 7 minutes Bad
Tags:heodo

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-02-27ACC7599161430661.docdocxd2ff05ca4592e4f36a5b5da1ca5229c5b6c464d7871fb3b60f5ec440c1afae1eVirustotal results 9 / 53 (16.98)
2019-02-26ACC8799361000293.docdoc2f4a8b985f604f98966c8b90f9e0eeb15faf9b946a74098e7e02e1daed32321fVirustotal results 19 / 54 (35.19)Heodo
2019-02-26US754199265.docdoc9da586512816c7ea64515606ddb2091b69ff2275dafa91e8e22cd35e3071e185n/aHeodo
2019-02-2620056763063600999.docdoc39bdbe2bd134e87f809971d63830f3d7317573e648673a89ee7ee5db1dab6bd7n/aHeodo
2019-02-26ACC606931775280075.docdoc1697aede6b63b12e4bd3c7fd5315f869bc03c8dcfe7ad124c68d2e2243baaf9bn/aHeodo
2019-02-26PAY951821575683.docdoc1c5154672bb992fb8dfde30f46bed885230d6f59f06109064d6640bf78e15644Virustotal results 18 / 54 (33.33)Heodo
2019-02-26ACC2928661955058575.docdoc5087d318c84a0da1f4285d235349d7adb282dd22ed82b57f333482e2ce490762n/aHeodo
2019-02-26INSTR58009089443411.docdoc5de9907b9809bc4bbf7681bd234e2a1b4ed94ed1fcce3d65458e7b8e5c9273a8Virustotal results 20 / 54 (37.04)Heodo
2019-02-26INSTR2497408311221256.docdoc6f3ea054beeae0724d4009af18e36320a13ea56caaea871e69650553bb0348c3Virustotal results 19 / 58 (32.76)Heodo
2019-02-26PAY197003204.docdoc11cbcbc4275ecb231eda3d05ee36174c171df853002b630ead6ac48df6a3a352Virustotal results 19 / 55 (34.55)Heodo
2019-02-26US900919034494.docdocf64c4380f53448103e34059fc107f79cc9a3e3f30274b34e11c9e98e3f237a60n/aHeodo
2019-02-26PAY1218710484779.docdoc6b33974cf79a733076ed546329a0aa4c588594f6de2270114e003593d0d06098n/aHeodo
2019-02-26INSTR1312942572981.docdocedae1160cf43fcea54b34250a4832d0be5393128bf5ed6e4c69029c70d9e50ddVirustotal results 16 / 50 (32.00)Heodo