URLhaus Database

You are currently viewing the URLhaus database entry for https://lagucover.xyz/8agtetk/hp6jh-umij6p-rdxg/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:159742
URL:https://lagucover.xyz/8agtetk/hp6jh-umij6p-rdxg/
URL Status:Offline
Host:lagucover.xyz
Date added:2019-03-15 01:23:13 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Not listed
SURBL:Not listed
Reporter:@Cryptolaemus1
Abuse complaint sent (?): Yes (2019-03-15 01:24:07 UTC to abuse{at}digitalocean[dot]com)
Takedown time:1 day, 13 hours, 10 minutes Poor
Tags:emotet epoch2 heodo

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-03-15US122156778334481250.docdocf350612cd869a24a2eda1831234957a0d039007e64060b0532960a9daaf76d03Virustotal results 23 / 56 (41.07)Heodo
2019-03-15ACC6974921323814422.docdoc37d1202eb265a09f8a50520c4d3709d0db0020c1f6700ab5fba2acd5bf8612daVirustotal results 23 / 57 (40.35)Heodo
2019-03-15IBKSY095516509347.docdocc523c1feaf944ceda2f7cd3f7153826adde1c17bc1cfd23315e1b1d853adf4ceVirustotal results 23 / 58 (39.66)Heodo
2019-03-15US378372517563.docdoccac22557ceaec572f0783ebe2e01fbfa9356d447a8efd457a46a8c3c0284a9c7Virustotal results 20 / 56 (35.71)Heodo
2019-03-15PAY022290604150706030.docdocede18ac09dd9ab563bc95d5a3a3d91e0319bfc5b0bbae509fb03ba8c11228e22Virustotal results 14 / 56 (25.00)Heodo
2019-03-15ACC88218467738665169507.docdoc72347ba8b7e6f89637b64f773655d9769c7f753188960d54f11978ad07b1f484n/aHeodo
2019-03-15ACC90758961399693.docdoc43addf8c1d6a54c0d082c7bbaace5789c44f5d94a5b18b65c621dd55cb9d68e6Virustotal results 14 / 56 (25.00)Heodo
2019-03-15INSTR5919060212716091060.docdoc7d9e94517584a288d05bc6da8a38a2e55aec5f05481e752eb56343857f02ba4eVirustotal results 14 / 58 (24.14)Heodo
2019-03-15INSTR1481773439508.docdoc39752866b4e0aab0bccc1d8a153619ab2e6b01d18802d2e0db2590576e85d263Virustotal results 14 / 56 (25.00)Heodo
2019-03-15INSTR319493608.docdoce2c2fded2d4d0d44484f496ef3b47fd4bde46aad6c768af715842d612ab4ab63Virustotal results 15 / 58 (25.86)Heodo
2019-03-15PAY569220570610.docdocd43575d88a7ccd73a4d265a6b1937d6df10dd504ad4b647e57818cd8f4c8cb81Virustotal results 15 / 59 (25.42)Heodo
2019-03-15INSTR2190554598292027906.docdoc509067b017fc594b417b93d6fb8b122ac7fd467fc384ed3e06b34d4fea8e36cfVirustotal results 14 / 56 (25.00)
2019-03-15ACC33536329438.docdocf236525e9c45c8f47c90b25f282b107183b7d0926d4e9f821bf2c50a8b6e959dVirustotal results 14 / 58 (24.14)Heodo
2019-03-15ACC931489871.docdoc2c26a0a8a62cccc87a258f73ac8d0a3ed16b75ae85923251140d14b174fa200cVirustotal results 13 / 56 (23.21)Heodo
2019-03-15NDLV5193706868.docdoce54ce33083b377ac80463785d9300214958673ff30797750da30d0661f82f35fVirustotal results 13 / 59 (22.03)Heodo
2019-03-15PUT140749746949.docdocdb407e674507467231a1a24ebd21199212ab21a70a35bf4e735419d22f32c89aVirustotal results 12 / 56 (21.43)Heodo
2019-03-15US94683100752148468451.docdoc56443b5dcae8501d615a7b2982bdb51c47bb7fe239224ea898da35bcad6511aaVirustotal results 12 / 55 (21.82)Heodo
2019-03-15INSTR60193567172155820878.docdoc98dd2b2f79cf4d684466ef6f3eb60c6cc5380f3482f10ed3adb93ce5c5783760n/aHeodo
2019-03-1519254071727352832727.docdoc40f585459627ac46733137a24070168b295c44af801e144b8c3a4295a11713ebVirustotal results 14 / 58 (24.14)Heodo
2019-03-15XV414104978.docdoc688a43d13e6e2705c89c40d50d19439b6115957c819de8aed256b213303d0be8Virustotal results 12 / 57 (21.05)Heodo
2019-03-15187335721.docdocf08b97e6d49b39e6b582adb71eabd39278c242625c31530c6cf9d79120a92a5aVirustotal results 12 / 56 (21.43)Heodo
2019-03-15ACC279333173.docdoc73133e1ac9f4b0354b9e32b8c15bd19b0a47773dc7e200c133b87f7e250ccf00Virustotal results 12 / 56 (21.43)Heodo
2019-03-15INSTR768969089291.docdoc78475fe5467a1edc384b7c514bb877dc39be78037462809c4200b70ddeb93fafVirustotal results 12 / 55 (21.82)Heodo
2019-03-15INSTR6366815870068288.docdoc2990c3836b1caa49d2aa557dbfa71874411f1cc8a0c2cfab4d3be86b00c3adc7Virustotal results 12 / 57 (21.05)Heodo
2019-03-15384696998792196965.docdoc3e8d1d3cbecdc6d8de0d0331bf79ebb6ff555b575e2e91c66f2040bd9f744a3eVirustotal results 13 / 59 (22.03)Heodo
2019-03-15PAY17410017880176830776.docdocfb46729bc2d71e7467f8fbb25a967882172b8de20b7777729593ed18ec2be2ceVirustotal results 13 / 58 (22.41)Heodo
2019-03-15PAY265287980844518206.docdocebd2e95e7f136fa2274b9f0711394a78252c3f146aef707f75e6b81d8483d9b0n/aHeodo
2019-03-152196197269673.docdocc7a16fe65d845ff45e5896b2b46510ca06c295e5fdb87b3089f2164d56f96fe4Virustotal results 13 / 57 (22.81)Heodo
2019-03-15PAY4946914094.docdoc2669686968d5761cbd9ccf6cfb1e2cbf2b36b174c9b7595b15b82971ad131573n/aHeodo
2019-03-15ACC368936803.docdocec6c34b5caf9381cd07ac2f6ed1320707e64e5ab77b19751d89116d1c81fc00aVirustotal results 19 / 56 (33.93)Heodo
2019-03-15K914453258393.docdoc6d68a290585c0c8c14872708dc770c050331039ca3e18aba84e769e032171277Virustotal results 24 / 57 (42.11)Heodo
2019-03-15PAY8598448488.docdoce44af298e1fb69027db9f6ffcf9b20791065a1debb1809596ab7f9ebca2166b4Virustotal results 19 / 56 (33.93)Heodo
2019-03-15ZXAUS348152584563484.docdoce9e4cd2f2128f1782443cd369f130a08f0098b21c4abb4ebfcffe9849dbe6d6fVirustotal results 19 / 57 (33.33)Heodo
2019-03-1517048052550288.docdoc25a3edf18876053ba37f18681bc0d32405d0bce2399a7e76f7251e05633e4c88Virustotal results 19 / 57 (33.33)Heodo
2019-03-15ACC91820075778407006.docdoc388ca94d387497a4ccc6c2d6df665fe3ccc0e6e57bbef45d64ef654fb2c11a18Virustotal results 18 / 55 (32.73)Heodo
2019-03-15INSTR3422981288195437.docdocbb8f603dc0e356ac1c4ab5e9c6b8005ecd39a392e681402ad40b5d0cd804f668n/aHeodo
2019-03-15US331220800178.docdocbcce04516238a62408668fad8574e17813b890503a3f6a79d15c218ba90232ebVirustotal results 18 / 55 (32.73)Heodo
2019-03-15ZMNK3074839016825814.docdocb807cf6ef14aaf1772472560882a29022118ee224c27c1500bee0a481539d76en/aHeodo
2019-03-15INSTR80939364929.docdoc32ba942cecac3d19ec25037356f984066cf1d22d609c9eda6765283a237e57b8Virustotal results 19 / 56 (33.93)Heodo