URLhaus Database

You are currently viewing the URLhaus database entry for http://shagua.name/fonts/sendincsecure/legal/verif/EN_en/032019/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:163128
URL: http://shagua.name/fonts/sendincsecure/legal/verif/EN_en/032019/
URL Status:Offline
Host: shagua.name
Date added:2019-03-20 23:03:05 UTC
Last online:2019-04-21 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-03-20 23:04:02 UTC to ipas{at}cnnic[dot]cn)
Takedown time:1 month, 1 days, 17 hours, 52 minutes Bad (down since 2019-04-21 16:56:45 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-03-22Enc_message_502540075.docdoc f9529f127813bdd7aa0a0e87adfa7af0bed03e9b8c0159d9f110a2d1e3cb3d8eVirustotal results 23.33% Heodo
2019-03-22Encrypted_Email_file_5073117247.docdoc 1578131c038370aee4746c655e9a5c48742d93446b0b8393b711c33dfc3fc037Virustotal results 22.81% Heodo
2019-03-22Encrypted_message_0490354506.docdoc 17455ae622e61caa0eef0a1ebe66534269b9f2e58c5844f96e2b32b7afe87800Virustotal results 23.73% Heodo
2019-03-22Enc_message_67601659.docdoc 9e9b0acb163351a93afba4afc7d48347051e8282b0e804b2886798c91c0e28bfVirustotal results 23.73% Heodo
2019-03-22Encrypted_message_322294832.docdoc 2a859e1269db3c31dc37db4513fffb836c3356b055582e6bc81611ba1ed5acb2Virustotal results 23.21% Heodo
2019-03-22Encrypted_Email_file_445284353.docdoc 8c921e547a84cad868d1cfbaceb01f9525828952e0225997a5835bc4ab534ac9Virustotal results 21.67% Heodo
2019-03-22Secure_message_07736397.docdoc cc1548cb2be7da8fb0867181dcbb821bef162493511b078b1a52388d315e4013Virustotal results 20.00% Heodo
2019-03-22Encrypted_Email_file_6399992337.docdoc f6b70a2e459528dd2b0c8ab6b75bbadba8294f8fe5167a54a86f290b2880b2feVirustotal results 21.05% Heodo
2019-03-22Secure_message_410892684.docdoc 1a1f1531a79a0d79fa3e30f82919ffc7e7be80f08f467db09db1b9e9edb5690dn/a Heodo
2019-03-22Secure_message_7439534985.docdoc 5eadb970f1e71a7c4561ad1a4c6a5918eb4405e7a132d12e27d3d078271dd149Virustotal results 22.81% Heodo
2019-03-22Secure_message_82387676.docdoc 06b35e157a6e8667812f2201b2c7a96b32653d474c161ae382026d6a3b3044b0Virustotal results 18.52% Heodo
2019-03-22Secure_message_33771406.docdoc 3cd2d8078d1f47d7f7231be0d700ee4feea986a7cb73b8bd130b55460c2d37f3Virustotal results 19.64% Heodo
2019-03-22Encrypted_Email_file_386613163.docdoc 3c70cc38f8deaf228dac3a324b9f2026d132fd5c40dcacfbe964ccf3c02c01a4Virustotal results 22.03% Heodo
2019-03-22Secure_message_939585424.docdoc b1a6d760127a26149c7f006c651219942ae88d8415e8056db193b2d0b77cd839Virustotal results 20.69% Heodo
2019-03-22Secure_Email_file_9786712431.docdoc e6123eab533f6cbcca704a71b5a7b353fa79a8e9bbd6d3567e37a27f678701ebVirustotal results 25.00% Heodo
2019-03-22Enc_message_77534699.docdoc d72395a923956e1411a0cae8a6ad07c8e45179fd32c12b08a66c78533d15e1d6Virustotal results 24.56% Heodo
2019-03-22Secure_mes_6833417561.docdoc 38d5b912ec805254271ff0e76ce85b354e4be7f7d6079d6146aad7140f2abfbbVirustotal results 24.56% Heodo
2019-03-22Enc_message_639908809.docdoc 392cd9ed1e4363f5491dabfd0e5f29636da12f5b615d2ee4f2d6a81a1c1bfbcfVirustotal results 24.56% Heodo
2019-03-22Enc_message_83898061.docdoc 80157d65303964874f0beb79096b73b0d6d097c6a6d789a2b31afd39db466e2cVirustotal results 25.00% Heodo
2019-03-22Secure_message_8332459431.docdoc 6b929f16003661045dac429f09c2d61a4beb8e147df5839a9bd69f133772e64aVirustotal results 24.56% Heodo
2019-03-22Secure_mes_6986323329.docdoc df4e77a282d0ba4d38a55e15347d6f252a08d901e815efe1ddaf640d4b14cb54Virustotal results 23.21% Heodo
2019-03-22Enc_message_52780333.docdoc 86ec1668079b9cad25b0e121142d25e9bb61e1b95027a4f6e372d93c72be8933n/a Heodo
2019-03-22Encrypted_message_298750244.docdoc 62ab2dc3b4672ffc073bec10a30a201b1aaf140238ad1099e9a4b16b30f7b330Virustotal results 21.05% Heodo
2019-03-22Secure_message_87436965.docdoc 1b3b52a706b3fd75ade98f76abdd50bf502fbc3c85f4a9ca7d5a8f83b8745a8bVirustotal results 23.73% Heodo
2019-03-22Encrypted_Email_file_3528197489.docdoc 5b060606b8fdd21378b36c574a1b1c1efa3453c0a52a91691aa63c4656c72133Virustotal results 21.43% Heodo
2019-03-22Encrypted_Email_file_4373522049.docdoc bc987e7b5bd775460bdfe88b6b9147a2f88664361c4d0a332869ec51b19e2578Virustotal results 42.86% Heodo
2019-03-22Secure_mes_0016438362.docdoc f878bd2d0d261601d1e61230bcd8a9c2fe2ab4485f5f0fcd2be852d1e0b14bebn/a Heodo
2019-03-22Enc_message_144109915.docdoc 636f15a3b75ab89500d18f95d7bfc0fb9f1874f6c66ad72fa00cebd722c1c742Virustotal results 33.90% Heodo
2019-03-22Secure_mes_1471159792.docdoc c5af840fa8ead0e12439115f65449743ccb90928e4ed3ab04d97acd7f96f2527n/a Heodo
2019-03-22Secure_Email_file_3103788538.docdoc 16cae56936ebd97473e750aba2daed1e259c95a489b89a8538bc85dd9ee8c365n/a Heodo
2019-03-22Secure_mes_4699765112.docdoc 2ac058ab4bf534db27a1788862160d1e2e912568c9433001b02964a8a8b2d229n/a Heodo
2019-03-22Secure_mes_8099880099.docdoc b25ce3670e58ad46d38e74b2439731778d38aca30cb1a69525fac1efe14d12e7Virustotal results 26.67% Heodo
2019-03-21Encrypted_Email_file_4963368203.docdoc 087aabe1a51cff0adb78f83e2e4a1d9414eb0c56a9c17c780050f76904f95939n/a Heodo
2019-03-21Encrypted_message_93884720.docdoc 7bbba3d31aa7f6207281c6812d28edddab61e92da406cc26adfdc2e2263f11a3Virustotal results 22.41% Heodo
2019-03-21Encrypted_message_8772868918.docdoc 9df1c015db6a4f4a046d8be445dc10f87269562e7b72d6118d7efc4393c26a2dVirustotal results 22.41% Heodo
2019-03-21Secure_mes_9966131008.docdoc be3778cfd7908b66e9f4bfbc3b062da0bf20e56d0e9346647d4c2942ff907ba1Virustotal results 24.56% Heodo
2019-03-21Secure_Email_file_46761054.docdoc e8c672af328d3f1b8163cbaff7c0274de81e0aa5ec3affe75e784b07b1cc9b2bVirustotal results 23.21% Heodo
2019-03-21Encrypted_message_77719743.docdoc 9bf28478fb24d4604f4d2af36e834cd4a98b9b2bf12e9eb3648f26556e3b412dVirustotal results 23.73% Heodo
2019-03-21Encrypted_message_9238405288.docdoc e662ee2b45bef7cfd1f5cce53a6e62eecdf5c9587dc5c8ab702e0ae5f14a7932Virustotal results 23.73% Heodo
2019-03-21Secure_message_985877486.docdoc b1eaeb8e60bfb9233adedb39d15763afb04cb7a28fb566be0ed9cfc83217729aVirustotal results 22.81% Heodo
2019-03-21Secure_mes_2717477722.docdoc d785732ce215d2f483154be9b536e73d7e78448fe3cfb8f018cc1fc05bb016b3Virustotal results 23.64% Heodo
2019-03-21Enc_message_08139565.docdoc 7b0172890f66831c57a28bed69704aabce4cb820ae7c515ce3fd3e9a72c4ea2dVirustotal results 22.41% Heodo
2019-03-21Secure_Email_file_4947053886.docdoc f28881d167bfa224cd5b6a7541e1f5d782e52fd80d70429bb55dfae28ffcaa3aVirustotal results 21.82% Heodo
2019-03-21Secure_Email_file_7184638356.docdoc 0d41bf3d7e7933021d8b6845a661d3fd669fe2afc8aa5b5419f3a6805b366a5cVirustotal results 22.81% Heodo
2019-03-21Encrypted_message_532372886.docdoc de123fe2d91120d55b31bb7b2f672aaeafe784059d9a5e2fca2d62d4d63c3776Virustotal results 20.00% Heodo
2019-03-21Enc_message_63038633.docdoc 91a4eed675445a8d87cd81d13347ef96e0842477e2176fcfe5ef6335139c2477Virustotal results 19.30% Heodo
2019-03-21Enc_message_4462284482.docdoc 94e92d5a787ce4b081523b65d56a11284b8b4f32a7678176092873e09274f2e8Virustotal results 19.64% Heodo
2019-03-21Encrypted_Email_file_241065821.docdoc b6df868974fa05ab0094e2008dc18d7a166bf4fbb562e35aa3e57d122795e3cbVirustotal results 25.42% Heodo
2019-03-21Enc_message_2428557608.docdoc 7d7587e2691d50f7fe9198d77fde82f47746ab0953a1e8b05eb8b9c321deaf0bVirustotal results 21.05% Heodo
2019-03-21Secure_mes_592527251.docdoc 4512c11c5bc125d6469e9a0754c1fa2055cf65d7a84b5af66e8635e660935524n/a Heodo
2019-03-21Encrypted_Email_file_603760039.docdoc fb8cf7ed17da2dc30ed3ce0605ee54e4a1ecdc6dc8dd07e63d2f93f9685294d5Virustotal results 23.21% Heodo
2019-03-21Secure_Email_file_0526265828.docdoc 5fa1d7cf72de0d81e8a0d5b4d26ca69785db44c67d21d5bb5253336a7cf4145bVirustotal results 21.43% Heodo
2019-03-21Secure_mes_04398754.docdoc e186e4d89354842f6346cd925726dd570237bb95550591c8f17fff4958e8e795Virustotal results 19.64% Zegost
2019-03-21Encrypted_message_10863774.docdoc 245e70b29e89f7d84975984a6e0c2a2337687a2716007036e827e61320a353a5Virustotal results 20.00% Heodo
2019-03-21Secure_message_75416094.docdoc 60ea609066f5921abefbb4a25fb21600affad9f970009547692a16d2feee61c9Virustotal results 18.64% Heodo
2019-03-21Enc_message_79426477.docdoc 9c314b3fb243905e61eb8350091a7ef4dd8412223db2045eebe00c76e41a2b14Virustotal results 20.34% Heodo
2019-03-21Encrypted_Email_file_33701444.docdoc 51b8d12b4fe1dc8f4acacfc6a92fe3ab8b13a563c2233a91cf060af0b3ee617fVirustotal results 18.64% Heodo
2019-03-21Secure_mes_724139538.docdoc 5b20dd91778f65acef6d5f3a830b0e9f384590914e73e70100be655c20c684c0Virustotal results 18.97% Heodo
2019-03-21Secure_mes_319038781.docdoc c7d3c3247adbdf1df841094fad58007e525c710476bc11a50fb06d870a37c7d0Virustotal results 18.97% Heodo
2019-03-21Encrypted_Email_file_5808598514.docdoc ad0abef513a72ded54de6080d824a63f67c247402eef06a3e7912db33a95a76eVirustotal results 18.33% Heodo
2019-03-21Secure_mes_5240464281.docdoc 4ec26a0f0b9511707f60d02eabf19745c4dd63e08fdbfcefa3e08dbce698f3fan/a Heodo
2019-03-21Encrypted_message_9803139458.docdoc 9eacb6941cc93edb829970e287911e2c3712f8b8742b71511154f6d1c005ca3cVirustotal results 44.64% Heodo
2019-03-21Encrypted_Email_file_9483767997.docdoc a2bb6f95288b7592cdcd04486100bbe7810a1631f33ae3cfc4b7856a39f0bec3Virustotal results 22.00% Heodo
2019-03-21Encrypted_Email_file_8035060368.docdoc 76942696d3b6e15b92131f0dcaf9df87e65411c03402ea3f1de0111f12fd1387n/a Heodo
2019-03-21Secure_mes_24947955.docdoc 921f5a1a39d2b7fdd024f3197a9a55d9e9e3fa63f67f616608252f3aa4a69576Virustotal results 25.86% Heodo
2019-03-21Secure_Email_file_7067036562.docdoc 3287ee100e99ef8b15e0a67c982e7ce360bd8ae8061d7a490a4000a0ef42a07eVirustotal results 24.56% Heodo
2019-03-21Encrypted_message_775724796.docdoc 971d512259c5e08dbd9d7f937154bdc4d035411fbee33c21556584e9bcdd5e6bn/a Heodo
2019-03-21Secure_message_75170187.docdoc aaa6e8d591a26ab0fd2cb0b6ed27dcaafe97546d1a76884985450dbab170029eVirustotal results 22.81% Heodo
2019-03-21Encrypted_message_34063359.docdoc bdddafc5973928c836a9852aece14d6bb964f2ea2efe081b712316cad5e671a8Virustotal results 23.73% Heodo
2019-03-21Secure_mes_072511706.docdoc 174c3d1b5a8089ed921615ea38d3deb3e6b813f33788c827ab34bf0eb4056930Virustotal results 23.33% Heodo
2019-03-21Enc_message_133674736.docdoc 40540b899ea9da4ee11e676144ab896b5c2adf20a09162698765d47957d855a6Virustotal results 23.21% Heodo
2019-03-21Encrypted_message_5418504521.docdoc 9658f51e9d5e635f2c63bab6e921b8c9618a8968211c07de8c4a528348c8ab18Virustotal results 23.33% Heodo
2019-03-21Encrypted_Email_file_93831016.docdoc e4bff4bbb9fb76c8194193e547a34348b6e5a75acb5a256d48212452745015f9n/a Heodo
2019-03-21Encrypted_Email_file_70191479.docdoc 59af57d924f416aedf2efd6c63fb8c1edd86121f8b4f49b2ed01b65596398b80Virustotal results 23.33% Heodo
2019-03-21Secure_Email_file_197572099.docdoc e6754e01cf3d08da3c00f171ad4249d5ee466fbbb17b4bb9e2320825f9bdb616Virustotal results 20.00% Heodo
2019-03-20Encrypted_message_36671164.docdoc d7712ea034bf82a73560940b079315a81068880c6d243ecf7143d2e37e3313b0Virustotal results 18.64% Heodo
2019-03-20Encrypted_message_1137245587.docdoc 40ad6dd480ce7bc3522e597f87b4a7e4a636d1c3945ca24647682b7bac0b1036Virustotal results 18.64% Heodo
2019-03-20Secure_Email_file_1400845239.docdoc 33eddc8790a1637424ca3d4dec33077a5960dbdb153556b48b1cf6c0b4dad4aaVirustotal results 18.87% Heodo