URLhaus Database

You are currently viewing the URLhaus database entry for http://grillitrestaurant.com/wp-content/uploads/sec.accs.docs.net/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:169787
URL: http://grillitrestaurant.com/wp-content/uploads/sec.accs.docs.net/
URL Status:Offline
Host: grillitrestaurant.com
Date added:2019-04-01 19:24:25 UTC
Last online:2019-04-02 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-04-01 19:26:10 UTC to abuse{at}digitalocean[dot]com)
Takedown time:21 hours, 13 minutes Good (down since 2019-04-02 16:39:28 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-02NEWFILE_201904_D9_2-74_M005.docdoc 7788bf3f8c9e09658a9c7c5428d0ca70ef637b332208beb403a8ebacb3b17866Virustotal results 20.97% Heodo
2019-04-02NEWFILE_042019_L3_8-10_G7660.docdoc 25afb63edbcdedbe1c730f7c968d951b3c6a1687769ed646bdc4910aad2ec486n/a Heodo
2019-04-02OPEN_INVOICE_201904_S2_5-60_K330.docdoc 297daa63a5afa0ffb90c0928b6d0e09a5cdfa51ae161579b570ef8953be95695Virustotal results 20.69% 
2019-04-02NEWFILE_04_2019_C5_0-77_25114.docdoc 0a31017562a6617fd3f85d55fc5e7c50d1de476d90780544b90bcfb666a9c338n/a Heodo
2019-04-02NEW_INVOICE_042019_O7_74-70_N282.docdoc 436f356b4c57f7b3a9b5b518c343b8beb73ea5d8867d3d4c5a070e1695e190dfVirustotal results 20.69% Heodo
2019-04-02X2_3-20_K940.docdoc 849a6f9f522dfa5dc0a871daf12342e59a939bd7b7f758cdf29d5080901b3fb6n/a Heodo
2019-04-02NEWFILE_P4_6-64_0965.docdoc a15e9e7a06c1923cde4c6e3ef501aac19a146b5c98cbc645745d45fd6730da66Virustotal results 22.03% Heodo
2019-04-02INVOICE_DOC_J3_6-30_K3114.docdoc 2c4cdf42f536d858d7f978e459c7a75333cf07f05296efe4a554fea4d426946en/a Heodo
2019-04-02inv_num-Q4_9-53_X8558.docdoc 1efa1d2e7fa4c450b284c15fd8f1eb5747262413e9c600c1d311f956f5597ee6n/a Heodo
2019-04-02inv_num-V6_0-63_K892.docdoc 5dabad4916c92748ae0c69bc10d186467a4b4971cc8607881e9961f91ee77a55Virustotal results 21.67% Heodo
2019-04-02W8_3-26_M152.docdoc f771371c77e4ffdba8d569e4e3add9909e09466e372c23c91361267a33b59688Virustotal results 21.05% Heodo
2019-04-02201904_B7_5-74_49400.docdoc 7e93a81843bfe8c999c330e2fbb833995bfcbc2fb77525749f555163dde742f9Virustotal results 21.05% 
2019-04-02eINVOICE_FILE042019_S7_0-10_I551.docdoc 4f26c5a52cdafc9c7fa2d4cb63ef3e32ea4d63f54e5e192eedc90c3d57d763deVirustotal results 20.34% Heodo
2019-04-02OPEN_INVOICE_Q5_5-61_J056.docdoc c9463c9f694e78e144bba886597e088b71126a385f038b3d01a0726a5a2c4435Virustotal results 19.30% Heodo
2019-04-02NEW_INVOICE_V0_41-70_48347.docdoc e051128526746f53a88dd5f5ace45a91d5c49afb4635ec0be6a4428b9ad2a471n/a Heodo
2019-04-02eINVOICE_FILE042019_C9_1-39_S101.docdoc 8f55a0fe372f475033bb95db248e1126b0f6012dacc7b75faba46416c214f40bn/a Heodo
2019-04-02last_invoice-V4_03-83_P8672.docdoc 8a35c1865bac08d865b42f376b27091b3abce6a9c261daacce084dcf6f7b73e3Virustotal results 26.32% Heodo
2019-04-02INVOICE_DOC_Z1_60-31_I723.docdoc f4be92f5fd531238aa5267e25804ba29b55a17262f9eeffe210c1b953861eb1aVirustotal results 25.86% Heodo
2019-04-02NEWFILE_201904_M3_15-82_A347.docdoc 033a9ddc186d4dc211f8ddf203ab15efeecb8c86f534e2d3c57430834f140699Virustotal results 31.15% Heodo
2019-04-02invoice_number-D0_08-13_A407.docdoc d564c45b3bab4adc9f5cbb89a5343c9f437a6130ea2d02818031c49c009c79f7Virustotal results 22.81% Heodo
2019-04-02NEW_INVOICE_04_2019_D9_60-21_02320.docdoc 8d5cfc8165170ec4e302cc7d63e5954163cf5fca1474895d9adb76456675e997n/a Heodo
2019-04-02UNTITLED_FILE_W3_9-50_C5472.docdoc a34956ab5c25d807323ce9afae3524f043f5dc024379d8dacce0a4f0dfac5a43n/a Heodo
2019-04-02NEW_INVOICE_042019_U8_84-46_H845.docdoc 89f88a6abc4ce17a27804192f6a0db40af91f4531b29b381134c70f69101d5b2n/a Heodo
2019-04-02last_invoice-Q3_07-17_E7957.docdoc 8b2a6b33f19d4e8b028b7b2a999affa79bb3b33325a0b1f29961bfc8b62fa302Virustotal results 21.05% Heodo
2019-04-02invoice_number-04_2019_W4_54-52_N3353.docdoc 34c9911b59b5b831d2067318cac6922c607963a5e5f81bb182c321ed1498aabcVirustotal results 22.81% Heodo
2019-04-01last_invoice-042019_A5_56-30_S1878.docdoc 770d07ad2c9a92bac676e55f7776e5542f69b31d2335535ebfd9dfe7b32c58f1n/a Heodo
2019-04-01NEWFILE_F4_8-98_54373.docdoc 5907a741f12ecf7df9fbe9076a56520c4d4134a3b59d2801e5ec5ca6dd3010fan/a 
2019-04-01NEWFILE_04_2019_X9_80-41_03334.docdoc 19e0b58eefc53e8a84cec3c30410887a3436b913a73c99f310d39aa36f939622Virustotal results 22.81% Heodo
2019-04-01UNTITLED_FILE_042019_J2_2-48_X605.docdoc 7ba53c8b849fe05ab5f8291d7d6f671afaf42e66e754ff7efaec337fb0d71ad2Virustotal results 21.05% Heodo
2019-04-01INVOICE_DOC_042019_I4_81-31_O1120.docdoc 205db6ffe057d2fda0d095a11bc2e854e4c4e2bdd570e34dddec7311f3df0525n/a Heodo
2019-04-01last_invoice-S5_01-74_Y9299.docdoc 4d8972a8e9daf54dfb3fdb47c1d40594b085c83cb77a593d56fb90bdbfc9e933Virustotal results 19.67% 
2019-04-01OPEN_INVOICE_H6_21-66_P1836.docdoc 6d38e01eeb359aeac9e96fe8c380728602288f9db548f2d6e16754fb53c42d92Virustotal results 18.64% 
2019-04-01OPEN_INVOICE_A0_52-40_S658.docdoc 5b7dbf17bd4fd14865bee9e7175931ae7363161f2fdceacca0ae5f587a5e41a1Virustotal results 18.64% Heodo
2019-04-01NEWFILE_F6_9-28_B6624.docdoc 5a492ba7dc3632add890cfeedb1c6feec57c8bd853662d6dd21be77a7d8b4704Virustotal results 19.67% 
2019-04-01invoice_number-042019_T2_48-67_1369.docdoc ddc3edf2160ffe638af5016d0312b215f324c951a0376048843a63582097a0baVirustotal results 19.30% Heodo
2019-04-01INVOICE_DOC_04_2019_F1_4-06_F690.docdoc 350d0135b263830d9c2c6c4eed195c014c4e4693194d647881c5ccf6e1c183bfn/a Heodo
2019-04-01OPEN_INVOICE_04_2019_Q4_92-63_H583.docdoc 7dc647ef258aea0ed09bbce598696329dba4a6f4dbdc70b4b037f4e8c668af50Virustotal results 17.54% Heodo