URLhaus Database

You are currently viewing the URLhaus database entry for http://csnserver.com/blog/trust.accs.docs.biz/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:171535
URL: http://csnserver.com/blog/trust.accs.docs.biz/
URL Status:Offline
Host: csnserver.com
Date added:2019-04-05 02:19:09 UTC
Last online:2020-09-21 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-04-05 02:20:09 UTC to abuse{at}rr[dot]com)
Takedown time:1 year, 5 month, 25 days, 6 hours, 43 minutes Bad (down since 2020-09-21 09:03:18 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-03-102019_04___REC_0370426885276201___9643537570004881753.docdoc a3560ecdb4bd26397807e5a45154ef35034ab5e9599443f7a97392791af3d7e4n/a 
2019-04-052019_04___REC_0370426885276201___9643537570004881753.docdoc e8ca6c66c79cca9404a9f6a6920ff02010dc799435381a97fd5c57cf0c3abb41Virustotal results 28.81%Heodo
2019-04-052019_04___INSTR_740618107438878803___48761697109152998261.docdoc 3a119906f5ccc2ff4f39245ba6d788209a21ae74131854b3347facc6854308c2Virustotal results 27.87% Heodo
2019-04-052019_04___HLDA5854445100222431251___169784230467.docdoc 39fd7a9a543a395a5c04e69d739075e8c684b697e9f7161e9cfdf81ebb162340Virustotal results 28.33% Heodo
2019-04-052019_04___BIZ_2413574111340015500___31519127415896268.docdoc 83311ed9909cc46c0b2ef39058079c5eb695bf5097a2c558b021846c026cb1c4Virustotal results 29.31% Heodo
2019-04-052019_04___BIZ_784808838634196886___745806235770485.docdoc 23d3fe9d332bb9159964b608c1099f18f980c434b600c9fe82c53b9db30a80a2n/a Heodo
2019-04-052019_04___BIZ_378137173854167___274359524107368.docdoc 3cbf2d0b6a25ebefb9e39053c09ea1ada864ad2d2e2e6b20f97054ba14b35171Virustotal results 28.33% Heodo
2019-04-052019_04___Z54188999302337769683___09187142041525819593.docdoc 07be913ac6e2caf9d7104debcda9d259a8109f7f45693f51e7a8125cb8b87cb2Virustotal results 29.82% Heodo
2019-04-052019_04___ACC_45919713442555574042___61838512283.docdoc c6a61e437e4b6f487932736f0c5a8e7c78b146662073f7f66c07791c45e81eaaVirustotal results 28.81% Heodo
2019-04-052019_04___RECH_3256738684189269___3750382317860418952.docdoc a62fa784e4d2d576da07674f654fe3f5e84633a8b361af6c667f8f807f3021a0Virustotal results 28.33% Heodo
2019-04-052019_04___DOCS_2918643205___96594058046.docdoc 17dad3ebd5a305c0a8b9218d3bf755d6f335ee4e3f4f9eb28c791d8cc031f910Virustotal results 27.87% Heodo
2019-04-052019_04___RECH_200941190401272___852416229164.docdoc 77a58ab080f8feb9d6752372873b4df8d6c092b00eb1a825e937e8c0491ffa9eVirustotal results 28.57% Heodo
2019-04-052019_04___BIZ_2164477745176677___3242433607892.docdoc 95e2fcbae5239d38b9f8e6ff9fcd7e564bffe3e6113318a4fa2dfbc05021840bVirustotal results 28.81% Heodo
2019-04-052019_04___AT74793017912013671314___665241193.docdoc dd734c5b35c341d12667dc02ed5968147fb0a5e3d863060ba689feabfefdda8eVirustotal results 26.79% Heodo
2019-04-052019_04___ACC_258933443767690___51764512687173735.docdoc 7a23ac39371c6f8221945e18a2fed9448cf4ba84d1568df78e322965fb6ff04en/a Heodo
2019-04-052019_04___ACC_3022653297755938797___5123468248090903815.docdoc b8db19d850436a52dfa3200aa0507556070b2d93b4372949c30305732683cc61Virustotal results 27.87% Heodo
2019-04-052019_04___ACC_2556115921___29809902218357.docdoc 72f7d221856efa7923e2d504f4964be87b37c8717712d7a4bdcc4e5c1569b554n/a Heodo
2019-04-052019_04___DOCS_9916486703___4465100875080.docdoc 70c931d886b8ae950f3773bb5010c918bd26ed8892abc548a393616cf2993b97Virustotal results 24.59% Heodo
2019-04-052019_04___BIZ_991429980___073178376.docdoc 9f1f0f2d2ce1829eefc8cb32e65c611afe318002fd3e4bff5c00c7d2b8c17e91n/a Heodo
2019-04-052019_04___INSTR_56615415706779___133812554.docdoc 19aa6770f06b8c815f90385b16e7d137cd62c95251d1106f5a69b28f1cf5d1b1n/a Heodo
2019-04-052019_04___INSTR_36774542945342889___3268728855623.docdoc c5f0dbe9e0d454c80ce48831af0d621205902a3a62f33d78b5e1d768c181cb55Virustotal results 27.12% 
2019-04-052019_04___ACC_8594590353___76450644816735.docdoc 016d599fb144d2862083bd742ad30264561fe0d351e998e2f69ff9430e658f8eVirustotal results 26.23% Heodo
2019-04-052019_04___DOCS_1775330005387412892___0819165517.docdoc d13347e852265c610980516ea8063cd7cc074adac5d6fd10ebdfb51be715a059Virustotal results 26.67% Heodo
2019-04-052019_04___DOCS_08147787537250457210___3750201573701.docdoc fa99feb493d26c540fa722f044930534417a92ddb9b3e3b994702416bce27f38Virustotal results 27.12% Heodo
2019-04-052019_04___ACC_458712173881___96948800600450.docdoc a409f0ef9f534f5e936506092da545febc6199ed8afd90f641901e8ef8c564faVirustotal results 27.12% Heodo
2019-04-052019_04___INSTR_74628628493181___953917415064756806.docdoc 5a14efd4f0eb0b03ea3a266dca07414dad09aa7bde6e183d31561f26c32f3a0dVirustotal results 27.12% Heodo
2019-04-052019_04___PAY_3294102420346234___25726452775.docdoc 1818d4e4da77657198addcd911e13e120adfc0d712dc55d1f4d36d750fed27c9Virustotal results 24.59% Heodo
2019-04-052019_04___RECH_629552344001554303___10713585519781770.docdoc b00eb263fa60fc14d39c0cbab2d8bed31fd6f9d2b611cfe3aba932e0e783d107n/a Heodo
2019-04-052019_04___REC_73558190608___95729384685.docdoc b66e8427fdb72abea4cd4ac9ab9d3cf814970e15c721e32b73c5998c8c352153Virustotal results 37.74% Heodo
2019-04-052019_04___RECH_615262302___280022445568202.docdoc e4410d509dc8f2c5e77a52c6a70b1bcab8407c3875f92b2ba63088c1d71b70d5Virustotal results 37.10% Heodo
2019-04-052019_04___INSTR_55699174552059214___80242557956.docdoc 0f316e8e353fbc53222c2f30f5c3af6d3ef24496e8f97f4f750560f427ea8bb9Virustotal results 37.93% Heodo
2019-04-052019_04___DOCS_9858239129326___30003817280734446.docdoc 2686901e81c268f00d8212d1d2dfcdaf9f4761767056c243e1dd525ae427eceeVirustotal results 35.71% Heodo
2019-04-052019_04___REC_499628198___35634763183929063.docdoc 12aceb6275694181738acfe2044c38996c149474b04a32a3f847d3ad4042e635Virustotal results 40.35% Heodo
2019-04-052019_04___INSTR_193602153118742805___712333984.docdoc 4daf94d52448f6f8750f7c5f6c853546fcbc947a320ce844c8cc5395b0a6835dn/a Heodo