URLhaus Database

You are currently viewing the URLhaus database entry for http://hagebakken.no/loggers/gRJJ-xg1iWjHRI8N2XBC_zXLCbfDL-zC/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:179163
URL: http://hagebakken.no/loggers/gRJJ-xg1iWjHRI8N2XBC_zXLCbfDL-zC/
URL Status:Offline
Host: hagebakken.no
Date added:2019-04-16 23:59:04 UTC
Last online:2019-06-28 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-04-17 00:00:04 UTC to abuse{at}xcore[dot]no)
Takedown time:2 months, 12 days, 15 hours, 59 minutes Bad (down since 2019-06-28 16:00:03 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-22855525537-O-20190418.jsjs 7f5a69c40558d1dd08de2834e727dc2efdb62a302321ab1e735e36dcf46bcf7fn/a 
2019-05-10855525537-O-20190418.jsjs 3b3c2c9faf8e45e7bfd026939ce75b9d51be61dad0488ccbcb8aedfce26c7826n/a 
2019-05-02855525537-O-20190418.jsjs 47451aee96807fb57f90eb445525017f449272213be6aa014d3031c22c043612n/a 
2019-05-02855525537-O-20190418.jsjs 8f44b857b4b4c6b92de6da1fc6a8c611e5de959f5c5640442fe3bf6c2bbbd92bn/a 
2019-05-01855525537-O-20190418.jsjs b9d0352d49ef0f08234dd4e60208a9f27c99243ed6ab0e442092465fbd40b4d3n/a 
2019-04-26855525537-O-20190418.jsjs 207fb872d813489d6f330288723059c0cf0f03c1ced844ca2aabf49b9bf16d80n/a 
2019-04-22855525537-O-20190418.jsjs f6da24fda5b28d399e76f61d7e044a7e145376e4794c310401a80b834c890b0en/a 
2019-04-18855525537-O-20190418.jsjs 98cebc3fb4f50a2d41de92a3a17ba2b885b20f701852038616d500a49f68fb50n/a 
2019-04-18855525537-O-20190418.jsjs 3f746e4a3ef98b041e6d69b9adae787c2b351e24ec3fc8cf150ddeaa44a4f293Virustotal results 3.57% 
2019-04-1856912199610-78-20190418.jsjs 73da7ffa3619e3e8afbc2334219f1bd4be18b4128d835e2dfa9db8e3a9e239f5Virustotal results 8.62%
2019-04-170758521_H_20190418.jsjs 8b1b62324101cb93445ff7f6901e29fa08736ccb407948111e8babc53f3baea6Virustotal results 5.36% 
2019-04-17686160804_H_20190417.jsjs 7460accf81db3640d5f7e1e7b430431adfd687918983e78ecc12a0308f95ec47Virustotal results 7.02%
2019-04-1721684562516-RG-20190417.docdoc 26ed293e598bbbc392e9a279ca16107df3cae693344100e53b0b6868f3eab1c2Virustotal results 19.67% Heodo
2019-04-1712308876970_14_20190417.docdoc d05f17247ab6a435284f1c4970292c279abc778a78b5083782be9770dc3c1073Virustotal results 18.97% Heodo
2019-04-1774027767070_U2_20190417.docdoc 2c3d98d9cf62717a08786330e03a60adc1a2ce47c12851e8888f49a3848226d2Virustotal results 19.35% Heodo
2019-04-1797092660-A-20190417.docdoc d9fd36227c89dc75d77c85836aa4bf2e8491c744780c72c1419be606e7c17042Virustotal results 19.30% Heodo
2019-04-1730340322-5-20190417.docdoc dc4692de020475c0ad045174e165c0da23181a448f19c94bd018eb0a36ccdd49Virustotal results 20.00% 
2019-04-1754330389_G_20190417.docdoc 65dd3fe8106394e45384e0fd7d150fc9e5084dd5715e5fa0649e356c14ad6e18Virustotal results 19.30% Heodo
2019-04-170139852845_D_20190417.docdoc 50f6532a445929bef50dee0762c0102d683fa2a59125d8dcf818c9637f9c6581Virustotal results 22.03% Heodo
2019-04-1776389754084_PF_20190417.docdoc aa504f2ecda07c8fd9cf8099798205914f7254d860bdb3d3ad59dbbe42e284a9Virustotal results 21.67% Heodo
2019-04-1736028254144_T1_20190417.docdoc fefb741d83c1183de4d36cd09ce6d8f0d8cdd650bb81fe850249dae9875477c4Virustotal results 22.41% Heodo
2019-04-17770207595-YX-20190417.docdoc dad7b2ea595c513712858b7af93d5799ba9ea2029568b03ca100e39b48875a26Virustotal results 45.61% Heodo
2019-04-17681831633_E_20190417.docdoc f9784b9c6eba56da3a944e2de04f9e3134b66c2c9ca60fa9866d7145e789a689Virustotal results 44.26% 
2019-04-1786252859-K-20190417.docdoc f630bfbe4b3c8275ad01aa4c5b0cb0997e7af5947b64dad6351672a6aa578c39Virustotal results 42.11% Heodo
2019-04-1715441907_ZE_20190417.docdoc 93520f82998d89d3a44b9b5cc74e395b5b2395c346ca90b29bb3be442a19a6b6Virustotal results 33.90% Heodo
2019-04-1771572268-38-20190417.docdoc fd6b351aa651a795ccc36478ab92b5fb40497dc6e48bc99f46dcc8ff9ef8fc49Virustotal results 32.76% Heodo
2019-04-1617251155_E5_20190417.docdoc 6f3c86249b5b6c10692d78d2af33ed16799df38cf12c52c96bdf1a6ed4c3fec3Virustotal results 31.58% Heodo