URLhaus Database

You are currently viewing the URLhaus database entry for http://grf.fr/css/INC/6MGwY8q9/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:182689
URL: http://grf.fr/css/INC/6MGwY8q9/
URL Status:Offline
Host: grf.fr
Date added:2019-04-23 06:35:06 UTC
Last online:2019-04-27 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-04-23 06:36:10 UTC to abuse{at}oneandone[dot]net)
Takedown time:4 days, 1 hours, 19 minutes Bad (down since 2019-04-27 07:55:59 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-25SCAN_057265600043US_Apr_25_2019.zipzip f49939277fe627a5eed56b840acb32c5161464849d4b1b5905c434ea2d7d1212n/a 
2019-04-25INC_8044460592US_Apr_25_2019.zipzip 1b621f75268e534a99e3e09f3978221dedf9dd3008a82e76ce19e3ad6a498b87n/a 
2019-04-25Document_784803068888US_Apr_25_2019.zipzip 1a9dcfdb067ce5a496ec4493e9e93ec2d24e6c1f5a6a810a32ed68fa627780e6n/a 
2019-04-25FILE_4233204559US_Apr_25_2019.zipzip 9eeb0786938c89e7f69639ca98dfe351f4f93d09716f386616e9abd089e22ab9n/a 
2019-04-25Document_76134034040US_Apr_25_2019.zipzip 370a3d6649f141338125c56d2ea1a7215df6e74af1a9231e4b87b4e09f1b6a61n/a 
2019-04-25LLC_888904770056US_Apr_25_2019.zipzip e240961af028f3251fd7929403d523a7330b1ed53b3374f79913c556708b7c04n/a 
2019-04-25DOC_57781119028US_Apr_25_2019.zipzip 128b6f6ded27b9c8c9fa9c4b8f4f0a2e73514a36458e99fb9a0b3bfd3dc91d8cn/a 
2019-04-25Document_536409114988US_Apr_25_2019.zipzip c3ba83477aaf38fcb73b19ce0f6e2f161425f22fe34ecd6b41ebb23b089d1bf1n/a 
2019-04-25SCAN_706154129548US_Apr_25_2019.zipzip 77cc4feb97d07c60ae3583229ab74c8393aecde1525aa9bf787bb36d50939eden/a 
2019-04-25FILE_006027721208US_Apr_25_2019.zipzip 98d1851e4bd73eaed1c021b6ab16d84c6ffbde10cf56acddf730da9e5a5753ean/a 
2019-04-24INC_898100608226US_Apr_25_2019.zipzip 1840e0bf2234428f709c734171642c268b222ceeea718825e86f3a93442eca6en/a 
2019-04-24INC_61810086659US_Apr_25_2019.zipzip 1a8926ee39a188c6c8bc1931a5d3b7650795e84f280e9bd1d54acb7243d88a17n/a 
2019-04-24Document_243094268392US_Apr_25_2019.zipzip 0b2e3b6541985cbbf3d2e7bdd42dbc6ddafe3b0967c2d94d47173a110d1e13e2n/a 
2019-04-24LLC_092044808277US_Apr_25_2019.zipzip 8501bec42c896bc47c3d03f5d4280ff2db6a217362af4201051739ddae9fa7c6n/a 
2019-04-24SCAN_82852060820US_Apr_24_2019.zipzip 702a63edb875d3e80cb4082c64c917b57c2cc2e9462f396cc4e9fcb7e213f44an/a 
2019-04-24Document_24948145925US_Apr_24_2019.zipzip 5038989ef2c5cb05e6505339ded54ad62b9b4237d9fbb5a0bcb9be8a1238c41cn/a 
2019-04-24DOC_1095073972US_Apr_24_2019.zipzip aacc4eeef9ec04bcc7d0ebfb91bc045e3c2621af1e12fead65a7834a0e9b643fn/a 
2019-04-24LLC_3435452045US_Apr_24_2019.zipzip 155762e8fdebee46d967568ed0f44a462fe57399748882be44b9cf0fce0a8556n/a 
2019-04-24Document_28084892589US_Apr_24_2019.zipzip f84c79e47878a80b8a867933b48f27d360f51f077006d2c5bcc414ab87e5b55cn/a 
2019-04-24FILE_460573521179US_Apr_24_2019.zipzip 28e60a2dba72710aaeb2aa3569c7d45c5022ab803bcf2c61786b813b18dd6216n/a 
2019-04-24LLC_283883731422US_Apr_24_2019.zipzip 8fe1fbf00f85095e6182d5cf6522d324dffe1a3bc8e8340843685232cb96b61fn/a 
2019-04-24DOC_2218761076US_Apr_24_2019.zipzip 6aa88caa2cb965defa62c8805fbe20532c1fdb1da17de9afb8b97d4568c4f113n/a 
2019-04-24LLC_217809815376US_Apr_24_2019.zipzip 492b572777b22e9aec6b16f66b9f3f33907e4f489402e1e3bf192cdc48b12dden/a 
2019-04-24FILE_9502774799US_Apr_24_2019.zipzip 2d95197c4505b91f509704986a4bc587bc564f2e8fd17c6c6566669c20596732n/a 
2019-04-24SCAN_238155677692US_Apr_24_2019.zipzip 5e3d374ee9d4077971492863e0c107e5fddce87fb04b71848c253afab7ea6983n/a 
2019-04-24LLC_315536027308US_Apr_24_2019.zipzip c032148d748e03940fc08737dd60f0e34f25414d97d1d6f829a68ec0ec483a06n/a 
2019-04-24DOC_719269099714US_Apr_24_2019.zipzip 06d328a94b79a258e08aa27a15b3ac1e8137751378216437043524f3d4cd9113n/a 
2019-04-24DOC_673084278179US_Apr_24_2019.zipzip e7cc2ed98d6bae9be4bd6a3afe73bb7afa2025173b7a6c511372c54b574fe5ecn/a 
2019-04-24Document_43726283220US_Apr_24_2019.zipzip b15dff80226f2c3418234170b08e91c22cf10bf7b934117b7bbb27c16ae37391n/a 
2019-04-24Document_155255554975US_Apr_24_2019.zipzip 387e88f10b3e2c9bb49b7431380f85da5f061f5174c7cde0cda738ee69b0db0an/a 
2019-04-24Document_070414506171US_Apr_24_2019.zipzip cc6800f7d718f2c9644e3ff66dd4c53bc3d93785e1274b1e557e4c4057a6e7fdn/a 
2019-04-24FILE_013850604736US_Apr_24_2019.zipzip 0b395f28a6ed19972c8fbda8d2e33f8461d79f98bb16fb7e1d7fe576508480d3n/a 
2019-04-24LLC_72914876626US_Apr_24_2019.zipzip 77f47f9f6d33b7dd2859f6bb3b56cdcf82dcb62dbd0b8fa0054c43d6f6c39ee2n/a 
2019-04-24LLC_740060596231US_Apr_24_2019.zipzip 78d87d757afc1a28fe6b45c5e522ec8e8a23a685e9de272c75a4b2669461e03fn/a 
2019-04-24SCAN_3232325210US_Apr_24_2019.zipzip c6c8a24352c69504f8458ceeb1d803223b16cea8da3bb9c76110dbf0a0f3db5dn/a 
2019-04-24Document_23348715758US_Apr_24_2019.zipzip 279a2b800d96c3441797d9ffb5383d7cf3440efb20313a9021bbec5ba25fc226n/a 
2019-04-24LLC_6644373833US_Apr_24_2019.zipzip 0ab8d06c782ba618f429bd067810a483e0681bc6268e7d240d4382612373203fn/a 
2019-04-24FILE_463349411915US_Apr_24_2019.zipzip 9ab3910e5920b79c4d7787adae428bc3842fa0682f8c2b8f9e73901e5b75ee35n/a 
2019-04-24FILE_675408709709US_Apr_24_2019.zipzip 361c5bbac6ee061a9d6caed7dac847fcfe8d169de6d67e008416c7e019367dcdn/a 
2019-04-24LLC_9029907824US_Apr_24_2019.zipzip a27f942ec8bf91b54c18a05f68f0ce0c3a328119522252416b2db7635acad415n/a 
2019-04-24DOC_252285922285US_Apr_24_2019.zipzip 73d36b78998ec06f4af10d035e4f024e816151226e179511dff41624a81dfe56n/a 
2019-04-24FILE_669991162163US_Apr_24_2019.zipzip 1f646c70d18a0b4152c55f99850170726d17e881475d770f3514bed292304778n/a 
2019-04-24SCAN_40599055914US_Apr_24_2019.zipzip 74bcc251a09c765ca28c88a8a374156a9a6e8721d57f1db5eceb8b4e45edf2abn/a 
2019-04-24SCAN_9465622570US_Apr_24_2019.zipzip 5020a1254e0d625cfc821dc960fdf18bec437131bdc7928f22b8a8be01d6c694n/a 
2019-04-24INC_2017388889US_Apr_24_2019.zipzip 79b8ee03fd3274cd1981a761f2cae2cd142befdea2930953aacf6d2a6b78e8e3n/a 
2019-04-23INC_1193959623US_Apr_24_2019.zipzip a5a6287db60f6adca588826703fd78c697ddf2b0431ea0ea1e124be91e37c175n/a 
2019-04-23LLC_9316743008US_Apr_24_2019.zipzip 041cb545ee8f51de5037a4bb6f00190cd28fdce46d99bc09dc74d26bc2b95527n/a 
2019-04-23Document_16815532362US_Apr_24_2019.zipzip ffa893ad35b8959107b0c9ca430e0516f1ebfc20fb9707a87d5911a355481b9bn/a 
2019-04-23INC_01430121838US_Apr_23_2019.zipzip 85edd6fde7ba890a11efab6140457e43810408d5a1ae8dfdad633369e2401143n/a 
2019-04-23LLC_99149845209US_Apr_23_2019.zipzip cd81793d6ce1e9012a9d1e45ccb4d03ff67b3adc3c4b9f31abea6114d480fc3fn/a 
2019-04-23SCAN_927959704487US_Apr_23_2019.zipzip d7bea58c9093914111aa6bb8efc2e8faa01215bd074e591f64367c1895334bb8n/a 
2019-04-23LLC_8162446941US_Apr_23_2019.zipzip de306e2d13a299f90df8b9be5e1870cddaafbcb66f04e6623bb5e9a6ebfbe373n/a 
2019-04-23INC_89134898108US_Apr_23_2019.zipzip 0c19f087faaa7210dc56a6a8b132f8465db8ef3c368cec07ec012f08d5ca0e78n/a 
2019-04-23INC_05793553648US_Apr_23_2019.zipzip 8a3efbdbe5f0d7e0f3753d4427c290b408d0ebefbba3159b889dcb6ee1abbd3fn/a 
2019-04-23FILE_322464801725US_Apr_23_2019.zipzip 13ebfa9a94acb8c20038a0a5affcc40207da0911de1bdbbb8d212679580e4999n/a 
2019-04-23LLC_305684087740US_Apr_23_2019.zipzip 16789036498c1f179beb292a72a1765b8759bb6e2d5c076c4bf483c271bec9c6n/a 
2019-04-23SCAN_2701328452US_Apr_23_2019.zipzip 1fe904ef74da508099aa16f09e6dafafa59f0c47b913f1b96f988362dae04e1cn/a 
2019-04-23Document_876086384949US_Apr_23_2019.docdoc 24cf2ab0d94eefc1e250cda59f79f3315a2a42564e07def2f8f1bfe4e937db2eVirustotal results 32.20% Heodo
2019-04-23SCAN_5406600049US_Apr_23_2019.docdoc a3933f110219fdc4b27bb3cc9df87a6d5ffca5c849206816c1311f2185551f9eVirustotal results 31.58% Heodo
2019-04-23DOC_952606143841US_Apr_23_2019.docdoc 178f9807e09da56ff02b4c72907f5cec2a567527da4ee515aa6453f47e52a787Virustotal results 31.03% Heodo
2019-04-23INC_61310158873US_Apr_23_2019.docdoc 03d471048561df5ca748a9cbb38b424eb5ae4910faebee09b8182c96dfbc37adVirustotal results 31.58% 
2019-04-23INC_47001917901US_Apr_23_2019.docdoc f5a6ffb607acd20063ae377d9fec4eb7e711e901ab55a70d05e3027f7173cbeaVirustotal results 31.58% Heodo
2019-04-23Document_918187090406US_Apr_23_2019.docdoc 5a6e36811650641a65b747d97580253559986118a49605133f8870b8319f2f42Virustotal results 31.58% Heodo
2019-04-23Document_2758288015US_Apr_23_2019.docdoc 48c186204c7f7ddec825e8853569ac42ee5f374e0c6a3e01ece52bb24b94381fVirustotal results 31.67% Heodo
2019-04-23Document_429027989846US_Apr_23_2019.docdoc 44c89fcfe2b096c7e98f7ade38c8425c043de5f52011f2bd516a127ac21e786eVirustotal results 31.67% Heodo
2019-04-23LLC_996958175291US_Apr_23_2019.docdoc a5b79368dec93d883473c35f7fdfc6edc120b75892906fcd525b685b0df06c9fVirustotal results 30.51% Heodo
2019-04-23SCAN_64523781765US_Apr_23_2019.docdoc 8f957284fe9b3c22f776a5585ace8196cf14acf41c240647b732d8a6849b1c01Virustotal results 31.03% Heodo
2019-04-23FILE_043451626515US_Apr_23_2019.zipzip c8636e7fd9678c25f8bef6d2e6fcfeafae9b9df1858d217236478de94bbf3e60Virustotal results 25.86% 
2019-04-23LLC_0001758805US_Apr_23_2019.zipzip 18c3c7564c5054d7440de1ac1e8215061d91c337d81ea615238d0617f68ff492n/a 
2019-04-23LLC_507500576295US_Apr_23_2019.zipzip 36a2fc4e7996004df406337278cc12e59c42648362ba74b964bb6ef6da2212bcn/a