URLhaus Database

You are currently viewing the URLhaus database entry for https://kreatis.pl/sitefiles/verif_seg.ENG.accounts.open_res.net/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:191550
URL: https://kreatis.pl/sitefiles/verif_seg.ENG.accounts.open_res.net/
URL Status:Offline
Host: kreatis.pl
Date added:2019-05-06 15:49:02 UTC
Last online:2019-05-08 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-05-06 15:50:02 UTC to abuse{at}cloudflare[dot]com)
Takedown time:1 day, 11 hours, 0 minutes Poor (down since 2019-05-08 02:50:39 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-0818-VD-2019-786915.docdoc a4c4dcf79d6b070599d3a813d8b542c8688a393b69f816012924b9f4d7f04059n/a Heodo
2019-05-082-UTI-2019-A508402.docdoc 7316dac03434401997d957718c916f71132bf33fd5223ccaf8a90dfd6074db31Virustotal results 42.37% Heodo
2019-05-085-CH-2019-D0223.docdoc e327b0795f320710f7e5aea2d8791e62d8170215b6ecc533cdb3e20a3f3e3fa2Virustotal results 26.23% Heodo
2019-05-089-PR-2019-2238.docdoc 6c74e8cd204af8dbbb5ceaf66e4a09d1b5d0ab931f0d10f8fa3e5d392505c355Virustotal results 40.98% Heodo
2019-05-0762-LC-2019-E762911.docdoc c14d58c877a8a41518bd68122ff5d6de09132057e9d26550a491df6581532798Virustotal results 25.00% Heodo
2019-05-0727-IWE-2019-V0390.docdoc 6359cfca4c3a4f6c657c285c6840af0bc66e00fcede8f7e2d3aa8e5bb96a24c4Virustotal results 34.43% Heodo
2019-05-071-KG-2019-716260.docdoc 156e844588da646b631952680d1e656c8c78c6034d4afb43242289114d542ba3Virustotal results 32.79% 
2019-05-0768-VK-2019-B170.docdoc fdabc899b0c2bc25cb3b6ec69d5fa312aa2522202c2db571919fd227df45b278Virustotal results 31.15% 
2019-05-0792-CW-2019-B085.docdoc 7abd6dfea23905d558c92b1278fe6689b1c916bd37855afcd1a3544b30d1c072Virustotal results 31.67% Heodo
2019-05-077-KZ-2019-S36381.docdoc 209f2ee22799264f2cbb508ff8900a5d57ea781337ac201e0bfb369fa9c2a3edn/a Heodo
2019-05-0736-DL-2019-H7255.docdoc d0b5b27f1f684fc3797cd946020b3a900f68596b334479ae0577c00ff5df6bd9n/a Heodo
2019-05-0783-QX-2019-R2386.docdoc dea431a8c3fe4a3f34f537e08d4beecb5caa79d55fe2356950a38dec23a70b6cVirustotal results 36.67% Heodo
2019-05-0759-UV-2019-L11942.docdoc f764a55a4024b3a8d23f0b5a61a726fd59aedf548830738afb588341c1ea0036Virustotal results 27.87% Heodo
2019-05-0710-XJ-2019-5963.docdoc fd411887ec3579d7a22f11a4d8a0984a451ce3f7ccd9f9bc0225ea2c12bd9f3cVirustotal results 26.67% Heodo
2019-05-0760-HRT-2019-71015.docdoc 8f28975abe7d2c58ace078246cb76977f1205cbfaff1a7129138c34fb47ea8c9Virustotal results 23.73% Heodo
2019-05-0702-CH-2019-C201852.docdoc d63aaf83931b2a29d6f8c81cd8e887fa7039eb367eac18fb97c0ba0c03a088b6Virustotal results 23.33% 
2019-05-074-TO-2019-1035.docdoc 6bf58f7a185a8cc830e33e65e0529a8822639d026e7d2533b41b535191788bafVirustotal results 21.31% Heodo
2019-05-0772-HGA-2019-O4581.docdoc 8211ba4f31253109de015a0916fa44014f8cde67d242d0b0cb06ef18ffa5f313Virustotal results 21.31% Heodo
2019-05-0770-YM-2019-A1648.docdoc d8197be241c31cbdc24b2d8ce9be49af92b9a3e6c8b7e2836e86ce8bc2fd4450Virustotal results 21.31% Heodo
2019-05-0737-PMW-2019-U482.docdoc 074061c5fec85dc8c38d2c75df1cd01e30609c95505e888cf70024e098707be7Virustotal results 21.31% Heodo
2019-05-076-XS-2019-0372.docdoc 20aeaeebf833ae4f6a59832c968a91e2456c036c9ff03194183b346b5a9f4e31Virustotal results 22.58% Heodo
2019-05-071-YGJ-2019-E2781.docdoc 79a041b550ffa918f27405f205525df208b7e220fe37c7e1993fe297405b5b05Virustotal results 26.67% Heodo
2019-05-074-JE-2019-T688.docdoc 76d2b93b831a6da51414ae28c7ab17552f866477fd5e46d3578a1787c0a007ean/a Heodo
2019-05-072-EB-2019-005.docdoc e3ccde3d835a7ff85966f662b42ae1448d8d04f5981d42a6de14dcedb5c50750n/a Heodo
2019-05-070-JBM-2019-Z9644.docdoc f35175d9815fc73f70f152d87e4b1f7f1429e1876ae82839d4bfcfbddb156496Virustotal results 26.67% Heodo
2019-05-0711-SS-2019-30268.docdoc 8ace4c9ca2d0848d592a4ec9faaa4ccc58818ba5c000ff44ab0e28ea7ad3d529Virustotal results 26.23% Heodo
2019-05-076-KWY-2019-93772.zipzip 3ac5ddf5eb5f8d4c765213003642d2cb08961ad73f5d2a504d61cd357d7938fan/a 
2019-05-074-MOV-2019-F666.zipzip 805ec9ae94b75df8becb0718e7d483157e702d4bb82c68d5a8c98095aa8a626fn/a 
2019-05-076-YBQ-2019-63667.zipzip b1735be35b62f08035d019fe3f9fa4ae4efe53a1c37a83e2e54b12c4bf358ed8n/a 
2019-05-0717-NXH-2019-K181901.zipzip 9183f13751c47becbbb8124b50fc7a8984738d1a174e81feab8e53bec9e0e3d6n/a 
2019-05-0792-FSF-2019-206838.zipzip 9bcfd0db77182c26080ced1623495da150ec1dc30e15fcc4cd5304e9933b9aa5Virustotal results 6.67% 
2019-05-072-LP-2019-T247223.zipzip 35f4493f991abd5345198b985dd3c723e41d5ced48f39796e1406e286cb29d84n/a 
2019-05-075-ZO-2019-S402733.zipzip 078b9b19f64456a1bceacd5feaa8d12537cd4f234a67f2653d350a5c87ea362bn/a 
2019-05-0754-UMX-2019-F074.zipzip 1d4cab314a3bb5ee5c8c5896db72a868874071d119b331917f5189f93dae68efn/a 
2019-05-075-SLL-2019-R087.zipzip 65d0321aa4e679d0a919bf0c236c925bb991983e4e0f0a3b671c48837ae6dd0an/a 
2019-05-0740-GJH-2019-G616251.zipzip cbd6bb2653ed03e5b6cba1ac8be3c86b930654e58effe881c664bbcfb1e2ce8en/a 
2019-05-0629-PRS-2019-H552841.zipzip 9b5a35c15dd537bd76ad8c5be6c8b91734166d4777c19dba32ef82423bb2242fn/a 
2019-05-063-LWH-2019-P04585.zipzip 4e4c377e0375ac3ed1c5c8e3ba86ac86ce7c580a2e5f542a04fae92c2255c13cVirustotal results 5.08% 
2019-05-069-CGM-2019-000.zipzip 5dcab5b6308d21f4c628ddc9c457cd3d78068f8afb24fa22a9b20b27ea588d32n/a 
2019-05-0609-EBI-2019-C227.zipzip 628488656449fc05fd7b91385cdeea99e20d9c0a2bcceac81c8c6a9bd6cc8dean/a 
2019-05-0649-WA-2019-096.zipzip 63c26282e42aa261fe186a26be5415f16e9e80132b055eeee956b4c42f223581n/a 
2019-05-067-OZ-2019-S1780.zipzip 422cf78833faf33651869a33e552516aa5b392075a7a6b7763a405f5e939e139n/a 
2019-05-064-PIE-2019-0699.zipzip 23283d11bf8f0f19d3a4a9990e51ca8843062f41d4cf4c1ade9fc312500e6157n/a 
2019-05-066-LVB-2019-2408.docdoc f13b6d9e53bb9bb275aa55fd2a5911ea26b563695c8b53e5accc7ed98d8537ffVirustotal results 33.33% Heodo
2019-05-062-TDE-2019-R592.docdoc ff701a4950f2a97842e269dd6ab4fc9a1dbd026f04ad08934384b69b76e9bc06Virustotal results 28.33% Heodo
2019-05-0681-DAS-2019-4634.docdoc 845ab4a4f0d5de4878c625312b025da5c44631b8e3473a7720b0bcc84701bb08Virustotal results 25.00% Heodo
2019-05-062-QAD-2019-D465.docdoc 08319dc5c79f69f999c43bda399edfe337698a0bf28a60c1307d6160977330ddVirustotal results 27.42% Heodo
2019-05-063-WQ-2019-D781536.docdoc 5eab5cb4fb133b10a3499097e2cfa6c7d7077323040e45ed6e9132aaadd713d7Virustotal results 26.67% Heodo
2019-05-068-PNO-2019-987.docdoc 7367f03df611383d249e10f6b90d3a2ff4a95c14ddb03564961e8f87a63ec2beVirustotal results 24.19% Heodo
2019-05-0675-OP-2019-62143.docdoc fab553ad3e67792c49dd743538e8eb15fb889b5ea3163ea441590a9bd9feb6b2Virustotal results 21.67% Heodo