URLhaus Database

You are currently viewing the URLhaus database entry for http://newsspe.com/fvefbd/service/Nachprufung/05-2019/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:192306
URL: http://newsspe.com/fvefbd/service/Nachprufung/05-2019/
URL Status:Offline
Host: newsspe.com
Date added:2019-05-07 11:12:03 UTC
Last online:2019-05-07 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-05-07 11:12:05 UTC to abuse{at}unifiedlayer[dot]com,ipadmin{at}websitewelcome[dot]com,abuse{at}hostgator[dot]com)
Takedown time:9 hours, 17 minutes Good (down since 2019-05-07 20:29:18 UTC)
Tags:emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-078-GY-2019-515966.docdoc ef14987521aeb4304e4e7ac7ea4a0b500a3dddadf7b19a7a2e579bc1a4ae3866Virustotal results 26.67% Heodo
2019-05-0768-VFW-2019-22277.docdoc 09ba0388f8d050cc2008d92acd92575fec878804d5d7867e4c7355b4e6b4cd58n/a Heodo
2019-05-0759-WAS-2019-417542.docdoc f764a55a4024b3a8d23f0b5a61a726fd59aedf548830738afb588341c1ea0036Virustotal results 27.87% Heodo
2019-05-071-UXW-2019-93598.docdoc fd411887ec3579d7a22f11a4d8a0984a451ce3f7ccd9f9bc0225ea2c12bd9f3cVirustotal results 26.67% Heodo
2019-05-074-HDG-2019-39616.docdoc 4a5c99b2edb5cc45de476a297659e47de1e1ad4a6bf55be8d712eaffe6a26d6aVirustotal results 25.00% Heodo
2019-05-0777-BN-2019-2851.docdoc d63aaf83931b2a29d6f8c81cd8e887fa7039eb367eac18fb97c0ba0c03a088b6Virustotal results 23.33% 
2019-05-0743-XLL-2019-9359.docdoc 6bf58f7a185a8cc830e33e65e0529a8822639d026e7d2533b41b535191788bafVirustotal results 21.31% Heodo
2019-05-0708-UEV-2019-570240.docdoc c525b8029ec1130157b451cc56795671c6df9d657e14af2762ecd0cea1fae08an/a Heodo
2019-05-0734-YLR-2019-13375.docdoc 4e91924b967f146a95bc1c8f81412210320c89dcc9277e60bf64bf7c47c68430n/a 
2019-05-0707-XFU-2019-048953.docdoc 074061c5fec85dc8c38d2c75df1cd01e30609c95505e888cf70024e098707be7Virustotal results 21.31% Heodo
2019-05-0780-AW-2019-75276.docdoc ac61638f88d3794d98217ca3901106fefd3fe2f4130814fa128a5aa8f0de6f42Virustotal results 20.34%