URLhaus Database

You are currently viewing the URLhaus database entry for http://dingesgang.com/wp-admin/DOC/PdyQrhPmBbeOxnLLjWELfrltbpDh/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:192557
URL: http://dingesgang.com/wp-admin/DOC/PdyQrhPmBbeOxnLLjWELfrltbpDh/
URL Status:Offline
Host: dingesgang.com
Date added:2019-05-07 21:13:05 UTC
Last online:2019-05-12 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-05-07 21:14:04 UTC to postmaster{at}myhostcenter[dot]com)
Takedown time:4 days, 17 hours, 24 minutes Bad (down since 2019-05-12 14:38:37 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-09Document_609945828953US_May_09_2019.zipzip 07711a5f44855c161eebdc194a13d7b95a3e1f8158ad52d029122ff34c25cdf5n/a 
2019-05-08FILE_730560921115US_May_09_2019.zipzip 8b53caa0cc8bb9dddeeec49e23af57fc579baf9b095411b21f5724763883c35bn/a 
2019-05-08FILE_2770915888US_May_09_2019.zipzip 204f69292ab06f8651169880dc5615a7edabc3dc07ffefbd7bb7309e1e6ddfd7n/a 
2019-05-08DOC_47880117574US_May_09_2019.zipzip a2964931e3fae996d18e6eddad51662d58ae73af2785db5ec3b707415d850043n/a 
2019-05-08Document_550255684493US_May_09_2019.zipzip b138fe077dbb824b77a36d46d58e1009ca50e02ee3299fa9d5b344009a943325n/a 
2019-05-08INC_4807878307US_May_09_2019.zipzip 562ca8f386be2b68739b90c161d96b4fee86989acee3fc64922704eb8a6925d6n/a 
2019-05-08SCAN_3394925563US_May_08_2019.zipzip 0b4264ef8604223668abb158888f7cf4db4148c4fe746357b50c6f1405702c65n/a 
2019-05-08LLC_938172593898US_May_08_2019.zipzip 0f1b93ea065dd077b7c0f26217906cb5d6ccb261204ddb282804f0a1f20c2c0dn/a 
2019-05-08FILE_7759186945US_May_08_2019.zipzip a73e97f007b902bb19302c87cc298aa812b3c7776174f588c1ae85f1ce9e536bn/a 
2019-05-08LLC_0470213156US_May_08_2019.docdoc 37390a65227c1c3d33a74d43898940cfd4690953cea047db95f39e191a20dfb2Virustotal results 32.79% Heodo
2019-05-08SCAN_6843362653US_May_08_2019.docdoc 4ba386fc55054b552861920518ad12c69e8d9879a3e8b2e7ec433f06f7c28d1dn/a 
2019-05-08DOC_6084827165US_May_08_2019.docdoc 71185c9cc943c6cc503e108507f5cab7834203a833eb3597487f24a5cb3822c9Virustotal results 34.43% 
2019-05-08FILE_51466418239US_May_08_2019.docdoc abb657219fa4293bdb3ea83eef9701a8a1b8db399122ac9b78988d2d7670f05bVirustotal results 32.26% 
2019-05-08DOC_143290307587US_May_08_2019.docdoc adfb40518e76da88b465cac35e6c32bb025e1f0188d96470a06ef516aef5d5eaVirustotal results 31.48% 
2019-05-08DOC_47037321724US_May_08_2019.docdoc ccf713f98bfa24d4b3aaa4ac68b4b990b777b99c20b6bb61aa6ad25538f50bb7Virustotal results 31.67% Heodo
2019-05-08SCAN_1594879787US_May_08_2019.docdoc 55b414fdc1fd75ce344a26606b4f1a0260a4867c0a35a202a08de8f3d6c2bd1bVirustotal results 32.26% 
2019-05-08LLC_0637136473US_May_08_2019.docdoc 9fff48d7c0f4494bddbba99f1e95a2de9bcef7435ebc10c66d6b62aa57f62e95n/a Heodo
2019-05-08SCAN_207314230749US_May_08_2019.docdoc 76078c12f217788bc8a017d80c6a7e207a86a0141792fe1e43009847c44dd365Virustotal results 32.20% 
2019-05-08DOC_70873961659US_May_08_2019.docdoc b70c13bc142ec6454363d4907cc0501c70d6fa2c8a693b49746c3cbaf6dad5dbVirustotal results 33.90% Heodo
2019-05-08LLC_28839839473US_May_08_2019.docdoc 033473cc78cd2c60e3bb42a6e5d9fb35fb15c5dfd748b7f0b35eaa606fdf8652Virustotal results 36.07% Heodo
2019-05-08SCAN_728500542022US_May_08_2019.docdoc ce167af75e50476a8b2d4e8b9634594333f949ba78d64001efd6b16c9f4220e8n/a 
2019-05-08DOC_6388318817US_May_08_2019.docdoc 5610fb4f2521abbb5a78ce55ce5efaf6ea7d9c3125baeeb653e9248053417e8cn/a Heodo
2019-05-08DOC_4593381959US_May_08_2019.docdoc 24267568d3fa011adb7ef53f107f6aa01162750e40eef869781ceb0ce6651f54Virustotal results 32.65% Heodo
2019-05-08DOC_2504684093US_May_08_2019.docdoc 93404bc2b21ae4c2eea881e5bfaf89e24e0f038467b271ab9ae1c96ff461b910Virustotal results 31.15% Heodo
2019-05-08INC_9638173242US_May_08_2019.docdoc 713b34f0494e837eb6b50e34b67c944ca9b271f30fc81ae59ce8cecefb835f37Virustotal results 30.65% Heodo
2019-05-08FILE_800298872864US_May_08_2019.docdoc 70f4d11f59ab292faf7be98442a8075b1847f6201ae29f07525107fcf44637ebVirustotal results 29.82% 
2019-05-08FILE_844924559608US_May_08_2019.docdoc ba914a678ad010cc2bbe98ad8eedf42154633867e2a9222186c7ea69f420826bVirustotal results 30.65% 
2019-05-08INC_918402512047US_May_08_2019.docdoc d7fc74cd2d6f34bcc7e02522812778a91bbc6591f4805164208847add84ecf2eVirustotal results 33.33% Heodo
2019-05-08Document_27265611412US_May_08_2019.docdoc ca3df80f2b645b8d3eca905f0640d605b9d70f79ae9424e883fa73c50ec1fe88Virustotal results 33.87% Heodo
2019-05-08SCAN_1583768326US_May_08_2019.docdoc afc7e59c3f7eb40403410c8ea91e4483a08c01fe3dbb9e5ec2d792db05d71615Virustotal results 31.67% 
2019-05-08SCAN_51303527156US_May_08_2019.docdoc 942c15d908cca46bf861a0f12afaa5564f358631ac5438f46dd8aec5320ec8caVirustotal results 25.81% Heodo
2019-05-08DOC_79185083186US_May_08_2019.docdoc 4f55f58bff347fb85cc57d6ca1b3558cd0854ab94889455f7c9c297e0a53f296n/a Heodo
2019-05-08SCAN_0619554844US_May_08_2019.docdoc 71b6be26315c131c1fe9fea2b209427cc31e69b472690d38b8f32e8c8a3132a9n/a Heodo
2019-05-08LLC_034775643643US_May_08_2019.docdoc f47066b0cc76015cc75de6b864de2d94048b07e5907d3aa8de1716050d655b22Virustotal results 28.33% 
2019-05-07DOC_6117651143US_May_08_2019.docdoc 0d259d80a2460b40a664d20e76eebbe3bea398cc0a391c3bb201e6fbf18979e7Virustotal results 25.00% Heodo
2019-05-07FILE_33464787935US_May_08_2019.docdoc e7b78b900c3b24784538e7a4c770d7287cf87e3fa2d6b3de7a8d0406f07b4ab7Virustotal results 25.00% Heodo
2019-05-07Document_353427128429US_May_08_2019.docdoc ba9cfe63d81cf564cb9dec71bce28548d8187549e79d308ef2fc0ae273660afbn/a Heodo
2019-05-07FILE_690456356054US_May_08_2019.docdoc 3ca3b11abd89194bed84645f9427a71ca200fb70aef0af93eb6e20511228f36fVirustotal results 26.67% Heodo
2019-05-07Document_48484350315US_May_08_2019.docdoc b1483f528d6f343065873260bd457abe6436aff1c7cb08d3df1f4a293028fc90Virustotal results 25.81%