URLhaus Database

You are currently viewing the URLhaus database entry for http://g4osj.co.uk/cgi-bin/FILE/NahUHWYvZxvjNLZjpOSeqdyCXdSw/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:203216
URL: http://g4osj.co.uk/cgi-bin/FILE/NahUHWYvZxvjNLZjpOSeqdyCXdSw/
URL Status:Offline
Host: g4osj.co.uk
Date added:2019-05-28 23:26:08 UTC
Last online:2019-05-29 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-05-28 23:28:02 UTC to abuse{at}peer1[dot]net)
Takedown time:22 hours, 7 minutes Good (down since 2019-05-29 21:35:30 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-29Document_928639594525US_May_29_2019.docdoc ab898afd48c154b0eb02bc8fe1e17d5b933cbdee2ee31d488ba055ca49285b12Virustotal results 40.68% Heodo
2019-05-29SCAN_73748775031US_May_29_2019.docdoc 607a7f4c31a624daffb7b2c2007e113fc89117d6d06b88a8192164a2568c36ddVirustotal results 33.33% Heodo
2019-05-29SCAN_36215344823US_May_29_2019.docdoc 0b8668d6728b7de9d9f490dfbf41977740f44be0ba9190c79f008458bd5f4366Virustotal results 29.31% Heodo
2019-05-29INC_976291368663US_May_29_2019.docdoc a89409717f8e1d896611584ab160731490ad5d3a14b39f0e560d27e5ca29fed6Virustotal results 28.33% Heodo
2019-05-29Document_27176874558US_May_29_2019.docdoc 35c705938553dda7938680df19dba7948573612a74dd17b48e37deb9ffa4aabfn/a 
2019-05-29DOC_33556951071US_May_29_2019.docdoc d3092b38cd2cb449ffa838d3563657c266251cd85c82f968009027772c7a88e0Virustotal results 27.12% Heodo
2019-05-29INC_381633226047US_May_29_2019.docdoc 4ca6d5f8e6902fe5771c7abf10decc5f0e59806f59f9c2d334ae908c6039c0e2Virustotal results 27.12% Heodo
2019-05-29INC_479902646406US_May_29_2019.docdoc 5342664c9f03d40cfc0a9442b3063a6fb6c0fa4c9eb98af348fb6ee6965f6823Virustotal results 26.67% Heodo
2019-05-29DOC_5926254147US_May_29_2019.docdoc a7ac1ff43ae6da216511b59202f86988efe5b9f2c072760a7a2c5c8711d7f7acVirustotal results 26.67% 
2019-05-29Document_2101347934US_May_29_2019.docdoc 341e41bb1fb85f791bfe70f7ba00325ff25a5c09ef7b8dcb444a53e6f1222b81Virustotal results 27.12% Heodo
2019-05-29Document_8988089122US_May_29_2019.docdoc 3e37d6655ae9ce30d0ebe9bd5027ca4494df24aa016d65e62bbabddae0ca88eeVirustotal results 28.33% Heodo
2019-05-29SCAN_387371971026US_May_29_2019.docdoc 29aae200483bfa1887620808f79c045ada295f9bb1015cc55805fa273cb99a32n/a Heodo
2019-05-29LLC_423841353103US_May_29_2019.docdoc 94f338b63bd496a96cf9a3416dc4daf1700f2d8f41b94cccd9e7ad598e2d4b9cVirustotal results 27.87% Heodo
2019-05-29INC_2729478224US_May_29_2019.docdoc 8e8d942ee2283a2529b4d273cc6c8db779a74130a585b2536cd214e7d8ae9789Virustotal results 41.38% 
2019-05-29Document_535615574511US_May_29_2019.docdoc 0c12ddc0c1b52db4e79920f7e4875a2515244081dacd503c45a104660a6c4ff9Virustotal results 40.68% 
2019-05-29FILE_2412827889US_May_29_2019.docdoc 296cd30d51fe1c689a2e54a76beb3841ea37ca97bdd3235ff3fd51cbddce6a39n/a Heodo
2019-05-29FILE_1972727859US_May_29_2019.docdoc 71ffc0572d33719508587b6fb096c1fcf4f95eed91a4859d8f0e37911bcd7531n/a 
2019-05-29Document_9948244509US_May_29_2019.docdoc 690225badc1fb9d6ccc12abcca94535031f5c4b85e0299ca767c6e1fbba1a607Virustotal results 33.90% 
2019-05-29Document_3236745163US_May_29_2019.docdoc b8ffa044c1aa76470b3ad334f834da777ef71e8532497610d00b128d37fc6a54Virustotal results 30.00% 
2019-05-29Document_90118189756US_May_29_2019.docdoc 63f8450d3c9f65a624fa65d8e760fb3baf430de9e6dff4efc096e7f3e2ac756bVirustotal results 30.00% 
2019-05-29SCAN_8640228237US_May_29_2019.docdoc 1f5afc69dcc29ec79faeb702c7180358145ecac5c2af81442cb74b2e80c13327Virustotal results 29.51% 
2019-05-28INC_46192009744US_May_29_2019.docdoc d65c5c8fb0a50a05c67bf7be8d5355a84c0f4b33dcd11d4e84d7545eed292865Virustotal results 33.90% 
2019-05-28FILE_423413204783US_May_29_2019.docdoc 5cd2567af0ff3769b687ad9feacf8c52eb7f614e2b74ad3b0cb43730c1ed0fbfn/a 
2019-05-28SCAN_372778398010US_May_29_2019.docdoc 8f92ba2ba02b122bdaed02dd9c9302f5d0a3c7ff8d9983c89a7e46b1edce296cVirustotal results 31.67%