URLhaus Database

You are currently viewing the URLhaus database entry for https://globali.utena.lt/rakandaiutenas/lm/wXFwZUlbBfHHGkHBUv/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:204068
URL: https://globali.utena.lt/rakandaiutenas/lm/wXFwZUlbBfHHGkHBUv/
URL Status:Offline
Host: globali.utena.lt
Date added:2019-05-30 12:38:03 UTC
Last online:2019-06-04 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-05-30 12:40:04 UTC to abuse{at}infostruktura[dot]lt)
Takedown time:4 days, 19 hours, 47 minutes Bad (down since 2019-06-04 08:27:20 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-06-0142411198556_PL.docdoc ef62880b29c9e9403633bfe2c0572d75e5d9ee3fa4fb698697dceb9efc99ec3dVirustotal results 49.18%Heodo
2019-06-0182784945835.docdoc 7c4cc9d295547a0cef91a556f42d21a5e87964fb2272c8a33fca00016e71ec4cVirustotal results 48.33% Heodo
2019-06-0122235511885.docdoc bf032ea596d973c8333c4a7d4e7338cdb4276e3d2e8ae5046b8bfbac20941c92Virustotal results 50.00% Heodo
2019-06-019532277495_PL_01_cze_2019.docdoc 51b855cbe57d74b049f542899bba538e6a47f83b9d6e15e8e5f38cc758664f8bn/a 
2019-06-0146778698676.docdoc f5f4295f963a3f3ac6e0dc5f1b965821609ca045e1ee63c8687225310155887bVirustotal results 45.45% Heodo
2019-06-01568755288953.docdoc f787bedcfbb4d4f2ac2507770741ea1ac63ea94e2ea432d464e3bbd23465798an/a Heodo
2019-06-01282815246257_PL_01_cze_2019.docdoc 84a66f8e7292ede26e286442de89b8a1fed1521c29552f9b8b1bc17da0d26e5fVirustotal results 48.28% Heodo
2019-06-01283575918112_PL.docdoc 78f1f6d72541c029a695ff06e0b00368d8c2e76e40a24f220ae805149d55daebVirustotal results 49.15% Heodo
2019-06-0185971275988.docdoc bffe54938b6af06cb9d5792d99ed694370b373ca0aba791a5ba9b1028fbfbc92Virustotal results 47.37% Heodo
2019-06-01271585917627_PL_01_cze_2019.docdoc d777840280b22871584a1f1a9fb73dac5b7b335ed3089c35c638e0ad6984eb5bn/a 
2019-05-3159384747469_PL_01_cze_2019.docdoc 71bfba9498217d205555c3c7f0896f3930029f0ebc78a09e0ceb48cbbe8b2899Virustotal results 44.83% Heodo
2019-05-3173523577325_01_cze_2019.docdoc f8e39ecf6d736e3e321da3e786e095c108564c0ada8a0916f70e04bc642e60d5n/a Heodo
2019-05-31642542152558_PL_01_cze_2019.docdoc f2c59cc9eaffd0c7050123d864febc3e5380b439d1041aaeb45b04ae7c6e6bbaVirustotal results 48.28% Heodo
2019-05-315573239246_PL.docdoc e1e0d91e131669f5c88bd9a851b270f11c8eb364f13253c1adc7c965db858dcaVirustotal results 45.76% Heodo
2019-05-31991529228424_01_cze_2019.docdoc 7894381b0ab455b3f831f689607a32a015b1a244cb633a040c887eb3976258b8Virustotal results 46.55% 
2019-05-3192719786937.docdoc 995b28abfc1f4ecb8a0ba990334fcba0709ad10b550b2aad9000a4bcef8acc90Virustotal results 43.33% 
2019-05-313743532793_31_maj_2019.docdoc d9514b4f75ab539d1ca84ff57a6795c47df2a145ef78dfee482497f28a7653a7n/a Heodo
2019-05-318369637143_PL.docdoc a53484da9e213b8f9a1506bc4356647f57082f7eddc755737785e30ba2b09eacn/a Heodo
2019-05-319877786381.docdoc f817c10ca6e8592457266f3f56840dd3971c2e42cc258907d0e2e545c618e2bcn/a Heodo
2019-05-313733536835.docdoc 2cb9621b46ff7d4f115a0e8ed5e6e5e8c1e8c5524721d603363ab85630b729b4Virustotal results 26.23% Heodo
2019-05-316557678886_31_maj_2019.docdoc 003b9130a3631b38d8bf7eed6c2c9f12bb73de439faf75ad3e2098157427f003Virustotal results 27.12% Heodo
2019-05-31215913296214_PL_31_maj_2019.docdoc a45823ba084d0d78d09d4326a97572fb65035c88e1db0c5ee841f2843c28d7f2Virustotal results 24.59% Heodo
2019-05-319823454574_PL_31_maj_2019.docdoc 132b80a7e447dfd6893270baa35d4a97fdccf1bf7306fe94f81233d1ea15bc9bVirustotal results 21.67% Heodo
2019-05-31233932755299.docdoc b1a76d5bd22e884a6992fed64848e840fe9603c35473ca3ba16a7ba71a2336a4Virustotal results 23.33% Heodo
2019-05-3125473913613.docdoc 555318c9231d5c82b3b2beebf5b96b6a1fb70139dd0c83cb6feebeb6897a5780Virustotal results 23.33% Heodo
2019-05-31531984937229_31_maj_2019.docdoc 7e8dd2fa267e6b9a56a7ae76e223e438d952c15f34fcc840616668bc6c34358cVirustotal results 36.67% Heodo
2019-05-31246431749298_31_maj_2019.docdoc 2742424afed9491f159edd49169c32dfc2b2f5c2a540bf83c58cc882929f2b3eVirustotal results 37.29% 
2019-05-31824421933959.docdoc e2094c0f0b7d10ed377b2e252d040469a94047f72c4fa87803f5366c99ff1324Virustotal results 33.33% 
2019-05-31225313299728_31_maj_2019.docdoc 8e2c8cfb11035d6ba9d0e8ddf02d1acfaf0dff72080892eb51ca7f199d30dc02Virustotal results 35.00% Heodo
2019-05-314476592152_31_maj_2019.docdoc d06b45688730cd78db285800ca239943dee7a908feea309504c4b46ed987eeffVirustotal results 32.76% Heodo
2019-05-3186242744267_PL.docdoc 58c47c1e48d2560fe96dc03eeaec4ef61cc4b057eabc323ff140d505ec9b2358Virustotal results 28.33% Heodo
2019-05-311391232755_PL_31_maj_2019.docdoc b8ffba5933a7f1ab10640674515407df874291c9b965091706b22960b3dadaaeVirustotal results 36.21% Heodo
2019-05-31388521477645_PL.docdoc 96e2d1631b87443d845db9feb1cf3afe3bfa55759427a709cc4889a20c4dfb29Virustotal results 35.00% Heodo
2019-05-3115929774335_31_maj_2019.docdoc 2b2ca9cfa5e7efb20e6ec52b7e5effbb02ac817544a2f77c69b13b1a46038506Virustotal results 34.43% Heodo
2019-05-3131883442157_31_maj_2019.docdoc fd069522510ea62adff60131da1c05ab3f96f3a55626d8e55366139d50604bb3Virustotal results 33.33% Heodo
2019-05-3191587154975_PL_31_maj_2019.docdoc 38950a41bb0d5c61efcd0dab8ffae15d49454a792dd55507eb3fd2cc1d1a2a3eVirustotal results 27.59% Heodo
2019-05-314633136117_PL_31_maj_2019.docdoc 841ea7eed1c264c08b46b6feed248dbe7bc255773c0b06a9bf565a43ff54e808Virustotal results 30.00% Heodo
2019-05-3178558896264.docdoc 9fffd9f534100b5348a4ff4ddf6b4da08e29b57344393753149036f7255db790n/a Heodo
2019-05-30763419987279_31_maj_2019.docdoc 054ee9e61a0a65c326881f839be8824859306d1d97e1d3229f8fa7eb195c730bVirustotal results 28.33% Heodo
2019-05-3037828196859_PL.docdoc 76c522fe00962684df725bf25a174199443195e9562e99fd7ba55ab86c269d1dVirustotal results 30.00% Heodo
2019-05-3027912885559_PL_31_maj_2019.docdoc 7199fe3252da097c2d34bc1eecb2244a3dbece169e34f5674b24ad11234b6895Virustotal results 28.33% Heodo
2019-05-304518639622_PL_31_maj_2019.docdoc 36845718eeaa9e0e992076372c53bc185aec96a9506eb277c809d49dc4c29878Virustotal results 28.33% Heodo
2019-05-304716231878_PL_31_maj_2019.docdoc 565593db57950e6a3b0eb6843bfa8e4298fd184bfa0d0b40a4ee47703a7b8cf5Virustotal results 25.00% Heodo
2019-05-308975224337.docdoc 2a378777103ca9f6260ddf24452a45f249bdf207026d595f1cf47c1a85de1b61Virustotal results 29.31% Heodo
2019-05-305544297291.docdoc 0cf70cd6e3ce218ca6e0fb3bb7a79d13b176b75c4e29a332fad0aaee559f6970Virustotal results 30.51% 
2019-05-3033855652957_PL_30_maj_2019.docdoc a0d3dd45a0be8ee20a71761edb88f95567392034577c0de2a7b43c3977f1a1d7Virustotal results 25.42% Heodo
2019-05-308228234429_PL.docdoc 230c0ba0db8fab4da33517e2b6a245c359cf04fa1ac17f877bcb5aa30ca1b0a5Virustotal results 25.00% Heodo
2019-05-303274435975_30_maj_2019.docdoc cab1d98b0de123c454a48060e7c3b8e33cda47b1dc2612f37a96bb5c066297a4n/a Heodo
2019-05-30236661339973_PL.docdoc ff60d17aee6a178f5d9506325bbece194f115bd4e8e16eabab54796247372617Virustotal results 30.00% Heodo
2019-05-309712194834_PL_30_maj_2019.docdoc 2b705178a0a15e634c582853d6b8794f72f80f76cbcaa1105b6ea3d25febba3cVirustotal results 28.33% Heodo
2019-05-3063853722816_PL.docdoc f04df50720f0478869b245979c39281cbf17d6cb2c08c33221d3934b1e1f1fd3Virustotal results 28.33% Heodo
2019-05-307828164515_PL_30_maj_2019.docdoc 380bc34ae6bcee0b78b3c7a7fa35b93f56a83669c38c3acff66b18956ca40be3Virustotal results 28.33% Heodo
2019-05-307617349629_30_maj_2019.docdoc d4fb2bc73c3c422c6b8fbe929655fe87c05bc2057a50e85cf0ae655d4dcc6781Virustotal results 28.33% 
2019-05-30595433117411_PL.docdoc 743bb6f03307fbcb5878e462019a6d417299c7b313ba0c201256038bd11d53dcVirustotal results 26.32% Heodo
2019-05-30861526582731_PL_30_maj_2019.docdoc 834744cf97f29821eb41536ce05002ec897bca897939c2c79d8c8d23a61ff0adVirustotal results 26.67% Heodo
2019-05-3044147338972_PL.docdoc 095321fd609dc0f9056d25732d082b0e32b6211663dfffe7fa854b3135f6cd62Virustotal results 26.67% Heodo