URLhaus Database

You are currently viewing the URLhaus database entry for http://69slam.sk/RECHs which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:21313
URL: http://69slam.sk/RECHs
URL Status:Offline
Host: 69slam.sk
Date added:2018-06-20 05:44:24 UTC
Last online:2018-09-08 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: DecayPotato
Abuse complaint sent (?): Yes (2018-06-20 05:44:31 UTC to 109[dot]74[dot]156[dot]2{at}abuse[dot]vnet[dot]sk)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-06-20rechnung-MPV-099064/65.docdoc 4be766d578ad2bbcb8c4139f25fa158c91962df3c5a5ef8e2b899d0b160fd0dcVirustotal results 28.81% Heodo
2018-06-20rechnung-KJ-0039508-7.docdoc 0e1a166ad702d904352e73bdcd2d036c44e83b0094cd6d06454f3096b834e875Virustotal results 28.81% Heodo
2018-06-20rechnung-LJ-04/64067.docdoc f28a5312c2803b92cca7c028e286220c2d316212a90dafe0314c05b04fdcbbb6Virustotal results 28.33% Heodo
2018-06-20Rechnung-JN-02466-35.docdoc 1bc5e4eb8d292920d8360049ef65c84ee906d896ceac14119fd4047c7f3e6868n/a Heodo
2018-06-20rechnung-RP-03/251096.docdoc f0e56c2957e35958ecf4da7fadf186142254f19420ef09233586e22b6f3778ebVirustotal results 25.42% Heodo