URLhaus Database

You are currently viewing the URLhaus database entry for http://citroen-tennstedt.be/Need-to-send-the-attachment/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:246
URL:http://citroen-tennstedt.be/Need-to-send-the-attachment/
URL Status:Offline
Host:citroen-tennstedt.be
Date added:2018-03-20 09:43:36 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Not listed
SURBL:Not listed
Reporter:@cocaman
Abuse complaint sent (?):No
Tags:doc emotet heodo

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2018-03-21Service Report (86518).docdocb674ced4eaf5fdc5a626f6dcd2394b25402728b2f4ac4df54d3934584a0b4c8an/aHeodo
2018-03-21Scan.docdoc93f5a2dc8028138ddded0ace5f25f7c857734f05791fc3bbeac6caa2d17c1fd4Virustotal results 5 / 56 (8.93)
2018-03-21Invoices Overdue.docdoc508ceeb4a333642eeefb273327bf95dbde45ead5256271f41f5baa2e60adfd53Virustotal results 8 / 57 (14.04)Heodo
2018-03-21Past Due Invoice.docdoc15338ecd535e3346ff528de6c2dc450ac0066698cc8f1d6f8468892b159b18aaVirustotal results 9 / 56 (16.07)Heodo
2018-03-21Invoice Corrections for #79/57.docdoc997be5615604d32ee64c9a3a64006e6143a6c698dc17c6fe093eca42dd1cb512Virustotal results 6 / 56 (10.71)
2018-03-21384-55-439439-578 & 384-55-439439-206.docdoc5655dae4f8a1647d50f0a581c16947eb4fd3fa83f99192273e94ca4742cdb820n/a
2018-03-21Summit Companies Invoice #40148550.docdoc67064918016cbd0c9c34620bb848171b81212ba146efa5d79dcdf5b815b5f1b8Virustotal results 8 / 55 (14.55)
2018-03-20New order.docdoc0b82ff1b07aff21b5ce1e8fe2766f5343fca5a93eae02080d3fb1c059d0da7b4n/a
2018-03-202 Past Due Invoices.docdoca7b209694eda491f62f71dbd90db584450de44bff2df46cf0fad6a4d1bb9e105Virustotal results 6 / 55 (10.91)Heodo
2018-03-208 Past Due Invoices.docdoc04c214009888c5f8c9959a40fecf26e93c2a045175bca10ecd4ab2bac22c204eVirustotal results 6 / 56 (10.71)
2018-03-20Open Past Due Orders.docdoc2320f2ac0c5383feb40e365eece401499b7d8a8d633b064371e1e92e96f24306Virustotal results 6 / 56 (10.71)
2018-03-20Inv 802306 - PO #7U158036.docdoc0927e589c072394791aeaf0951e4e23e876b1fd9a3684db52c088a77f8c0f1fcVirustotal results 6 / 57 (10.53)