URLhaus Database

You are currently viewing the URLhaus database entry for http://burakbayraktaroglu.com/MesutEner/ktc-b56t-5698/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:271008
URL: http://burakbayraktaroglu.com/MesutEner/ktc-b56t-5698/
URL Status:Offline
Host: burakbayraktaroglu.com
Date added:2019-12-17 20:36:03 UTC
Last online:2019-12-20 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-12-17 20:38:02 UTC to abuse{at}as42926[dot]net)
Takedown time:2 days, 6 hours, 25 minutes Poor (down since 2019-12-20 03:03:06 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-12-19Inv_ZG88_91600.docdoc 605427b217f5a2deab4ba9c7e72f8ff8e42a09862842bb8bc0a47d74a66f2ad9Virustotal results 29.03% 
2019-12-19invoice-ICA419_3009.docdoc c81fa6a0d384474c75454f40007dee1c7c00275f1e049246ba3025a46be69bcaVirustotal results 29.03% Heodo
2019-12-19Inv_L86_277.docdoc cab696d2c8bb5158dab72ca062d69416c2d2e91231bbf09cdb49eadcf557c98bVirustotal results 31.15% 
2019-12-19Invoice-J548_8111.docdoc 348a453fcbbf8f6c4948798f6f17b563e50c3ed950b789156092017df2886064Virustotal results 30.65% 
2019-12-19INVOICE KDM84_20959.docdoc 8d575ecd203b1efe6237fdbcfd7a498cfe6f7615193197ee475406c116ed0828Virustotal results 30.00% 
2019-12-19INVOICE-VHC854_5980.docdoc 0208cb1d62bb0797e256c4c55b25e87e50b767223749649ee46edac6c67d9b54Virustotal results 24.59% 
2019-12-19invoice NM200_97.docdoc f5243c73d53726bb52ebb46b99fb728fefd35ff8f34e8047624b78ecfd15d91dVirustotal results 22.58% Heodo
2019-12-19INVOICE-TUA187_2328.docdoc 50502b1309e5510dc666c2dd81f978bacd097de74ad3839f00cf37bd162c193aVirustotal results 27.42% Heodo
2019-12-19invoice-OJU011_809.docdoc 30414941a8d8e2a28dd8e62cad6e5780b0677eeb2e6629a8bd3f71c014045f25Virustotal results 24.59% Heodo
2019-12-19invoice MTA27_989.docdoc 38670bd40ebeb1b8d8304c498fae11aaab9922c2ff3c80f468b049ddd13adbdfVirustotal results 22.95% Heodo
2019-12-19INVOICE F783_93052.docdoc a799a28b9027dea1fe1d160960c3f7ed18321cfbf38c989e29d081d41494d5a6Virustotal results 22.58% Heodo
2019-12-19invoice V470_40.docdoc 467022eb81bc4913f098f2f2da6c9c31e1cd25fd0c60a661a4b4929bde4db735Virustotal results 20.97% 
2019-12-19Invoice G91_64776.docdoc a5a73bc6c48dd38b784cd90eb4b39ab74dfc4b6d6c1c9967a7d2c776c597e343Virustotal results 29.63% Heodo
2019-12-19invoice_XR341_7605.docdoc 126cec3feb653048275d4a88bf3ce13e845f4c26796d364b4a7f50dc070d3375Virustotal results 27.42% Heodo
2019-12-19invoice WY366_225.docdoc 5d62e502f895c10fab94c0f6d93b4fc30d9ee61d34f57a98a02f9eb80b73f4a9Virustotal results 27.87% Heodo
2019-12-19INVOICE-DRI42_79561.docdoc 8d1c87bda0bfb55cb2a4152c2d65958a544ab340af8da074420c5bbff5db0961Virustotal results 22.58% 
2019-12-19INVOICE-UC70_521.docdoc dd68570f29fb6bd1772ccfd8d722b0feba223b9bcf802964360aebfddc8656c9Virustotal results 25.81% 
2019-12-18INVOICE-NU35_59828.docdoc 4c5beeb1a2c9a08fc1d911bd78f887736d8af7f5d31a141d7ac3365dcddd54b5Virustotal results 25.81% Heodo
2019-12-18invoice PAX127_78.docdoc 3296ebb9128f8e0f94ac37f3ecf45fe5e51aeb840602030db4ef35c257326e1fVirustotal results 26.23% Heodo
2019-12-18Inv O075_36904.docdoc e6f94030c55e6b0efd8f98cd9e3127ff431b89b6f8211560edfbcb49f1924364Virustotal results 25.00% Heodo
2019-12-18Invoice T325_26160.docdoc db1afb0cb6d67e9f10fee9d59aa1e9fdf67960b6aedd49454bf31accf524ea8eVirustotal results 26.23% Heodo
2019-12-18INVOICE I09_1500.docdoc 6d78d247c25603598357c7c652a7ef77f8ab908fd1c3536dac5dd0756c260bafVirustotal results 22.03% Heodo
2019-12-18INVOICE A17_809.docdoc 099d9114cf9b28c2283d5da4550cec51027a271f0773a2af0f45e9249ee2da81Virustotal results 26.67% Heodo
2019-12-18INVOICE_PL528_051.docdoc cbf00c3856deae07bf9e14f5fd51a20e0c97a5d0fb97fdbfc0d1eaf3dd85f659Virustotal results 26.23% Heodo
2019-12-18Inv-M74_346.docdoc 6518a33980088438ec42795c45feb2e51a50cd618a406fbb6e60d60e523d6189Virustotal results 23.73% 
2019-12-18invoice_AQW176_1651.docdoc 40d849e2395d17451536943b6d8ad8655c9ba860d2151bfdb7d6cd0b3512ca75Virustotal results 21.67% 
2019-12-18Invoice_I69_0994.docdoc 355d34cbd29e60fca01229b21c03e66d89144c9feacfcd7777ef15f136272339Virustotal results 20.97% Heodo
2019-12-18Inv-K35_3398.docdoc 7ecd418f499c379ce5e26a430ee6b3c012aba02686a78c7bb652336666fa8873Virustotal results 43.55% Heodo
2019-12-18Invoice-X09_9449.docdoc e18d1e8b2907f36a24003bceff68c184f4e902e973b76b13e9b07fd4c789eaf2Virustotal results 44.26% Heodo
2019-12-18invoice QEI448_850.docdoc a869342ba7b555c987f1f5ae59b30e74440f616766755f7ef24b59cf35c30edfn/a Heodo
2019-12-17INVOICE Z10_9889.docdoc 504cf844601e8c65594c3b3e290d0cca295b9730a2cf8c7fdd6af3007fd80ebfn/a 
2019-12-17INVOICE_IG260_9756.docdoc eb758f084bcbf7486daab6d90db673776f225a12c5d35a5aaa0993f8419f2dbdn/a Heodo
2019-12-17Inv T413_08.docdoc f0d160ab24154b700025e2af3a42551440b47b9628338808f823d77b8538f3a3n/a 
2019-12-17invoice QKM683_20.docdoc dc03e3867fd6aa43067d40fd569279bd0d26dcf633a7f40b0bdcb46d547053f5n/a