URLhaus Database

You are currently viewing the URLhaus database entry for http://maservisni.eu/includes/common-section/Plf1tyzEl-vvfBpEuAKdH0-cloud/lw6qex48qo-2x0148w86z839/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:272117
URL: http://maservisni.eu/includes/common-section/Plf1tyzEl-vvfBpEuAKdH0-cloud/lw6qex48qo-2x0148w86z839/
URL Status:Offline
Host: maservisni.eu
Date added:2019-12-18 22:26:06 UTC
Last online:2019-12-19 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-12-18 22:28:03 UTC to abuse{at}svethostingu[dot]cz)
Takedown time:11 hours, 8 minutes Good (down since 2019-12-19 09:36:59 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-12-19VER-22635191_0005488002.docdoc 05a8a3f3f3dca19f1acc974e96a89516094169ba8aab2298558f2252b084018eVirustotal results 22.95% 
2019-12-19copy 9500692.docdoc b51ec74516a3c5ae78be8e68183c383e417de389b933f34975ada84b0f087d60Virustotal results 20.97% Heodo
2019-12-19DOC_12_19_2019-531545.docdoc 35b833827dbc56f1fa4b6720b9771c3e7b27459bcb17bc1214c0acce11dc940dVirustotal results 21.31% Heodo
2019-12-19I4380049 0081415.docdoc cf080cecf871d837c84b70ce57518579cc126c06cbcc720771ec723aaf44813aVirustotal results 20.97% Heodo
2019-12-19rep-S0147608354 192377422409.docdoc cf65b38b2650623e1361a482d1e8e8781019d7a29cb757cf79c1e276583838a8Virustotal results 30.65% Heodo
2019-12-19315384495.docdoc 2c77935c84f7a3ca5868f0ace1f7b8516b68fc4071b6884d1d1e1bc783e81b09n/a 
2019-12-19release 12192019.docdoc 33cfcbc524f3cf95c916111345c6ae43790b0b00195d64b778fae42e8ff8bd19Virustotal results 25.00% Heodo
2019-12-18KFG417663041.docdoc ee6ada923be64eeb91259b8c8549ff84487f118e43d0079ceb5a80f64fff4b39Virustotal results 24.19% Heodo
2019-12-18066651.docdoc 14431f1c5a3c66befb90b519ffdd0824f1f13e5521823c31a679a5fe6dc58c46n/a Heodo