URLhaus Database

You are currently viewing the URLhaus database entry for http://csnserver.com/Fakturierung/Zahlungserinnerung-vom-Juli-021-2384/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:27421
URL: http://csnserver.com/Fakturierung/Zahlungserinnerung-vom-Juli-021-2384/
URL Status:Offline
Host: csnserver.com
Date added:2018-07-03 11:57:04 UTC
Last online:2018-09-08 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2018-07-03 12:04:13 UTC to abuse{at}rr[dot]com)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-07-03RECH-JKH79644706101.docdoc 6e7a88ebb744e82164402027d8c5d0a7f6193749130295aaaeb99c38981cb30cVirustotal results 23.73% Heodo
2018-07-03RECH-QUC253065642015.docdoc 28876a11ade2b3fd8159f6b24b0508305eaedea70919893103b806784c271473n/a Heodo
2018-07-03RECH-HOR881315004.docdoc a013d1456b5934e503ac7fd6db96ebfb671fe42e135292a6b3ebe7ee93011b61Virustotal results 20.34% Heodo
2018-07-03RECH-EXP5114185355.docdoc 532158a592d3978cc32bf36ce72a10842ff8ef297dc062ccc62f393b3b6bb64eVirustotal results 20.00% Heodo
2018-07-03RECH-XIL213833906.docdoc ceb90dbcb1c4687d67e8f542a36817663d0980008009e10d9bb37511e77d7159Virustotal results 18.64% Heodo
2018-07-03RECH-IWT5680304630769.docdoc 35781af5881619a0d8c17b7deb9e656faa134a67b5afbbccc76d49c4a293661eVirustotal results 16.67% Heodo
2018-07-03RECH-EMJ181339243629.docdoc 570069862c9d2d2709cf69d947128a706aa75069f0c3f464b3b29b39d1d3e1f3Virustotal results 16.95% Heodo
2018-07-03RECH-JUA04518576395953.docdoc 8e545772e594e0e863b07606d8a4d7dc15439f410da84558cd101354b0a90b91Virustotal results 15.25% Heodo