URLhaus Database

You are currently viewing the URLhaus database entry for http://metal-on-metal.com/WIRE-FORM/RXF-1978/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2787
URL: http://metal-on-metal.com/WIRE-FORM/RXF-1978/
URL Status:Offline
Host: metal-on-metal.com
Date added:2018-04-05 05:06:25 UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: cocaman
Abuse complaint sent (?):No
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-04-06INV-CIRN-30559913873.docdoc de045d1fc27006c6afff001d766604b47bc934da697cd01413cf6eba505382e0Virustotal results 11.86% Heodo
2018-04-06ACH-FORM-JIE-154705870537.docdoc b17d906024b15f1e0998c7eae0adc8afb537bd6b21fbd757369312a681cbfc23n/a Heodo
2018-04-06WIRE-FORM-MPN-71680255.docdoc 3fa491121719371e32e5bc30bad48ba40966df9288c37e3c6ca379a09ee4a3c0Virustotal results 17.24% Heodo
2018-04-05INVOICE-NPN-337394192595498.docdoc 129226f4fedc204c6aa1a003ff7928ca995511015de1fe2a9d1848a47a345494Virustotal results 9.26% Heodo
2018-04-05INVOICE-OF-6941271744.docdoc 0c5f95f6f3fe9a3ea0a4b17e5941002c42d21069c55bea269bc15ac88a48ff67Virustotal results 10.34% Heodo
2018-04-05INVOICE-BFK-09982055.docdoc 64e4589f8b4220e12cd6181d608303ca0f2a63cb304d4e57ca3a387a33b66efaVirustotal results 10.71% Heodo
2018-04-05ACH-FORM-RYPZ-6050608363.docdoc 6529ebe522a3de6f422af0af1145978ec1ac75f675973ca5bb8f3eab7f007f93Virustotal results 12.07% Heodo
2018-04-05INVOICE-FI-841897640987.docdoc 2f254f3d9d9c45f97a221faa02f071cba2beb92cc97848e09f6dc754a7585e95Virustotal results 10.17% Heodo
2018-04-05INVOICE-DK-0242027672802.docdoc 1ca92b5e83f35c422df3f7e41223746d07c5ac9dd38555f449e1df01f61156a2Virustotal results 15.52% Heodo