URLhaus Database

You are currently viewing the URLhaus database entry for http://shop.69slam.sk/Documentos/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:29600
URL: http://shop.69slam.sk/Documentos/
URL Status:Offline
Host: shop.69slam.sk
Date added:2018-07-09 19:55:05 UTC
Last online:2018-09-08 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2018-07-09 20:03:23 UTC to 109[dot]74[dot]156[dot]2{at}abuse[dot]vnet[dot]sk)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-07-11FACT-DKP/3189969.docdoc d95a0ed497f20c378251a42109db39d5028042e7b6ebc0f4df94b55ce2902fb3Virustotal results 15.00% Heodo
2018-07-11FACT-NLH/07367168.docdoc eb19eee0ce36b6d46d608f0ca49efc323b3ee9e0652c74d69104981bd94f8508Virustotal results 45.76% 
2018-07-11Factura-jul-769/2684284.docdoc d972295cd1198de297c161ca5a099aa3f67a5e56582ee545f45f7d589d00ee2dVirustotal results 45.76% Heodo
2018-07-11factura-HMJ-212383.docdoc 1891d61d7065af231efb4cbb473355dd4e838c5f0605ad261392c4061cdca4d4Virustotal results 44.07% Heodo
2018-07-11Factura-jul-398/1717135.docdoc 8c3c5b4a32f7ae057376f9d67c800ca7e18ba00fddb21cc50a3234340ba99c8eVirustotal results 41.67% Heodo
2018-07-11factura-WPE-2312803.docdoc 9f198da13b021089e26d1b5b7fa86d7aea53524ad010570fcbd1250694d159f2Virustotal results 41.67% Heodo
2018-07-11FACT-UCM/9623119.docdoc 8aafc0f895d212a0d0e2a8787209340cadd7af86c1feaf4427aa7dd85dd12d0eVirustotal results 41.67% Heodo
2018-07-11Factura-jul-138/58791947.docdoc 22e6480db112450a96ee7c4bc75a33a02ee346ab9be1fb477ee502afdd0e4c65n/a Heodo
2018-07-10Factura-jul-417/53991864.docdoc 9925020e79ac83a06b0828d6bdaa352aba4121c0d41334d13c2ac1a29d4ff806Virustotal results 36.67% Heodo
2018-07-10FACT-DDT/043936.docdoc 463fe15318a983c8adbb28bcc68c5ad867fdf4b9c7ce6af284e1b982ff053c05Virustotal results 43.10% Heodo
2018-07-10Factura-jul-328/5682935.docdoc 84b5e3235e3e651e446b71aa7b68bb61afec3c7fb60e6189883f23f3779fda68Virustotal results 42.37% Heodo
2018-07-10FACT-DCS/049107299.docdoc 3af191c8f9577b27d8f8756b4ef37cf76bd33adb01feec6ee737181f1e64e219n/a Heodo
2018-07-10FACT-RTI/639865.docdoc 7413b134a63bf6c0bd02c784ff8c9b5716af9512ef029b0fc1c745656c2ea76dVirustotal results 28.81% Heodo
2018-07-10Factura-jul-863/76117337.docdoc 6c4667324cb5dcfd8561431ee18d285925fe9d39771ee6fcbd03ab7092024ac1Virustotal results 30.51% Heodo
2018-07-10factura-TZR-588587.docdoc 47d769cd763ce91c81fac2ac56d3371b592a973e4c6c1e3f266d35acf36566d5n/a Heodo
2018-07-10factura-WNM-517276.docdoc 4d909f80fda16d515cb3b5d45b4e9b868742de09c57282d015c9d44d3ba85d86Virustotal results 27.12% Heodo
2018-07-10factura-SRD-470349.docdoc d2beba142d02c877bfe71dce571348be5558b5ccebc5d32237e17948fdf7c756Virustotal results 27.12% Heodo
2018-07-10FACT-FXK/215911.docdoc 8a0676c5261a7272536b401161c015c9670abf423d65f9cc1f1bdadad9d4fd0aVirustotal results 29.31% Heodo
2018-07-09factura-NOP-349806371.docdoc 7e3ea7a1e6f1e70cb6c2c85f4571fab88f27aec9677e0e1b1f070d617ef1ad3cn/a Heodo
2018-07-09factura-BYT-0184723.docdoc 14b38d7f07dceada9dcf142d1d36b40d9236b3f323fed45f8524563ba8f7843fVirustotal results 25.42% Heodo
2018-07-09FACT-PUB/265715935.docdoc c413d4f2b81c58717d19fedfbaf5cea74542f23dc55afde48c8ca821c4d14fdfVirustotal results 23.73% Heodo