URLhaus Database

You are currently viewing the URLhaus database entry for http://vkb.binc-communicatie.nl/cgi-bin/multifunctional-sector/close-03894082096-DvbdAUZYCBo2/kkBxX-qkNG4xH9xj6oJ/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:300744
URL: http://vkb.binc-communicatie.nl/cgi-bin/multifunctional-sector/close-03894082096-DvbdAUZYCBo2/kkBxX-qkNG4xH9xj6oJ/
URL Status:Offline
Host: vkb.binc-communicatie.nl
Date added:2020-01-29 03:48:08 UTC
Last online:2020-01-31 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-29 03:50:04 UTC to abuse{at}axc[dot]eu)
Takedown time:2 days, 10 hours, 9 minutes Poor (down since 2020-01-31 13:59:56 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-31arc.docdoc a42a410a811bcdfb6744d680e65cb526dc6bd951fecfee3757cffefba9bd4be0Virustotal results 36.51% Heodo
2020-01-31Rep-20200131-24000.docdoc 6fd53c9b4fa1bcdf1ef2a095d2af6db48d7d4034e1d5c9e32b23c12853ab6c10Virustotal results 35.48% Heodo
2020-01-31LIST-20200131-M1130.docdoc 02d4150ccb8c0569ecd99cc1a860f5c711f1cd2ba567aa5728b830b9f1789f46Virustotal results 33.33% Heodo
2020-01-31REP X64744.docdoc 8ac6cda8c7b4094b736c508bc231f782f410a72cecec097edb943014ce610585Virustotal results 33.87% 
2020-01-30MES-2020_01_31-619.docdoc 38ed0185799cc1cb1e2fcfea1f554229ad2ddee7695a8eee704426cf83a6b7e6Virustotal results 33.33% Heodo
2020-01-30arc 2020_01_31 G913.docdoc 78af768890683c9271a83b8fa61ac0743bbf82ff74a00a23e8b36e1cc539b664Virustotal results 34.92% Heodo
2020-01-30Rep 20200131 OJ140.docdoc 5d669f3035b344006960d92b8e182bc4805b2f45783fc1393e39b27498e25cbaVirustotal results 34.92% Heodo
2020-01-30ARC-20200130-3975.docdoc 72b6ec3c1e924a2f6b1bbf4f5359a7dff2c8d0cd96062fa882119a929ff9b6faVirustotal results 33.33% Heodo
2020-01-30dat-20200130-QM66035.docdoc 18c2132766612f9c090ea8dfdae10ce6116886abc9caa8854d942ed0cf5a82d6Virustotal results 37.50% 
2020-01-30ARC 2020_01_30 IP850853.docdoc 6edd33f15c012fa0a5a49cc0ffa73234c8c178849d41a7b60cececefd9c852dcVirustotal results 38.10% 
2020-01-30dat-03089.docdoc 2d3704d70a241dbcd409a1795470714a4458938eb29c160def982de82fe45c28Virustotal results 38.71% 
2020-01-30rep_20200130_7373485.docdoc 11078ef33eb1bccdd13fee326af0b5a51e5d9bfb1335c25004cf281c01ccfdc3Virustotal results 37.93% Heodo
2020-01-30inf 20200130 QW179576.docdoc 33bff75b0b0477fe5ebb1baa53a6e72f2c569227d8ab61eddac59592d02d28faVirustotal results 32.26% Heodo
2020-01-30doc 20200130 N173.docdoc 2d865b1d71a6827ca4eb3b7f884d08cc2acbcea2e862ce53a15cea4128959e8cVirustotal results 30.16% Heodo
2020-01-30LIST_20200130_978.docdoc 767b17c9708aa05e3d52db97aa2842a873f2cf8e9d75f19e3e8c84fd32442e32Virustotal results 25.00% Heodo
2020-01-30arc-20200130-XM857391.docdoc ddf014e6d9e70bc1709c2ccde24524fc72092f929ea37df901ee88f152ae4c43Virustotal results 28.57% Heodo
2020-01-30File_20200130.docdoc 6686a87ce4ec03815de4f384705a2a876aee4195ecaabf95d727a6d63030d4e8Virustotal results 29.03% 
2020-01-30file_F2398.docdoc 1cfaa5e745d1fa8b33a9d1127e92bb4a28306b9e96ddea13b629e19959f2f26dVirustotal results 23.81% Heodo
2020-01-30FILE 2020_01_30 7568604.docdoc ded73d524fe7544ecb69b5779a5bddbef01386b55ac338c83fb4d25d31745584Virustotal results 25.00%Heodo
2020-01-30Rep_20200130_452086.docdoc cbfd00a796bdd447134f7dc1f38823e8e2eefb7075068cc197ec67c044ecfc24Virustotal results 24.19% Heodo
2020-01-29mes 20200130.docdoc 0c899fbd963450fdf0d3d487fd91c0ef00e8c4191115d99d58a6b75476b06254Virustotal results 22.58%Heodo
2020-01-29Arc-20200130.docdoc f3e0ea1e9f70b58a16ab7b737be16e81a1868a88fcdd4de0c1fb6c4a3aa6b3b9Virustotal results 40.32% Heodo
2020-01-29Doc 20200129 HAL69228.docdoc e49d66744b97eaa47dae870c0fdd5f6b3a52e1b2245e8567ffa6b8a344663fe8Virustotal results 34.92% Heodo
2020-01-29FILE_1578.docdoc 7e8c0e91d30b485bed7963d9d3169c243edb3f5f2ce5e8049df4731007ea4d61Virustotal results 32.26% Heodo
2020-01-29Dat 2020_01_29.docdoc 93e6b158ccceb81017a551ff0ede39622381a6ee79e572a206f2756b342a47fbVirustotal results 28.57% Heodo
2020-01-29Doc 2020_01_29 803377.docdoc c0ebbfa695c1e2d054d32b340956dfffb4c155a4e420caaf593b0f1bbccbbd18Virustotal results 27.87% 
2020-01-29doc_20200129.docdoc a6f8d6e5f80b47b55146e82c61a78c5ed8c451bcb68d157dee574d02c768ba30Virustotal results 26.56% Heodo
2020-01-29Mes 20200129 JXD200317.docdoc 1b2ab9713101a1224f92f7b670acc6debff91071765f456e98552b87fe6c6750n/a Heodo
2020-01-29Rep 20200129.docdoc a570252bf1c2fa10675c88c55f9ef2362c2c7d3ac6e6bc1400102a49f2aac861n/a Heodo
2020-01-29rep.docdoc aad9025b37d955a0929dc76185e7b87d374e735e3a30a258bd549dcfc7a1bf27Virustotal results 26.98% Heodo
2020-01-29ARC-789661.docdoc f8a5336b371ee216fc6fb0d0b23eca343a30c1d0ff719e61a847bffaaaf64a21Virustotal results 25.40% Heodo
2020-01-29Arc_20200129.docdoc 236377595fd82bce012119ea70446676759bc46b7fd57587a294ddc9d08f0e39n/a 
2020-01-29INF-Z14447.docdoc 94e0d6de6118c26179d6f05dd39b5583f1fe79c66151f666734b93a655a71930Virustotal results 23.81% Heodo
2020-01-29doc-20200129-125553.docdoc 7c22eab322ac6b786498c54df9abb223c3466203f681028b1023147f081fd6can/a Heodo
2020-01-29Mes_2020_01_29_6283252.docdoc d6548725e281a6fac0ace4af505c15a21b8e1582ab951ad62e29dc42cae45885n/a Heodo
2020-01-29dat_20200129_8386.docdoc f5c5c5efd56a06272577f6aa8fde6fe22660095ec9332d7449f3e0769fa11b8eVirustotal results 42.86% Heodo
2020-01-29Mes 2020_01_29.docdoc cb20d7137bc79d85703a2ca1daf9a73904b39c77714bd2d495022b5e973bd7d4Virustotal results 44.44% Heodo