URLhaus Database

You are currently viewing the URLhaus database entry for https://www.desguacealegre.com/css/gj9-2c-7155/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:306660
URL: https://www.desguacealegre.com/css/gj9-2c-7155/
URL Status:Offline
Host: www.desguacealegre.com
Date added:2020-02-03 10:53:34 UTC
Last online:2020-02-04 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-02-03 10:54:02 UTC to abuse{at}arsys[dot]es)
Takedown time:1 day, 9 hours, 33 minutes Poor (down since 2020-02-04 20:27:52 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-02-04Inv VDJD8_7248211.docdoc 5bae8109ffc8c583f0dd7bb3e2c510bd74cc58f2af5bc5fc781acf40dfedef67Virustotal results 31.75% Heodo
2020-02-04Invoice_388_5224215.docdoc 40c57139f9fe475f5e06542c48aac3476cd943f3530f73ef44a60db380bf9e04Virustotal results 38.10% Heodo
2020-02-04Inv D69_373984394.docdoc 4f82639e01a29db574eb24d0c64e0446eec7f31119bc818b1b45e97a8ad50768Virustotal results 38.71% Heodo
2020-02-04Inv-WCP62_65657994.docdoc 1173cf1516a39c758a543aa77e5efb97ae7c0405e4d4921939f774fe9a48be41Virustotal results 38.71% Heodo
2020-02-04Invoice XGH6_279847466.docdoc b38620f90ec6f200c3c194fb6ec3444c55f50151f4a47cd6ff0eba0bc12a03can/a Heodo
2020-02-04Invoice_HXSN88_426210407.docdoc ba752d809dc790c3456a53069b85e5616938285cdcc1c1794c116a571f7219c5Virustotal results 38.71% Heodo
2020-02-04Invoice-VVDA946_178173.docdoc c15bf38fa299cc9929b83c0125af02075b70d23ec9aed75e4fef73e0f7b0fae1Virustotal results 37.10% Heodo
2020-02-04Inv-VFPS544_979227.docdoc f0b16401b32bc1817524df13f0dfba428d6f1dedc8c01391a39fb7a9dc5a877aVirustotal results 34.92% Heodo
2020-02-04invoice-765_92054532.docdoc 3b17347159d118e8068833d6d1d3a705ed6f677029f321b53184c1a88f62c2f4Virustotal results 35.48% Heodo
2020-02-04invoice_LU1_398715368.docdoc 695d6ffe0301fe9573288e072e29cda27a0a88191ef9fdf6e1ef968d678dcb41Virustotal results 34.92% Heodo
2020-02-04invoice-QK0_138052.docdoc b99ca964d71626052456ece23b73a63ec045d0a815c8858446456a4be9b9cd48Virustotal results 37.29% Heodo
2020-02-04invoice-152_598052174.docdoc 42a4a935910a6aa3e22613a4b0c6371bd4d24fe35aea0a4385b1cc53a620ac19n/a Heodo
2020-02-03INVOICE-ONKI807_2047268.docdoc 0c5e2d4ac205cfbd715b436c95e6441c245602df0329b46b39cefc625778cb71Virustotal results 32.26% Heodo
2020-02-03Invoice-85_5993835.docdoc d57a0fcb55cfc66fecd526549db9b296bbf15e4e429f87536ce2f061e4882a8cn/a Heodo
2020-02-03Inv_204_159704431.docdoc 759fd2ad54957e4994f694a741de7fe5c02a3cee0fee1253b0f54d7a698374bcn/a Heodo
2020-02-03invoice-PEP945_586973455.docdoc d61945a80c3775c6fa5f83bbcbef80b2838ed5a5804816716b1484a89828eb9bn/a Heodo
2020-02-03Invoice_YWQI3224_5051634.docdoc 816a8fbd7af14c078e0e6e2397d96f6c3521003d026818b62dc179e72675b575Virustotal results 32.26% Heodo
2020-02-03Inv_OSIW154_78771640.docdoc f596df2719af75a41f3fb9397de58c6a5e0d0d053de182517c44a792bab698e2n/a Heodo
2020-02-03invoice-A916_547380081.docdoc b2fd8fa961a431aeab8702050367fd57f45737214884c47f973b60a0d7343863n/a Heodo
2020-02-03invoice-322_5361258.docdoc 05f763e23c37b03c54b50b075d2a78a675b0e8f1a001bb78601d8edc61033343Virustotal results 33.33% Heodo
2020-02-03Inv I0811_174356404.docdoc a22e483f66848ec8f48253f404254819ffc132b43e82a5da302a6b32045cadb3Virustotal results 27.42% Heodo
2020-02-03Inv_QN7_265011.docdoc 4f9d0e3e6b138836f0a9a166f65ba3d279222da0fe4165b194629919e9d5d41cVirustotal results 30.16% Heodo
2020-02-03INVOICE LSH2_417134.docdoc 8f86cd648e59c0f1b1080fcbefef7b5bbc45d1049a2980d66d184ace9c55067fVirustotal results 30.16% Heodo
2020-02-03Invoice LSA293_078680164.docdoc aaacc8e33df93ec5da70a436a4423d2468d206585af0d69765ff6af968f990e1Virustotal results 29.69% Heodo
2020-02-03Invoice_5567_785207635.docdoc 4c489bf3a0bdba25130efcec5895e6b665463a5020c5b6ec79b6615523122c11Virustotal results 28.57% Heodo