URLhaus Database

You are currently viewing the URLhaus database entry for http://www.l600.ru/DHL-Tracking/US/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:35829
URL: http://www.l600.ru/DHL-Tracking/US/
URL Status:Offline
Host: www.l600.ru
Date added:2018-07-25 09:40:04 UTC
Last online:2018-09-10 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: ps66uk
Abuse complaint sent (?): Yes (2018-07-25 09:46:12 UTC to abuse{at}rtcomm[dot]ru)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-07-27Tracking_75775059.docdoc 27bd6371d844b4c53f52d4f974cf81edcc3b02477eeb39642632d54ceefe8ee3Virustotal results 28.81% Heodo
2018-07-27DHL_Express_57520327.docdoc 351df39fa91ac1b92688ed7c52efce7541ec78cd5f070545d170927b6bee51a1Virustotal results 28.33% Heodo
2018-07-27Tracking_4285880679756.docdoc 191c5092b8b1e37ad1d6a6394d2b9aa04dd12a29a888ac1210ded7f93ac2cacbn/a Heodo
2018-07-27DHL_number_4137134520.docdoc 0570dd89f49c794f3901a086dc9131a93834d7dbc7ef068af5c299874f41f809Virustotal results 38.33% Heodo
2018-07-27DHL_Express_240082638.docdoc bbd808b9ae468f0fd7611ed28d9c32ff61116a64095ab2da02877b44b59966e3n/a Heodo
2018-07-27DHL_Express_0856612107833.docdoc e7499b9d01d28ab6c82d0436e4e20d1a5ed2772f00a3b5769db2e06967e84a8fn/a Heodo
2018-07-27DHL_Express_7753331827.docdoc 33ba83b65eaa1da785579f0af6fa4ea422f7c11092a75c0ad432ea738806e571n/a Heodo
2018-07-27DHL_Tracking_72084556.docdoc e3099018327316f6689b6dd7fa88e4e59861e054af2cd59db77cd7eb6b85e60bn/a Heodo
2018-07-27DHL_Express_6298481258699.docdoc 4fd7ab625f4b444da2e5e60b7adc03a0de14c42d2357f518b07d9924eca1a50dVirustotal results 36.67% Heodo
2018-07-27DHL_719773361.docdoc a04e6195e8b52db47e7e88401a4daa431ccdb00c959c3ecc2b26743ba47e97c6Virustotal results 38.60% Heodo
2018-07-26DHL_Tracking_38940254.docdoc da949e88f8e20caff806d1c8201777571991a2701bdc2f3e44815d0e18ab948cVirustotal results 36.67% Heodo
2018-07-26DHL_Tracking_5862139718.docdoc a09a6e4a65a174787ec889f5e9d9024cdce88d46577d022a012ee4f86fb472cbVirustotal results 38.33% Heodo
2018-07-26DHL_Tracking_554214910056358.docdoc 8f0dae9f191c55289ab80783e68c0e03e97f391cd86ae283304555f20d8f2d31n/a Heodo
2018-07-26DHL_1883887.docdoc ffc7944f16c06efdd23a4fb946eac1dd2b1a91f2d27b7cf24396a78713b17c5aVirustotal results 38.33% Heodo
2018-07-26DHL_748364442930334.docdoc 73d4c1dafc168a36218d215548bdcc87b0ecb667acaf685b044b680f4f678dcaVirustotal results 35.59% Heodo
2018-07-26DHL_Express_850393045918.docdoc 7d1452ab28a32b82e29a27b02f3881ed4eb7e33e47c65791753b6f9f6b0da364Virustotal results 33.33% Heodo
2018-07-26DHL_979697947.docdoc a5fefbfa27d4704a6e5e9ee658587a63e1889d2baa74bdf7c6949a4027e2bf51Virustotal results 30.00% Heodo
2018-07-26Tracking_0837977927734.docdoc 93bf51d8460455e19a53220feb590ad784d2282f009bc7ad393d76e3be3540e8Virustotal results 30.00% Heodo
2018-07-26DHL_476721017345.docdoc eb6e7d17c007d64f9fb1ed96d50967a0ab3fceb1c53f39975aec92bd8d499632Virustotal results 30.00% Heodo
2018-07-26DHL_74573722521.docdoc cae201c0186ce7a7772512776f9cc768861fd18c7ac96d1c65cbe72304e86b57Virustotal results 30.51% Heodo
2018-07-26DHL_1510393223.docdoc 69911db30fac3233862b4c74defd879a60b70912b4f2c932a5cd36bad8752454n/a Heodo
2018-07-26Tracking_61209591862.docdoc 34a650ece937595cba60a9ed324619b97f98acc554b79d8ba35ff3f5b75d4ec1Virustotal results 28.81% Heodo
2018-07-26DHL_Express_63126566696.docdoc be07e9e6e6cb6ef56f15ff38417f08a059b0c2fa201721d04023aa093a9910d6Virustotal results 27.59% Heodo
2018-07-26Tracking_2093497244.docdoc 056a4134212e57a50932041c6294b4b2ede287d700a2a0512136eacc155e64b5n/a Heodo
2018-07-26Tracking_065697670968.docdoc 7cf4cc8a87cd88b189838c000b88b03bea8865a1fd9175302b71adf064852da6n/a Heodo
2018-07-25Tracking_883468928374.docdoc 3abb000245c50c4f146e6d5dcde6d1dbe64fc5551f2417ba59a1fbd8db5bbef7n/a Heodo
2018-07-25DHL_749377106091.docdoc 060a0fc2dc33ae11af40e99b36563ac2b3cdbe59e7e538f1a0a0832480e8c74cVirustotal results 31.67% Heodo
2018-07-25DHL_Express_72117929520.docdoc c5fd694393844e5c852259ac72e3a6a66e1de28d7e5583714dc1bb4c2e4fff63Virustotal results 28.81% Heodo
2018-07-25DHL_number_164322331.docdoc 8a64954fce215314346526013421611a8a5b3fc970b995a33bc747bc6a413b85Virustotal results 32.20% Heodo
2018-07-25DHL_Tracking_430592298.docdoc c06a333ef51561fff160993d17361603df371a12f26a18bbf3018ce8be7d9d89Virustotal results 27.59% Heodo
2018-07-25DHL_number_14814561161.docdoc 5a8be61da7e3419d3e08be8f8e04b626ba4d3f5577bfebbecb987dc33268fefeVirustotal results 25.00% Heodo
2018-07-25DHL_072038696084220.docdoc 4b1bc9db2782824f383273063db9fe69bc89d05f32abd9b77bca0d226bde51dfVirustotal results 26.67% Heodo
2018-07-25DHL_number_22198352725.docdoc 233503b07c5d591b850fdadc68231cc1471017b369cb65d5fc6ecc40bb0c9a41Virustotal results 27.12% Heodo
2018-07-25Tracking_408373048400900.docdoc 474f2e58d52bb2cda5b5c9ac2b0493e406ae503d328aa60114fa98906d2c05f1Virustotal results 27.59% Heodo
2018-07-25Tracking_01574162.docdoc 309c01e34c8edb225e53cf8d3c915381c95b010d49e20c06ee0fe0b651409f75Virustotal results 25.42% Heodo
2018-07-25DHL_Tracking_294327928876.docdoc e2626589f7a5fc24096142f3029306f6b18a4c8add488f2c6ef3a6366a3babdeVirustotal results 23.73% Heodo