URLhaus Database

You are currently viewing the URLhaus database entry for http://kultur-pur.at/files/En/New-Address which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:39384
URL: http://kultur-pur.at/files/En/New-Address
URL Status:Offline
Host: kultur-pur.at
Date added:2018-08-07 06:06:17 UTC
Last online:2018-09-08 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: unixronin
Abuse complaint sent (?): Yes (2018-08-07 06:12:30 UTC to noc{at}itandtel[dot]at)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-08-08Month notice.docdoc 1c643c6c6373f164856f5c0fc11e78e5553fdbd10c71e1eb77bc867a8da9e65aVirustotal results 36.07% Heodo
2018-08-08Final notice.docdoc 7719ffce9acd3c3db888dc04273188fb87b1b3e5e1fafc65e8e47f61f56b254aVirustotal results 36.07% Heodo
2018-08-08Invoice Confirmation UJ77819.docdoc f548b38101a293d278ebdb65048018888719065ad3fd9f39681e5ce4a98e9ffdn/a Heodo
2018-08-08Outstanding invoice.docdoc ca90ee3ceb6b5f53c97e5621978522340940c65ff05b26248b391c4971d098a9Virustotal results 36.07% Heodo
2018-08-08My current address update.docdoc 904171c20a36669fe9ee06fac73eb36dd9d390361e3d7f490e502c370f72cdc6n/a Heodo
2018-08-08Money transfer details.docdoc f83ed0b8740d63b8e020df41c168e9a535b3af5bc537c1a4a56871ed63470e54Virustotal results 32.79% Heodo
2018-08-08New Address.docdoc 7eb5c67145e3db0d435c694758a91832063a714713a095f207643c3146264df6Virustotal results 34.43% Heodo
2018-08-08Details to update.docdoc 27480627ad7e33e2d72ee99d1334a6748aa396da56b437cb5a80f2af5698f943n/a Heodo
2018-08-08Payment with a new address.docdoc 65eedc84c9bcd56c0ad6cf2a1ae526864ccf36ed5d385279f083bfa50dac2ee1Virustotal results 34.43% Heodo
2018-08-08Due balance paid.docdoc 744feeebd9a9cb0ecd36f45e5ef235ae78717c7bb41f9b8ff48e20c9ea4e44b9Virustotal results 32.79% Heodo
2018-08-07Payment enclosed.docdoc c65994cfd058b0e4258701a0773a89c5b46314d3ef6459d2d12f4e8908c779b6Virustotal results 33.33% Heodo
2018-08-07Due balance paid.docdoc bb15ee38d69336289ba4cb76d4b0126eb50de8fc5fe6e055280fa88444337970Virustotal results 34.43% Heodo
2018-08-07Bill address change.docdoc f77954325642d368e0c7d2ecf4a16210ad820bd61c633ba618023a5920aadb18Virustotal results 32.79% Heodo
2018-08-07Payment enclosed.docdoc ccfad75ef36d3ece9dc17dd8a26bfd5cad9643db70e2fd81aab60e82502a0bd4Virustotal results 31.67% Heodo
2018-08-07Address Changed.docdoc 132534ec9dd880715de5450666aee52b2e577c99d1d468851e04a025dc31520cVirustotal results 32.20% Heodo
2018-08-07New Address and payment details.docdoc e633b6c6918dbf42fb5ebe1879d34721ab885240a7578c7e07e0b2f423a25f20n/a Heodo
2018-08-07New Address and payment details.docdoc 5c4cbe7c04a215cc897996d4d0120b3e3fee42facc2320559dc5b0489ab7753bVirustotal results 29.51% Heodo
2018-08-07New Address.docdoc 9b44aaea9e7d19b5287f6bb14cff0b64e23703f9c7164224623fea615cd2941dVirustotal results 32.79% Heodo
2018-08-07Address Changed.docdoc 858aeac15a64b278af88ddf9b00d8cdf1ead6d0046779a780b19d848014bf66eVirustotal results 34.43% Heodo
2018-08-07Address Update.docdoc e7d99cf53f2328ba4585028e7bb9d4f347419d4f9c8730371eec4842009ce8a9Virustotal results 32.79% Heodo