URLhaus Database

You are currently viewing the URLhaus database entry for http://csnserver.com/doc/US/Aug2018/Order-59961367211/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:40519
URL: http://csnserver.com/doc/US/Aug2018/Order-59961367211/
URL Status:Offline
Host: csnserver.com
Date added:2018-08-09 07:02:04 UTC
Last online:2018-11-27 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2018-08-09 07:10:44 UTC to abuse{at}rr[dot]com)
Tags:heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-08-10Invoice.docdoc f63b36ad268aa960aa5baa6b095514828508395aa7a888dc9c41ae2b0716168dVirustotal results 33.90% Heodo
2018-08-10Invoice.docdoc be067a5bb420931e608a60872fe4cf7f94009e0bfeeffbbeda1fe556ed0dd071Virustotal results 35.00% Heodo
2018-08-10Invoice Confirmation 3G3595.docdoc dbde9292cbefe9efdb2e701469636e0c7825ac33bcb0595fd5a9f86e0a45fe44n/a Heodo
2018-08-10Statement as at 10.08.2018.docdoc f0bf639da101f2a263b164a6eba4b6da81e7665ad82a0b33f6f360fc74babcd1Virustotal results 35.00% Heodo
2018-08-10Inv. no. 07PTG5542.docdoc 136cc4762f5d36541f46e018328397e1bac634a88282587ba26385c780288087Virustotal results 35.00% Heodo
2018-08-10Invoice.docdoc 3751fcf093e112800f61a83b4ed5392a6665ef1d8be22a104111aec55b39d709Virustotal results 35.59% Heodo
2018-08-10Review invoice required.docdoc aea801f386a57a8b1bc1ec560cac259455cf1de3fbece36ab27ab54cba4805c7Virustotal results 36.67% Heodo
2018-08-10Customer No 611763.docdoc 7a103ac80d6b58922f979c4f6ac95aebf085fbbaa02e4ee269d13231b39c63c1n/a Heodo
2018-08-10Invoice Confirmation 4079060.docdoc fc368060fb4946b073b55e56d495e7ab249dbdabbc8f7cd809b55089c9854feaVirustotal results 33.90% Heodo
2018-08-10Latest invoice - 830897.docdoc 56de2fad613807e46613e7159681a962cc8c54fc6ed20c7c3e90e104cdbfeaffn/a Heodo
2018-08-10Invoice as at 10/08/2018.docdoc a710c78fbd5aa2ddb9bf81654400f7d5d593cef87a97051a05b9c7af6bd6c8e6n/a Heodo
2018-08-10Invoice.docdoc 21982965fc5661c509d1833f8fe9caf02d7649619b7b542d7a735abd7936a9cdVirustotal results 32.76% Heodo
2018-08-09Statement as at 09.08.2018.docdoc cfa7724adc8ed5123e38607f34fbbd7bbdeb531ff1456b0733070f15c2ab1217n/a Heodo
2018-08-09Final notice.docdoc da69c0df6a11eab120671b1c93d08b3afada374c4f2246382a9b90304552888an/a Heodo
2018-08-09Invoice.docdoc d325bd08af0075b3605c3497af5cf79214cda511507360b88eaa3e83273d3b8bVirustotal results 29.51% Heodo
2018-08-09Invoice as at 09/08/2018.docdoc fde9fe137f4cef20e171def30b5a72122b9278ac4cd94f020b293da84028dcfbn/a Heodo
2018-08-09Billing Invoice - Job # 4520865.docdoc 4234d1c86ec274f439ff4948c531fc4ba9f1e78a0bade4ead82da90bd3272fa1Virustotal results 39.34% Heodo
2018-08-09Final notice.docdoc ff76ed6a8b4e4d9a31c99508ebcbfa763c74505149deb0fb85c0096954feb70eVirustotal results 39.34% Heodo