URLhaus Database

You are currently viewing the URLhaus database entry for http://lasagneria.eu/doc/US_us/INVOICE-STATUS/Invoice-571715 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:41706
URL: http://lasagneria.eu/doc/US_us/INVOICE-STATUS/Invoice-571715
URL Status:Offline
Host: lasagneria.eu
Date added:2018-08-13 15:59:40 UTC
Last online:2018-09-08 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: unixronin
Abuse complaint sent (?): Yes (2018-08-13 16:12:52 UTC to NOC{at}BELCENTER[dot]BE)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-08-14Billing Invoice - Job # 361324.docdoc 52c2d15e600bf4ad4c7254e7e7b06537ef44894fc07a3691491ebd4aba97c450Virustotal results 31.67% Heodo
2018-08-14Outstanding invoice.docdoc a23c7eef482794cc3bdada733cc9634ea6e0feb34b7e8671fd67dbfd9499f4dcVirustotal results 30.00% Heodo
2018-08-14Outstanding invoice.docdoc 20f4771fc95bb5e7d9a371334784a1f92b9b7f124f03daa095b429b370e0ae5bVirustotal results 31.67% Heodo
2018-08-14Invoice Query.docdoc aa010815ceb9eef32db89f57240949c1e13244b15f4607220d62ec77302232a2n/a Heodo
2018-08-14New invoice 51M3W362140.docdoc 39e7dd2506b539b18a3552bff726eaf7a1206e4b29fc85c5ca189fdb4344a4dbVirustotal results 29.31% Heodo
2018-08-14Inv. no. 98SEB174446.docdoc 131dc89104afa262b7b2476df2a04ffb6085442115e61dda3ff669b6b3168af4Virustotal results 25.00% Heodo
2018-08-13Invoice.docdoc 04f8b430ef0e919c513430b47b33a44f41f77ca56d8fe99fa7ff5b026125121eVirustotal results 25.00% Heodo
2018-08-13Latest invoice - 345262.docdoc e1aad4875acddd1edd99ed628a9c1eae09b4f5a0fc74c4dc6fcfb903e65ef806Virustotal results 27.59% Heodo
2018-08-13Month notice.docdoc 262f362e36276789609ffff90c496997372888b0048edb3cd16f14e161fc55a8Virustotal results 26.67% Heodo
2018-08-13Invoice.docdoc 5e72703c3e9a58f8b6f6e58c8cc058725fc74bca14c4a714b70d929fb7ba5aeaVirustotal results 27.59% Heodo
2018-08-13Final notice.docdoc f4e9c877c898636eb9c4ab242a9a86d0cc6e85b1cae4c13569bc95b0a751469eVirustotal results 28.33% Heodo
2018-08-13Invoice as at 13/08/2018.docdoc 4ad4c27cdaaed6f639212b35f3d2dc9243c29e222986c47648458a5486ab22a1Virustotal results 26.67% Heodo