URLhaus Database

You are currently viewing the URLhaus database entry for http://cghmedia.com/subsets/uc6zc6uw-cxe4o-28384/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:420036
URL: http://cghmedia.com/subsets/uc6zc6uw-cxe4o-28384/
URL Status:Offline
Host: cghmedia.com
Date added:2020-07-27 17:45:12 UTC
Last online:2020-08-07 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-27 17:46:04 UTC to abuse{at}m247[dot]ro)
Takedown time:11 days, 4 hours, 1 minutes Bad (down since 2020-08-07 21:47:55 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-29Inv.docdoc aea561156e6c94d052327d52a840dd75d7dc70c7dff269a08c8510abb9062620Virustotal results 35.00%Heodo
2020-07-29Estimate 03817.docdoc 6ecb72b433b635a49ee2f82737cec4103d08d18e988b42d36bd1b35d175ef612Virustotal results 33.87%Heodo
2020-07-29fatura RY09422640.docdoc 4c4eb4ee78767e5ef21bbc3ff9fd20cbc8824981980172c54aa2b5bef9c05f0en/aHeodo
2020-07-29FATURA 08496.docdoc 304007d9b5d5a2fc7b1c78dcc7694505c8968eebfbf99d3119e9d183a6269b24Virustotal results 35.00% Heodo
2020-07-29FATURA 0108.docdoc 4800ef4ce359d4cfcba1becb6f8f276e0e968f7184af96279a1c448b897cccben/a Heodo
2020-07-29INVOICE.docdoc 50445a74463d73e829f22308488c8ff5b166f83d4d17025cccf6f9c634146f8eVirustotal results 35.00% Heodo
2020-07-29FATURA.docdoc f29b787c2bbd9eb52c1da54bb04418fd7a97a3e4af81f813d51384b44f8df8feVirustotal results 35.00% Heodo
2020-07-29Estimativa.docdoc ecd6f0ecbe8a5736cbbd0ad4095e8d9197f31f8278a839928a6b1ff342310541Virustotal results 36.21% Heodo
2020-07-29Invoice.docdoc 4fcf5c5d7a3296eae7876be45da5f2043bb300507716ac8927c882b5faeb1c2bVirustotal results 33.87% Heodo
2020-07-29Fatura.docdoc df26600619cca1e39dee2d493975dafbe94b1e1667abad484e8fe2cb750cf031Virustotal results 31.15% Heodo
2020-07-29FATURA U0161.docdoc 715e07423ddc22b30caa7879abef482589c687b0327dcef59eb31dac4c6ea199Virustotal results 29.51% Heodo
2020-07-29Estimativa.docdoc 5dc2988ac1400b5b41834fdd756973d29c974e2beb985cbff7b83833d0175243Virustotal results 28.33% Heodo
2020-07-29INVOICE MT08538826.docdoc 48ff47bbbcb8b53f6fefa1fa1ca276d9cd1a82956cb00511b6718bdc6818d503Virustotal results 27.42% Heodo
2020-07-29Invoice 061365.docdoc b55637e397616929dd5aa9a5dce20753de9ecf2de51cd00672d022fe335ee5c6Virustotal results 27.87% Heodo
2020-07-29Estimativa G07156.docdoc 8be3d1797f4f009eceeec54dd7d3db636da1482fa4e641720d685bc5c6843d04Virustotal results 28.33% Heodo
2020-07-29Fatura 0655749.docdoc 048fa686a033e894b6ab66472e3add1b8e1d6bbcf6b2f3abe4be995f54c3e61eVirustotal results 27.87% Heodo
2020-07-29Inv F013781.docdoc 042bd8a9a57e4325287a5c49534245c4c5f924cbd1887722a5169bc693652f1an/a Heodo
2020-07-29Invoice.docdoc afbb730fc0e99414a5ad49f8c406e7299164b2375a485165f09bec83325384d9n/a Heodo
2020-07-29FATURA 0556.docdoc 7e706588770f2cd28bde3e21c46aa7632ab175258728524e60b47c3bd22300c8n/a Heodo
2020-07-29Inv.docdoc 3daeb772677cc8ab74fe9d0653e77f06a05719179f03253b20e750d1c12fdd54Virustotal results 27.87% Heodo
2020-07-29fatura.docdoc 4136355b5354cc7a91489e062ef45ae19eb9045b552097772e4a382ff8e74aban/a Heodo
2020-07-29Invoice.docdoc 5d095bc2e07d640965812c7e780e678a6604b5c2edd7310c791930c05897da3cn/a Heodo
2020-07-29Inv.docdoc 6bccac77a72403880d41bb0e487db280610c96089a428b7471ffe4c3f970fed7n/a Heodo
2020-07-29Estimativa.docdoc d31a643788c43fd2a0f0d66fcb001938e027d1fb9f10acc0ca2c6c4b0d3c2e71Virustotal results 27.12% Heodo
2020-07-29Fatura 05662.docdoc bd6c77378489cb8fd4a161d48e7942912147f621de2390270a9094b8ae137397Virustotal results 25.81% Heodo
2020-07-29Estimate 0393.docdoc b2eeddd5041eedee7e49fe10f67bbf0e658f7636ccfd952737bb3938777ba2aaVirustotal results 45.00% Heodo
2020-07-29Invoice.docdoc a4e941731ea6004cc9cf3198d9af9fe064ee77a13f1f9b78de69450a34d43722n/a Heodo
2020-07-29Invoice.docdoc e275f7f70b358d8bfad421c59333f98e86002da3fe2e9afe4079641717342f3an/a Heodo
2020-07-29Invoice 0314.docdoc 10210a4e4201a0cc2381a0e9a156df2806035d8cd5471e8e99353aea50fc0fbeVirustotal results 40.32% Heodo
2020-07-29Invoice.docdoc 9013cbc98d3bfcab7773a73f52cb9e210505972ad86f3d7460bb94bd2dac91d9Virustotal results 40.00% Heodo
2020-07-29Estimativa.docdoc c20b895c419f49ac8e3d870abf913bfdd03570857ad269d48b42425f190f8c9bn/a Heodo
2020-07-29INVOICE P06651429.docdoc 0a570bb0ba7b3aded8c3f42f19cf86c85183b020e6a7708acda9e202673bbea7Virustotal results 41.67% Heodo
2020-07-29Invoice.docdoc 3740d814bcdeefed4cb4740ab3c7580634dbbea5c709b06a1d176fd23893cff3Virustotal results 42.37% Heodo
2020-07-29INVOICE.docdoc ef2bf81f8a42a7ef4e1a96c14b39d07a82d1bf9b9ed9080d4466c1ce2b6b2fb5Virustotal results 40.32% Heodo
2020-07-29Fatura.docdoc ab70b9d9a0b0c05df3feeffcede8b732964d9ea5f11532cbb899380d17253baeVirustotal results 40.98% Heodo
2020-07-29Invoice 0287.docdoc 6c1be6f4bac9ea894c4cc5657a9b682e473540b3c1a10f9dbb9ec6d0e27a5b93Virustotal results 41.67% Heodo
2020-07-29Fatura 01712.docdoc df2f48b42da6fca5b323b51ae8384fe0f79e36e051010278f74e53b776337d08Virustotal results 42.37% Heodo
2020-07-28Estimate.docdoc 04abc34f8660da49cfcb4daa11b45febf492755f28739bb02b2e00e51e3965e3Virustotal results 42.37% Heodo
2020-07-28INVOICE.docdoc df647f0daf5834291c627d2d471a18c7593fc91bdadf6dff149e5aa42c9e0fe4n/a Heodo
2020-07-28Inv.docdoc 2500e2bf1ee4be15c6ba67badbce47df2e8c4910ae6d70956ea26631afd4bd8cn/a Heodo
2020-07-28Invoice PI00515.docdoc 6f68dc38bc62feb8249f3d517b07e708fadbb943da544e35fb76ca87d507a801Virustotal results 43.55% Heodo
2020-07-28Inv SN058478.docdoc 930850ad4dda7f97f6e988ffeb2f6a78c71aa6376e437be4aa4eb23910eb9721Virustotal results 48.28% Heodo
2020-07-28FATURA 028625.docdoc 598a8daedb218279d20cb8759624e3f136836989072aac66bcf0eb916b1bbf26Virustotal results 44.26% Heodo
2020-07-28Fatura.docdoc d8a8f601fb7868b6495b8e4c97b8f7fa3748c8f3aaee3ffdf975200d70b49ff6Virustotal results 43.55% Heodo
2020-07-28Inv AG088873.docdoc 1c1841baff08804539ba328b9f63e6ec39abab9afc6bdc70904eca138a993247n/a Heodo
2020-07-28fatura GI05434132.docdoc c61820249fb8e9e6d4e20f466c9eb023334d37138f66b001e5b2221392fb7eedVirustotal results 40.32% Heodo
2020-07-28FATURA.docdoc a2c192131c94c238384e83d521ae6568774258c7267ff5e74a015255555ac4e6Virustotal results 40.00% Heodo
2020-07-28Invoice.docdoc 0cd781e3e01ceff4c22691b327bb0e9952cb54747f2e882a0898d170867123ccVirustotal results 39.34% Heodo
2020-07-28INVOICE 05524.docdoc 0c8d1998fd7ba0d37d38612d3c44e6fbf5a1d23d37430dc26b9d967b1150acb8Virustotal results 39.34% Heodo
2020-07-28fatura R0950.docdoc fb5c853a6405f26b08c948c62839ca8b738c93cb82885c471d06199a5fc991edVirustotal results 41.67% Heodo
2020-07-28INVOICE.docdoc 9f93a52e0305156143b2994eebbb6bb1298eab091d7dc6f48d4b9a5cb3a13ae9Virustotal results 39.34% Heodo
2020-07-28fatura HH0656.docdoc 6efa96c73082c7c3d775470f186ca04172bca5533d3b17eb00e211187faafde5Virustotal results 40.00% Heodo
2020-07-28fatura MC026018.docdoc bb86d6fbb2c5b7169c1b59011715a68d53b9c71a2886dcdbbc641120a21c35a0Virustotal results 38.71% Heodo
2020-07-28Inv EL0075010.docdoc 54171a3ad4b125dc2795767c4e783e474bddf5f973b21bfaad94b3d15057b763n/a Heodo
2020-07-28FATURA 02324886.docdoc d5a55752f9452d65fb1bcc70ff301223ffd27da8c8f4f18fa39ff339e7d135f9n/a Heodo
2020-07-28Invoice.docdoc 88a7197906a0c91198d4bc95fea5b61dcadf27876ad28df79fcf62a901d552b5n/a Heodo
2020-07-28Invoice.docdoc 8330eec3e5619dfe033c6d7059a8b53f1cd6319c5960f917d5b4472534fa349dVirustotal results 39.34%Heodo
2020-07-28INVOICE 024612.docdoc 0e447707a2cdeef876e102f3abda24f1258292d7396aa4578f55049feb5bda64Virustotal results 38.71% Heodo
2020-07-28Invoice.docdoc 729edb668aad1ca07a75fa35640403504dcbb3ede22a3bd35e152450356cac17Virustotal results 40.00% Heodo
2020-07-28INVOICE 0987.docdoc e52ae273e17e7cd26ef810a7f38abc407a466715862507a2dcf2aad4f5c97197n/aHeodo
2020-07-28FATURA.docdoc f46d788a226b81e595095da17c33bfb2df251ae91ea87860b3520bf65fb825e0n/a Heodo
2020-07-28Estimate.docdoc c006d3ae2670d993d05d0cd218a9538d9a86d7616a270ef3577ff939eb581418Virustotal results 38.71%Heodo
2020-07-28fatura.docdoc b123754cb0c0b2c313cfcfce43b1bde259d43634597cf929a3d16b85a296bd65n/a Heodo
2020-07-28Inv.docdoc 65b47a1844f8fb3d6c8b38241ae4145b15d14bf8e0af45b22b37bf18541a6d3cn/a Heodo
2020-07-28FATURA WL0254083.docdoc 35f182246a6245227b09f3f93802700efb8a0ca75d89922a7f8ec04f38d1ba05n/a Heodo
2020-07-28FATURA.docdoc 1bfabc8ed04972ec4be87839ed11859d2b04a53a22430e1834703ef306a37725n/a Heodo
2020-07-28FATURA.docdoc a2e5b923d42791c22d503ed2dff4ff8fc815f0fd5c5d9012d505c7e140ff7f9dn/a Heodo
2020-07-28Estimate.docdoc d652244433caaa17c36aac28e633467530b4f4405da4280dc2ce54de0cee1f96Virustotal results 44.07%Heodo
2020-07-28Estimativa U0224.docdoc f2534ae2833ed6c74f9c54ca47615d65e00f1940a3eb77e2cd2dc6043d611f20Virustotal results 41.94% Heodo
2020-07-28Inv.docdoc fd4d62adbd04d2113e7ae2d0665a9818f0d7d917d81b4cbb2b3fe9cb1c57a9e5Virustotal results 40.98% Heodo
2020-07-28Invoice 0601.docdoc 74337ba6a260951cacb202119ef4c2a9ed419fd550d336bab2fc3ad7a91a3dacn/a Heodo
2020-07-28Inv.docdoc e9f1c60ef8ba2eaa30cde6bd73b2c976c8dcb249accbead6dab94a104368abfbVirustotal results 42.62% Heodo
2020-07-28Estimativa J0342.docdoc d6c659de36e232711b43510294de8d40e85bc20acb0bc406bc4c049ec95aa8bfVirustotal results 42.62% Heodo
2020-07-28FATURA.docdoc ec0e8d0563780a5fe3497739178a9f50f9ed4f1e9279597a14ac0a9e46a1c2a0Virustotal results 40.98% Heodo
2020-07-28Estimate.docdoc 69ed3900a04ac4ae7c44f587a7fb2f423b076d598ac91ecd02b731f7bc226c1an/a Heodo
2020-07-28Invoice.docdoc e7ffb087fe3f53d79fbd7ba2640e74013e33ef6a6690733bddb3543b3b8d28c1n/a Heodo
2020-07-28Fatura.docdoc a3a0260ea81e1c6c1af01bfd12457932c5128018970ae7c12253435b8d1f21eaVirustotal results 42.62% Heodo
2020-07-28Invoice F01495188.docdoc 8d26fc0912262525b4cbcee4b045ca067cf843f766c679e4d5e31c541cfe1bf5n/a Heodo
2020-07-28FATURA 04745442.docdoc d595783e17ab398b67049ab62866a7ab99d5578e16a2ade2f06b8e782b9a15b1Virustotal results 44.07% Heodo
2020-07-28Fatura WG08800.docdoc 203f0e5c04b834996942229402a465a14ac830e265fe9cef55de9d39e0c7418fVirustotal results 41.94% Heodo
2020-07-28Invoice Q0323876.docdoc f86f06a4808db53c9bb5feeda67a65592c02d96ed4dfad67fae53b420d6c7c75Virustotal results 41.94% Heodo
2020-07-28INVOICE.docdoc 2fd392dfbac055081a9600291ad00bebb5b1d78a63a17b54f5d230004da103e8n/a Heodo
2020-07-28fatura R09953.docdoc 1ae2f3e3564c98f2d213d209865ff64e7ec73e86ba9d7b42122a9630a94b589fVirustotal results 42.62% Heodo
2020-07-28Invoice.docdoc 0271398727e16c2b35992cf07cd28f9c5149076c220ddf22aa7dc22389e1a089n/a Heodo
2020-07-28Inv.docdoc 9ed05e8155b82511a46ccb14f2220dab3c4492bd6f8ef2f155b551b928e1b005n/a Heodo
2020-07-28Invoice.docdoc cd833a004ffe480493a1ddb9f4a7a4c94a0a3a441d35c3412a0c0d86ed307396n/a Heodo
2020-07-28Inv.docdoc 1c0a32b364a2ff71140e9e518a88a239a9f8a995766713d2edb13b4a3bdc98bfn/a Heodo
2020-07-27Fatura HL08040.docdoc 0ded8527f3fd10bea37326e5ea52ae190eb531638d8e0f4203d1e2fe9112af1eVirustotal results 41.94% Heodo
2020-07-27fatura 084070.docdoc 0b2060b6147dc21d03c300b162ead361cbffc5b009893ec5ffcbc5307ef88453Virustotal results 42.62% Heodo
2020-07-27INVOICE 0531.docdoc 5738d5446d6922101b61d11884927173bd12fc05e24c9a005c69805167efaae0Virustotal results 40.32% Heodo
2020-07-27Fatura CL03947396.docdoc fcd3b58f67ac200e545bd28153a38172ed7fb8ded28cf14fee57a7e4229c7a9dn/a Heodo
2020-07-27Estimate.docdoc fc7248d35628639ffadbe12575bba5a0af64a637de59bdd32a9607183e9bc92dVirustotal results 38.71% Heodo
2020-07-27Inv.docdoc fffb2e1cd54e1e683cd606361b2cbef0f4e750028f0262052dea7cdfdc108fe1Virustotal results 40.00% Heodo
2020-07-27Estimativa.docdoc 5c9256133ec44430fd14e8479a018f720a1fa10c2767386222caa066b4907bdcn/a Heodo
2020-07-27Fatura.docdoc c510cc9ed08fc99f0be1900596d5af5bebfb76f64a01c7a20f3ce77b31645903n/a Heodo