URLhaus Database

You are currently viewing the URLhaus database entry for https://www.kosses.nl/bin/parts_service/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:421360
URL: https://www.kosses.nl/bin/parts_service/
URL Status:Offline
Host: www.kosses.nl
Date added:2020-07-29 11:31:34 UTC
Last online:2020-08-13 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-07-29 11:32:02 UTC to abuse{at}antagonist[dot]nl)
Takedown time:15 days, 1 hours, 35 minutes Bad (down since 2020-08-13 13:07:29 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-31UE2080106155LI.docdoc f91437920f5b358414a87cabd9a1a89ef681419c77a88510845805bb7a98b3b9Virustotal results 41.67%Heodo
2020-07-31INV_NM9520443234EY.docdoc 98ee1381f134eaedefa2baef746295a547b2a4b7468ffbf5a9834e65a71c7c8en/a Heodo
2020-07-31GFF_070120_QET_073120.docdoc 3dc5ec3fc47a3d3cc7a39aa7b36f0d5edc36aabb1c459f26ea6cb221cf78d461Virustotal results 41.67% Heodo
2020-07-31FILE_PO_07312020EX.docdoc 18d9ef695345eb4c97d2ac385a33550e01a3760dd3e3edeea1507af436451b0fVirustotal results 42.37%Heodo
2020-07-31INV_PO_07312020EX.docdoc 9c184a50a28234ea058519a136d7e474a3e8fa0d75828d3b5167ff02cbf87b8fVirustotal results 40.68% Heodo
2020-07-31REP_E3Z0L71EQW.docdoc 3a41d6d1c8f3a6cc5c8df663c33ac3854169a275bed3731c2fa2536de9aae6d3Virustotal results 43.33%Heodo
2020-07-3181932281.docdoc 20265e7b88ee06f8d6c99269ac1bc743eb01af3e679b55558ab32d0e0177d22an/a Heodo
2020-07-31DOC_APW_070120_NVG_073120.docdoc 9e7028d16ec6751019c80ff608d17691d7f07637b8155b56eea82c7815f151a8n/a Heodo
2020-07-31Q_PO_07312020EX.docdoc 7689cf53f260808946f1b53dd444210423a975b7fc7754c1fe6b04960286f9a3n/aHeodo
2020-07-31CMTFY8105.docdoc 6409ce9b870ddc65977b0934cd67f2d6791fb9b551452b83d767d93322cfa001n/a Heodo
2020-07-3119345968.docdoc c8d29c17695244d3a3703e94ab4af9dfbfa15eb3b92906fc2139292a7fa28d09n/a Heodo
2020-07-31DOC_SNTFYRD5U7.docdoc 2db2afb589741f5b0c9d9664e2510f5d3497e24ec06588da2004db3c53074267n/a Heodo
2020-07-3197907106.docdoc 17592f34648b1b8fabe68fb11ba3945bb82b9b7c3eca7f20210fa1d18c1af346Virustotal results 49.15% Heodo
2020-07-31LK252I1N7ZLBKG8.docdoc 9e2281655f7c68cdd376157b01db76237250a6c8a9ad766b4c9e541980f6168dn/a Heodo
2020-07-31Y_28564444.docdoc b3ef47f4c34fd270e8e97dcf5117fa5ae1c737eeccdea4717e498aba02710bf4n/a Heodo
2020-07-3187491614.docdoc ef621fdd3d3121ae84099bdfc6c83795cf25b42d57b6b02b0c64c99609fe621fn/a Heodo
2020-07-31BAL_PGP_070120_MNC_073120.docdoc 86c5dfaedbd4d9194b9b151a7c04a77eeed74491bc24e407bdfa249f82ba0377Virustotal results 48.33% Heodo
2020-07-31BAL_60018962.docdoc 56d187176e22e7ee7159e0a45fb2c16ccab49b8f3c6cb92e5adce5acdb2325caVirustotal results 49.18% Heodo
2020-07-31INV_30522007.docdoc 8d7f5cd06bb06193bf56a6084659355f3087b32118304efa7f736950c5c3224dVirustotal results 48.33% Heodo
2020-07-30BAL_C87Q4QQR8QP.docdoc 226d9689fcf84f7cf9decb14e3b58a86f7f82df4ad2646632444f63095544015n/a Heodo
2020-07-30KVX_01939796.docdoc c36f82ea105cba4a44f73acab1118437af3aab1d9a0f306fad8180ed6fb20205n/a Heodo
2020-07-30REP_HLQ_070120_RFH_073120.docdoc a7131b5ce33431b9adfa7fc4694a25bd4e9f60d0031622840a1a854262ad137aVirustotal results 49.18% Heodo
2020-07-30VJESMGX5E.docdoc 087d886769130e2e66ae3c58ffae09a89067b34644d00e1b033022da3f23eb86Virustotal results 49.18% Heodo
2020-07-30FILE_44276492920053737563720.docdoc fa9ebbddf93bf0bde73a7e62692c9a2ba07478ad334b60810862fe795384032en/aHeodo
2020-07-30RJ15ZI2OFVF58.docdoc 2f335817434e148eb3306ec99d29a3947f89ff9e3aee56f76f227d5894334abdn/a Heodo
2020-07-30SE2676615000DN.docdoc 50237ce7bab432ebc9fdb9c0b9b8764d40d62f59367f6c32fd67cdbd428a7ca9n/aHeodo
2020-07-30Q_ER1224421619KT.docdoc b428976d96415b32efb7157b375160dd676b448e1566fad5dd8da634fac3cc64n/a Heodo
2020-07-30BAL_20889184.docdoc becb9e6d414fd21b17ff76bb105897d74e178abd180321b2434db3d5344787d0Virustotal results 49.15% Heodo
2020-07-30F_012806240921239925.docdoc 9a28a0d745f8efe68b7c5caa46014db396f45be3cbd77ea9e90f618d3c032f45Virustotal results 45.76% Heodo
2020-07-30BAL_HIGSVNDXUH48.docdoc b3c476526978c5ce2f22627e47f21fdd3a16f03b166965bac3be05ca29b80575n/a Heodo
2020-07-30INV_UDI_070120_RSX_073020.docdoc e36e626e95cc4e2feb34bfba30b423f08786bde39a1ddda5fa65ce1abc18bdb7n/a Heodo
2020-07-30DOC_E79NA3SBQQJG4N.docdoc 6bb1593ac7b893c0564d6a29fcbc566db5a0cf5e8a4c0c19dab1866d91a041a9Virustotal results 48.33% Heodo
2020-07-30FILE_UPWWGCTODLWPR.docdoc 9a039540a5c66db061b1a3fb4f0e45324d5f2b48cedc6c1bf88e4b8f1b887302Virustotal results 45.76% Heodo
2020-07-30BAL_72405654.docdoc 3ec0cda0966fdfac5059b61d8b718eb7dc9e4454c370aa8260f34a3c759d43c2Virustotal results 48.33%Heodo
2020-07-30P_AD2956882256CC.docdoc b7c80485c06d98376a33061daffa3a5da0b493251d67b50832d2dff57354ff87n/aHeodo
2020-07-30PO_07302020EX.docdoc 07e776c54df1af3395854812f0a6b7915acfa69f07c466e088eab9655d99d886Virustotal results 49.15% Heodo
2020-07-30BAL_GC2739704789CD.docdoc 5c7a7a9074d122179780a3db64b04f9d8225c9d4004dd201eb6e650e8d072dbdVirustotal results 44.07%Heodo
2020-07-30W_HI1706464429TE.docdoc 1460e8d0ac636b3af0e01a282bd5be1286d0b25f0d7f003bb770aad9980dae20n/a Heodo
2020-07-30INV_KO7789543818JF.docdoc bae631a4bcfb6f64cb01a26d307ddcfa85d0d63f8765a7020242e2e5b7ba979eVirustotal results 45.00% Heodo
2020-07-30INV_1394761336029623812825596.docdoc ce8a5ee320c9b6063d4b5abe1ff2a16a6e9c5d1c49f4f88425e345aa8c140b7eVirustotal results 45.76% Heodo
2020-07-30BAL_NH4658244539BQ.docdoc fbde268bb3b1960b075be4472b42270bebc9726fd35c46d5ccdc91c2eaffe665Virustotal results 46.67%Heodo
2020-07-30BAL_16098138.docdoc 1d8d8efde60da9a7ef7e927d2ea168b44ae1c9e70b543f692cd98d6dba98f99dVirustotal results 45.00% Heodo
2020-07-30INV_1091731013313061647095.docdoc 28b1b50c08b8b963eb3f8fb999c0408aed3cc363ef74d4bc69b52fe00ad1a3a9n/a Heodo
2020-07-307963893578460436354355226.docdoc c8af9424ff1c3e407411aadbf072dd116adc72bbc718c6742a8dc4a116c6d934Virustotal results 43.33% Heodo
2020-07-30GM3212965794FE.docdoc 18190f715f0c05ac6e28e0fa78c58fe7a1f6a0733be72ea6494e4340611c2194Virustotal results 40.00%Heodo
2020-07-30FILE_0029844524452668766492212.docdoc 656b42c139c47ca59127a78a28ebc4013c8e3ebe94cc9cec8eea6871b251fe43n/a Heodo
2020-07-30REP_69875612231782110870584.docdoc bdd27214237a8d3cb0df1c5a91967fb3d767427fe0eea2f8cfcb62357eb7490aVirustotal results 40.98%Heodo
2020-07-30FILE_PO_07302020EX.docdoc ccffd1057a0198494234050b71333c4cb0411d6c9fb3fdb730043076797c6fbcVirustotal results 40.98% Heodo
2020-07-30BAL_88872001.docdoc c339ede6e08cef35a2de6c05bc44080a8944c3c0e50339ae6d2b06ff62228271Virustotal results 40.68%Heodo
2020-07-30BAL_658448580435212640985.docdoc 07e19f3c256981e488d086f48552ee93a5b7d9148744edc670f477090ecfd5fcn/aHeodo
2020-07-30PO_07302020EX.docdoc f69221bcda2041011a5346b30da22aac2af5ed52c961455f6529339faa519dbcVirustotal results 40.98% Heodo
2020-07-30INV_8745391845329901320661.docdoc 4aba2e5191d8c4ecb8bd1d24c7032629caa3eb84c7d1399b103f99ac43c00f7bn/a Heodo
2020-07-30FILE_IN2718662299DU.docdoc 83df298646a7ee7eb341e606b340fd4daf3c0bc2e3d1f7003509e9cf2a155616n/a Heodo
2020-07-30FR8500025730SD.docdoc e65bf031ca1679654f9dc89f8d43700e1f7275c339d42af6a4949ac6c09e164an/a Heodo
2020-07-30FILE_ZU4LIGCT7WHL1E.docdoc 2f1e2f2767886fed37bb61193311891ebb7362ac00bd34f476cdc0993d19b684n/a Heodo
2020-07-30IK_KD5747350897MS.docdoc 4e037190e0798dbb95a301951d9cefeb18b9f7c0d901052a67f3180236b72bb5n/a Heodo
2020-07-30NG8249857356DH.docdoc 1d49701ceccc6042cc46c41059c60db46b84f72fe3fabd6c2b82c57ccd414a2aVirustotal results 46.67% Heodo
2020-07-30FILE_360052167412363337.docdoc 4cdedce9eaa2192b68d57d5362319c339f9efb5bb60d063a11500053b0a6dc2eVirustotal results 45.90% Heodo
2020-07-30PO_07302020EX.docdoc a3e3e8da6025ad93ee1a84c515fe80351cc08ea4a60620f29b4cd6cc65b5387fn/a Heodo
2020-07-30REP_HD7883678251SY.docdoc 58709937c440d305885ec78dd0d81474d0b7f7dfc086b6993eb31a7533ba9772n/a Heodo
2020-07-30FILE_DK7915562934LP.docdoc e6658dff38b4a88f8d04cdb4f0e14bd6247e293b3249d10e195679438b9c4070Virustotal results 45.90% Heodo
2020-07-30PO_07302020EX.docdoc 47e3d76a19b9abda5ec59103b5cca5343e385cc0275a9fd5ac33d72783df7414n/a Heodo
2020-07-30REP_UXE_070120_NCY_073020.docdoc 568a3b66c5e56943b94209538611760724eda41b9542a6e71073be04700fc5d6Virustotal results 46.67% Heodo
2020-07-30X_PO_07302020EX.docdoc 2dfa11471ca3770cd8081933b8a4923f9596207beb3ecfb545a53a560d0221d3Virustotal results 45.90% Heodo
2020-07-3030726690.docdoc 1b92a9e2189e1b1570803509487d4403924054cea97919e4055becadf52a9b5an/a Heodo
2020-07-30REP_39637721.docdoc 8ef7719b6b5ea2d908bae174825539df09cc69ba74d699bac5a761711183a608n/a Heodo
2020-07-30PF8719648419QE.docdoc 4294b85b71c2cb58c3fc676a5c6fc1a5302b96fa35300a4982ff55394923eb4dn/a Heodo
2020-07-30B_35820713.docdoc 3d4c586c90603af996e127bcb99453ddf407b359560a3d2f08ec16e451f498e2Virustotal results 45.16% Heodo
2020-07-30DOC_L0LGI1QIF22GL.docdoc 84390b0c62fe199c631eafe739946719ae42dbac314d5e64d66023449ef31d56Virustotal results 45.90% Heodo
2020-07-30BAL_29701421.docdoc 7bd515184dd9fd061f1626220ff1cca98d3a58d71361419d9bdcf53fcba329bcn/a Heodo
2020-07-30FILE_PO_07302020EX.docdoc 28eb3047fa38f2e2070584d2220a5850c31525317b2fb592dbeaeb6144fa307aVirustotal results 45.90% Heodo
2020-07-30REP_8PHNPGC28NED.docdoc 1a1a9791fd0415f23c426b978142a6fb9f414b08fca4a722256b4987ff96bc48n/a Heodo
2020-07-30BAL_XBI_070120_FHY_073020.docdoc cb444ef66aef4efe1813b7eef8e709ae166850ac751cb4128bdb9755369e6a41Virustotal results 45.16% Heodo
2020-07-30X_PO_07302020EX.docdoc aedcc1a32e55afbbd9b9b4def9f545e76adb5f9b0df0313da66a6e648d43f460Virustotal results 44.26% Heodo
2020-07-30BAL_PO_07302020EX.docdoc 4300cf17a027ac75b787c42acdb0e19e2b952e682b9c28a831de36087a43a603Virustotal results 44.26% Heodo
2020-07-30INV_PO_07302020EX.docdoc 7b12e1367d2a858964b39836839735c8b68e56fb91c1995440f30972860c8c66Virustotal results 44.26% Heodo
2020-07-30BAL_PO_07302020EX.docdoc 704af909402caeff30d6ed6d6f47b5f0acb7e12008448c8a043f5a7d2aa08932Virustotal results 43.55% Heodo
2020-07-30INV_MPTC4E6SG3S.docdoc bc06aea71e46ed5e64ca7cf24f3b794f46b9371d1df13696a3dfe4096a3bb6acn/a Heodo
2020-07-2954564149.docdoc 9f24cc983664c7da981b5d2c77654b2324972813968bdd0a02a4307b4023038dVirustotal results 36.07% Heodo
2020-07-29TGSOF92.docdoc de26db90a47a147773f2f26730984929f9a89483907f77015ea5c5a20236183dn/a Heodo