URLhaus Database

You are currently viewing the URLhaus database entry for http://flgmedia.nl/cgi-bin/oqMpggkKy/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:421644
URL: http://flgmedia.nl/cgi-bin/oqMpggkKy/
URL Status:Offline
Host: flgmedia.nl
Date added:2020-07-29 19:49:04 UTC
Last online:2020-12-02 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-29 19:50:02 UTC to abuse{at}axc[dot]eu)
Takedown time:4 months, 5 days, 14 hours, 41 minutes Bad (down since 2020-12-02 10:31:09 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-31Inv_H6_271352.docdoc cf43177e4d135756dfaf8e8d7aede3e7cad58a325bae51173fa0a409a5d5d493Virustotal results 46.77%Heodo
2020-07-31INVOICEBI03-931275613.docdoc 3d8ef147ca84e9943fdc850171e2de9c05b0db3472cd05901e4f109e7fbe07f1Virustotal results 50.85%Heodo
2020-07-31Invoice-MW3089{:REGEX:.docdoc 24faef0a3c46f8fdf60a5fff6f323ebd01a0365dde63a55a242ecfa0455183baVirustotal results 50.82% Heodo
2020-07-31Inv_7-272458088.docdoc 0154af8049b8a7ec498151777f31d6e971c61bdfc439fe1a8150ad0f69c0e4f8Virustotal results 50.00% Heodo
2020-07-31invoice 180_7928560.docdoc 5399417505ae67bdc2253943f273fe2b69fcdb71294530cbfe0cbe731a251b48Virustotal results 50.00% Heodo
2020-07-31Inv JBRI33{:REGEX:.docdoc e3b83c00a51a401c88f8ab7d52dbee1d71b7a843fdfe5c2a6f3b76464efd77b2Virustotal results 50.00% Heodo
2020-07-31invoice-TTYC030-07738415.docdoc eae169c0ec808dcf097bfd419bae07e5c001b1157d781d90b037250ea07fd4bcVirustotal results 50.85% Heodo
2020-07-31invoice_ZUGN50-481274340.docdoc 09d8024f4904f92b615ceabf3c50d048d8600e410bd728c5ca6a09f15ac8d0aaVirustotal results 51.72% Heodo
2020-07-31invoice PKWZ5527_14784077.docdoc 1e253d59d5ef3aaf08431b406cd5c024476603459b847f6b40dd0f86827492c1n/a Heodo
2020-07-31Inv-MBNQ0-1931441.docdoc c8e498b47aef6cfa8fe5259b40faf397127d496992e126c2f4f6026f7945813bn/a Heodo
2020-07-31Inv_ANKV567-1833449.docdoc 105f7c3a68f898a8605a251f25363f508285b8d32b8d6fd1f1e00565dcb4e3fcVirustotal results 50.82% Heodo
2020-07-31INVOICET43_44396652.docdoc 4f8f6304215b6672eb28a000d84a4476f5a323270f08606b2970f38293051d21Virustotal results 50.00% Heodo
2020-07-31INVOICE_GUT3-0811837.docdoc 2a378624ddc963eca6688d3c25bec4bc7637de2153e1f23f594622a03f6e600dVirustotal results 50.00% Heodo
2020-07-31Inv_HN671_467393.docdoc 2789d1d3eea1e5dcb760faf9bbf395f267ec901bc7c52a67ae60133050897609Virustotal results 50.00% Heodo
2020-07-30INVOICELQ643_48386191.docdoc 2e24bcec136a5b896e730820974bfa9162575d275b2ee669ece097f7b195e4f7n/aHeodo
2020-07-30INVOICE-NZS90_504395.docdoc f2e5dfabe9cc22bc5f4995c900e073bcf2219dd18413aa69a7d1148fb6257585Virustotal results 50.82% Heodo
2020-07-30INVOICE-5491-233567448.docdoc 881c5ef2385626accbec7572c0b5c5b5cdff760f61e1bb044546983d6c3fbdc4Virustotal results 50.00% Heodo
2020-07-30InvoiceL5{:REGEX:.docdoc baef0f6a498331d648f442e8851509d8e91245685e215ae6beb917e8d4a9980cVirustotal results 52.54% Heodo
2020-07-30INVOICE-DCBZ9769-4976852.docdoc 1c8026d6bd75a1ea091d6a6676d3a7e3bcba3b17717e21607488b9fdb762fba7Virustotal results 49.18%Heodo
2020-07-30Invoice YVXZ68-36059739.docdoc eb0c42082f911cdcef8ef582fb3b24067cb2825910839bc6f4b1a4ddf20fbe5bn/a Heodo
2020-07-30INVOICE555 2885087.docdoc c88f76b9652dbc11087aa8190c0221e871fc1cbda0349c84fa8c9ca161aa970dVirustotal results 48.33% Heodo
2020-07-30invoice-PCNY8_6037744.docdoc 73893811ca278a3dd0be7d512b791be9de0331c3fc6c82c42026a4f4cffe2481Virustotal results 47.54% Heodo
2020-07-30Inv-AC0861 460316508.docdoc 8c9e45486e237d3a93fe2fb374ca8fd519f832929a7b631b86216680c4a4b0a1Virustotal results 46.67% Heodo
2020-07-30InvG4521-219574.docdoc 51682dedcd5cda1816739d9e393c40b2027e2834ffbaed1f4b3d25c786063c87Virustotal results 48.33% Heodo
2020-07-30Inv-KTV7829-3776634.docdoc 50a9515bccff228f5546f9fb72d0dccc6e8beef5827a8f9c09da0eee89a79872Virustotal results 47.54% Heodo
2020-07-30Inv-Y6_7017932.docdoc 22a4985e60204df157cd134ac6049f1137b57ee8577d5603c23a829c574d4a36Virustotal results 48.33% Heodo
2020-07-30INVOICE-DQS253{:REGEX:.docdoc 189cc6493c108633c47949f3eb888010e9adafadd6e71b0aa7115430d49258f5Virustotal results 48.33% Heodo
2020-07-30Inv-TN3 019268560.docdoc 6c3a08adeeec901334591683b81c83d788d410f88bf645a4a63b65efef289fc3Virustotal results 48.33% Heodo
2020-07-30Invoice_WYWQ8390{:REGEX:.docdoc 5f8b9d0c8b209dc485dfd1ffe23cc79030dd096d3c991c15315b6c2f0ef30c31Virustotal results 47.54% Heodo
2020-07-30Inv_VCM524{:REGEX:.docdoc d7ddeb76f38f0832acc1fc181ab104abb4c0e329c167f5f38a7b89a9947971fdn/a Heodo
2020-07-30Inv P6941-415534476.docdoc 31401e4b72b7965c18197d19cd790dea36e6ff77e50a5f7410c7252228444c0dVirustotal results 43.33% Heodo
2020-07-30Invoice 6283-761279.docdoc dbc64153efaed9d70d1daa4c4099f517617754890fa39854eeefd1fa0e595625Virustotal results 44.83% Heodo
2020-07-30INVOICE-6762 0534172.docdoc 57cd3c6667afd66293fe85bc6632764caa8217677ecf64f34c72677367fd9472Virustotal results 46.67%Heodo
2020-07-30INVOICEDJUV0740{:REGEX:.docdoc 1b6fd0e9210a891184b54f0482b18998204e81b7c6a03338edb3811eb2701fd3n/a Heodo
2020-07-30Invoice_Q9445-7912758.docdoc d5e683bc9100707b2b436154f75ca6d12da1dffacd10cc3283038f2d585bb46an/a Heodo
2020-07-30Inv-FHI4{:REGEX:.docdoc 94d0324718bb0a1ed17ac390c85e2c5a9447a07fea4a306c0c7e90ea3e12b76cn/aHeodo
2020-07-30Invoice BG550{:REGEX:.docdoc 8fa0505ff1b7a860ab423d947231b6b2e59abe2a4d99fd134688da5aecd4d8b5Virustotal results 41.67% Heodo
2020-07-30invoice-ACO9 249343660.docdoc 5ca7df9652c174fa070ebdc2b1263f810337126a04456f83e8d07cb4e84cce8bVirustotal results 40.00% Heodo
2020-07-30INVOICE-HBW4-528995.docdoc 4a0c2b7ffc018049812893fc6ba973b212567e436a794f9fde50207835be9d0cn/a Heodo
2020-07-30invoiceQDN3021 952259601.docdoc 3fdf511a0d2c49b47501b1ad0fd526b54177eff88f86952a9478c8168abd10b3Virustotal results 40.98% Heodo
2020-07-30Invoice-V848_0123487.docdoc e2e2fd5cc922704c18bed115a20bf312ee2e168c4bc30af07f8e8ec603cd641an/a Heodo
2020-07-30invoice0_95418178.docdoc f989c047bbb3d6e7dd9b1c55e9c4d24d52fb50fd7d12048f44417f46227b9921n/aHeodo
2020-07-30InvDV79-30550060.docdoc 9d5e80345bca0f052faf183924106f9a155eafd9ebf9d09de2d82de4c35830c7Virustotal results 40.00% Heodo
2020-07-30INVOICE-II063-014294.docdoc 84f1793acc6d7c229aed03c0334fcb223eb89415c1d96b08822e988c1a5652afVirustotal results 45.90%Heodo
2020-07-30Invoice_3_24678891.docdoc 3980b3c64b365eb4dce87ace89c466f152864cc81b41970be1311add9b7c7cf6Virustotal results 46.67% Heodo
2020-07-30invoice_SJAW06_16297208.docdoc f4d52208d0fd2707e843bf4a52e06c7fde9a9f0d8098e5915ad4ab18a7234e01Virustotal results 45.16% Heodo
2020-07-30Inv-GXA088 086041975.docdoc c99f367eba08850d6a62e56f9957b44656cba498c67bd78b284d5fafa7bff959Virustotal results 45.16% Heodo
2020-07-30invoice-3682-824431666.docdoc defbc71abc6fcf7ba2d84338e76c981c5c99069f176153d294ba240d6f598b10Virustotal results 46.67% Heodo
2020-07-30INVOICE-AOZ65-101056.docdoc a39a69a66a72856a5655250505b59571f6ecf882f464f546de14ad20ae9c5bfdVirustotal results 46.67% Heodo
2020-07-30INVOICE-9647_35389164.docdoc a99c7d681efd2f154e47e585cda75103f5e9abbffee3f7e86dc9da37260624ddVirustotal results 46.67%Heodo
2020-07-30invoice-N5471-7206542.docdoc 4f2ac897eb8a71c9f2e1fe0299c615ad0d8a0dbd7b9e08d89bd6e0dde86e1caaVirustotal results 45.90% Heodo
2020-07-30Inv-7283{:REGEX:.docdoc 410fc3586735016b4a85f730247561c37c51d8887f07200730fe831c5fd58324Virustotal results 46.67% Heodo
2020-07-30Inv_CCCO5-1675833.docdoc 446037ce81d186fd02bf65e0c330850203c818bce8a72d542cd61fb1f12c7467Virustotal results 45.90% Heodo
2020-07-30InvXFBB58{:REGEX:.docdoc 88a8cc5f762749790bd0cf686c79950ba34466fad7753f87b86a7c94a4ea6e8cn/a Heodo
2020-07-30Invoice-PIK77-53592931.docdoc edffc299063e343351d529e84129e771c7c6e2b1894d86ebc91c78d0bad815c8Virustotal results 45.16%Heodo
2020-07-30invoice_XL10{:REGEX:.docdoc c9014beaea9142158349ccc46c86a73d289d55d17cfa3c02669b26b00aa9faa3n/a Heodo
2020-07-30InvIW8-62094016.docdoc 55d0bd650e90d7bfb5b9af758688a4006db13679c53d8197e81f03701fbf52f1Virustotal results 45.16% Heodo
2020-07-30invoice-SCA37-537522252.docdoc 4ff286a06a66c0c8d7c44bbb7c1be4363222a33701847a86402bce22e085889dn/a Heodo
2020-07-30Inv-HKMM1{:REGEX:.docdoc d5a5e07b856fa95bb954729db5a02b3415dd89b0be6048cc7d0e3f0a8afd89f7Virustotal results 46.67% Heodo
2020-07-30Inv-BGY865 12718600.docdoc 412fb57e72ba6ac81ae2808528e48e74eff28cccc8244172b6755b864b86b3fcVirustotal results 45.90% Heodo
2020-07-30invoiceQPK7744_841686981.docdoc 28ad746a87c186873fd8d644a8ca704b9768959c1d8cc780bbd1e4fcec07256cn/aHeodo
2020-07-30INVOICEZRZ771 181553.docdoc e039f53c75e931e700cbcafe41ac39dfd4673929f7f2cf333a2f722272fd240fn/a Heodo
2020-07-30invoiceF5_746002.docdoc cf7363d569abe51412e602a505dbb2d3604aaf97ee7c71db42e66b09224dce54Virustotal results 44.26%Heodo
2020-07-30Invoice-BLQ6-135301099.docdoc db24098d6bd41dec460588297f00255c409f745bbe32faaf2cb6476fd44ee504Virustotal results 44.26% Heodo
2020-07-30invoice-899_073485.docdoc 72244c8748d1f0b37e10ef8b0f5be0624ea7ac975aa1214281b4f326e6b2f4b2Virustotal results 45.00% Heodo
2020-07-29Invoice-YT548{:REGEX:.docdoc 9682cb3fed20b168899452201908168de9b2c2d82530d7227a4474b8b2587eb8Virustotal results 43.55%Heodo
2020-07-29INVOICE-TX971-15257055.docdoc 40a19219a853bbc60201d4cd4fc226bcdda0966f87f05dda562d113d65c8ce67Virustotal results 43.55% Heodo
2020-07-29Invoice-AR30_3959081.docdoc 81d3e8f15ad09342186fbe8b601f63c809fd415ee1c5cb4b739fb3ab7a47b99dVirustotal results 43.55% Heodo
2020-07-29INVOICE FEG1_25022209.docdoc b6eb1c7760e06c0bf914bc6f8d26d4aa98a1d859d71fed9d6712db95af81f5f0Virustotal results 44.26% Heodo
2020-07-29INVOICE_M615-52954948.docdoc bab24985fa20dca7f015976c0212909f59429d181ee874074692fa835b0f604cVirustotal results 36.67% Heodo
2020-07-29INVOICE-SMZU9696 69562425.docdoc 4e5402409bed2c6052e6cfb0cd998f3b88be85d561edff6ee16212a4df9d844aVirustotal results 34.92% Heodo
2020-07-29InvF983-481445.docdoc 0538723c17579616d35fe643f326b6b5b81319f1e5081079bef5cfc6cc2eefc3Virustotal results 36.07% Heodo
2020-07-29invoice-XH9-2618200.docdoc 42d013d9cce79a7e86da79f6dd3d25b04f8460636e45c85ec23d1a962173f389Virustotal results 35.48% Heodo
2020-07-29Inv_A4-85611771.docdoc b53bfce0fb25f92e551df784022a466f5b5d774067925f44ccf6e8af8acfc7fbn/a Heodo
2020-07-29invoice Y8{:REGEX:.docdoc 2a178649b3301b5f81622dac20cf41286c1a23d07f45e13eb923d9463304b9deVirustotal results 35.48% Heodo
2020-07-29InvoiceJVLH7-52820952.docdoc c9908873e05408d13895e8545fd5b9e3eb95032f5e363086b19e6a14a8ed7075Virustotal results 35.48% Heodo
2020-07-29INVOICE-1196_718591497.docdoc b89081c455fac3caa56d78c349d618b89eb1609afa9a3aa07d7ce714942282b0Virustotal results 35.48% Heodo
2020-07-29invoice_ZJ87-12994015.docdoc d0392665de57ca6f6171156030c410da29aac3e3c5194645657cfdf4fb591602n/a Heodo