URLhaus Database

You are currently viewing the URLhaus database entry for https://giantsinthesky.com/cgi-bin/sPeel/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:421988
URL: https://giantsinthesky.com/cgi-bin/sPeel/
URL Status:Offline
Host: giantsinthesky.com
Date added:2020-07-30 14:33:35 UTC
Last online:2020-10-12 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-30 14:34:03 UTC to google-cloud-compliance{at}google[dot]com)
Takedown time:2 months, 14 days, 2 hours, 29 minutes Bad (down since 2020-10-12 17:03:41 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-01invoice_936_881365.docdoc 56916942bc59a1ae0cc030beaf907b54631390e0a5fa7d75bce1f120df88d843Virustotal results 47.54%Heodo
2020-08-01invoicePPOM282801390.docdoc eb27a6f9f8b47add05c51b41c16bf4edcd4635ffc7857432f8df9cbd09f77978Virustotal results 47.46% Heodo
2020-08-01InvoiceCJW696960281140.docdoc f5063edcf32916070acfbc9278e53a73ef52d43169d165b04dd88fea5e75109fn/a Heodo
2020-08-01Invoice-ZJ7-0373124.docdoc 59fe059c7f944c657a41a53e8b2c462d7b2efdd8752d2b5db253a956aaca2950Virustotal results 46.77% Heodo
2020-08-01Inv_XJ37_665821.docdoc d2ad4662ecec9de8e762286aed287dd57ae7a9abe05aaf585b00df8416023a96Virustotal results 46.67% Heodo
2020-08-01INVOICE-KY32-1949668.docdoc 5501f723697b0f6c5eb89e873828133dc1b9f465321a797930c9a071d291fd18Virustotal results 46.67% Heodo
2020-08-01Inv BP6051 314757.docdoc e062d585af5bd255743517d4cfeea2f9619ed7a013981973f5e62e84cba556ddn/a Heodo
2020-08-01Invoice_BG5_7402760.docdoc 3313ffb88f8caf097099973a0b3621c3e20f101fc72c95b9d54f29026c272fa1Virustotal results 47.54% Heodo
2020-08-01invoice GWFB73 158263.docdoc f0f8fc1e5b217106feab3dd3060589f3f87760337747f52bef4de0cd6ddf298fVirustotal results 45.90% Heodo
2020-08-01Inv 61 241107155.docdoc 1cbf7f820a202aeac886022e7758273e6accb62389897c387b80b7aa711adf7dn/a Heodo
2020-07-31InvJM6809938681.docdoc 58716951590c1341ba410dd9f789899240e75b017604d8fc2d49e86f843fb389Virustotal results 46.67% Heodo
2020-07-31Inv FZD3499 819931984.docdoc 29a33547180f8a2c21bceb0424f9724b50dbdf57104000d4562a96c1c8a4f241Virustotal results 50.00% Heodo
2020-07-31INVOICE_UJN0348_3463927.docdoc e272cd40c1e1f839d797cbdfd1574d19a1cf68c11f47c04172e944d06ce6f525Virustotal results 46.77% Heodo
2020-07-31Invoice 06 8682856.docdoc 69574cf913cfd357b51a19e616dee5e675a28e3a397826f7fc4ec4d9c8ef61d9Virustotal results 46.77% Heodo
2020-07-31Inv 6107 7736727.docdoc 1489edcaeb77576b964e01c0afecd1d1d5ce35b05f335e4473be0fe3255e802fn/a Heodo
2020-07-31invoice NB7123 328573213.docdoc 7ad485f73ed801fe057ee89153970c59e3dd7331d317808f0f04c7a138d6aebcn/a Heodo
2020-07-31invoice-LBL95-812589218.docdoc c13e46d1796c767f42fcb0b83df4e4e8775ff207b91c3cc649a3fe3f4690a89fVirustotal results 49.15%Heodo
2020-07-31INVOICE_GO2109_98153990.docdoc be9580ee19139809910c67fa4e0f35bf76001f0fe80e6923b8ac0a4c6365555bVirustotal results 46.77% Heodo
2020-07-31invoiceC45570483.docdoc 604d8d4b25d82a9fa60525c21b4f7ff9f0edf0d00aea808ceef6bef8e9e4f4c5Virustotal results 49.18%Heodo
2020-07-31invoiceV790818335.docdoc 9420fbed8bbf98010e41a960a8bf2314eadd6423e12163e88553e78439867a83Virustotal results 45.90% Heodo
2020-07-31Inv_6299_0336470.docdoc 56e8a51e917d57655dd5612da8b9618280c29273e601c8628c787029996d1823Virustotal results 48.33% Heodo
2020-07-31Inv-WSOH1289-327907.docdoc f7188943259ba89e508eeffa4bd48ce022205b06f13e18944c59e419604dd722n/aHeodo
2020-07-31invoice-TWPC9486-14373141.docdoc 527f944dd4527a40856fb21937f1dae339f1e6a6b1b1fb1f3aaea15220d261e1Virustotal results 47.54% Heodo
2020-07-31InvoiceGNBZ113413916.docdoc 7d45b681bf88eb9dbaa17bc604d6aa7df3cfc0c3bfaed371a08d5c1805df192cVirustotal results 49.18% Heodo
2020-07-31Inv_1915_4675681.docdoc 541a2147a3dedf8a670a6f6db27757358e9762a15c2b2ab8f8aa7b384158cb76Virustotal results 47.54% Heodo
2020-07-31INVOICE-TTH5294-43346654.docdoc 2793dc7590ad4da3c118e4aac6a771ee48f213454bea29f708b1d4590fcf2ba8Virustotal results 46.67% Heodo
2020-07-31Inv_5793_64613080.docdoc 2ffaeb1accf696b047193a4fb4a47238f2a3b582415a75cade2bfe9b69982a2eVirustotal results 47.46% Heodo
2020-07-31Inv-VG4272-87390756.docdoc 1f67d01d996fcff5abb353bc5fbb354191d96c315d7341a680029f01573dac3fn/a Heodo
2020-07-31Inv-56-53984964.docdoc 80b42f3e3f2aa0e14a13b15336be50853898ab711533f01420be367c69d9911bVirustotal results 47.46%Heodo
2020-07-31InvoiceZK9301390265529.docdoc 1bbf1c280e0399776065e6c00e7ccc32e3dd3657069cf5d5f27ccda9a1e53d69Virustotal results 46.77% Heodo
2020-07-31INVOICE_I4_4484451.docdoc 4cb3ccb083a74daebfaa6b646b8294f70cebbba4515d8798b52a41cccde1c7a4Virustotal results 47.46% Heodo
2020-07-31INVOICE-E90-890187272.docdoc 99b43c6e14bfddc98c87cb9dc35cd89b59a2797e8893f5005eb0868226027f35Virustotal results 46.55% Heodo
2020-07-31invoice-NFAZ1-33117415.docdoc bdfb558047f777f0a0fb66e81bab1d2eefe9a0041a72d203b52456717f30a594Virustotal results 44.26% Heodo
2020-07-31INVOICE-UBTT2013-83926928.docdoc eb06e5d66d21212c7eb73e44c67b0748a034545ff7a5127eba4ca016692e4786Virustotal results 45.76% Heodo
2020-07-31Inv-O989-7094523.docdoc b6437e7882339828ef75527bacda816301bc6b0ecbbcaaf400f830755039670fn/a Heodo
2020-07-31Invoice-KWUT50-998819.docdoc 3d8ef147ca84e9943fdc850171e2de9c05b0db3472cd05901e4f109e7fbe07f1Virustotal results 50.85%Heodo
2020-07-31invoice-BUWD35-230246.docdoc 24faef0a3c46f8fdf60a5fff6f323ebd01a0365dde63a55a242ecfa0455183baVirustotal results 50.82% Heodo
2020-07-31INVOICE-OBF4057 49687763.docdoc 98736475243073034ab4507eda664966af3cc2025cc4f026364550e1fb270661Virustotal results 50.85% Heodo
2020-07-31INVOICE-K90-251675571.docdoc 827eecd054568042195e3bed4c9cdcd3eb86ca980121b857adde7040a6ad1a4fn/a Heodo
2020-07-31InvB0855-869350.docdoc f554d67a1bac2a6fc64ec282706c416190d555857ddf80e8b243366b8b738987n/a Heodo
2020-07-31Inv_CGD028{:REGEX:.docdoc 9d87ada7dcb70d012d66826ec3f4f26a2f853edce07b15282c119048283a80edVirustotal results 50.00% Heodo
2020-07-31InvU9-7152770.docdoc b6ffa6767e3b7c53645dc329280108bc5145c28514aad30f28d9b628bb3bed9dn/a Heodo
2020-07-31Inv-N9{:REGEX:.docdoc 8e95611645644103d2ab67a6ecba315228abcad85d986852783b1af75477a63dn/a Heodo
2020-07-31Inv-EWY8-714964710.docdoc a66c8b3ac71836a695c8b180ad8ef6721bbfa4a1ab53b4979fd851ea6bce0908n/a Heodo
2020-07-31Inv-G754_601801.docdoc 105f7c3a68f898a8605a251f25363f508285b8d32b8d6fd1f1e00565dcb4e3fcVirustotal results 50.82% Heodo
2020-07-31InvZC67_921460.docdoc ea4ec66d739ec6c93a0e5890743a01a5283b804889147308ba45d35ee1f2247dn/a Heodo
2020-07-31Inv E9_324196930.docdoc 2239e9dfea333b691ad7931b2f663ce27192aa0bfe9b4c7112e98eeddc00ae38Virustotal results 51.67% Heodo
2020-07-31Inv-EG339-910142888.docdoc a766fc0e20a4f8cbf281aef6bb29f7a20a937044d7fd4e008c1097cf266c24beVirustotal results 50.85% Heodo
2020-07-30invoice KAN9-8326500.docdoc 69f262e3d8a1665878527a0ce7ff0580243687e2802bcad1f7499eeadc4fa87aVirustotal results 50.82% Heodo
2020-07-30InvoiceUU47-584414441.docdoc 03ed835379b767b87a9892d1cf794cab0472025887c37ab437b2710e72f37e3fVirustotal results 50.00% Heodo
2020-07-30InvoiceFKLG2-040441.docdoc 881c5ef2385626accbec7572c0b5c5b5cdff760f61e1bb044546983d6c3fbdc4Virustotal results 50.00% Heodo
2020-07-30Invoice-GPS0 29653223.docdoc baef0f6a498331d648f442e8851509d8e91245685e215ae6beb917e8d4a9980cVirustotal results 52.54% Heodo
2020-07-30invoice-MMK4106-1278966.docdoc 1c8026d6bd75a1ea091d6a6676d3a7e3bcba3b17717e21607488b9fdb762fba7Virustotal results 49.18%Heodo
2020-07-30invoice-LV8{:REGEX:.docdoc cda0d1231d25f6de9ae03e882b92a3a972757c980227e6e7dd27fffd5be031f4Virustotal results 48.33% Heodo
2020-07-30invoiceCOPM71-49090930.docdoc a4fbb0aaf18ce158238577166a697fa8d6376423a47673cb7ed648f5e75deafbVirustotal results 48.33% Heodo
2020-07-30INVOICE 9263_90377414.docdoc 52691b50fd1782c263475605457adee2a627cba16fa7d31be51259e41f6a7ff7Virustotal results 48.33% Heodo
2020-07-30InvRWG9-1307638.docdoc 8c9e45486e237d3a93fe2fb374ca8fd519f832929a7b631b86216680c4a4b0a1Virustotal results 47.54% Heodo
2020-07-30INVOICE-HEYV42{:REGEX:.docdoc 01663b94d847370d937c017344092fb204b3fef3bca2c0d26c9f49ebac946525n/a Heodo
2020-07-30Inv-VCYY76-90047150.docdoc 780b3f3f5e407a4aab5ab78b0cdc4c76bce67d3e2383fb03dc140e846a10e74eVirustotal results 47.54% Heodo
2020-07-30invoice-JRZ1203-731008589.docdoc e7d8f9aceb88da8c27d24215af0596edea832ed8ad060f42af5fd8faf0292fc8n/a Heodo
2020-07-30INVOICE_VTEU5_913669876.docdoc 189cc6493c108633c47949f3eb888010e9adafadd6e71b0aa7115430d49258f5Virustotal results 48.33% Heodo
2020-07-30Invoice_Q80-82995632.docdoc 31ea9b096c8aa974cdbd195aebcc9f2691ca5c1fbd8390592967eb22d19d1e4eVirustotal results 47.54% Heodo
2020-07-30INVOICE SF2880-83063238.docdoc 5f8b9d0c8b209dc485dfd1ffe23cc79030dd096d3c991c15315b6c2f0ef30c31Virustotal results 47.54% Heodo
2020-07-30invoice_790{:REGEX:.docdoc d7ddeb76f38f0832acc1fc181ab104abb4c0e329c167f5f38a7b89a9947971fdn/a Heodo
2020-07-30invoice WZE2135 67867523.docdoc 31401e4b72b7965c18197d19cd790dea36e6ff77e50a5f7410c7252228444c0dn/a Heodo
2020-07-30Inv RW601 19725295.docdoc dbc64153efaed9d70d1daa4c4099f517617754890fa39854eeefd1fa0e595625Virustotal results 44.83% Heodo
2020-07-30invoice WN4996_27526380.docdoc 3680cd9e4a6dc09bd0e3b635bb2daa987417d060d6e27d4b84de08a466dc3c65n/a Heodo
2020-07-30Inv-NNXG8-15820435.docdoc 57cd3c6667afd66293fe85bc6632764caa8217677ecf64f34c72677367fd9472Virustotal results 46.67%Heodo