URLhaus Database

You are currently viewing the URLhaus database entry for http://kecsfila.hu/wp-admin/3j-0wr-000/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:422119
URL: http://kecsfila.hu/wp-admin/3j-0wr-000/
URL Status:Offline
Host: kecsfila.hu
Date added:2020-07-30 17:52:06 UTC
Last online:2020-09-01 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-30 17:54:02 UTC to abuse{at}ezit[dot]hu)
Takedown time:1 month, 2 days, 22 hours, 58 minutes Bad (down since 2020-09-01 16:52:57 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-01Invoice EN10 275292.docdoc 56916942bc59a1ae0cc030beaf907b54631390e0a5fa7d75bce1f120df88d843Virustotal results 47.54%Heodo
2020-08-01InvIW064491028684.docdoc ec39e7db8df5d0c11991de7b6482accdc4ceb42d31613c528ed2529bcd6c7312Virustotal results 47.54% Heodo
2020-08-01Invoice-E173-24010659.docdoc 03f865c1fac57f3139c7e31396f64b101ebcffaa628670618d90b51e8330cfe6Virustotal results 46.67% Heodo
2020-08-01Inv-DW6-288080.docdoc 36a5f87339ba5032f9043c7785d613f0731fc93ae382bb6b942fc80e8bc48273n/a Heodo
2020-08-01INVOICE-H250-213688025.docdoc d2ad4662ecec9de8e762286aed287dd57ae7a9abe05aaf585b00df8416023a96Virustotal results 46.67% Heodo
2020-08-01Inv_HQZ8431_0040872.docdoc 0edc41fd088f48b17e2973ac0829450471ae1248f91900fe0957437ed9013869Virustotal results 47.54% Heodo
2020-08-01Inv-BEEX75-405148.docdoc 56764b6f66de3b045860f5398b4fb8f24c11ca8d959231a6b0f63d82626f5a55Virustotal results 46.77% Heodo
2020-08-01Inv-J1-806867.docdoc 9c5c1bee4606b2c97cee791d6f2b38ea95546db0d5f9602a1ddc2e6f1db14ab8n/a Heodo
2020-08-01Inv-MDMR3636-39199913.docdoc d52a1de110730672fa2b272977caf41a8d511f9a9f8194bd5ac999635ecacea4n/a Heodo
2020-08-01invoice GBLC2925 34876723.docdoc 8a3527868ae086f48fd41f40545528717f6c347ef9079185dfd12bdd868c1ce5Virustotal results 46.67% Heodo
2020-07-31InvoiceLWU933964013708.docdoc 58716951590c1341ba410dd9f789899240e75b017604d8fc2d49e86f843fb389Virustotal results 46.67% Heodo
2020-07-31Invoice-SV3789-294298667.docdoc 98bcb2ea3965ab54d83d37dc001cb794fc016a878fc258d93b5c9dce2a0acf1fn/a Heodo
2020-07-31INVOICEGB619574301.docdoc 29a33547180f8a2c21bceb0424f9724b50dbdf57104000d4562a96c1c8a4f241Virustotal results 50.00% Heodo
2020-07-31invoiceA007393331327.docdoc e272cd40c1e1f839d797cbdfd1574d19a1cf68c11f47c04172e944d06ce6f525Virustotal results 46.77% Heodo
2020-07-31Invoice-UMLJ4747-446907.docdoc 69574cf913cfd357b51a19e616dee5e675a28e3a397826f7fc4ec4d9c8ef61d9Virustotal results 46.77% Heodo
2020-07-31INVOICE_SK6556_1990428.docdoc 82f66c193d7173ff1ec37541b164e439d718c7373c9bd502fe6e4100ec864816Virustotal results 47.54% Heodo
2020-07-31INVOICEYT64907546.docdoc e076d0f5b66aa9c4442644383fe20614627a9b2c321a2a943a2ab1165e9c8864Virustotal results 46.77%Heodo
2020-07-31invoice-A9-79345096.docdoc dbafbce64f173ad155eb18074350bc12d957bc71528b59415c94fd0cf35ac8bdVirustotal results 47.54% Heodo
2020-07-31invoice-4-633795.docdoc c13e46d1796c767f42fcb0b83df4e4e8775ff207b91c3cc649a3fe3f4690a89fVirustotal results 49.15%Heodo
2020-07-31Inv-J5086-391146.docdoc 90cf710734cf6dbbb39b138dfb1edd67ac308fe77cd9d0c8a7afbde0c1530000Virustotal results 47.54% Heodo
2020-07-31invoice-HATA2501-764047.docdoc d9df9c11966105eb6d7c6e8755e2efb6ea5fd54974fff23d390396b8ee1c746fn/a Heodo
2020-07-31Invoice-RRJN1-233202615.docdoc 604d8d4b25d82a9fa60525c21b4f7ff9f0edf0d00aea808ceef6bef8e9e4f4c5Virustotal results 49.18%Heodo
2020-07-31invoice-TDCO13-52063254.docdoc d435dd55cb5ac574d2109b9052330650fb4c355ff4cb2533077281558e7d4de9Virustotal results 46.03%Heodo
2020-07-31INVOICE-9633-993162.docdoc 56e8a51e917d57655dd5612da8b9618280c29273e601c8628c787029996d1823Virustotal results 48.33% Heodo
2020-07-31Invoice WUPI234 8100577.docdoc f7188943259ba89e508eeffa4bd48ce022205b06f13e18944c59e419604dd722n/aHeodo
2020-07-31InvNDMV0787300640.docdoc d4c0573790c2e02c30dc3ef6e219a26840751e18de0537fb023782af9db88116Virustotal results 47.54% Heodo
2020-07-31Inv-JDM334-3557668.docdoc 015ea078c5fd0a7e7358750b113536aa28746f179954e4c37e6185b99888c39dVirustotal results 46.77% Heodo
2020-07-31Invoice_9478_9857815.docdoc 8d668df833984a5c527237ca2ab0cafd0d9358925912ce0c64cfb8fb749d09f8Virustotal results 47.54% Heodo
2020-07-31Inv N111 025928104.docdoc 2793dc7590ad4da3c118e4aac6a771ee48f213454bea29f708b1d4590fcf2ba8Virustotal results 46.67% Heodo
2020-07-31Inv N111 025928104.docdoc 2793dc7590ad4da3c118e4aac6a771ee48f213454bea29f708b1d4590fcf2ba8Virustotal results 46.67% Heodo
2020-07-31Inv-1-03455846.docdoc 286e883e3fd7042dd61a284aafd1bb8cf55e274a5a5cae78da6f6c2e8084a24bVirustotal results 45.76% Heodo
2020-07-31Inv5571192983.docdoc 946cd2d84da75bc5bec22111b5edc5dc80f8cdfbc8ab53dc8a71b23999fb4565Virustotal results 47.46% Heodo
2020-07-31InvD82088843720.docdoc 5e3e4c0db013c193ec0fc613f3e0876bd36a6ba53ce477f2b989f8732f645dd7Virustotal results 46.67% Heodo
2020-07-31INVOICE-NC1-480106084.docdoc 1610113eacc5e61b5d26ffd007e56edd58fc824c44c0c235f6f8f434acc125deVirustotal results 47.54% Heodo
2020-07-31Inv-FK12-05704257.docdoc f38d973c25ff2fc00109ee8ed445e3bdaf3fcaeff6db54b863ad025a9104ae24Virustotal results 49.15% Heodo
2020-07-31INVOICE 7952 653879.docdoc 7edd2fb2647b744d19d23b98e6d7a3153179747d89b67194968d70182b856e73Virustotal results 45.90% Heodo
2020-07-31Invoice-ZS607-972959866.docdoc 8f73071e0edbc9813f45554df26b3414e3650b0982700c2ddae27bc950c10d08Virustotal results 45.00%Heodo
2020-07-31invoice RSB80 013411.docdoc e8960fed4c714be347182294b90b9fc936d842241905fe3e4376bf7c904b6b1eVirustotal results 45.76% Heodo
2020-07-31Invoice GSQP26 739580.docdoc ffcca6f9140c3ff0a3f0e0b888148ebf2d55a3ccfa54636106362ea6f9045f0cVirustotal results 44.07% Heodo
2020-07-31Inv-V6450-3957588.docdoc 3d8ef147ca84e9943fdc850171e2de9c05b0db3472cd05901e4f109e7fbe07f1Virustotal results 50.85%Heodo
2020-07-31Invoice-RP3_148520.docdoc e8a903f056113a98d231154bc328a622bbfb223b254566bf332fced41f6fffd3n/a Heodo
2020-07-31Invoice_UWL455 986551408.docdoc 0154af8049b8a7ec498151777f31d6e971c61bdfc439fe1a8150ad0f69c0e4f8Virustotal results 50.00% Heodo
2020-07-31Invoice_9-36090367.docdoc 5399417505ae67bdc2253943f273fe2b69fcdb71294530cbfe0cbe731a251b48Virustotal results 50.00% Heodo
2020-07-31invoice0379{:REGEX:.docdoc c8586306addfc533e0c3ee2c72a3a19e28d38b0e41207d72632708e52ee965abn/a Heodo
2020-07-31INVOICE 59-356019827.docdoc eae169c0ec808dcf097bfd419bae07e5c001b1157d781d90b037250ea07fd4bcVirustotal results 50.85% Heodo
2020-07-31invoice-ZRP26-353228499.docdoc 09d8024f4904f92b615ceabf3c50d048d8600e410bd728c5ca6a09f15ac8d0aaVirustotal results 51.72% Heodo
2020-07-31Inv_3 9991630.docdoc 48c0326e786deae1ebf50df4773916c79325d15261708cccbc89d2421c639729n/a Heodo
2020-07-31invoice HS68{:REGEX:.docdoc dcfb38249b589a264dd4ce2c25853335f1399685fcd68d68c337f308d110a793Virustotal results 50.00% Heodo
2020-07-31invoice DLJZ0-696643566.docdoc cee085d16cb1dec28ff7ef5bd5399111ba8a5e26623b17902866e886144c228fVirustotal results 50.85% Heodo
2020-07-31INVOICE ZNK8488-06791609.docdoc 468c03e5514c45db80f93d359506f99bcdc95812e5e37680b531dd2fd1cba7f2Virustotal results 50.85% Heodo
2020-07-31Invoice-Y88-51147325.docdoc 2a378624ddc963eca6688d3c25bec4bc7637de2153e1f23f594622a03f6e600dVirustotal results 50.00% Heodo
2020-07-31invoiceQU363-8853855.docdoc 2789d1d3eea1e5dcb760faf9bbf395f267ec901bc7c52a67ae60133050897609Virustotal results 50.00% Heodo
2020-07-30InvoiceMC241-768353.docdoc e42656550ed8d746cb8b453d28e1ca374da03e76bdf6b65633f3b1bedd1e051cVirustotal results 50.82% Heodo
2020-07-30Invoice 2361{:REGEX:.docdoc 213e581104ed3930497515d2be67c1c61a9ab1060474d3e43986aff52b418099Virustotal results 51.67% Heodo
2020-07-30INVOICE-RTA70 039465859.docdoc 5ae9df4be21b3400965fc280ee49768b7e00b21fde24a904ece809bfa5c19491Virustotal results 50.00% Heodo
2020-07-30Invoice-JF0530-4264746.docdoc f2bef647cf5f376c3807d6693d2fcf28cd42e71629fb0cd64847604a0e189081Virustotal results 51.67% Heodo
2020-07-30Inv-FKK1678-4878436.docdoc 1c8026d6bd75a1ea091d6a6676d3a7e3bcba3b17717e21607488b9fdb762fba7Virustotal results 49.18%Heodo
2020-07-30Inv-481-807841561.docdoc cda0d1231d25f6de9ae03e882b92a3a972757c980227e6e7dd27fffd5be031f4Virustotal results 48.33% Heodo
2020-07-30Inv-H8820{:REGEX:.docdoc c88f76b9652dbc11087aa8190c0221e871fc1cbda0349c84fa8c9ca161aa970dVirustotal results 48.33% Heodo
2020-07-30invoice_GUA8712{:REGEX:.docdoc 73893811ca278a3dd0be7d512b791be9de0331c3fc6c82c42026a4f4cffe2481Virustotal results 47.54% Heodo
2020-07-30invoice OYND282_60818111.docdoc 8c9e45486e237d3a93fe2fb374ca8fd519f832929a7b631b86216680c4a4b0a1Virustotal results 47.54% Heodo
2020-07-30invoice-NALJ0192_560193.docdoc 7665d79477a1e1966a49e25359887369ae15fd783cd253c612a3c90b605072a9n/a Heodo
2020-07-30Inv-QYB41_757731654.docdoc 50a9515bccff228f5546f9fb72d0dccc6e8beef5827a8f9c09da0eee89a79872Virustotal results 47.54% Heodo
2020-07-30Invoice-FCP859-733196.docdoc e7d8f9aceb88da8c27d24215af0596edea832ed8ad060f42af5fd8faf0292fc8n/a Heodo
2020-07-30invoiceEWY1534-545345104.docdoc 189cc6493c108633c47949f3eb888010e9adafadd6e71b0aa7115430d49258f5Virustotal results 48.33% Heodo
2020-07-30INVOICE-VW55-759173.docdoc 414eb4214ba9751af11b6e39f0535786dacf41eb74ed378946220d0cc574154en/a Heodo