URLhaus Database

You are currently viewing the URLhaus database entry for http://megfigyel.hu/partnerlogo/LB/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:426833
URL: http://megfigyel.hu/partnerlogo/LB/
URL Status:Offline
Host: megfigyel.hu
Date added:2020-08-06 23:40:04 UTC
Last online:2020-08-07 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-06 23:42:04 UTC to invitechabuse{at}invitech[dot]hu)
Takedown time:18 hours, 14 minutes Good (down since 2020-08-07 17:56:13 UTC)
Tags:doc emotet link epoch3 heodo link Quakbot link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-07Invoice-994-329026749.docdoc ea354b91bf4894e4dd626a17dbd988f9d24b0e833eea3752ed5b18d27cb59917Virustotal results 31.67% QuakBot
2020-08-07Invoice-4023-249293797.docdoc 23f821e6c9ca56b683bf96dc9e8d6d19094c60ea1223073f466278f12a2745edVirustotal results 29.03% QuakBot
2020-08-07Inv_YA6_382490478.docdoc 2232504c5ac6d12d0c0acc9590c5957289d5177e41c502d10797f7bfcf436fe4Virustotal results 27.42% Heodo
2020-08-07invoice_Y0_3482893.docdoc 8e2f0328288cf490110d9711e7ec0e47174680acecfea564873516b6f1478827Virustotal results 28.33% Heodo
2020-08-07INVOICE-IPV1120-0009424.docdoc d0cf81816d667ed017c8fcff606f72dd98ccdbd4ab1c740d6e93822bdb303188Virustotal results 25.81% Heodo
2020-08-07invoice_ILV4_301400.docdoc 288bcc48727e2eed9e8b0c26b5c3e04a3856769d65bfd4065bba4a533237bf36n/a Heodo
2020-08-07Invoice-44-10559862.docdoc f2f9d8844e0ea0472349e17048e353522a138927c4b88802535845aa231f0833Virustotal results 24.59% Heodo
2020-08-07Invoice-CHK67-687530458.docdoc 03ebc44cfbcccf33f186b7fa2350c9b7043d031b274921de003e30d9d999dfb8Virustotal results 26.23% Heodo
2020-08-07invoiceCF49503207241.docdoc d95a095f1cf9bdfaa08a2f69b690d0a9ab88aeb363b878d2fc63e4cf35f7e055Virustotal results 26.23% Heodo
2020-08-07InvoiceZYLM8602956.docdoc 42642fe5dde80767bb7589d3ea7b83927869d5051f4192da8d9161b5b729d0b7Virustotal results 26.23%Heodo
2020-08-07INVOICE_NJG65_7096802.docdoc 1963ca2e2be391e747a22f560cebfcc9664e79b9474527fa4058356cd4483eb6Virustotal results 26.23% Heodo
2020-08-07invoice_1_010921.docdoc 7b4d501c305e9ab7161d4a30c4eb7960d41b31a580ac41661fa15e4bd4400b0cVirustotal results 26.23% Heodo
2020-08-07InvHLK28427025805.docdoc 06c3a1ab197b822f1ce31bd8c7b6a41f67819e56b9f322a2b0d316159f2ed4a6Virustotal results 24.59% Heodo
2020-08-07invoice-AIHU7261-844464.docdoc 7eec2ba493c6283a3af2494c2ccd834334ae2d0c1852c6d280eb66a659a684e1Virustotal results 24.59% Heodo
2020-08-07InvU20702304.docdoc 9b9f5fd8b1aebc0d02b4c27b686b3c15e170c3f2cfcb9ac0640cd337cb339b12Virustotal results 24.19% Heodo
2020-08-07InvoiceU8331287615829.docdoc f0f5f013ab26d3b00b287eaa4f95787de6f79f1655fdaba066db4dff469588dfVirustotal results 34.43%Heodo
2020-08-07Inv-BWYC5-685112054.docdoc 9aefb6f389c5867c81bd2ed1aabdb2c82eadbb256f417b396c0d50d1acc3c942Virustotal results 36.07% Heodo
2020-08-07invoice-DH32-110599.docdoc de93a0a27c259f2d8f7dc6f4485190c9c1b9b7e79fd09db2824521bfa33da96aVirustotal results 33.87% Heodo
2020-08-07INVOICEH2923828265.docdoc dc902686200b4381ce2048e0d38c3f06a3d4da56353244e6a917b8b0f27df7a2n/a Heodo
2020-08-07invoice-FGXM7-279298386.docdoc add946cadfee3925c92464994e209117e44bed8d9f57d75dca1ae4baf0f41e90Virustotal results 29.03% Heodo
2020-08-07Invoice PN253 588578.docdoc 57e90596475029f8c7d5c96abf1d258ad7f8140d67f1eb1a040724cb552505ceVirustotal results 27.42% Heodo
2020-08-07Invoice Z1 13744321.docdoc ae860bba665db425d2c739e1ffa5209772d4f9fe0a8a0fb50bbfa33a1da9f498Virustotal results 27.42% Heodo
2020-08-07INVOICE0970162504.docdoc 4528ae49466b05296cde29f30b295e9c405e8fdb60e9ddfea00f6ccfd7d950b9Virustotal results 27.42% Heodo
2020-08-07Invoice-6-418186052.docdoc 3cf8911f418c981d0ec4b19a457e634d457fad09fba0f349b483eaaeccb6fbe3Virustotal results 27.42% Heodo
2020-08-07Invoice_R76_66000753.docdoc 0c27ff56994fce3eff25722e6abf01d70605bde19de82a8598d36a3eb8caf2fbVirustotal results 27.42% Heodo
2020-08-07Invoice_F140_155812447.docdoc 599bff84f6835e3eff8a5e7f6192124c49303456a44a649b21bf01616f2df1dcn/a Heodo
2020-08-07INVOICE H7349 7012794.docdoc 7ff536d34ffaaa714490a205279d18147f63b9de24eee9a831c453da7c760191Virustotal results 27.87% Heodo
2020-08-07Invoice AV1035 1254920.docdoc 242c8bf9bbd6b6e54f68b40dcbbd5e151e1893c0a60ee8ee72dccd9fb0724c86n/a Heodo
2020-08-07INVOICE_K2_568649167.docdoc 4f45c033ce53894098871f4cc7496a3c068390adaebd9773d649ab906581822dVirustotal results 27.87% Heodo
2020-08-07INVOICE-Y802-252801121.docdoc f5fd1d45d626be5924d32fbc98ae28aedf6cf865b53a7dfedb2c124e78b6edb0Virustotal results 27.87% Heodo
2020-08-06Invoice NOS323 54621610.docdoc 98c92f9f7760480bc95e3c091adf4d40b14c4235b7940122ecaf52495a811524Virustotal results 27.42% Heodo
2020-08-06INVOICE-782-394627140.docdoc 111c550d78620796ecd7142666cd079fa74111f56a8ac64dd352f3f74fdfadd1n/a Heodo