URLhaus Database

You are currently viewing the URLhaus database entry for https://gloect.com/thqsi/parts_service/kkg6esa328137022966yzl2y35iz668wkksk/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:428076
URL: https://gloect.com/thqsi/parts_service/kkg6esa328137022966yzl2y35iz668wkksk/
URL Status:Offline
Host: gloect.com
Date added:2020-08-10 06:41:04 UTC
Last online:2020-08-11 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-08-10 06:42:03 UTC to abuse{at}amazonaws[dot]com)
Takedown time:1 day, 8 hours, 24 minutes Poor (down since 2020-08-11 15:06:25 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-11REP_7556755628967445747218.docdoc ad6141da8a440d43061dc2514c8e087bd158dc2b43a2eff921d5e34ec3d25450Virustotal results 24.59%Heodo
2020-08-11DOC_EJ8101139381IB.docdoc 4a4a4dd5d1a19053ad3e765787b01d9dffb8b06be5faf5ce7a36efc5285df326Virustotal results 43.33%Heodo
2020-08-11J_I2R34MHC4K3AFA.docdoc 8edf233ddcd24433edb9bf021d9eb73597b9d87e5bb9ee0c3fc936977dfe6f45Virustotal results 45.00%Heodo
2020-08-11DOC_16751445.docdoc ace3c61ffbd09d0953ba9b356b34dc116e41748fced610e09ead6b4615c80f6dVirustotal results 44.26% Heodo
2020-08-11V_NT7384877950BT.docdoc 57d5fc234966fd696f948b9952b125ec464fe2c3b2b0948e151dc74218050cabVirustotal results 40.35% Heodo
2020-08-11DOC_0142405233823905865928.docdoc 97a0a86caadf0c11a90388dcc018d2aae2496f377a0863a67aa05f261ce23436Virustotal results 44.26% Heodo
2020-08-11BAL_JL3ABL4NQ7I.docdoc b0276a23c508f3b994e893c4a51a5130674d5aebb945c3dbffcbbe22e7d62846Virustotal results 42.62% Heodo
2020-08-11PO_08112020EX.docdoc 456af69e338aa9d67ece10771794a069df53f57b268711c18606ef7d54f0feb8Virustotal results 44.83% Heodo
2020-08-11UNGAI69VQT5.docdoc 47688f189ef41ce9307c0f9e747401dc9b4207b7ef8fd3b66569741cdb3cdc3bVirustotal results 43.33% Heodo
2020-08-11H_CT3661677228IL.docdoc 77d07ebb9067728855c77e0d2486102c7710c99f4d2f952cde12dd1aff24ae2dVirustotal results 45.00% Heodo
2020-08-11ESJ_080120_KEL_081120.docdoc ef8d089f8eb24df2f211ebc1cb4700181f97d431f3d8706c0977619cf01435d5Virustotal results 43.33% Heodo
2020-08-11REP_UQK_080120_KZE_081120.docdoc 37f50253f8018bae34e45657de8074c1a59a940ae12792fc8a5cdc8c700bc5eeVirustotal results 44.26% Heodo
2020-08-11REP_LHMMRP3R0.docdoc 62104fb8abc7b1ebfcc1f27dc49a753517b49182741b3bee249633214a595e82Virustotal results 44.26% Heodo
2020-08-11PO_08112020EX.docdoc 4d67767678a9079f097fa98392ca9191d4dd429a1da0506b2e60185b0ded8609n/a Heodo
2020-08-10INV_AQN_080120_OQY_081120.docdoc 0aac84e792a3fda908009cbfdfbfa1f1e9e8f024bc759b760ec6a4a62e6958c1Virustotal results 40.00% Heodo
2020-08-10REP_PO_08112020EX.docdoc af547eb34804f006425dafe29de39e4bfef46ee54db5be9e20a1ee36b5cb922cVirustotal results 40.00% Heodo
2020-08-10PO_08112020EX.docdoc 9f69dab80ed88c105f65738e34f9f97c34813c839c1e78395167bdf09090f89eVirustotal results 40.98% Heodo
2020-08-10REP_PH7QBVWXK40P1.docdoc add109b87a469c3dfa35ae3c978d11c7a009a56f87ded73152008445468ef8dfn/a Heodo
2020-08-10PO_08112020EX.docdoc 5577b4e9c441d81ac1cf74f1246a297c8b4ae3c3961704f988761f670a9d45e8Virustotal results 40.98% Heodo
2020-08-10REP_08443990.docdoc 460f8c4aca351ea01c6d022e356950e8a054bd0059d294aca6e3a5ced4ce3976Virustotal results 40.98% Heodo
2020-08-10DOC_RPL_080120_WQQ_081120.docdoc f229bb103cf90eb570e07d6cca6870dbb9d42f8bd3a437df9fc40dd35ba22ee5Virustotal results 40.00% Heodo
2020-08-10REP_70P1P5W6KRQ.docdoc d04235ea57172d8e82ab7ceea5c85b7a847adbc9d6e6b2fc5bbaeaeaf96d8661n/a Heodo
2020-08-10W_85095169.docdoc dd27fbe8edac24db562a13614357e380f49894285fe1193552a3b71bb887d478Virustotal results 40.98% Heodo
2020-08-10DOC_25275723210999.docdoc bb9c6274ff65ac8ee339d712ae7f3d2b010cb74f04603840cc6017db29aaa3caVirustotal results 40.68%Heodo
2020-08-10DPLJ_LO6159687729CN.docdoc 7162b8aa0d13c1f17afe429527b6e4a0cadad96b24928b4b0729e34488edb1b8n/aHeodo
2020-08-10Q_PO_08102020EX.docdoc 429e6e56c56054b43eee88c1e38bab5319ce5b111f61c88a5045baa40683ec6aVirustotal results 41.67%Heodo
2020-08-10XHO_KMCIALN4.docdoc 2ce7d1abb43d1868d575ce543f8ce6d0c79ad406264308d9ae8e25cf75673e1an/a Heodo
2020-08-102559NQM97I.docdoc fe21493280e923306b2814e03a02fe978f4d0179c15049984f9205344b9015d1n/a Heodo
2020-08-10DX6949886506NH.docdoc 6bbff5c81508a235fc04fffce3bef5c637c819c9648e6f8302a2cddd4cf8df09Virustotal results 40.00% Heodo
2020-08-10INV_PO_08102020EX.docdoc 06b559544703d92126aa3ce33881333250dbcbeb4892b5d93a7c094c39cc06bfVirustotal results 43.33% Heodo
2020-08-10FILE_07808491.docdoc ca8ac34961520d6352cab5d25104db26250b07c9d405709bfd553a45b00743e4Virustotal results 41.67% Heodo
2020-08-10FILE_FHX_080120_NPF_081020.docdoc 61bdaeae8d1b1877e8ccad0cd15b2ee73b5ff004ca4700ca6ec0d6ec11d20622Virustotal results 40.98% Heodo
2020-08-1097871057.docdoc ad46a6a36ef9b8772c7c5b500492c34e25252e779d35d4b3aa5d54fcb1170e3cVirustotal results 40.98% Heodo
2020-08-10BAL_74055907638977597.docdoc 5bda6a8a7a7265b29e8db19103395da39b962063d9cadaa193a0a1bcfda16fc5Virustotal results 40.98% Heodo
2020-08-10DOC_XW2993359743UK.docdoc 722ed869e6d0e77b2dd1f33a633d66af3bf400a01989bb3ee4e6ff70d7b2ee53Virustotal results 40.98% Heodo
2020-08-108CD5NNJELDHJX.docdoc 61cadcc29ae12860c7578786904175024456e8d744d146f0e4a395a74250461aVirustotal results 40.32% Heodo
2020-08-10DOC_PO_08102020EX.docdoc 2f1c1797aad2e944e5064a10670e8feb3bcbd2ff85bb0c3cd9a3a16efa130426Virustotal results 41.67% Heodo
2020-08-10CWV_WEA_080120_JNY_081020.docdoc c82cbe522924e150ea3b677117518f7b51d4a6c084200611e1c73c35790bbfa8Virustotal results 41.67% Heodo
2020-08-10FILE_81348152.docdoc a88ea9ac1ec066c8a52414205d8f1078d2eb1c1f01590a91b0d30e693cde814cVirustotal results 40.00%Heodo
2020-08-10XM8217704793YS.docdoc f4a3bd5e626d53658fca1aff6371dde7f7537270eb24c5532e6a1162c7527479n/aHeodo
2020-08-10BAL_ZVSZMLOV4CT94P.docdoc f602c49cb3a75d9e1621b6c62ecffcda74542f712afc23c222ea4460e3729985Virustotal results 34.43%Heodo
2020-08-10FILE_OLNRQ29CLJX97C5Y.docdoc 9e9dcc63032c40001dbddb5bd18a2b6fe5605bb069cc340d150b9a779f2ae273Virustotal results 34.43%Heodo
2020-08-10SHDXFKFIWW2J4FK.docdoc 8bfc9f0131ca6f43abc2eac3a5e2345362e5c80a1d7f5ecf729811990863a1c4n/aHeodo
2020-08-10BAL_68125864.docdoc 149576ef5ef94316d4e0db4ce478cd4866a0293878a5d8070dc4bbe6d86050b7Virustotal results 27.87% Heodo
2020-08-10REP_8LT7F93IL0HR85A.docdoc cc2e6ecf854ed69caa6e4a1000fd2e98b4ce767cf468ad73d450ea9535d95134Virustotal results 23.33% Heodo
2020-08-10REP_KS2505234457XO.docdoc c3089aae17704c9ddcc67b476b66c0a66f756ef1dad5b90062f06ec428ee5d3fVirustotal results 22.95% Heodo
2020-08-10KSZ_65604478.docdoc 2b2b4341e21f9930df58f0f4f10bd2642775d7eaba166ec686f12a411011c3a5Virustotal results 26.67%Heodo
2020-08-10FILE_PO_08102020EX.docdoc 407736ca4a4bdab4ea158b768aacc22239f4c364a9a0911bdf0531d5b6857456Virustotal results 28.33% Heodo
2020-08-10T_DE0BXQU2.docdoc 0a635c6914b1d696e249b62eda3f0fa60f54bbc2c24939308a6f45b0a601796fVirustotal results 27.87% Heodo
2020-08-10FILE_8UZ600EL.docdoc df1f8dc5bdb2922872307a97d663e7a17bf750c84e97d3a48d9f92422a7111b9n/a Heodo
2020-08-10YKXI_UCL_080120_KYE_081020.docdoc e7f4e7d8fc9a8aee85f81c21ba28897ffbff7c9d3fcee5db8cd808b6583b57c3Virustotal results 26.67% Heodo
2020-08-10705004027372790693589134.docdoc 4ef3be78e6d5e7488bfec47d05dcb528ae781bbfcccf27d5775eabaf583ec691n/a Heodo
2020-08-10PO_08102020EX.docdoc 823905fd21de95f90cb999a5c563bfde685d25fd1354b031ccda7b5eddfb0828Virustotal results 27.42% Heodo
2020-08-10K1QV97F0.docdoc 9c4d0b768a9612b5669b4cfe8688bbd2956e034a406587fb1353712c4bbe9560Virustotal results 27.87% Heodo
2020-08-10DOC_PO_08102020EX.docdoc 685be904fd3ebca032ecb7b75c8a1afd52607fcc2afc4c44eedc33aa42411b54n/a Heodo
2020-08-10INV_PO_08102020EX.docdoc b4fee593515c07d25b65b6ce8810f4848f71b619cc61cd73d544ccdc977e9ed0Virustotal results 25.86% Heodo
2020-08-10INV_93070505.docdoc 7f6da3ebf0f9948eb306ece17e5657a45a4959755bc7564cb05f02246598a620Virustotal results 23.33% Heodo
2020-08-10DOC_8497613707953.docdoc c180d7fc70a8724382b3890f60de951570c845f4fdb6a3b4ca914ea95370684eVirustotal results 23.64% Heodo
2020-08-10C_DR8797181347WV.docdoc 0a8097112177cfa820edfa3b635f0e1099a3f7d916421e4d1f3410a25ce69c1cVirustotal results 22.95% Heodo
2020-08-10BAL_96470351.docdoc 2478dec83d7a3a515a5b8b5dea46109b50e441ca28fbc1f0d43802c73acd1241Virustotal results 25.00% Heodo
2020-08-10JF8924821012NP.docdoc 5c3f36174a01bc5199826cd229df4b4ce18f67180c0098bd1dfbcb877ecac0b6Virustotal results 23.33% Heodo