URLhaus Database

You are currently viewing the URLhaus database entry for http://relicatessen.com/index_htm_files/https:/attachments/3NnQUDiwdpwYECZ/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:453339
URL: http://relicatessen.com/index_htm_files/https:/attachments/3NnQUDiwdpwYECZ/
URL Status:Offline
Host: relicatessen.com
Date added:2020-09-04 14:30:08 UTC
Last online:2020-09-07 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-04 14:32:11 UTC to abuse{at}arsys[dot]es)
Takedown time:2 days, 12 hours, 54 minutes Poor (down since 2020-09-07 03:27:01 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-05inf_20200905_2697.docdoc d4c076603f475a562c8771e360b65b734aba563731f4417b117ecfad4297d562Virustotal results 30.51%Heodo
2020-09-05Inf-20200905-2801640.docdoc 27ad65edce895a8ac105708b7510859313c9f88cec6a66611b581bc480ad6676Virustotal results 30.51%Heodo
2020-09-05Attachments 20200905 8351313.docdoc c1658fd6974ace7a621b0e46c9d3f1bbb8ad7d3ddeb3032082937f3133c1c063n/aHeodo
2020-09-05Inf 20200905 WUD2347.docdoc dd845235b8dc3a025eea6b0904c7e90b610afc290c4b55a7921062ba9f33cdden/aHeodo
2020-09-05list 20200905 15140.docdoc 51da971ad054a7cc8d3a929c87eba819eed539387ca660dad760e7bcf2477562Virustotal results 28.33%Heodo
2020-09-05Dat 59216.docdoc 62cc3eedb06b43f8a3e286b0a9f04cbf36fe240a532b217d91950ea20fa0ba9cVirustotal results 28.33%Heodo
2020-09-05Doc-9047.docdoc a6861aa553541ef958ad8dbfff87e748c920813dd0b745d69787b2818357158aVirustotal results 30.00%Heodo
2020-09-05Untitled 20200905 VP52163.docdoc eda41409cac593fa280357f888dfed9313d45a2523ff59de058f32b76478d925Virustotal results 28.33%Heodo
2020-09-05FILE 20200905 E5906.docdoc 4845d731ee51494da878e4a1e0c22ad0e6e1885aebe593bb6b3adf115f9c84d3Virustotal results 28.81%Heodo
2020-09-05MES-20200905-YQ831.docdoc b1d37441a65187f53492dcd30fe0d3fafb9de343694c7ac79d3ce5434cec9350Virustotal results 28.33%Heodo
2020-09-05Untitled_2020_09_05_QZW91387.docdoc 173c9cfe44cb721e3d1edede6afda3a107dd78b74c1adb41c19fae5ae6a382d7Virustotal results 28.33%Heodo
2020-09-05REP_2020_09_05_X117666.docdoc 206feb1d69aba0e52a7d33975a49cc2a9443deb7bcf9fb4f8a6428ffcd95c97bVirustotal results 28.81%Heodo
2020-09-05rep_2020_09_05_9783.docdoc 7b33fe4f09c06251aba09bbc5407ae8fd899bae0a40d3e7d55f3806a8b6a74a6Virustotal results 28.33%Heodo
2020-09-05arc 20200905 413412.docdoc ee2869e612b62baacd8f12266c98e851549e6789343a4020cc424755ae55326an/aHeodo
2020-09-05Dat-20200905-RQG319865.docdoc c66ac5fc632592fd547d29b2ea0d58d6fd421effca802489611fb9a43a656a45Virustotal results 24.59%Heodo
2020-09-05dat 20200905 756195.docdoc 346db091f843b130bc229ea6a6cf9d569e0a9d2408e413dd9a5087bb25437652Virustotal results 26.67%Heodo
2020-09-05Attachments_20200905_SWE78143.docdoc 0917f0cbca78c19301ba65aa799b29dcf90ee3666fc9f8b83f00c5ea34a0eba6Virustotal results 26.67%Heodo
2020-09-05Doc-20200905-S9150.docdoc a4455d8697ed542eb675343e5b8806faa6b522c16a69fa423acaef8577319b47Virustotal results 25.86%Heodo
2020-09-05file-375.docdoc 8d7ac57ba3c19f60ff3e7d2e5bccfb5a790b9d05c84fd5237e4235be91fde6a9Virustotal results 27.12%Heodo
2020-09-05LIST_20200905_JPN72000.docdoc e49cadb7afb79f7be5bfe42fd56114f5a93757500680092b15311818aaa27aa4Virustotal results 25.00%Heodo
2020-09-05Untitled 20200905 1071.docdoc 83d89a6f47106112698cbbe3f9f407abbefeaa5304896f38e7bff037db8cf901Virustotal results 25.42%Heodo
2020-09-05Mes_VHN22410.docdoc d933cd9a8fdaa58bf021074d4dcbca7f3fed26971db346a66f8b2435afb70b50Virustotal results 21.67%Heodo
2020-09-05File 2020_09_05 JKV59507.docdoc 92bc3c4ef5b89ad046cb64e9cd6ee2eb8d1053b1b07620f1a0aa6503912b05efVirustotal results 21.67%Heodo
2020-09-05mes_2020_09_05_7615280.docdoc de7201ce2995436691a764734f9d6dc4395dba5066dc1c6c469fb2684daa58cbVirustotal results 21.67%Heodo
2020-09-05File-20200905-CVH10347.docdoc 349685f93e08324717dd09b79130205af7e095872a599905ac58c453d5a4f25eVirustotal results 21.67%Heodo
2020-09-05068_3459505.docdoc fc3e08fd58ba899bf7597bdf599c48d0a7628661213da9a31f112a226748053dVirustotal results 21.67%Heodo
2020-09-05Doc_2543.docdoc a0c340e5b8f401a13ec7ea03f405623ed8532d1bdfc9f708d34ad94a2c14ac47n/aHeodo
2020-09-05Mes 20200905 BA64109.docdoc 5d1e5bc11522b6d4daf399dbbd1a18561ee98aad33dce8f798e2aad3a2a5c329n/aHeodo
2020-09-05Mes_20200905_RMA5744.docdoc ac03cec1ea7e2d4ba254b3225a617ff11bb93247cfd84340907d0533522327e4Virustotal results 22.03%Heodo
2020-09-04List-364274.docdoc 4501204cd406a353ac88516bb9f133148c882ea030d84403dc54bd0297f68b6fVirustotal results 22.03%Heodo
2020-09-04doc_2020_09_05_5675273.docdoc be5a076cc07b81d54fda54ef3c56f2d60ee214c3d1fe46de3dc59a1df619dc29Virustotal results 21.67%Heodo
2020-09-04Mes-2020_09_05-PJK920.docdoc 6d8bb4cc926450189c32b7634d2940fba6556c2865096d7ccafec6b4b6e0c396Virustotal results 21.31%Heodo
2020-09-04Attachment 2020_09_05 6910343.docdoc 88d669402f9cb6d3c39a7de76b5e16c45d5db2b7a4e5c5f2b9ec112d299f85d6Virustotal results 21.31%Heodo
2020-09-04List_2020_09_05_02420.docdoc bb32a5e79b853e76e64596002da4cf3b42d9e2c10db3f2b7fc7fd805fa43ff71Virustotal results 23.73%Heodo
2020-09-0416055-9194.docdoc a8e4d449c8018f90196d3de6e14d75cdca5c5f76b989880e012890f87d43f6c9n/aHeodo
2020-09-04933827 2020_09_05 XED131.docdoc 44f213e9ff99dece96ea33d94a4e46bb3e508480002c5e255d46ca711b44a9e3Virustotal results 20.00%Heodo
2020-09-04Mes_2020_09_05_0861666.docdoc 17387deff7e3725fb0ae1aacebcb5e9be101e9ad64a337ce858202ef07458f1cVirustotal results 20.00%Heodo
2020-09-04UNTITLED-2020_09_05-PA3323.docdoc d22f6705c1735812ddadd90de20741627b3116e4f8f97de636b160757970fc90Virustotal results 20.00%Heodo
2020-09-04FILE-20200905-CD275.docdoc b177d6304e1239837128c14fc3423ded464e3877b918bdf27db3d2f40375c398n/aHeodo
2020-09-04Rep-20200905-DTF945205.docdoc 4ad62f2c57a013638168235884ebd78c0b024008e87c9b2e84719d7543132e4dVirustotal results 20.00%Heodo
2020-09-0411968 20200904.docdoc bd6fabb51f037d2253220c55129be8125a21f63b579dd69ca9d82604f0208b60Virustotal results 20.34%Heodo
2020-09-04file-MYA876.docdoc 9c0798c3e8889889ef70b039545920afb91f1508144606704a1889286192bbf9Virustotal results 20.69%Heodo
2020-09-04Attachments_20200904_M653.docdoc 623ee20c1b2e5a53a0bbf6eb21f4b87cb0e6392e023f1e08267abc08c26e5bbfVirustotal results 20.34%Heodo
2020-09-04188483 2020_09_04 3509.docdoc be20749611f2a5d9a09e4782aa4443e339c5e6e4bffe65d32debca99b53d8d59n/aHeodo
2020-09-04MES 181995.docdoc 50b2236aa5eb66410121fae6fbee2696da6878e6e22da851a522caa037b65c25n/aHeodo
2020-09-04UNTITLED_XL61105.docdoc 112b31f94d0408209223b109553273ff732fcd2f05b532c53d7ef7e4658bec80Virustotal results 35.59%Heodo
2020-09-04mes-ED0084.docdoc c567ea1fcaf384bfd2ad39165ea9b07fc04bfcbd325f7b3ecbe8c7329e65611cn/aHeodo
2020-09-04Rep-20200904-GQ8799.docdoc 42fd6389ecf90d4666efe038e42ef8bcaa115a1f57b09602f842d2986e9f281an/aHeodo
2020-09-04arc 20200904.docdoc 6c877a456539164bd26f3616e98e39cc8ccf75c2003dec0016ec825d2d1902cbVirustotal results 35.00%Heodo
2020-09-04LIST_267.docdoc 8a87e7dcaf07545941e8f4859526c55f0b840dc1d051e86b09200a3a49ba5c01Virustotal results 35.00%Heodo
2020-09-04Attachment-2020_09_04.docdoc 1aa05e276c9fc45289cfe940287e1141128258a93052f3ac4d5d7b78c9b0f15cVirustotal results 36.67%Heodo
2020-09-04Doc 20200904.docdoc 07499f73c1b2290d3f1628c566a91f8f3bda896e9c9774c4de22d614a8b1381eVirustotal results 35.00%Heodo
2020-09-04Untitled_20200904.docdoc 403170a4ca043be478bde432c994bc04e0ec0bb95f4d457928890829a998e46aVirustotal results 35.00%Heodo
2020-09-04List-20200904-VW492328.docdoc 74f31456977a691fa6c56243890fd997e0ed0e2793ec4b6e1df8e8a0c93a22cfn/aHeodo
2020-09-04List_20200904.docdoc 791553d28205023fcec3eb1d7b8e89736e5f99b90e7e8a1ddfa4452f1897a74dVirustotal results 35.00%Heodo
2020-09-04ARC_2020_09_04_082220.docdoc fbaa65a02cf8c771c0cf3656084a8b4168750f336ef53130fc96a219ce9dc121Virustotal results 35.00%Heodo
2020-09-04FILE_20200904_GJ1945.docdoc 7ba727e56ef8d6bd90965dcbe4450880fd516019d4c10f8a5d101541aa883dfaVirustotal results 35.00%Heodo
2020-09-04doc_ND275711.docdoc b246ae5854fc909f2e54163de7a8e78ef5de5a8648ec2768c6533c0ad65a15d5n/aHeodo
2020-09-04rep 2020_09_04 XIE66756.docdoc 20f0a0ba4cd0dac615e918dd489d36a9dbe9da8eccd28074379ccb9297f44202Virustotal results 30.00%Heodo
2020-09-04Attachments-2020_09_04-BKA1229.docdoc 9c82f57cbccf6ba04020fd7828aff371796a2f69e908f5ecf8c25d921a13abf6n/aHeodo
2020-09-04LIST-2020_09_04-IZ678326.docdoc be6a2393d8d58557a21737649e0977851d793862f1b80f1d27a1ee2ee70b3154Virustotal results 31.03%Heodo
2020-09-04arc 2020_09_04.docdoc d7452abd23b4d0a252d67436bea5f98b177d6d4a707ce10ce71852940cf97a3cVirustotal results 28.33%Heodo