URLhaus Database

You are currently viewing the URLhaus database entry for http://test.dedigo.fr/689327EFZ/biz/Personal/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:46497
URL: http://test.dedigo.fr/689327EFZ/biz/Personal/
URL Status:Offline
Host: test.dedigo.fr
Date added:2018-08-23 03:06:18 UTC
Last online:2018-09-07 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2018-08-23 03:06:32 UTC to abuse{at}firstheberg[dot]com)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-08-23PAYMENT #6BLRGYVX.docdoc d0d770286f5362a6e518d11bdbd7d41fd841a66863e95b081d704bffd423dde3Virustotal results 24.14% Heodo
2018-08-23SEP #5333252HZ.docdoc 79d8f682c0538db2ffdf172f77ddf546ffa5ecfdd0ff8baa8534e11f19a4dff0n/a Heodo
2018-08-23PAYROLL #77665NYUGUWJ.docdoc 57c1c7589f63085d5c9fc2a594cbb19037cd0c0b32bd69bf8c919e14cf04ad62n/a Heodo
2018-08-23PAY #42IV.docdoc 2416204d20ab401b02be26fd5c85852c220dc243a85eccc85fbec37489caed99Virustotal results 23.33% Heodo
2018-08-23PAYMENT #22170L.docdoc 4c1c13f1a2aa4a3e9c0abe49901995226021c98e0adae504ada7e2a68029ec37n/a Heodo
2018-08-23PAY #1FITOXYM.docdoc aec1f2893f9e4e57fdd08db5f61d7e3bd2be1401e1ed509489b7f32f85e687d6Virustotal results 21.67% Heodo
2018-08-23SWIFT #144ICYZSER.docdoc ba1ec5aee2a024437e5bcc855c5e752ee26faf2a5387e836a57112a04c31cb52Virustotal results 27.59% Heodo
2018-08-23SEP #6646D.docdoc 9badae986421245731fc72e49171b977179b8d2f87644566af21ab6c8829f107Virustotal results 25.00% Heodo
2018-08-23PAY #2495VQXFZ.docdoc e23aad1ea8ea5731d22a2555e8cae66d7fcb09fa6f6c4521773e85cf3482cdb4Virustotal results 23.33% Heodo