URLhaus Database

You are currently viewing the URLhaus database entry for http://www.plasdo.com/INFO/Document/En/Invoice-receipt which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:48438
URL: http://www.plasdo.com/INFO/Document/En/Invoice-receipt
URL Status:Offline
Host: www.plasdo.com
Date added:2018-08-28 06:56:55 UTC
Last online:2018-09-17 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2018-09-07 11:38:47 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:10 days, 7 hours, 24 minutes Bad (down since 2018-09-17 19:02:54 UTC)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-08-29Month notice.docdoc 789ac603982139e242a6797fed0a6142ea2dbd1a62d34e496a885d574098e6d1Virustotal results 30.00% 
2018-08-28Latest invoice - 363820.docdoc 4fa6bf4a82cf89ce5b3570f76f6af7802454ca57896c7676ed6628003e84f5e1Virustotal results 32.76% Heodo
2018-08-28Month notice.docdoc aceb659c4107f5328e8890ca7774a522989b8402c6ad831db834b658c490d074Virustotal results 30.00% Heodo
2018-08-28Invoice Confirmation 7G3195.docdoc d2ec1cbb190c816f135a921e51955af3dc91185d466534bd4917f6d21c1b312fVirustotal results 30.00% Heodo
2018-08-28Invoice Query.docdoc cb51ca9a00921f7cbec21dff2f2ffd7988d64bdff4388a4606dabfc681eb3985n/a Heodo
2018-08-28New invoice 768BL9627.docdoc f865da7599c9c62aa4dcde350239ccd436e0aace9d0479d119b9df095f40abeaVirustotal results 26.67% Heodo
2018-08-28Outstanding invoice.docdoc 03a294a89508bace34e961e8a525539bcdf8542da4d36dd22a436677570a2c82Virustotal results 40.00% Heodo
2018-08-28Invoice.docdoc c529f4a104f5a5c325e42749857d286ed323c8320e64b53353dbdabfbb9709c8Virustotal results 38.98% Heodo
2018-08-28Customer No 3050641.docdoc 4ef9487208c750ad707d1e96fd0de03892cf839b8423ebdf8fec2f01551f08ceVirustotal results 40.00% Heodo