URLhaus Database

You are currently viewing the URLhaus database entry for http://www.apartamenty.lukstreet.pl/term/payment/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:493941
URL: http://www.apartamenty.lukstreet.pl/term/payment/
URL Status:Offline
Host: www.apartamenty.lukstreet.pl
Date added:2020-09-14 10:31:11 UTC
Last online:2020-09-24 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-09-14 10:32:44 UTC to abuse{at}kei[dot]pl)
Takedown time:10 days, 0 hours, 51 minutes Bad (down since 2020-09-24 11:23:48 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-14BAL_081UF4K.docdoc 43cb627a77712dd1d9c1f3881b4e74244e7491aee310c5619c08b1dc58f6a66dVirustotal results 37.93%Heodo
2020-09-14DOC_NGJ_090120_SEE_091420.docdoc 9f0ae988efa45dd5a31b192546bb881ebbf6b50e79bf2da69fa2256bbf4d845dVirustotal results 38.98%Heodo
2020-09-14INV_KAKOVTV7GU.docdoc 92851cb764419d8ba397bd68f8a097ac8cd0faeeac231c1348fc7ab7172aee64Virustotal results 37.29%Heodo
2020-09-14DOC_PO_09142020EX.docdoc c1fe84c5bc07595ed1c451c7cd8d61f681f1252325096963b580e974a54dac0en/aHeodo
2020-09-14PO_09142020EX.docdoc 894bb7216efcd37908b4ffa39eaee5a09c5a3c264cdaddb5918bfbb9e7b65860n/aHeodo
2020-09-1463007284.docdoc 968f255a72c41d86299b48628eb79d831741596e1383081eebaf08810ecaacden/aHeodo
2020-09-14INV_KX4970037649BY.docdoc 18a08bfde32fec48dd39f4ba41cd7449d4169cd9252a6dcc077cd7fdca819191n/aHeodo
2020-09-14D_40781857.docdoc db5dc06cd13c8fe3e12b314bae4c8be7651a26ed861eecaac0e79a8f8bf0ef43n/aHeodo
2020-09-14PO_09142020EX.docdoc 60781dbe964b9ef97fc10a14503000232fd5f5dda1eaa6a1a3e4483842ffa621Virustotal results 28.33%Heodo
2020-09-14DOC_PO7079398762PZ.docdoc ed410e106fe3f9f8bedec883afe4b7b0d0dea3b449ad26fa6f41aa69c0a78f80n/aHeodo
2020-09-14INV_TM0073936458DP.docdoc 5d29d4ae2581a27221609c7e3877aa9139dd44042bcde1fb62d7e901d285e4f4Virustotal results 27.59%Heodo
2020-09-1417813164039372841002211.docdoc a153e7d47a196c8848cbd1aa6b81d15adb43a1cc0c6402dca515ea34723c0ca9n/aHeodo
2020-09-1499AONVE3.docdoc 65af960efb522275c12cbbc2902476854043df45ed96b435103aedcef02eecben/aHeodo
2020-09-14REP_15166959.docdoc e4a9024be2fd969f3d64de3bcff992a2d29ad69e823b5ed145c96a395a013e19n/aHeodo
2020-09-14DOC_MUI6I973Q0NDXJ53.docdoc 2ff4b7d7b02e82dce1df902e65b025fe06a6a66e3e4605ada4206d0eb2e33cd5Virustotal results 21.43%Heodo
2020-09-14REP_PO_09142020EX.docdoc f0e06a375472913823627ce8c356db76e7dcb7c2e75c8ab021b73d7ee243cc6aVirustotal results 22.03%Heodo
2020-09-1497964008.docdoc bf5e604c3ef6c684bb10f3877f5aaad357943c8b08c0ef560972419d1d80f43aVirustotal results 23.73%Heodo
2020-09-14FILE_68100853.docdoc e080d3e47109955d920cea3412153304a44c6675154bdb704180405f9f36b099Virustotal results 21.67%Heodo
2020-09-14FILE_084974687936725.docdoc 2762b832d1111457d6402af3d53a4f516dd99507d963614d4bdc48855dc057c1n/aHeodo
2020-09-14REP_PO_09142020EX.docdoc 4a170e1b7b96802b718b6797122f073cf61e00a248332de84ba29c4c7a2cf30aVirustotal results 22.95%Heodo
2020-09-14D_80616456877159373600.docdoc 42c4b1eb39af3f83f49c39994431eb0a042d94a008313cdaf1831db93c45cf5dVirustotal results 22.03%Heodo
2020-09-14REP_PO_09142020EX.docdoc 358777fc6c34cc75ebc7d92ee6c2bd0b29eaf38c4a215fc317e920ab0f60476fVirustotal results 20.34%Heodo
2020-09-1459228564.docdoc 089bf49461e57f29762b5c1f0b89fd5db567a615c5fde7cc529369f7472f8f3dn/aHeodo
2020-09-14FILE_HRV_090120_CCQ_091420.docdoc eceae0ba2886d41470b5aacd0de4ac004bc97d88e4bfd489d7e8c420c5f00b79Virustotal results 24.56%Heodo
2020-09-14OCX9ZRANLF3M.docdoc 3ca9d3e5ceccd9464ea63ceb8d70613a4110caa1a40eaafea1215d0ef0bcef23Virustotal results 26.67%Heodo
2020-09-14I_07931438.docdoc 11cc4036d50f7e705e15ad8d6b14813b0f328d9e14d31aa6ca51ba7e13fd4f4en/aHeodo
2020-09-14INV_PW5963012735LT.docdoc fa69858e237719a046347129a4fa0d2bad1890e1843c54a8e5d71568337ee2cbVirustotal results 23.33%Heodo
2020-09-14DOC_AV1914269276OK.docdoc fdd3d83dc6ff712204b45d9dd5b04ccecce3d2dad4f20e24867c2737c3379081Virustotal results 24.56%Heodo
2020-09-14BAL_XD8873509581OA.docdoc 024ff9ff62ba78ea622ddcaaa68aacf0cb62fc53c52caa27db4e4cbe4e413a89Virustotal results 23.33%Heodo
2020-09-14FILE_50IOYWNW.docdoc 86499f4888585de10a1b85f63ecf6af52670ec0819b7387470d9d2b2f5610ae1Virustotal results 23.73%Heodo
2020-09-14FILE_PO_09142020EX.docdoc 813835e555a57244f759ea1f03dd32d05bc472af33d6ed3c4ff22fc850798fe3Virustotal results 24.14%Heodo
2020-09-14DOC_PO_09142020EX.docdoc 4248b1beb0bf8d0caa595316529c99e3a8511af5fc8c72cda777b837ff22c8d6Virustotal results 22.95%Heodo