URLhaus Database

You are currently viewing the URLhaus database entry for http://ingridkaslik.com/En_us/Clients/09_18 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:61459
URL: http://ingridkaslik.com/En_us/Clients/09_18
URL Status:Offline
Host: ingridkaslik.com
Date added:2018-09-27 14:36:26 UTC
Last online:2018-11-19 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: unixronin
Abuse complaint sent (?): Yes (2018-09-27 14:38:05 UTC to abuse{at}cldr[dot]eu)
Takedown time:1 month, 22 days, 18 hours, 38 minutes Bad (down since 2018-11-19 09:16:23 UTC)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-09-29FILE-880181283385999.docdoc ac1a13005ec554e9e82418c3cca72b254efdf4672be38b76b98c6021e7784f8eVirustotal results 47.54% Heodo
2018-09-29form-1423002400929002.docdoc 79873b17a6377df65d3f7666c1e9e6ce9370b93f526b92cb3852691c2ea01cbdn/a Heodo
2018-09-29FORM-035309752639.docdoc b94275ca6dd3e517c433f3a75d30bcbc556c9245e0e1a518b5cdcd279648ada2n/a Heodo
2018-09-29FILE-5802065723.docdoc 6c0eb99619324642644a9b33af6730818ae13ac19c676a3bb85d4c38f7f4ee15n/a Heodo
2018-09-29file-8202534674388780.docdoc a1bbceb1d81a65548f6d6a1b3efea746d452e53d3f1032c6d4e9ca025acc1a09n/a Heodo
2018-09-29form-487389135517.docdoc a143fe0182dc34efb9f36292e291720b4afbfa6596ad1df450d2f093f40db505Virustotal results 32.79% Heodo
2018-09-29form-73393683846473.docdoc 13393005971db8b6bf9a17e26fc62713ea90e8633e73eb7540d6d574fd054caeVirustotal results 31.15% Heodo
2018-09-29file-2431593410.docdoc 70f4fb7c9e07f97ed6e940eb43e63980b18a54c947d9547077c5a8244cc3189fVirustotal results 31.67% Heodo
2018-09-29doc-5250851777.docdoc 7af89b9c96697e5c7ade7fc3cf6729a04c129c73fce6d25460784e0ccaf8d267n/a Heodo
2018-09-29FILE-056104966531464.docdoc dc73680bf1538cfd83f61b72003665dc180ca0f751f72b30fa8515c4539465f6n/a Heodo
2018-09-29DOC-3135052235309024.docdoc 2a2c05eb60b7c74b90300c50d85341641a88104d9aa1f090f85355789462c304n/a Heodo
2018-09-29Untitled-4781528487.docdoc c5a81f87571c593102b8e9a99eba187fe32fe5cbf1e1c083c526a4572088a45bn/a Heodo
2018-09-29file-2595633099249366.docdoc c356d9364084b0c3af298d1557ec51c054a18919d9d2814d54462193a53fcea4n/a Heodo
2018-09-29FILE-92085167655.docdoc 55572ad1b0076db6f8e36864ba98e5bd22b834183f5c3faf05a9b9882e12037bVirustotal results 28.33% Heodo
2018-09-28form-5860017142532214.docdoc 401e6c0194e34a671dc9738653619c2ae4df715975816123df1937f58530ff5fn/a Heodo
2018-09-28DOC-836160008149.docdoc cd13c0bc650aaabaae2bfb09a0cfaefbbe7cc5634cb23819280208ca51a4400fVirustotal results 28.33% Heodo
2018-09-28doc-769334513686410.docdoc 86e1951694f34f0bf32d7b8fd4fdfab10ac0a11f106cca9a1831865a325395eaVirustotal results 26.67% Heodo
2018-09-28FORM-9638045442.docdoc 42d6ba856adcb1326ac1ac96e191ba78a8873d4811fef4a65c71e75d2a17ef96Virustotal results 30.00% Heodo
2018-09-28FILE-0291748763615752.docdoc ee87f10244b9c8a717b746ab496b6623a2577c464c588b41f7e5b00b4325dc76Virustotal results 30.00% Heodo
2018-09-28file-89054634494831.docdoc b0b066fecf87ef60487c1d8a41207f6b9fe488664de710fdeb4233387b6ca26aVirustotal results 27.87% Heodo
2018-09-28Untitled-8449350215196.docdoc 0b71d42afab557f8a3cd54108287830f4177754ef390826494bc292d3536001eVirustotal results 27.87% Heodo
2018-09-28FORM-4996896603901522.docdoc 834871281e889a5bf3f69ecb87f93883bca19dbabdb3a0631c68d81cd0c13b21Virustotal results 25.42% Heodo
2018-09-28Untitled-1069038825157227.docdoc 36f14ebf9246cf92b2e0e73c8404c81c228c7da39e7af667a30dd9019b5561b2n/a Heodo
2018-09-28form-7845274882730075.docdoc cb1492fc3bc20c63ff31fb353efbd3e2652cf94433399ba929a1aa866bcbde70Virustotal results 27.87% Heodo
2018-09-28Untitled-5363349370.docdoc 209b89c429ed29a0839b4d9c09f498a12be8dcace3c748784f402a9667e9b443Virustotal results 27.87% Heodo
2018-09-28DOC-505112482157.docdoc 6c7dd9c5f28bd50f55b95c7edfd6aac33ec177ce240deeb95dc197861e4f4e7an/a Heodo
2018-09-28FILE-08302234699523.docdoc d1a6e06767f59ab53848d58139602418369b070c6806a53f2885ca3528583dbbVirustotal results 22.03% Heodo
2018-09-28form-142484655997606.docdoc 2a2c4c88937ba9df57f575150921f3d2263d1f33398d684b20a6b12bd836d577Virustotal results 24.59% Heodo
2018-09-28DOC-06983203283.docdoc 487d6cab5bbd070bbd2ef531ea4d938867db5e738a694173bbbdbb4a4c21e17dn/a Heodo
2018-09-28Untitled-53647978626826.docdoc ddaf4bd998a507399f04865a80cba516cccc56590895849486ecc4da509a0174Virustotal results 29.51% Heodo
2018-09-28file-8163311708499989.docdoc 09b0207b02d28582440d08468eb73a8c457f0f7f0b35c48aac46eb105bccea19Virustotal results 30.51% Heodo
2018-09-28file-8163311708499989.docdoc 09b0207b02d28582440d08468eb73a8c457f0f7f0b35c48aac46eb105bccea19Virustotal results 30.51% Heodo
2018-09-28FILE-56751318036015.docdoc 56b08ebdd03ce6a5209d1c0d9ba40908056f011417fcaeafa77bbdd673c63736Virustotal results 24.59% Heodo
2018-09-28Untitled-82426229578.docdoc 0e2d2330890d4f6a132f5e2bb979e8a27e13ed32d17cb33d123c82a95754802an/a Heodo
2018-09-28FORM-40419387668081.docdoc bbe71e8f10793aa4cc2277937115a6da91cfed65a2e6aa34747bad4d1d7e6288Virustotal results 24.59% Heodo
2018-09-27FILE-41700948925029.docdoc 779f9aec9c5968a3e96eca789e67e05440c86d9127a5dcccd635526c90351d0dVirustotal results 29.31% Heodo
2018-09-27Untitled-8867341767440.docdoc 491c7b7ec082783369dbcd7235780b93f2c75f61ecc8ecb690619e306e438623Virustotal results 25.00% Heodo
2018-09-27Untitled-5398446928313486.docdoc 05ec0258ee7e240ea34b5998150071a0a42587394af2c018e66a1cdfb5826f19Virustotal results 26.23% Heodo
2018-09-27FILE-2474895500323339.docdoc bdc8907c19b321df8a53d24339287ecda858fb09c10c4f6fd04d818a72553e34Virustotal results 26.23% Heodo
2018-09-27FORM-2078060196234.docdoc fc25b79dcef35b140e44bf2d25ee2fca89798626c283f80c4e811f5bf0f0754bn/a Heodo
2018-09-27file-6708235907659020.docdoc 786f92fc4996a7cc1b13157ca7d592832c37083816b1787334f3efc009e2d914Virustotal results 28.81% Heodo