URLhaus Database

You are currently viewing the URLhaus database entry for http://dingesgang.com/EN_US/Clients/09_18 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:62021
URL: http://dingesgang.com/EN_US/Clients/09_18
URL Status:Offline
Host: dingesgang.com
Date added:2018-09-28 18:20:09 UTC
Last online:2018-09-29 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: unixronin
Abuse complaint sent (?): Yes (2018-09-28 18:22:11 UTC to postmaster{at}myhostcenter[dot]com)
Takedown time:16 hours, 34 minutes Good (down since 2018-09-29 10:57:09 UTC)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-09-29doc-599019714762977.docdoc c1940e2957fb9e958e292b15ebda7ee2c47216be582c3e63bc4d69d052c8afc8Virustotal results 49.18% Heodo
2018-09-29form-820857893263383.docdoc 8e0da2dcb23cbf8a56606c3fa8bab83517ad8dec2ae5c3fa9a7f3c70783c4dbbn/a Heodo
2018-09-29FORM-815272193640.docdoc 13393005971db8b6bf9a17e26fc62713ea90e8633e73eb7540d6d574fd054caeVirustotal results 31.15% Heodo
2018-09-29Untitled-451376904397336.docdoc 70f4fb7c9e07f97ed6e940eb43e63980b18a54c947d9547077c5a8244cc3189fVirustotal results 31.67% Heodo
2018-09-29Untitled-5046136011527153.docdoc 7af89b9c96697e5c7ade7fc3cf6729a04c129c73fce6d25460784e0ccaf8d267n/a Heodo
2018-09-29DOC-03533659743.docdoc 2a2c05eb60b7c74b90300c50d85341641a88104d9aa1f090f85355789462c304n/a Heodo
2018-09-29DOC-1498963019.docdoc 4fc8ad660ac3d7f22e4f759c736aa3adbc73aa381aa197670ae029f194cf88faVirustotal results 29.51% Heodo
2018-09-29file-57558528997214.docdoc 55572ad1b0076db6f8e36864ba98e5bd22b834183f5c3faf05a9b9882e12037bVirustotal results 28.33% Heodo
2018-09-28FILE-0050003879099.docdoc cd13c0bc650aaabaae2bfb09a0cfaefbbe7cc5634cb23819280208ca51a4400fVirustotal results 28.33% Heodo
2018-09-28doc-4933536106410516.docdoc 86e1951694f34f0bf32d7b8fd4fdfab10ac0a11f106cca9a1831865a325395eaVirustotal results 26.67% Heodo
2018-09-28FORM-766190262508419.docdoc ee87f10244b9c8a717b746ab496b6623a2577c464c588b41f7e5b00b4325dc76Virustotal results 30.00% Heodo
2018-09-28DOC-0155596178939.docdoc 7020798a03129011147e90ea37e45faadc9b0f676e4c9b037c70e7f8815a1b33Virustotal results 29.51% Heodo