URLhaus Database

You are currently viewing the URLhaus database entry for http://www.steelbarsshop.com/EN_US/Details/11_18 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:80936
URL: http://www.steelbarsshop.com/EN_US/Details/11_18
URL Status:Offline
Host: www.steelbarsshop.com
Date added:2018-11-15 16:46:04 UTC
Last online:2019-06-21 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: unixronin
Abuse complaint sent (?): Yes (2018-11-15 16:48:09 UTC to noc{at}psychz[dot]net)
Takedown time:7 months, 8 days, 3 hours, 18 minutes Bad (down since 2019-06-21 20:06:48 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-06-21n/aunknown de9319225f64bc1d2c402f8fb592395b8197e4324c0f4cc7e2bd3cef89bba05cVirustotal results 0.00% 
2018-11-16doc-076642184027923.docdoc b93d852cbad5b45c5e38b447371a30314f949d50a4db59f21eb6c2ee96fb76dfVirustotal results 25.42% Heodo
2018-11-15Untitled-4826124362.docdoc fd83a337f59204f26517ca8e46cffdb57bb1743da265f5e7459c2687678c35cdn/a Heodo
2018-11-15form-009095993427.docdoc ebd855763c68aaaab46f85996f5923d70ddecec3b72bd4ba40024f18fb430397Virustotal results 30.51% 
2018-11-15Untitled-51207850467987.docdoc de2749026ccb985ab6ae7508a1303b25ab8ec262d60afb461b20481432a20334Virustotal results 22.41% Heodo
2018-11-15Untitled-14723204869.docdoc 9d0b6c5f80157b67191a692f5615e73bcc5f2f7259d67cd2e719fbe9457cff09Virustotal results 22.81% Heodo