URLhaus Database

You are currently viewing the URLhaus database entry for http://bzztcommunicatie.nl/Nov2018/Rech/Hilfestellung/Rechnungskorrektur-MOM-46-15565 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:86441
URL: http://bzztcommunicatie.nl/Nov2018/Rech/Hilfestellung/Rechnungskorrektur-MOM-46-15565
URL Status:Offline
Host: bzztcommunicatie.nl
Date added:2018-11-28 18:04:58 UTC
Last online:2018-12-05 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2018-11-28 18:06:25 UTC to abuse{at}cyso[dot]net)
Takedown time:6 days, 6 hours, 27 minutes Bad (down since 2018-12-05 00:33:51 UTC)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-11-30Rechnungsbeilage_2018_11.docdoc d00ef496e65fb3a77f848481b3df8defd5fb681cfad21b8cf3b2ce9086b31057Virustotal results 17.24% Heodo
2018-11-30Rechnungsbeilage_30_11_2018.docdoc d4b4601cfc978c22e9dcfecce1c3cadd6a35635186db765bc6290489598a4171n/a Heodo
2018-11-30Rechnungsbeilage_2018_11.docdoc bebff34c7cbb71086bcb0cdf8dfe4809c41c1a1d74f680af20832576bf4c4ca2Virustotal results 45.00% 
2018-11-30Rechnung_2018_11.docdoc 5fd05e7184dd9f5f57f55045f913857c8ba685e6f7437eb4f686b698260e4563Virustotal results 45.76% 
2018-11-30Rechnung_2018_11.docdoc 11bdab3a7f77838f1cee08ad8086db5a25e595105a7260985cf63d03bb3dfdc9Virustotal results 38.98% 
2018-11-30Rechnungsbeilage_2018_11_4893447656.docdoc e447bcaa90e4f3db4965ed59e55af92bf6f3c04c085dd0984192fdb5ac6450d5n/a 
2018-11-30Rechnung_2018_11_8620422758.docdoc 6c717c9b10a58103e52b5bbc32e9487942732c2e2ee70606ecb1f5db6fa6faa0Virustotal results 36.67% 
2018-11-29Rechnungsbeilage_30_11_2018_8675014699.docdoc 36898538bf6a588d12f24df31313711fb26ce9da29facd3115f3b1b76a53e1deVirustotal results 26.67% Heodo
2018-11-29Rechnung_2018_11_3790335049.docdoc 2b1c0c05d34f81c4c0ad1413a002cdd3f1d8d772f6fb32e736a7843507b477c3Virustotal results 23.33% 
2018-11-29Rechnung_29_11_2018.docdoc 3719f74e13249e6c3e366f97812c5fb5d1c3198bda1aa703fe41c1005cb6b870Virustotal results 20.34% Heodo
2018-11-29Rechnung_29_11_2018.docdoc c4a754dce56b200c8104d34f98825dd486d95403cdc39a53242652ba7c08ac9aVirustotal results 26.09% Heodo
2018-11-29Rechnungsbeilage_2018_11.docdoc 68f11b75182d6e23bd24a23904a7a67d7f0160a61a1c43aacf5f0cd95c0bba87n/a Heodo
2018-11-29Rechnungsbeilage_2018_11.docdoc 762de993aa670361a3f0d85299f0a0d5b52fdbe4b505b98883871ccbd4fecbf0Virustotal results 25.00% Heodo
2018-11-29Rechnungsbeilage_2018_11.docdoc 6e4426d0b509170954d62979cc981ae4a1bce0fb5011ff60ce2e7d8b1068f0c6Virustotal results 45.76% Heodo
2018-11-29Rechnung_2018_11.docdoc 9b64eb80e2ac4c1b6a75894dc46023480ee9e469e0a4020bdd5136fd9464f6aaVirustotal results 23.33% Heodo
2018-11-29Rechnungsbeilage_2018_11_7600895752.docdoc 787f15153a853931e8adf9cbc828896f6cd56add50dd1c1c9914159f0ae20244Virustotal results 31.03% Heodo
2018-11-28Rechnung_29_11_2018_4368847519.docdoc e1f4790668195b3a49c022614f3a1c8fe95dac4b75e9039f7ec3c982223384c4Virustotal results 23.33% Heodo
2018-11-28Rechnungsbeilage_28_11_2018_7582363865.docdoc d39aab4321080093f8fcee9d4418d9618c97506549cea5f69016ab305add3cbbVirustotal results 20.00% Heodo
2018-11-28Rechnungsbeilage_28_11_2018_5050440923.docdoc 643fff1a196971894e3bdf3d125eecee42331cab055ed9542b929c11d90f1b2cVirustotal results 22.03% Heodo