URLhaus Database

You are currently viewing the URLhaus database entry for http://cdmedia.pl/FILE/US_us/Sales-Invoice which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:89376
URL: http://cdmedia.pl/FILE/US_us/Sales-Invoice
URL Status:Offline
Host: cdmedia.pl
Date added:2018-12-05 12:24:11 UTC
Last online:2018-12-05 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2018-12-05 12:26:15 UTC to abuse{at}nl[dot]leaseweb[dot]com)
Takedown time:2 hours, 19 minutes Good (down since 2018-12-05 14:46:08 UTC)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-12-05Inv. no. 0VDG294482.docdoc 37edcc1132066e9b747b5a044b362f733f27767a7d9771c468a13e13e1365f71Virustotal results 22.03% Heodo
2018-12-05Invoice as at 05/12/2018.docdoc 5504e436a278e6749f9f02e722631f9262f2898ab163ab2380d0ca30d1b52d5dVirustotal results 17.54% 
2018-12-05Invoice as at 05/12/2018.docdoc 4bf60228830c09e931dc043aa9632e1c88de876a135faca8592aa71cb5ecf862Virustotal results 18.64% Heodo
2018-12-05Outstanding invoice.docdoc becc7a9d1629ab5a5b5ad8c36c8f829917b1e8013bf479344a7b3cd5f9bde811Virustotal results 18.37% Heodo
2018-12-05New invoice 5PVL355725.docdoc 45a460c1207435504e7115fa32a563634abbf6bd447c7a9e6685c0f1722541e5Virustotal results 18.33% Heodo
2018-12-05Invoice.docdoc ed06782adbee46e1cac68babde10e9c0c60be0c6f88ad9f0b460a0302865ff65Virustotal results 20.34% Heodo
2018-12-05New invoice 2540W8669.docdoc afc5cda8e8bfcd38c8c66134442ab2f828f9cc84beab3e87e2e0738eac37b8e8Virustotal results 24.14% Heodo
2018-12-05Outstanding invoice.docdoc 0b43d86593cd5bfcd8333e50db71d483ecc2238abc5cd2ae6df8cefeff34f4f6Virustotal results 22.41% Heodo