URLhaus Database

You are currently viewing the URLhaus database entry for http://muciblpg.com/wp-admin/css/EN_US/Details/12_18 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:89461
URL: http://muciblpg.com/wp-admin/css/EN_US/Details/12_18
URL Status:Offline
Host: muciblpg.com
Date added:2018-12-05 15:53:03 UTC
Last online:2018-12-06 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2018-12-05 15:54:02 UTC to abuse{at}cizgi[dot]net[dot]tr)
Takedown time:20 hours, 10 minutes Good (down since 2018-12-06 12:04:36 UTC)
Tags:emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-12-06DOC-6169155204.docdoc c72bcf112807fd2bd1769dbdb6c74be66e5843bf9d8d9e67ca31097ef0511999Virustotal results 26.23% Heodo
2018-12-06DOC-6707110515403674.docdoc 510aacdebf4131640122fc872dddc705c8a7bf5e61a94ca9f36fd2390ada1a5bVirustotal results 26.67% Heodo
2018-12-06Untitled-814337435699.docdoc 0e2566b7f9dbd03c0d36225e69d5bc8b73ab423ea9714dae489768c50c887c7bVirustotal results 25.00% Heodo
2018-12-06eForm-6738626228856.docdoc 25bb5c5f70e0aa474f77572f6f146b714da445610b9a21c354fc8ac5789cbceaVirustotal results 27.12% Heodo
2018-12-06file-7709126342551017.docdoc ac05ee073a05f3b353e91dcb8d6ebbca7ecaee0d135c7ff5be166ee15a5ec41bVirustotal results 27.12% Heodo
2018-12-06FORM-999005660664.docdoc 23c18ced25f8397dc7c0641ad574d0fbe395fc4fed7e477ee16cbf7c054c8150n/a Heodo
2018-12-06DOC-751562270573.docdoc c5270db7ebdc239a34326749387d4fe444c44b60fb21daae0e9d0b207e274f22Virustotal results 26.67% Heodo
2018-12-06form-112543329342.docdoc 92cd0ae513e6d32cbe5a89e74854bd664dbb859893e94b04fae84e9b4d9ac988Virustotal results 25.00% Heodo
2018-12-06eFILE-234854289584905.docdoc 4c0be53f6ab8c64063eb70ed62d53f2d54384bbadf9dbe85a64d93aedcfca636Virustotal results 25.42% Heodo
2018-12-06file-202168042954075.docdoc 8805b4a7c10959565d8d9eb204bf5ac1780b666aa951bdb3c677f5a3efbf9a7dVirustotal results 25.00% Heodo
2018-12-06Untitled-56990357015.docdoc 6b6c933f63e81eb8e8fcda1a2e40fdb21762d220830ef86e11db9a393af564eeVirustotal results 41.67% Heodo
2018-12-06form-2880197532761039.docdoc ce25cd9400856471d918c86bdc4f9aacc58795edd2fb158172ed865bd791ef9fVirustotal results 44.07% Heodo
2018-12-06doc-5258471787133.docdoc 210a8102bff940827b2e446cf7c3ced14b4c8e1081a4cb69608c54d85b8835c6Virustotal results 38.33% Heodo
2018-12-06Untitled-2132901313539.docdoc 50997271fa6d4f8d3826dee1a1d8167448d0c7dd34b23c2d62d1476711c82eccVirustotal results 32.20% Heodo
2018-12-06eFILE-43432236748.docdoc 1ef6ddbf25c7d180ccb2aa7311f70ce2e27b5ee158f5b7c2a608d924a2c20f47Virustotal results 16.67% Heodo
2018-12-06eFILE-5464652968656552.docdoc 6a834da116c9284e2c294c086940c50623d54eadcf102a117cf9d4d4f518169cn/a Heodo
2018-12-06eForm-272428971181.docdoc 8aef2bd463df8f94988c7e385d1d894afe25a37c3699545a31f3dddbfa421bc1Virustotal results 36.07% Heodo
2018-12-06FILE-9899636108625351.docdoc 30b7df1d065c46acaf2290373ea5badcadbcba303af4b81a875309c0596f60bdVirustotal results 43.10% Heodo
2018-12-06FILE-1635730293148.docdoc 57212f03b5ec91cbcf3a86e795203eec3f8040812637ad24f0c4d98c1a9f7577Virustotal results 36.67% Heodo
2018-12-06file-7496671174276230.docdoc aba950fa97e573dc902ef7b9b90caef17a3224c3368c321393b5e5ec8b895733n/a Heodo
2018-12-06eForm-54671328063730.docdoc 62c73b365cc48c2a39b9bdff8d62de409633d98f99237ea512e7010f25974b51n/a Heodo
2018-12-06form-245369061354.docdoc d9defe10d25fb926a53008b47c878c8a56357645dc12554ae45bb7675c2d0347n/a Heodo
2018-12-06Untitled-6644660331116580.docdoc 7d816433136d5edbc151011b7cfb22ec4d367eca7b8f79bb1890015d5d8e82a9n/a Heodo
2018-12-06DOC-6083408211942.docdoc 6d9e50f54a523a9112e07797c4d2f28c1ae0d3e1a3bdcb58f4baa88a15a753b2Virustotal results 27.12% Heodo
2018-12-05Untitled-5201524123995.docdoc 3237ea92732526299920df136ea59b1dd5dfa5647588a527c374aaaff737ad99Virustotal results 30.51% Heodo
2018-12-05FORM-57784875977800.docdoc 1ffebf03ec843332c27bedfec5ca83697daf53183678de38000ddba6dd5f744cVirustotal results 31.67% Heodo
2018-12-05eFILE-282417680395.docdoc 5b29449ddf01f6b2e26ea25646758b5aa07e02d3e084b2f2fa529ead22d3f1b0Virustotal results 26.32% 
2018-12-05Untitled-5216629896698750.docdoc c8cf853a11d7424617b3e9b426546130eb614252b756ff80a023454016305226n/a Heodo
2018-12-05file-150415167432.docdoc 0fc8b56c5c6d910d9278a9ddcdeb68e9cd17556f06dcf7f1b7236f48f08329c9Virustotal results 27.12% Heodo
2018-12-05FORM-5718147595.docdoc 9dfc6c8dad01ef7205c827ad29c82aaeaf6c377fb86ccd1b81b8b87a89996048Virustotal results 26.67% Heodo
2018-12-05DOC-8878265338.docdoc 96c1842bfb81bbb9f12f746fc7bbb2d0c8f51e200363c64be1e04eec8d81efadVirustotal results 27.59% Heodo
2018-12-05file-9985571699938324.docdoc 537739b14e4c55c75f54b7b8e104d4745ccda1343a6981b90f329b4b1ad4dadaVirustotal results 21.82% Heodo
2018-12-05form-58988517595196.docdoc 558ef6dc7fafd6186926fffd0bc2c4ca39b7d93724aa4b97ca53a885ad93b360Virustotal results 23.33% 
2018-12-05eForm-1325242134981547.docdoc 8040561557260651213ac970ee5a79506bfc2bbc3b5d366ab78a889ee2e90137Virustotal results 23.73% Heodo
2018-12-05FILE-09147425505271.docdoc b81ef60ec7af89090ca1cc8c66df98eb58128fb2516423ca6937c336bac807e0Virustotal results 22.03% Heodo
2018-12-05FILE-2792667001213.docdoc a10bd88d6764d7c69bb618a94dad2aedae1241731a82e6e6c53f6889f1bb7096Virustotal results 21.67% Heodo
2018-12-05eFILE-10801696743.docdoc 2f92d26dd208c8ae4eeee03b83a6dd8c7b80f5df98b53eb2ad74e2a36b80103aVirustotal results 22.03% Heodo
2018-12-05form-9178563828853.docdoc 82b51452c683cc49dbd1794a6fda0c20edec06ac5f3011ca2e144eb83faf9af3Virustotal results 22.03% Heodo
2018-12-05FILE-514435079550.docdoc 408affc93e25bae2599a9ac1622397e8e1cc8b176f020da82e90f1e3515096f9Virustotal results 20.69% Heodo
2018-12-05Untitled-13987098353.docdoc 5a52804395749cedb8ac58cb8e4ad2be81bb7f0fe3529cc726efa0ba94eb471bVirustotal results 21.31% Heodo
2018-12-05doc-800737737759.docdoc ad4ff169a92da740d3ac2ab5d3a2d300d6bb0060a7306961047ac001847c6a4fVirustotal results 22.41% Heodo
2018-12-05form-58066341740.docdoc 615a45faf1d346a05ce17f4cd6ae58c0b6590dc5d3fbedb560ccd8541d4ffd5aVirustotal results 21.67% Heodo
2018-12-05eForm-4341699879.docdoc f2495ec73a614d5f255bef2fcf2e6859f2a4685e31eb75019bcc398102514ce4Virustotal results 21.67% Heodo
2018-12-05doc-7387386114357266.docdoc fed7f0d684cf874bd09600900ccaca0af66e5326b144f3f0be8cb69d01a6ffd9Virustotal results 21.67% Heodo
2018-12-05form-3019372266.docdoc a1fd5897dfa42baee41b1c62ae9c677465f632c011fe008141897d5a80b5ce54Virustotal results 21.31% Heodo
2018-12-05file-79597517615484.docdoc 4d1aa4923156ab8fcc7e152960e2d51444086207a267dee904c6952d285c16a6Virustotal results 20.00% 
2018-12-05DOC-70798436659.docdoc 2a12042f1e2d6c4079e705e27d7e551e2fde44c7a0b1025a74826ca3c98c0010Virustotal results 21.67% 
2018-12-05eForm-0434612539957.docdoc 2824081f28207da0d03e569564207197967ccd00141ee166546ff03dd3195a8fVirustotal results 22.03% Heodo
2018-12-05form-1001544112087916.docdoc 45cfc8718361d1175cf0ccb0680f3ef1ec8f799c06ec49609ffb789888fe1c34Virustotal results 21.67% 
2018-12-05FORM-9237267084660.docdoc f1bb7e57d9876c9adfa44f5f52ca8d22d96bb70f3a037df91c931747b9b520fbVirustotal results 22.03% 
2018-12-05FILE-258813544588.docdoc 37b56acca434a4704378c5031e26566096282c346b3ea37fc2390f7ff4ceb1b8Virustotal results 22.03% Heodo