URLhaus Database

You are currently viewing the URLhaus database entry for http://publica.cz/FILE/EN_en/Invoice/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:92681
URL:http://publica.cz/FILE/EN_en/Invoice/
URL Status:Offline
Host:publica.cz
Date added:2018-12-11 02:56:22 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Not listed
SURBL:Not listed
Reporter:@Cryptolaemus1
Abuse complaint sent (?): Yes (2018-12-11 02:58:27 UTC to noc{at}zoner[dot]com)
Takedown time:8 hours, 49 minutes Good
Tags:doc emotet epoch2 heodo

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2018-12-11Invoice Query.docdoc05fbf69ba94638a93443bc0b3cc97cf4b1e140133620db00bab3fef0529f8583Virustotal results 17 / 59 (28.81)
2018-12-11Invoice.docdoc122c756c88f5f94a39e1b107c1db7628613521b5d9c85402e252b87fb83c007bVirustotal results 16 / 59 (27.12)Heodo
2018-12-11Invoice.docdocc072adca0179a17c59bf53ad5428d2e4070ab55f2169d7a5704a8ca526ea9a10Virustotal results 25 / 59 (42.37)Heodo
2018-12-11Invoice as at 11/12/2018.docdocffeac69d7a31cb513bd9fa83baa053ddb4adddd35c0d9c416933a9b83eabbcd1Virustotal results 17 / 58 (29.31)Heodo
2018-12-11Invoice.docdoc14a74ba9d54a1f9b8de7846d46fcea94d15f5eba4f4c1361994721c6c2abb464Virustotal results 17 / 59 (28.81)Heodo
2018-12-11Invoice.docdoc58674aad9b17f181eb82a583bde0851e387b67569247829d3c1f0fed4022b00fVirustotal results 18 / 60 (30.00)Heodo
2018-12-11Invoice.docdoc3ac17a9ba5176a35b11ae0cd448b697eccdf3928dffa981aa363fb8ede12caafVirustotal results 19 / 58 (32.76)Heodo
2018-12-11Inv. no. 803C1329.docdoce2f23d4775ece710bf80134a1dba19b94cfa9194d769281ba319186f03a1dd04Virustotal results 17 / 60 (28.33)Heodo
2018-12-11Latest invoice - 456346.docdoc16d1eb33627f995503e9bcef79bb799e72482b530c50ebd43f34ffe576bfc0a7Virustotal results 17 / 59 (28.81)Heodo
2018-12-11Statement as at 11.12.2018.docdoc2676c3383f24a6c7de1bbb881192c53892cadf82c71b90e72e5147fdc39ccc3bVirustotal results 19 / 58 (32.76)Heodo
2018-12-11Inv. no. 4ALB331146.docdoc254c189fcab836ff9d69506217bf7c4662b057dda6ede51759c2b6f004a35a16Virustotal results 19 / 60 (31.67)Heodo
2018-12-11New invoice 8P0N91998.docdoc4f9e90fdea5dffe26c45708e6ffb06fda9ece8db28f52282426826ea1f09c69bVirustotal results 19 / 59 (32.20)Heodo
2018-12-11Outstanding invoice.docdoc096714b94c2dd4e3a2f666b1d8598a2dd824109f946070b3139eb802ed20927eVirustotal results 17 / 58 (29.31)
2018-12-11Month notice.docdoc5db8e82da29b84edcad955dd15ce35f22429a0d55ebbf7a4138130ca533dde0dVirustotal results 19 / 59 (32.20)Heodo
2018-12-11Outstanding invoice.docdocce930600f3276d5d60abd3ca5f5f3885493198e5f686c7fa817446f53f3eccb9n/aHeodo
2018-12-11Review invoice required.docdocaae99acef6c295567966311797e716cf7f929d872e35d5a66070eb5b31f0e687Virustotal results 17 / 58 (29.31)Heodo
2018-12-11Invoice.docdoc88be98adbd949ec853acc153758beaf76b3a2264d874a726292c9348bb4356e9Virustotal results 19 / 60 (31.67)Heodo
2018-12-11Customer No 8724487.docdoc16552a612e691dc1d70d033ac4306e0047f0bb532a59fac53aa85f61adb09078Virustotal results 15 / 57 (26.32)Heodo
2018-12-11Statement as at 11.12.2018.docdoc4acb34a5ad58767decbe0a134a53198f8cbfb3902ed3c33170f4dd153a6ed1ecVirustotal results 18 / 60 (30.00)Heodo
2018-12-11Accounts - Invoice.docdocf90b4e2348300224409f6b24f046ad3e0e0fa5955919b9747582489fb6d7896fVirustotal results 17 / 61 (27.87)Heodo
2018-12-11Customer No 460209.docdocdd07c09b322a4086eb1f8927c75d71702d27a395a2c5cb44e90585fb529b6861Virustotal results 17 / 60 (28.33)Heodo