URLhaus Database

You are currently viewing the URLhaus database entry for http://gilhb.com/US/Transaction_details/122018/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:94744
URL:http://gilhb.com/US/Transaction_details/122018/
URL Status:Offline
Host:gilhb.com
Date added:2018-12-14 00:27:03 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Abused domain (malware)
SURBL:Blacklisted
Reporter:@Cryptolaemus1
Abuse complaint sent (?): Yes (2018-12-14 00:28:51 UTC to abuse{at}rr[dot]com)
Takedown time:13 hours, 12 minutes Good
Tags:emotet epoch1 heodo

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2018-12-14Untitled-811394.docdoc9c308963f25854d41fba8e0408f13d6ff6f6dc68d3035494a86d82f153ed242en/aHeodo
2018-12-14Untitled-918196.docdoc279ac06191ab8084dc33176151f2447bf1c58fbc70c3c41e98a1b9aa9478462eVirustotal results 14 / 59 (23.73)Heodo
2018-12-14eFILE-107747.docdocfc58a0bcba42ea86759dc87d92edeb315a6bbcdf425dac3873f7edb76ace54cbVirustotal results 16 / 60 (26.67)Heodo
2018-12-14FILE-248130.docdocc82ce5f0c87040914d2de61fda28023b305811a871bf97a7aea8f884b168395cVirustotal results 16 / 60 (26.67)Heodo
2018-12-14FILE-0111720.docdoc8fc7fe3e12b7aa73b40cce188527beed41e50730b4005032991b33845ec28710Virustotal results 16 / 59 (27.12)Heodo
2018-12-14FILE-471171.docdocae4f6d22148c0134412911ef46fce2f34161d502bccce54a8cf3a3c04b1e5629Virustotal results 16 / 60 (26.67)Heodo
2018-12-14form-365747.docdoc4621a7ae36f16d5de3e84745c041ce02391d38d473ca4fab571d7dbd4bb31cc6n/aHeodo
2018-12-14doc-35364085.docdocd148a2cddf1344ac953d0e9e4f2329778c85fa04689957a759f8da74d74b5b65Virustotal results 16 / 59 (27.12)Heodo
2018-12-14eFILE-90964347.docdoc5d78fcfb2f17beea18c8f596c960487e3f94c31f340f5959fb2cdfe05c633050Virustotal results 17 / 59 (28.81)Heodo
2018-12-14FILE-7074538.docdoc7d1d4698b9c5cb0e668902bc16f277b68ecf8932d901058bdfda6eaa5ca036c2Virustotal results 16 / 59 (27.12)Heodo
2018-12-14FORM-005146417804501.docdoca381b0a8312c335ea241abeee0ed8dc43da24efffbc2807d11e27b59902ed415n/aHeodo
2018-12-14FORM-9739837814432.docdoc33a54144962b3ce69a0ee38ab1eb36758204ee2392942b9e138631bdfa52b425Virustotal results 16 / 60 (26.67)Heodo
2018-12-14Untitled-95686574595.docdoc65dfb589f6039f0212286757e1e27b157f86b91e9a18250c1d02cdb8399c873cVirustotal results 16 / 60 (26.67)Heodo
2018-12-14FORM-722462518476.docdoc7570f9a5b5322c91e2a9c82bbe4418b83389c54b3258244272548b25a4853a59Virustotal results 16 / 60 (26.67)Heodo
2018-12-14Untitled-02471645325507.docdoccfb0a0b37ad59320ce06fe2b1c2cfe655e7891de1557b09fd9757e891cfc2e09Virustotal results 16 / 59 (27.12)Heodo
2018-12-14eForm-617177497155985.docdoc4beb436d1d2d5ca2fe903aa0259294129775dc88db5da81688ebf250b8c2e428n/aHeodo
2018-12-14doc-8555027018289.docdoc1e9159f34ae36852205e29116681a99a96a5b602c7e39075863946b3195d2ac4Virustotal results 19 / 59 (32.20)Heodo
2018-12-14FORM-3092309924257893.docdocc10b18679be8a63f95633e6b6c982407234f02e11730d039742968b930175f2cVirustotal results 16 / 60 (26.67)Heodo
2018-12-14DOC-56531483993662.docdoc9a07f5bb5538c9bff815000d454bd2db0de30380e9b734e577471c1ba5d5edb8Virustotal results 17 / 60 (28.33)
2018-12-14DOC-216306279778.docdoc0a72b9250b1bea5bea854681723f1e37ad717e1f906e65af2862a8e0874bccf1Virustotal results 18 / 60 (30.00)Heodo
2018-12-14form-7570690199823.docdoc370f3e8e90b71afb32ddf3f22706c2d2ed63900b522dccfa01a38e0513b8959aVirustotal results 16 / 58 (27.59)Heodo
2018-12-14Untitled-19951751044.docdoc095eddaf2fcca59e3bf67194813558f1ace7aeabc9d6f35a16622817ee4c8a21Virustotal results 17 / 60 (28.33)Heodo
2018-12-14eForm-8464450300459343.docdocd2dc8c5c0090b04d779cc027a7e522f237c4d5b785e00ff7ac6930e3af123097Virustotal results 17 / 59 (28.81)
2018-12-14Untitled-7799540393.docdocc6355c5fd03ef206cb4cc07fdd80895c0018b3ff4de8bbeec23e3e828d5a5d1aVirustotal results 16 / 59 (27.12)Heodo