URLhaus Database

You are currently viewing the URLhaus database entry for http://weisbergweb.com/lxPU-3j60nDONL_Sy-66/Southwire/MXJ5841225541/files/US/Important-Please-Read/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:97806
URL: http://weisbergweb.com/lxPU-3j60nDONL_Sy-66/Southwire/MXJ5841225541/files/US/Important-Please-Read/
URL Status:Offline
Host: weisbergweb.com
Date added:2018-12-19 14:42:06 UTC
Last online:2019-03-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2018-12-19 14:44:07 UTC to abuse{at}peer1[dot]net)
Takedown time:2 months, 29 days, 7 hours, 26 minutes Bad (down since 2019-03-18 22:10:45 UTC)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-01-08this-site-is-virus.docdoc 65d63c451a83d9758fcfab778b5990da4cce04c4c2b4f8380d3273e434224065n/a 
2019-01-03this-site-is-virus.docdoc c2e393ff568f4a87ce48011f10664138e569710f56ddc0462aa7f36bdad5ecadVirustotal results 0.00%
2018-12-20US1913292775592789.docdoc d45f9ddfbbc675327f076622560f042b8494e35b2dfb1dd2a4371fca28541149n/a Heodo
2018-12-20ATT081618445643.docdoc 8f568a553084056ba2d6c4458f6f81cca2ce02de0d02cbb36a82056b6d895d5bVirustotal results 20.00% Heodo
2018-12-20448235881534058946.docdoc b735583152efdced23807557da718b60e97ab851b7624cf3c56ae57d86d0c81fn/a Heodo
2018-12-2019314945170512.docdoc 0d7ce957161761ac2c9701e881d7a959ecec0780a87562fa72c83d2f84ad2d51n/a Heodo
2018-12-20ATT193729048517714.docdoc 577645fca0ef79af624a81df5cdae08b09a469695219331361a3afd54c0f2d7en/a Heodo
2018-12-20PAY9367925276043332.docdoc 2d7b47002f9f7efc12d19365812e0f6d24cf855e63e1a08112126048711706e2Virustotal results 22.03% Heodo
2018-12-20PAY321761076001753533.docdoc 2ac3a26272f2af4119c21f5ea362f26d3fd59d64e822b05a8ab816c352287da8Virustotal results 21.67% Heodo
2018-12-20ATT96194154542.docdoc 0b7b3a60bb3152fd226cee774f56e7ace901916ecd8ec25065d65ac52ee05cf4n/a Heodo
2018-12-20PAY851633926.docdoc ce2ff6082923aebde2294e0a3996d0048a61a637720f573af55bc192b0b28702n/a Heodo
2018-12-20PAY2582891625.docdoc 906665d6af42fb730c729a933d75ccc250858151217c4fced238e6024c6ccea2Virustotal results 21.67% Heodo
2018-12-20ATT427561368674470.docdoc 2c41c11939836650f6a6d52e16c40d5b29094e59f34e4f81ff06c6f193335f59Virustotal results 27.12% Heodo
2018-12-20PAY918529593541.docdoc 877bfaeafabb1bedc7a0f4dce28722349f8c11eefa1c0c82db31321e149176bcn/a Heodo
2018-12-20ATT79207098822606648.docdoc e3e493400fff719f8831c7033b4de84a8fe71ff72c40990c412b0ff80710ae44Virustotal results 27.59% Heodo
2018-12-20US504923192066.docdoc 5d68420ba798296797f1d96fbb7ab7ccd16a519d04887b7c554ab9f030bf323aVirustotal results 26.67% Heodo
2018-12-20PAY7927771978.docdoc 4234effa686b742473b6d7eb5b9c733be481e0645ed96a44106726a7dac794ffn/a Heodo
2018-12-20ATT314111304705350718.docdoc 489404893d239db2c03be9340cba2cd46449c9af6cd73129e6e6ab18be68262fn/a Heodo
2018-12-20214724130038216.docdoc 4d2ca7e989e7d083bdafae14d16c54e24ac5f2ffed365cd19520c67decf01e32Virustotal results 28.33% Heodo
2018-12-2065576797358340825.docdoc a85098067d589fcadb9f184403b99ba2e4c078734bfd330669ac322a95ea6ca2Virustotal results 28.33% Heodo
2018-12-20ATT679343473999765.docdoc ad84c8dd3e88723cce2c443ccdb6c10c500d14fd7c551f7bd4d47e9606d9d6deVirustotal results 27.12% Heodo
2018-12-202605623852919.docdoc ce6a3827d80dadf24a1ff096e1a0a6984b08e84208432289f68d5e1b478748ebn/a Heodo
2018-12-20PAY0561700170815.docdoc 92e39ac764a910ffc06acf41e43187003fcdc10d4076faa2640a4ac79e924ccen/a Heodo
2018-12-20PAY387471721071358.docdoc 867930f654e2761ee1433ca2effffaaf1e24adc57bd8faa9ba5a9fb1b54ebed5n/a Heodo
2018-12-20PAY118763373087111.docdoc 56a37928d0549592fe5cb4b33066c442ef2b37ec15612d5777cde3f44ab7fa2en/a Heodo
2018-12-201217488721744.docdoc d64cae7e0840e557ce0d4bd8f0b043ac1831d4c963dbffb4dbb494874296b91aVirustotal results 26.67% Heodo
2018-12-20US51098154433775325602.docdoc 85386588dc3f29e5f3bbde3ab9fc6cba826c293bbfce11b6c3f1a4403f9e2ae8n/a Heodo
2018-12-20PAY08610595326.docdoc 96c616f321105d84ccd07c68d46b436cb0dd38d34174846b9d06c548dc5df076Virustotal results 32.20% Heodo
2018-12-20ATT84115486249149099.docdoc 54ac7a1f7883dafa447da786e2515e3d38899c36c8ee1771b3cad28362e17f31n/a 
2018-12-20PAY3236889942393518955.docdoc c1f6092805c75d956bc46360f7a83c1a7e09775f36670a7a59acf5d229c45de7n/a Heodo
2018-12-20058978386.docdoc 28559b64089e5e96cbb2df9281d93f6d1e296b808809d466d021b143ea134cden/a Heodo
2018-12-20ATT78620647029181.docdoc f60a83c0d7504d45fb2a142be3cee2168c5580e0dc1cf4f25a18f98c5b76792an/a Heodo
2018-12-20ATT8778680498310996523.docdoc 048c88143ab1f2be57af3ae1e83e72ac5187402554a2a4205c471879dfb4dc89n/a 
2018-12-2064873194077303772.docdoc f170a4cb0f7f8bde8084cde3a538b54b1f5e497a60c192b3b03eecd6a7f468d6Virustotal results 27.59% Heodo
2018-12-20ATT099873250929551.docdoc 473afedf9a265f8a21780c8171a9a6376b69e9be0e458a5c5ec1e557960519a8n/a Heodo
2018-12-2099341382908013.docdoc 1f35933dddd94297f1d5950c56cfe7721980e6852bfa7cb5bfcc89db67fbce90n/a Heodo
2018-12-20ATT5932595230.docdoc 25d978be43da4852e2e30be4695aa979756b648e79ff1abd5ece05c023fb3935n/a Heodo
2018-12-20871794521822.docdoc 2c7f66896be89629ec812b27ce7e2a37320d04b9c6669ec2b11fa63ac1615ed9n/a Heodo
2018-12-20US219137928011147374.docdoc 5422fcd6587573adfe722f31846969096eb819cd64197cd6e3eb1164ab4edfa6n/a Heodo
2018-12-20ATT90932815760804251.docdoc 3c03e769486f2c79eaa7e599df900015ffb18587a8dc596a933313034bb8cbffn/a Heodo
2018-12-20ATT5729616766622303328.docdoc 346dcbc99820690fc0665a0c4076dab8df55b3c1e2430820353a2e87b0c38fd8n/a Heodo
2018-12-20ATT52920332792903.docdoc a5b7bb8e5fed53fe2f1f96d8f8e36caf7a5611852e55209bc54a43287222f075n/a Heodo
2018-12-20US95129442233379.docdoc 58ceb5f7fd6f71eef8b8aeb0b226a91f49041d1ad67025a8d5083facb55bbd7fn/a Heodo
2018-12-20ATT77967374031684516934.docdoc de7871ad870e48f1dbbb8caf1396ff568f9a9f21b56940255279ef004c3dc747Virustotal results 25.42% 
2018-12-20US276184232.docdoc a99b84469cc4f9c76eabd80ac0985f6b4c9cf898a91d5538fd43223d24f7c699n/a Heodo
2018-12-19ATT8133960642192171.docdoc 602f0166f2978578fe63709018464d5d04f1c87cf852b7dbe17616ee839190bfVirustotal results 23.33% 
2018-12-19ATT06771960081960899.docdoc 1d79af859a391823a797f6da301a4b6ce7dad9af0c906ed2bd98d259bcf27012Virustotal results 24.14% Heodo
2018-12-19ATT1571162123250923433.docdoc d7dad079c927b2a813afb05a8ed63c96bd1fc51493211a333353190bd17364e3Virustotal results 23.73% 
2018-12-19921083429569871.docdoc 3a9037168a2fb85124dc05cf766dcceb8afc4a13f96a2751ffaf0d1c56ba2023Virustotal results 25.42% Heodo
2018-12-19US036944515522.docdoc 769eff69e55f94c409330a4365b802fa1a589515d318d938ebe1f451eb865609Virustotal results 24.14% 
2018-12-19PAY19411410938.docdoc 91ca63acf98acf0f3a9cbbc6ad3d88eb48b4be48369a550598cc55899c494894n/a Heodo
2018-12-19US94203420228209495236.docdoc 3b8e206a410ff373c77d5370defb08fe6ad2ee77378fa6f26d24d5a1cf94779fVirustotal results 23.73% Heodo
2018-12-19US0002082834730705.docdoc 1051269affcb0d5ca293014b667d7ed47648d76e5ba9b504777ce98ea487ff34n/a 
2018-12-192001065859595165.docdoc 6435d84de7495b23f2cdcfdb1f281dcb43fcf0ee72668b0f07c6aec41cbe1674n/a Heodo
2018-12-19US571037616184.docdoc 3c30d85ddeb3b7789813bf0cb26694c8a3ca67510dde9006c6156d746ae3038dVirustotal results 25.42% Heodo
2018-12-19US644993726535032221.docdoc 2d9bb33772f7e121c8f674beb52a36297870bd2389f7247efcf01750a9763a8dVirustotal results 25.00% Heodo
2018-12-194324520820896.docdoc 4bfbf3b0d163fcd4661005747e14870e67aca2f563153516aed99424a259c2b1Virustotal results 25.86% Heodo
2018-12-19US05959613275089452.docdoc 65c0c34e7ba46166fcf179605b50546d1e571ec625abe4c7c4a7eb231eb9ba2fn/a Heodo
2018-12-19US0351204913642126451.docdoc 4c5a5f7c46aa52d27f0d9a0b591980e8a34ffc2b1df7d09ba7438bec933e7975n/a Heodo
2018-12-19ATT3239189592311543924.docdoc 669754b26a03dba48ad77b90af7ea9aa1719cbf19a5e1d393509f70e043cd4e9Virustotal results 22.41% 
2018-12-19376401530.docdoc 28e57977dce308dbc4cd0ad1798a0e474fa6799ffaeb08552c0007f11db2a076Virustotal results 20.69% Heodo
2018-12-191721850226.docdoc 0dc91b26666df78bb955dd7994b1beeb657c5a7b26bae3b7187e49cd8adaa467n/a Heodo
2018-12-19ATT46541263551581311912.docdoc 2af279f52f2b305b9d67788b3a8c9139c17ae671db2b241de09a8c7b669739e4n/a Heodo
2018-12-19PAY624155611.docdoc e7aab61d0b14783852d75ba3ca2c2ec3e492b9ea6d7690a4790a973c4cb605cdn/a Heodo
2018-12-19PAY233027490.docdoc 1b340a9aa9c8790300ed47b2276889e940e455a0fb137c96d9eead64ff2485c1n/a 
2018-12-198926841614100.docdoc 04d007044c60d5b7844a703192b99f300be05bb33f3990fe9c24e0f362f3e153n/a Heodo
2018-12-197177321676805451.docdoc addab27f33edfb45cc2a8ace462420df86d61ae90429c2a31ee09c740b138d30n/a Heodo
2018-12-19US91828492114328657.docdoc 4c06a18f5a509d12df0121d7c461009c00d8a9b6bca5e67f8541c57ca0f5e50cn/a Heodo
2018-12-19PAY6081846577072276346.docdoc 0836a1c11fef76fd1729c5ba84871e3a52a2646f020a37e29a28bb3be9172911n/a Heodo
2018-12-19ATT6713673979454.docdoc af08045d36e35240a30df61ef15d005fa89d9913dc13dc107522da4a388190a1Virustotal results 20.00% Heodo
2018-12-1929086668040879224.docdoc 5925f8449bed16752d446d03c4a5c9fb4a3b5c8213c36911023b57b79bb05382Virustotal results 20.00% Heodo
2018-12-19US679343473999765.docdoc a1ff2879fd1afa085b10c39e213c55c3534ce0f2b828eab3bff611fac0e38bd4Virustotal results 21.67% Heodo
2018-12-190544251831179627.docdoc 12a94b39c4078b5eae317a2de582fa83f1826ef147f818b555d18c7cacbd2caeVirustotal results 28.33% Heodo
2018-12-19ATT33989292339.docdoc c8f6ba6b9e47131d1541a0f169ef1633d91e13bc14fdb57235dcba559d8f523bVirustotal results 30.00% Heodo
2018-12-194476770711.docdoc 0aaf85dc89203908fe46acb4c437cc40a27042707eb5b126bc74f65a14503091Virustotal results 24.59% Heodo
2018-12-1989673239394.docdoc 248b503e7c2ac680d046e3924e0848da7b97de1f2e7fb9b19d6c2c71988aff3bVirustotal results 28.81% Heodo
2018-12-19ATT02167153384364593025.docdoc 2c058c3073e635a11612eb6d27fef735b649045adad61ad29bd40b8ab180d2c0Virustotal results 26.67% Heodo