URLhaus Database

You are currently viewing the URLhaus database entry for http://ghoulash.com/Dezember2018/HPPTQM0357883/DE_de/Zahlungserinnerung/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:98083
URL: http://ghoulash.com/Dezember2018/HPPTQM0357883/DE_de/Zahlungserinnerung/
URL Status:Offline
Host: ghoulash.com
Date added:2018-12-20 03:46:32 UTC
Last online:2019-01-08 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2018-12-20 03:48:15 UTC to abuse{at}netins[dot]net)
Takedown time:19 days, 11 hours, 50 minutes Bad (down since 2019-01-08 15:39:06 UTC)
Tags:emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-01-03this-site-is-virus.docdoc c2e393ff568f4a87ce48011f10664138e569710f56ddc0462aa7f36bdad5ecadVirustotal results 0.00%
2018-12-2121_Dezember_2018_13_16_59_Uhr.docdoc 2f413a01315d8404ea122998168bb74035dca36cf0972e83ebd0b6b80258a7ccn/a Heodo
2018-12-2121_Dezember_2018.docdoc a1b6ba620e6dae846af5bbd471ed8c5cb84abb122d262a330e8550032e6b90faVirustotal results 16.67% Heodo
2018-12-2121_Dezember_2018_12_16_54_Uhr.docdoc 0a29be2888d9f34c85dc70522c8f7bb46a7c504f3343a4023a1ae8b95619cf65n/a Heodo
2018-12-2121_Dezember_2018_3067413326.docdoc 6eaa3124eefa8eaac9a12b09037f398b37e6fbe3e3867e996ddf70b4f6ed555an/a Heodo
2018-12-212018_Dezember_7288926661.docdoc 539304f5371e263c73240dafd270fc82baf06b3fa02d8bff6b7f46bc67daee69Virustotal results 20.00% Heodo
2018-12-2121_Dezember_2018.docdoc 29cfa5450e654f50e4c77ee77d7d78d0e508b6446f3a6ff77098ab2eee4384f7n/a Heodo
2018-12-212018_Dezember_8225343975.docdoc 7effac6ad5b903509394be751e664a3145e5a5138da06d1786782a72be25a5ebn/a Heodo
2018-12-2121_Dezember_2018_6916302439.docdoc d9e32bb26bff81b53df36f9f48345895b2e2c06c30fd467f2c0c964243e5c3f9Virustotal results 20.00% Heodo
2018-12-2121_Dezember_2018.docdoc 55e27dcdc88b4893ae66fede8c55ddd8f08bf8e88aa94d1b0deb24ec0dc725a2n/a Heodo
2018-12-212018_Dezember.docdoc 4a848d3552f9e5c102a5beb770d727704969dc2049b7ffa2714c03106148a4f4n/a Heodo
2018-12-212018_Dezember_01_58_30_Uhr.docdoc 1169f807bf0cbe61c389f603b23fb24a73ef5a6cf0330bae86f5a7864fab9009n/a Heodo
2018-12-2121_Dezember_2018_01_43_58_Uhr.docdoc b3a07fe6e8deec0a4bb72cd33320cd3e22f13d46fe4d2928dd439adcdebea3c7n/a Heodo
2018-12-2121_Dezember_2018_01_30_28_Uhr.docdoc 35d69c999becbfbaf3563c934a851c9e90e1850e07506dc011f851447aa3dce1n/a Heodo
2018-12-212018_Dezember_5579112960.docdoc d4098a04301f6d45aeabed3dec3d069765696d91c213b2854a01a1cf9a77b37cVirustotal results 21.05% Heodo
2018-12-202018_Dezember_1700425360.docdoc d45f9ddfbbc675327f076622560f042b8494e35b2dfb1dd2a4371fca28541149Virustotal results 20.69% Heodo
2018-12-202018_Dezember.docdoc 8f568a553084056ba2d6c4458f6f81cca2ce02de0d02cbb36a82056b6d895d5bVirustotal results 20.00% Heodo
2018-12-202018_Dezember.docdoc ef8cd8c96f4ce08a00b941b4fe9406f82e3f8cd086095b8dfb422ec882e14262Virustotal results 21.67% Heodo
2018-12-202018_Dezember_8810863997.docdoc 90c8b32c4a85e61c97e87cf9387459ccf7061f3f6ecfc37fc003ef2650fe335eVirustotal results 21.67% Heodo
2018-12-202018_Dezember.docdoc 39223a9cee974527c8538ff76f9df28d50218c4b080cde7249d2b3fee7e6710bVirustotal results 22.03% Heodo
2018-12-2021_Dezember_2018.docdoc 2dc727a19af157fddc015a1a4ea42abfc09dd7a70040a1da7965a4ce6b3baedfn/a Heodo
2018-12-2021_Dezember_2018_23_06_29_Uhr.docdoc 4d1a0829f456f4be6c5cf565ddd53106275453946eaedd061d83c7f082121742Virustotal results 20.00% Heodo
2018-12-2021_Dezember_2018_22_50_08_Uhr.docdoc 9ed11279e4650bc7f72b554339510c611fe59003caf9ca90071bb82afa12341dVirustotal results 20.00% Heodo
2018-12-2021_Dezember_2018.docdoc 3eca7c19d9dce371da73440abaa0b049673097cf6dd9450cf827c0866e97b888Virustotal results 21.31% Heodo
2018-12-202018_Dezember_22_22_03_Uhr.docdoc 2bc19f1a55b61ebc203dbda2b2aab16e0b47508db2f868532c9b44e1555a9019n/a Heodo
2018-12-202018_Dezember_8807906788.docdoc 2cae7098baf7ba6b8ca1b9ec37e5a1391a1867b8ecd20cf47065cf40d1125c0dVirustotal results 26.67% Heodo
2018-12-2021_Dezember_2018_8627601652.docdoc 82c8667d9a8fc1e0b2e6544334f8783861edae4444125797edb1ca7c9d9b239cVirustotal results 27.12% Heodo
2018-12-202018_Dezember.docdoc ff0bd259761812d0f4df0e2454e5cb6bd076fbf6d52a7896fc7d9224b12a610an/a Heodo
2018-12-202018_Dezember.docdoc 2d4e3189de630a5c8e28a9f42e2d9559d2e82923b1a2aa8013e3659466186b7fVirustotal results 27.12% Heodo
2018-12-2020_Dezember_2018_2295685796.docdoc b98143e9cddef8410389d6e051f04290e049af16e616ad87b5174b9ad61ce7c4Virustotal results 26.67% Heodo
2018-12-202018_Dezember.docdoc cb6cf978c042342d394d8e705ba911d35650262696b327c0c883d5727cd6b6efVirustotal results 33.90% Heodo
2018-12-202018_Dezember.docdoc 4d2ca7e989e7d083bdafae14d16c54e24ac5f2ffed365cd19520c67decf01e32Virustotal results 28.33% Heodo
2018-12-2020_Dezember_2018_3764321226.docdoc a85098067d589fcadb9f184403b99ba2e4c078734bfd330669ac322a95ea6ca2Virustotal results 28.33% Heodo
2018-12-202018_Dezember_19_35_17_Uhr.docdoc 200e9f0ffaa1c07ee596212059e01280bbaccfa6c22d54414068c28d30a81160Virustotal results 26.67% Heodo
2018-12-202018_Dezember_8793012987.docdoc 92e39ac764a910ffc06acf41e43187003fcdc10d4076faa2640a4ac79e924cceVirustotal results 27.12% Heodo
2018-12-202018_Dezember_3957950721.docdoc 03a85e11c44190d01ca2a7123195e82cfd67353d0763218abb349bd7024b6509n/a Heodo
2018-12-202018_Dezember_9653709022.docdoc 56a37928d0549592fe5cb4b33066c442ef2b37ec15612d5777cde3f44ab7fa2eVirustotal results 26.67% Heodo
2018-12-2020_Dezember_2018.docdoc d64cae7e0840e557ce0d4bd8f0b043ac1831d4c963dbffb4dbb494874296b91aVirustotal results 26.67% Heodo
2018-12-202018_Dezember_2346498113.docdoc 85386588dc3f29e5f3bbde3ab9fc6cba826c293bbfce11b6c3f1a4403f9e2ae8n/a Heodo
2018-12-202018_Dezember.docdoc 4395acd17c017d2fea93612e75e28ce1466b2e5f3528f532bcd75dba7d6ac787n/a Heodo
2018-12-2020_Dezember_2018_17_50_31_Uhr.docdoc 622758f212cc724f8223469c85f5883ef21aea22e6ec4a59a2b6ef0fd70fea93n/a Heodo
2018-12-2020_Dezember_2018.docdoc 329494a7e736cae4357c67b7af90547c56028a5f47df6d90fb5b577f33e01cafVirustotal results 25.00% Heodo
2018-12-2020_Dezember_2018_17_22_38_Uhr.docdoc ce04fba3f5fe9ce231b6ca7e96d1c9e290c60baf433d01c6b7a96d2134743bffVirustotal results 22.41% Heodo
2018-12-202018_Dezember.docdoc eb3611367b8b5c6346013c0f23c8d1bb4a7234391e5c72e6013a2586fe7873e0Virustotal results 25.00% Heodo
2018-12-2020_Dezember_2018_16_38_32_Uhr.docdoc 5e8f2518fe598022240d7a1c92176c86689a7fb1b05f557e43bcbe66a20abd8bn/a Heodo
2018-12-2020_Dezember_2018_4161561102.docdoc dd5d21a8451686dbb99d458ba82a867e5fb4ed8178e4d67db7a63c85b776d42dn/a Heodo
2018-12-2020_Dezember_2018_15_55_29_Uhr.docdoc 39cf05ae23047c8e27e403e7d00f48501055782ae9207faac7bb72416be8dad8n/a Heodo
2018-12-2020_Dezember_2018_7523913344.docdoc a26f660ca616dc12f094261b02be1b4d70dff1fa2c1d15eb3f7b8b590e1b3754Virustotal results 25.42% Heodo
2018-12-202018_Dezember.docdoc 74d5fd8d413e3c39eb60c51081255b3a39b97829ac65402e057e8e2ca0816680Virustotal results 24.59% Heodo
2018-12-202018_Dezember_14_38_56_Uhr.docdoc 3784d9ca2ad2a8e9de322edddca0f153ceef2207337001383d276646b6f75136Virustotal results 25.86% Heodo
2018-12-2020_Dezember_2018_14_11_45_Uhr.docdoc 8a117a8dfa6f66d1796bfa7b7cda9d433647b01430e60646799a7c31de64cbabVirustotal results 25.00% Heodo
2018-12-202018_Dezember_6156245806.docdoc a5fd98a875cadb20c281ce6fe36a8c84f9b286feb4583fe6ff35a52245bef6e9Virustotal results 25.00% Heodo
2018-12-202018_Dezember_2275160720.docdoc 4cb8f0d8cd3349a25bc8fd6703b8d7d2092e2354dd71d04f6cce46033902f3f3Virustotal results 25.42% Heodo
2018-12-202018_Dezember.docdoc 4b980be36fd3227dde92fa9793da100159b14b7568158bb3cc172496a10bbc5cVirustotal results 26.32% Heodo
2018-12-202018_Dezember_13_07_43_Uhr.docdoc 2d563b2b755324cad78b6093974105941cb8298187b7ecdb617725082fc18527Virustotal results 25.86% Heodo
2018-12-202018_Dezember_12_21_48_Uhr.docdoc eb1c8850042c713a29b109bb4ba7be36690a0aef15393799706b27c48e3ca0dan/a Heodo
2018-12-202018_Dezember_5198216796.docdoc 50bfc1fa82b892d663fe87bb2c1dc16c1d87cf443a5d458b42d2efba50edac0fVirustotal results 26.23% Heodo
2018-12-2020_Dezember_2018.docdoc 9200c9c9f350648a846de9bb8a8e63d229860f2664258f0d25ebdfc03ffe74e0n/a Heodo
2018-12-202018_Dezember_8971962127.docdoc 9f91b74e68fa4222446d7ce3a72bcfc0367c06cfb439510cd1aa0906b0194111n/a Heodo
2018-12-202018_Dezember.docdoc 672a4e168e358ff14adce79fdeb0981e6f79d3a32e978640f5e83c84bc017479Virustotal results 27.12% Heodo
2018-12-202018_Dezember_10_48_56_Uhr.docdoc 825248e7ea1b22f577f411d2e55509b5058b80d3ce2f1f2753d4c04c3c5102faVirustotal results 27.12% Heodo
2018-12-2020_Dezember_2018_2131062004.docdoc dc45b137089f90187a88a7641684dbbdbd1b2de0d5747add8dfa62dd5fc06121Virustotal results 27.12% Heodo
2018-12-202018_Dezember.docdoc 737bca9d7d5914f2bf1f937406c6eaad4a773ee4392c1dfa2addfbbc9990c8beVirustotal results 25.42% Heodo
2018-12-2020_Dezember_2018_10_05_23_Uhr.docdoc e0a93d961496c54592b7b6241d9d19349497de17e0bc7b081476e8f97bd07fbcVirustotal results 26.67% Heodo
2018-12-202018_Dezember_1757849904.docdoc 84e795af8e1588f99c7018c79ea0b68ade787902e1f01a76efc82b44fce98d35n/a Heodo
2018-12-2020_Dezember_2018_9154702949.docdoc 9017f5ac76175af2dc87a227afad84e97c505bbaebecedc52bdf208c0feeee31n/a Heodo
2018-12-2020_Dezember_2018.docdoc 3948c088d657361bba3aaedfb40c1a476bfebe216ebb26381d877d34fa5e6ea3n/a Heodo
2018-12-2020_Dezember_2018_1755753961.docdoc e6e7ce59799aea47d200a4ed3f5447a46029192b92d4fabeb0b5cf981e9e60a9Virustotal results 25.42% Heodo
2018-12-2020_Dezember_2018_6850044496.docdoc 96c616f321105d84ccd07c68d46b436cb0dd38d34174846b9d06c548dc5df076n/a Heodo
2018-12-2020_Dezember_2018_05_16_51_Uhr.docdoc 5c60c9d4ab9858803ab3b147c7cd3bd32bd2d878f03f34b742ddf209030a714fVirustotal results 23.33% Heodo
2018-12-2020_Dezember_2018_05_00_59_Uhr.docdoc c7a4bf3536da5c9f2824a1588e697d9186428d283b1ee14c43e1d3caac6dfe93Virustotal results 25.00% Heodo
2018-12-202018_Dezember_04_45_52_Uhr.docdoc 048c88143ab1f2be57af3ae1e83e72ac5187402554a2a4205c471879dfb4dc89n/a