URLhaus Database

You are currently viewing the URLhaus database entry for http://k-marek.de/assets/2dx5jz-vmex9sm-vjoc/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:173696
URL: http://k-marek.de/assets/2dx5jz-vmex9sm-vjoc/
URL Status:Offline
Host: k-marek.de
Date added:2019-04-09 06:37:04 UTC
Last online:2019-04-10 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-04-09 06:38:03 UTC to abuse{at}hosteurope[dot]de)
Takedown time:1 day, 16 hours, 58 minutes Poor (down since 2019-04-10 23:36:42 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-1042951611873_April_10_2019.jsjs 26b5d6c8934dbf593f2cc541bacac6e7812d71ddec256eb7bb4e9dd61b9c13b4n/aHeodo
2019-04-107871206370_April_10_2019.jsjs 7853439472ed9cd4358d92492c3abbb44d2ae46a2e3fbceebea2bcd858e4ebaaVirustotal results 8.93% Heodo
2019-04-105715013327_April_10_2019.jsjs fded1345d0108bf6da569dbb8b00e143b393e89c87cb201965cd1da0631ad4a8Virustotal results 5.36% 
2019-04-10867906748994_April_10_2019.jsjs 7ddfffb789cb316a55ff6f7c0dea5a703dbe3cbdd25d70cf6cc60481e90a057cVirustotal results 6.90% Heodo
2019-04-0940373592390_April_10_2019.zipzip 1927bfb53fc4341aa4ba599287d33340b476e98ccd303e907685dd35b0530ebdn/a 
2019-04-09656304276570_April_10_2019.zipzip 30f8dd610f46ff69ab53913c76936458e953518dd4f101dc1f0fbf4b7f4230fbn/a 
2019-04-091937721673_April_10_2019.zipzip e21dc485badd16a972ea74e561e4d1ffe81c2275bdc5de0ac7dc20026bab5c30n/a 
2019-04-094513979076_April_10_2019.zipzip 08fc4e7b893d826055c45c6c0035a718bf4a84b0f2541ed91cf6c6deb39cdb11n/a 
2019-04-0904005808042_April_10_2019.zipzip fba7c392be5e054e7a656680f22a56ee1bee5f0881dc923ddb40c6b36543092cn/a 
2019-04-092665776569_April_10_2019.zipzip 21e253c5c4d0bb1c6e8577b2d719fb892996b25bdd606341a0b177affbc32de0n/a 
2019-04-09820914414126_April_09_2019.zipzip d3b33311dbfec6bab5aff9cbf9017b0458767ab4e4168fc307b65376009b5584n/a 
2019-04-096958031821_April_09_2019.zipzip 206c6b46400d50da315ec53e0bd349e42fbb19643dbd14981639164ab01d5430n/a 
2019-04-0932580148248_April_09_2019.zipzip e69acd116690b886d45b45e9c24c95d91330072cc667638bf2bdf1b7909a80f3n/a 
2019-04-09889235230576_April_09_2019.zipzip 5a5067e8ce16edcf59a7bf0814b6a9d5ed33f8a5974cbce3ac5d5fe31461146bn/a 
2019-04-09622394189280_April_09_2019.zipzip e569b4a0af36d7e82454ae047b259e7c2911aaa2675a866ff53115ca8072e6f8n/a 
2019-04-099940437287_April_09_2019.zipzip 61e2cb56b14c807606dd0e5fe6848bb1f10e893dd098eaa6b9eab8931f76ef73n/a 
2019-04-0949052666245_April_09_2019.docdoc 9efb03fce5fa761348c993c5b5fe23d0c9563c5d55e40c323ef05a26e4ea96f8n/a Heodo
2019-04-09733788095444_April_09_2019.docdoc 09aab77d8262bff03f3f248d7c57bcef951c77fbfe7804271a686a38c65e1afdVirustotal results 25.00% Heodo
2019-04-09463768544212_April_09_2019.docdoc 445bb685c5f0766fc0d2cafa048eed71712bf82730320a50cc531161df7a560en/a Heodo
2019-04-09121268124143_April_09_2019.docdoc 167329cc0873391535982f908d258772240cb5aa75427b2f3bff4a9c04776859n/a Heodo
2019-04-09719642520575_April_09_2019.docdoc 7d7c938b29923d7d03dc136173b89c706374f1b86488b125449e4e8a8d866871Virustotal results 22.95% Heodo
2019-04-093680527062_April_09_2019.docdoc 65e0375545edc1896338e7fc5a1e0fd005a9eea5fe751cb35d81453977c53cc2Virustotal results 21.67% Heodo
2019-04-097670294978_April_09_2019.docdoc 48172e9c6e67f30e18b821c1232b558184327dd6dad274ff70357426d3e984b1Virustotal results 21.05% Heodo
2019-04-098266459239_April_09_2019.docdoc 3da52dd23993fc264f952f202c0170201cc1031ac66ef2cbddc866cbf5779f07Virustotal results 24.14% Heodo
2019-04-09056156514351_April_09_2019.docdoc d564f6b53a1f701b77041ef9fdefe0ed83303b708db09473aad0a394124a20e3n/a Heodo
2019-04-0905663538011_April_09_2019.docdoc e433d3482cc74b781695031111d40fba1dff06c9d46ce3346e6c5dbab90da061Virustotal results 23.33% Heodo
2019-04-091622691755_April_09_2019.docdoc 2de78bee39fc512251db275f95a32cdf5e5822d91ac6d0a0ba210bcdb2310e02Virustotal results 21.05% Heodo
2019-04-09584496777138_April_09_2019.docdoc 12532f26d6430fba452cc8a6ce6f2b52f0a8470a2850f7b3cfe0aafd7a5bf7adVirustotal results 22.03% Heodo
2019-04-0936120718628_April_09_2019.zipzip 4ed8d88ef4ae29a44276e2658445fd8e783c177de8589d02941de292b5989766n/a 
2019-04-09132379795009_April_09_2019.zipzip 9236fe7f7eb3609fd2ca7f04bed495c8cdb8361f2b995f945e8e30daf4c23190Virustotal results 21.82% 
2019-04-0944581612548_April_09_2019.zipzip e141d84541f977b6bfecfc6a531b5ebd553ed007d495582e1afe434e8792314en/a 
2019-04-0985781472123_April_09_2019.zipzip e82274d614341ce176c0110a769ce11f60092bb15b0da8e0e251d06a986202a5n/a 
2019-04-094891759813_April_09_2019.zipzip a3f29f314f836ecd8ef6e047b1cb20cde22ef65a83b3924a223e991caff05ce7n/a 
2019-04-090983310624_April_09_2019.zipzip ab3e4a992e9ce1b19c6ff48f2ca5dffcbe05d23d6599f3256e2046e74bbce260n/a