URLhaus Database

You are currently viewing the URLhaus database entry for http://commercial.uniden.com/wp-admin/legale/Nachprufung/042019/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:174731
URL: http://commercial.uniden.com/wp-admin/legale/Nachprufung/042019/
URL Status:Offline
Host: commercial.uniden.com
Date added:2019-04-10 12:15:08 UTC
Last online:2019-04-16 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: erdnuss
Abuse complaint sent (?): Yes (2019-04-10 12:16:04 UTC to abuse{at}amazonaws[dot]com)
Takedown time:6 days, 11 hours, 35 minutes Bad (down since 2019-04-16 23:51:25 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-1559694583_12_04_2019.docdoc b8e20f089d8d73c8219dce57dbc7f39eaeca8acc20785377f0deba7cca3c2b13n/a 
2019-04-1259694583_12_04_2019.docdoc bcf44147f31792dc072ba428e86464f081ff70be4b9b68ad03efce747d49d0bcVirustotal results 27.87% Heodo
2019-04-1244449037_12_04_2019.docdoc b9a0e0d4946ccf898e50182d2fd64fb05abfb37aa19b9d66288db57d6a6f8a8cVirustotal results 27.59% Heodo
2019-04-126656001563_12_04_2019.docdoc 7bfa97ac3d0200757d0ea1aa8ef25e6d8babf1d5549e4e1bb269fd08139c5360Virustotal results 29.51% Heodo
2019-04-12831006784565_12_04_2019.docdoc 32d7c163e37e9444d53a799c40f3bce1de653a26e557e9115c81593f817a96afVirustotal results 27.59% Heodo
2019-04-12396767936395_12_04_2019.docdoc e7cdfc5eb9c981db418815dc459fd06d711ac86e6d83611d972d5e91e621fdf7n/a Heodo
2019-04-12008017298_12_04_2019.docdoc d94a9248e31c060ae63c1becf7df2fa5b72b2dfddd83d9fad02e286b89205ef4Virustotal results 27.59% Heodo
2019-04-12830998138693_12_04_2019.docdoc 96786504ad52978d682b65996187b87e60297bf202a1ef9a9c150a06f0b87e4cn/a Heodo
2019-04-122063444395_12_04_2019.docdoc 2b9cfe403f33d8bb0aac3e6d132a9e70db9435cb46046d8e4735cb0395091bebVirustotal results 28.07% Heodo
2019-04-126541423630_12_04_2019.docdoc 3044f43b040d476ac859f7f55a35f0e2332c86b60ae6703054b811e28ac61ed6n/a Heodo
2019-04-1292426088_12_04_2019.docdoc 061fd00e92e9bc6a34db2a6ab27dad3ec9f759b34c72146c1f0aa2adc3413de7n/a Heodo
2019-04-1241238066_12_04_2019.docdoc 112278e446cc3c7f538089cae3eaf962b06218cae4bcd8fb9a0b493bc380507fVirustotal results 27.12% Heodo
2019-04-12176411130_12_04_2019.docdoc 5017ececeb4d4f7c8483dd8178df693760ad227e94053b560ac60cd81870b199Virustotal results 28.07% Heodo
2019-04-1278473333_12_04_2019.docdoc bb96f404b090c1e4c7853dadaad4846d135969a401747c87ee93b760fc844331Virustotal results 27.59% Heodo
2019-04-1249287272879_12_04_2019.docdoc 8fa2a91359b44c86c77775b3227c8ae0ccf1f882dafaa3309d0b8fb315437274Virustotal results 27.59% Heodo
2019-04-12599436531559_12_04_2019.docdoc af77939a3206c6beeb32606423daeb8236413630ddd3846ac300d741d8809108Virustotal results 27.12% 
2019-04-12995378173_12_04_2019.jsjs b6cfe1983ff1d2fb772c8e68fcbd69f805d5b488ded023a6c13de39965af95f6Virustotal results 13.79% Heodo
2019-04-1054029466904_10_04_2019.jsjs 7d91ca89ded649dd8a7f691d603d22435d13fc741a7d78b3f587b18370184029Virustotal results 11.86% Heodo
2019-04-1056332139242_10_04_2019.jsjs c5aa88145481b5ec57a620084e533210b7d896e4b5f7b4aca8abdb68646a8343Virustotal results 10.91% Heodo
2019-04-10898656853_10_04_2019.jsjs 20f61d43bb940c959db46366a7210ec321b90552f17e6bf3502bb26b5490ded2Virustotal results 9.62% Heodo