URLhaus Database

You are currently viewing the URLhaus database entry for https://www.aeronautec.de/wp-includes/ctzyzde-oxm1psn-ssnriq/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:178928
URL: https://www.aeronautec.de/wp-includes/ctzyzde-oxm1psn-ssnriq/
URL Status:Offline
Host: www.aeronautec.de
Date added:2019-04-16 17:18:14 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL :Not listed
SURBL :Not listed
Quad9 :Not blocked
AdGuard :Not blocked
Reporter:@Cryptolaemus1
Abuse complaint sent (?): Yes (2019-04-16 17:20:04 UTC to abuse{at}netcup[dot]de)
Takedown time:1 day, 15 hours, 0 minutes Poor (down since 2019-04-18 08:20:41 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-04-1856245513385DE_April_18_2019.zipzip e64c8148f882d24e5999ea6d1341b7d4e606eb25c66e1af132d32647d9aca84cn/a
2019-04-1878540474040DE_April_18_2019.zipzip 18ad5e7dd811e5ed4f90f9e9af4650191dff9c0e293f4942261c8f04ab5e6ab4n/a
2019-04-18442990507870DE_April_18_2019.zipzip e51fe951bc6b237678ea9580000fc8c308a4eb45622e14bfd20fd7a3190b8232n/a
2019-04-1898606196848DE_April_18_2019.zipzip 1961b85e0737eea46c7214b61799a156e06afeb654e2aed4cb9613d14ed0cda1n/a
2019-04-18915451334697DE_April_18_2019.zipzip aa2bfbd3271f1ac51778b9fbb6ad3fad0e26fb0b4ed39294db82fae6386282fen/a
2019-04-1855756988552DE_April_18_2019.zipzip 9495a576a28729f49b2a01bcbb1509688af26acf9470a1e96ab4fbd8a1b96309n/a
2019-04-1811802697503DE_April_18_2019.zipzip 1080af615883fb4c95ac4d5d45297ed41e8c6f2cdcfca30037dcafc42f565f96n/a
2019-04-182283683567DE_April_18_2019.zipzip f7261328bbbc2187499abd11cbb11706bd57ea86a4c764b30e3700c59bf35d8bn/a
2019-04-184702564016DE_April_18_2019.zipzip 922fdf85a18004dd25a0f246d66a910d33543fbe8847ce9d99f06f71765fcddfn/a
2019-04-186036131049DE_April_18_2019.zipzip 294f0890adb4b73f0b0126c3674ab8861589fa64533b3128bd99a7d029dafc36n/a
2019-04-18068161986445DE_April_18_2019.zipzip dbc8f6b308131f74aca859a69de5f553d0f4eb17d1a51286a54338373d6bfe38n/a
2019-04-186399686345DE_April_18_2019.zipzip 4f1875b7b4421595aac3f8c524963be4b4f7c47b5b323056e40e4114384d9bd8n/a
2019-04-17685604072657DE_April_18_2019.zipzip 819aa4a58169ed5be2096edc1a9016065d3011c7b023bd884dc2547aa92205f1n/a
2019-04-17112635031283DE_April_18_2019.zipzip ac326d69740f0d8202444c1300638161e65bd991190685fc9dc067ac135fd1d4n/a
2019-04-17833131251201DE_April_18_2019.zipzip fbb77f801a1ee78dec6d97e8128fdef82693b500e7058148a1d979c22175aba6n/a
2019-04-1774114095347DE_April_18_2019.zipzip f05600ffd33532965bf70d1fbe3233b81df1b66f5c11d5de46a9b9c05b6a84d6n/a
2019-04-17578418203006DE_April_17_2019.zipzip 60211b970a180d5017461efd4f4ab5059a409e6fef06bca7d00de9c1e2d466ean/a
2019-04-1769500919359DE_April_17_2019.zipzip 5ae7cfcbe33c68d94eb65cfb3334b30a38ed2bc1f53e81e79bb243656e33cd09n/a
2019-04-1746942213096DE_April_17_2019.zipzip 33780c250d5d0669ce5025a0e9db86a94ebb1003d9e863192b9ca982dcbf79ban/a
2019-04-1776709300763DE_April_17_2019.zipzip 70a69af0206a2e11d36c564e6a3144ac1f2d450674be12be8023206f02f003d9n/a
2019-04-1768402589546DE_April_17_2019.zipzip 1db68815f45b3d39dfcce7a69a509ecee4fe26c9f9ef77d098f6b9801da3e854n/a
2019-04-1738149441353DE_April_17_2019.zipzip 42de3d2a8185b69a048d2eb6d1c2c86e77fb50b25b92ed15d3a9487631aa6a6cn/a
2019-04-171591997146DE_April_17_2019.zipzip 91a78415b1ce3a58d62c66fd90851040e9b32c9e5f8094316918e3e6da826d86n/a
2019-04-1700693463046DE_April_17_2019.zipzip 2b98a9943c90f98dd89642e35850acfaf9127a7441d766f3bb44425e560a5338n/a
2019-04-17799916799335_DE_April_17_2019.zipzip 4207a22c9d3804d42cfd9ae474522aece5f8f20024e17e3a44fc93e0fa1be2c8n/a
2019-04-173889552162_DE_April_17_2019.zipzip c004c7c8bad76a4ef48bf238a7d2a0f42d0bbb60dd57aa1a29d39e18b3e69bb1n/a
2019-04-1715792166973_DE_April_17_2019.zipzip 9b12c40973b242688c933be0929b558f40e41c902375a993c66e9e9caddd2a8dn/a
2019-04-1793710445074_DE_April_17_2019.zipzip 1175a54e1c5cf3bea92dcad974ed8548f393472d78fa2b989377cf52d7f79c57n/a
2019-04-170397139505_DE_April_17_2019.zipzip 3f4a2174ed61542796ba687d2bbd85036ea9d66ee4fa18df99fe825baafcaf2an/a
2019-04-17568618825675_DE_April_17_2019.zipzip 99afd0ad37bb0dafcc9b8e46df83c8c02d0541cdffde75d61597f6e20294efc6n/a
2019-04-1781533423008_DE_April_17_2019.zipzip ec9d23e17618fb13d0821489d0b8b919497afb9d0b557b974901770333ecc3f1n/a
2019-04-170036475241_DE_April_17_2019.zipzip 1b4880d8be7000c5eaaa4641944d7e237b7a444bd209806b27054dcfb8cb6bc8n/a
2019-04-177709764380_DE_April_17_2019.zipzip 999b6af575af091617f0274a449cde91de97e0d6fdcb59c431c5432c5c89eef3n/a
2019-04-170165450560_DE_April_17_2019.zipzip 3d7bcde9508eba502c7ba202ae6b888056e084262387e2b79fe1581509209057n/a
2019-04-17207198504261_DE_April_17_2019.zipzip bc10cb031f89388ef38cc43fecf34ca456952855a0139f43840b04bd6fb3e976n/a
2019-04-17251529008330_DE_April_17_2019.zipzip 133868294bafc0ea90b6a63eb8ffc0f702250a90735b6fdea03289fbb50173b0n/a
2019-04-17190847154435_DE_April_17_2019.zipzip 7dc583d63e3026e4386181ebbe86393ea11ce64940a08b5c4e0e0bd2364bdb7an/a
2019-04-170700659592_DE_April_17_2019.zipzip 58916aa705f861d00927b089b9287a481bb777d6b396180cfc8837bd51dd3808n/a
2019-04-1619269079508_DE_April_17_2019.zipzip 353e7da4326c4ca355049ec2b1b143fef9e0dbd2b547b308cf3fa317e3fba2ebn/a
2019-04-1691537610919_DE_April_17_2019.docdoc 3828b5d43c9a954b999a9aec7777e8a36b97d8a00de5ac023fbcd09b210cb543Virustotal results 25.42%Heodo
2019-04-16920380866603_DE_April_17_2019.docdoc f4057cf66759a43716d9fa6733db73448df6fc66303df5616dcce6496b83b167Virustotal results 25.42%Heodo
2019-04-1668162924677_DE_April_17_2019.docdoc da113158c502b1128ea80c1a110708a22c510dc5dcc88939b20d87c2994f5c5dVirustotal results 25.86%Heodo
2019-04-16866467877558_DE_April_16_2019.docdoc a39e96bb339abf98493d3ba90dcfa68795b464fa75de8ac6122d35c28da6a582n/aHeodo
2019-04-16364305101054_DE_April_16_2019.docdoc 8eba23049d725aabd84b63f8cd4b079c78f26cde6f7bb8be1d2477df0c0d5127Virustotal results 32.76%Heodo
2019-04-16662249001921_DE_April_16_2019.docdoc 141e277b2165595334f404edd83397057b2a4ef8a52eb8edba79203f0aba44d9Virustotal results 30.51%Heodo
2019-04-165340268789_DE_April_16_2019.docdoc fa660e7b9ff937c7e5c479dc9cde90110956fb283453d09e1dfde4853b96296bVirustotal results 30.51%Heodo
2019-04-16963732718079_DE_April_16_2019.docdoc 033fa72fe48a853b99e41ed7467c1ccc488d5abe69dff887b8a6b7b2c5a5452fVirustotal results 31.03%Heodo
2019-04-1663975426047_DE_April_16_2019.docdoc 2424f686781cc0fb887ff5606a77f090dfe38b9539e94e0d5d55b20dcb212041Virustotal results 30.51%Heodo