URLhaus Database

You are currently viewing the URLhaus database entry for http://tekalu.pt/0xjvnok/afpii-mtjwg-ouzlt/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:182756
URL: http://tekalu.pt/0xjvnok/afpii-mtjwg-ouzlt/
URL Status:Offline
Host: tekalu.pt
Date added:2019-04-23 07:38:03 UTC
Last online:2019-04-24 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-04-23 07:40:04 UTC to abuse{at}pt[dot]clara[dot]net)
Takedown time:1 day, 1 hours, 14 minutes Poor (down since 2019-04-24 08:54:44 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-24Rechnung_08201757725DE_April_24_2019.zipzip b2418ad8f867b8516a3f921b6c942db8667d31b2dda2826981f060745ec817e5n/a 
2019-04-24Scan_7979928182DE_April_24_2019.zipzip 0531c67c7d947d11b1a0287161fab06c551532412b66a5f7081b3852714083cbn/a 
2019-04-24Rechnungs_Details_728047072771DE_April_24_2019.zipzip 4fd9baffbd467561404d21158ac0b262a052066a48279a37ab249b669642d04dn/a 
2019-04-249332863122DE_April_24_2019.zipzip 8ea947114be6919694a09836443ab0028b1814a5c069b687656c429da7435d71n/a 
2019-04-2443858865870DE_April_24_2019.zipzip 4cb698575ddae072e0a1b61bca310276326852a42c3dad8048faef6c0d25dbecn/a 
2019-04-244506452363DE_April_24_2019.zipzip f68c9f7dc45b7a731d65f79e34fa4c8fdabf13409db739fe3e0fccd9f7b77813n/a 
2019-04-2466069270717DE_April_24_2019.zipzip 644be48e3b8f68e271aacdeeecdbf783235e6c67e310f5a389f9e80523de3f65n/a 
2019-04-249169080469DE_April_24_2019.zipzip 038a41ae075a02bb3a4d756c9685a808cf024755ed8a7471c9016856dc758523n/a 
2019-04-24101816453800DE_April_24_2019.zipzip 717e4bc8d47ac885cb66752e9a320b517c0a116d1d339f57e881a9620a5e0aedn/a 
2019-04-24404442778731DE_April_24_2019.zipzip 114dc83c548e5815006414f85915a29b17111981bd6c7d06225880a5c649c337n/a 
2019-04-246194325252DE_April_24_2019.zipzip ddda5229ac041a02dc4f6ac1b6560f4d1d46381df0b9463c1d818d355505ed55n/a 
2019-04-24479657979779DE_April_24_2019.zipzip c0a497f50bcba037f3777226dce1ff6cb26373731e7282dcb8b9de9674750ef7n/a 
2019-04-2496876900105DE_April_24_2019.zipzip 7f3e07e77a88c130245cfd368f583d0b1379d0bdfc35838e13a7ca21de1d402cn/a 
2019-04-23000146185221DE_April_24_2019.zipzip 608a2aaf3ff38c7ebf622ae4ec7c525b5d5a1879692aac76409da4e4b00c30f7n/a 
2019-04-2347383072731DE_April_24_2019.zipzip 48b2881b53a79ea379700b131625faa2da5edf62640dba2662b38534d6c3a6e8n/a 
2019-04-23815076446895DE_April_24_2019.zipzip babdc7713044e38e675c8356831f47d9f487daf1184742da6b77fb6629e521c1n/a 
2019-04-23433424309949DE_April_24_2019.zipzip 00a2d7b15e5f534c1f05455ee7a1b34e385e9ffe81fc9d1241d66dd3f840ea23n/a 
2019-04-230020428976DE_April_23_2019.zipzip 184776e6d480d48990bcdfd940a4a6d1fdf2f45253144096c7efebc4802c9b65n/a 
2019-04-2318691280740DE_April_23_2019.zipzip c1a77997d3fb2dcac33f5f08d71f5fc1ed84a2ad8f79d078ea6fc94dabf62e3bn/a 
2019-04-2383992472374DE_April_23_2019.zipzip 813b9a490bf78dbb3a2ea26b36d259afade1ec3717d3e6f28a1415b39c934c16n/a 
2019-04-23563485231548DE_April_23_2019.zipzip 0061fa34c0c4cbd5f30f11baf1bf0a32ef8a46b25a6466324f96563e8ee36a57n/a 
2019-04-23936815039181DE_April_23_2019.zipzip 1adcaeaf4d7801075cb20cc0abbf59f35e7dd3876bbe411291446e0a33ab1f54n/a 
2019-04-235355729655DE_April_23_2019.zipzip 28cd6fd783ebda074ea73cfa73a429826559215c75567d5df484653ac16f9d1bn/a 
2019-04-238006216075DE_April_23_2019.zipzip 9f62ded99f13319024c52a4811d2143768c201d44aa7688fbbd3cea45b2a0a4an/a 
2019-04-233946441709DE_April_23_2019.zipzip 089507f45fada27ab6d2b636916ab4484f4a4cc7fe119b91d0e0004a5af1a9a0n/a 
2019-04-232513918088DE_April_23_2019.docdoc 99e638f6c4aa79656fee7ce55d9006b0d32618e4ab7126a221f21c1145d6dafan/a Heodo
2019-04-2338915346450DE_April_23_2019.docdoc a3933f110219fdc4b27bb3cc9df87a6d5ffca5c849206816c1311f2185551f9eVirustotal results 31.58% Heodo
2019-04-23684459124477DE_April_23_2019.docdoc 178f9807e09da56ff02b4c72907f5cec2a567527da4ee515aa6453f47e52a787Virustotal results 31.03% Heodo
2019-04-239536438045DE_April_23_2019.docdoc 03d471048561df5ca748a9cbb38b424eb5ae4910faebee09b8182c96dfbc37adVirustotal results 31.58% 
2019-04-23979019963988DE_April_23_2019.docdoc 322234c35234943d7d6ed1ae0d4456259e0e766054faf29e94350d4700c24812n/a Heodo
2019-04-231760403298DE_April_23_2019.docdoc 5a6e36811650641a65b747d97580253559986118a49605133f8870b8319f2f42Virustotal results 31.58% Heodo
2019-04-23477000774481DE_April_23_2019.docdoc 4796a9b178509e64b34e6d0e9b0d45f987db00fe2714d1bc3f8bf3fe34301d7dVirustotal results 31.58% 
2019-04-23340845919445DE_April_23_2019.docdoc 5332772c957d3798b563f103a5e46f88b6e19d550257ae43151e28a3fc822251n/a Heodo
2019-04-23908172031255DE_April_23_2019.docdoc 7bba52bed8170af15520935659a77862418c71a8e871dcee3069f854e9099765Virustotal results 30.51% Heodo
2019-04-2370465724459DE_April_23_2019.docdoc 8f957284fe9b3c22f776a5585ace8196cf14acf41c240647b732d8a6849b1c01Virustotal results 31.03% Heodo
2019-04-23105699211712DE_April_23_2019.zipzip ba0ee34e96eb8ec642dcf335270b181caa687084c5d3032f6997d31f815aa00en/a 
2019-04-2318089990724DE_April_23_2019.zipzip 9c89f4f5e6f8a9e227b59fe0bf50c707cddfb4aee15c1aa5d760c650ca04b742n/a