URLhaus Database

You are currently viewing the URLhaus database entry for http://schaferandschaferlaw.com/bin/YBmyY-eWqq0c22GOlEURV_ZmoFgzqiY-Wvf/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:183169
URL: http://schaferandschaferlaw.com/bin/YBmyY-eWqq0c22GOlEURV_ZmoFgzqiY-Wvf/
URL Status:Offline
Host: schaferandschaferlaw.com
Date added:2019-04-23 17:34:02 UTC
Last online:2019-07-20 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-04-23 17:36:03 UTC to Hostmaster{at}ussignal[dot]com)
Takedown time:2 months, 27 days, 9 hours, 9 minutes Bad (down since 2019-07-20 02:45:23 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-25Z-0026986-04252019.zipzip ba1f8b24c39dd9ede512016495fd2ba60352142ad32a37a6704407c9a4006217n/a 
2019-04-25P_155360_04252019.zipzip 01bf6b0a9ce80df2a5efe779d9010e5ac7bae49c6f4e2d64c26bb7bc97244660n/a 
2019-04-25LJ-073060-04252019.zipzip cb6ed55545fd26224a767de11e6421711422b7aa20bbee7c60dc005fbfcd34d4n/a 
2019-04-25Q-71563320-04252019.zipzip 5e905f5fdf016489059b7c78271934cdad97f90e83201b423be759d8e8d07dd5n/a 
2019-04-25EC-950627675-04252019.zipzip c495908f8b256207ec1428bab7b7160ca62a925c259f876b52bf7ba5b8212a2bn/a 
2019-04-25Y-686405-04252019.zipzip 42f48f87657b7a1a7e6d45c2fe0ef2b7ac98c45c6fc5efc18a0b2c1b86e22abdn/a 
2019-04-25Y-13672854-04252019.zipzip 711acba9e70081429e658ecbfd36b3b863d9635058dff94705c5bfbdd9856992n/a 
2019-04-25LH-3569598-04252019.zipzip f40a69e5173bcf4d9ef725256a653eac76727a95d60f880f9530ec2096fff573n/a 
2019-04-25B_755403338_04252019.zipzip 2bc7805214f22c9849de31422fa90e80e6d05e5e3bd7b470fab410c2be4438c5n/a 
2019-04-25O-793347-04252019.zipzip 0af14dbaaac703e444e6eef7c57c9a872ac56de89a1ec6974b6f6495d2ec89een/a 
2019-04-25HK_531373401_04252019.zipzip 5532e03fd1ddd3c793a60076556a4efbe8c4d6763ca3fcf784156f13dec38b86n/a 
2019-04-25RM_506952_04252019.zipzip 37dc56f84dbdf51f4f58b36197968016d5d62a420dcc0dd08d0aefa49d3ebc68n/a 
2019-04-25C_796556287_04252019.zipzip 311b31c7f68bc5ddda782f6c6410c811fa12accacd0d032db1c04174dfef1ccen/a 
2019-04-25YS-5837126-04252019.zipzip 95806131d4db96e9efa8cfc663cb86d5937505dedd58b76debf5fe34456e9a76n/a 
2019-04-25K_233543147_04252019.zipzip 5e4c5a09bbb6e77365a2eea6485edcd3c02968695bbb7caa83bbe764f89184bdn/a 
2019-04-25K-3377140-04252019.zipzip c022b0b625cdda814c95a292df37f67cafec2337f9eabb5720edf39b86030143n/a 
2019-04-25BE_9844989_04252019.zipzip f003d8056043d55faff30d175fe42beba059715592eb947169b76e18c789b3a7n/a 
2019-04-25SE-0593275-04252019.zipzip a0d4b50c750b5d72e5b14945d7b3e25a02826185dc068d91ab4bec05dd4cbadan/a 
2019-04-25VK-273954-04252019.zipzip 692e8bd661590b65106b907909c88dc5ce13a218c246ff83cba9f4246eb496bbn/a 
2019-04-25C-45821664-04252019.zipzip 8ebfa991d0b2e79e4ffe5aa254e7ab6c93a6f79c401f7c999dee2051c20dc595n/a 
2019-04-25P-309203-04252019.zipzip 810f2c6987a34f5597b27ce71f0f86e7b24c9cda9bd4df2e1b3b4fc267695383n/a 
2019-04-25Z-925543301-04252019.zipzip 2d3c0ac314df2b649b6838211e50e4f85b7d011569ee45f1cca9133377edc008n/a 
2019-04-25HP-34864659-04252019.zipzip 490c0df74bd3cdc8d3db47a17e56f8f66f574465d4d47fe11740768a7d2059can/a 
2019-04-25F_86860924_04252019.zipzip 467f432d38c5f772cfc34aba7e7111c348c2c9d46f4cbe3c335afa97e8327693n/a 
2019-04-25Y_617120380_04252019.zipzip b61f959f76e0b4a6070265e2dee93cf64b4caebe1eeaed1a8838ccd6ce6c5911n/a 
2019-04-25I-171835762-04252019.zipzip 9eee088cbb2f7f9fd9ec3ab76bf2528f5d58d69bbd6c1654ed7d498d61c9476en/a 
2019-04-24AQ-291587-04252019.zipzip a2bef9d840697190f348d92af10bf27f14d45144835f3645995683ab77f80cb8n/a 
2019-04-24W_590987450_04252019.zipzip 7e2d5ca15c006fef88a351097d80960bf66369d1448d97df0fd9c3caef14303en/a 
2019-04-24YS_7203134_04252019.zipzip 95375438a7cb823f3356163e3615ba112c8fed7dc8b0f7b016e0f1c3a188a9b2n/a 
2019-04-24BR_18665998_04252019.zipzip f1442c7fdc67a700b15d2254dddb9a9ceaf480b5533a205d5bd8e2f75504c4a0n/a 
2019-04-24X-562947125-04242019.zipzip c3da7f10c96064a41a3857297b16924b06fac50e62e1b810fe79c8431e0b4b15n/a 
2019-04-24A-970159-04242019.zipzip 189f8b9f1f7a7ee2758cc525eb3698e5303d53e4d7019007267d74b86a8d189an/a 
2019-04-24KU_17122033_04242019.zipzip aeca140349a8593deb1fa33445d37a0abef6d9f40dd43b091eb50360fcac51dbn/a 
2019-04-24M_2941352_04242019.zipzip 3deb353cb5cac9715d686d58d99ddc62353cf3311b6ef6619dc8e0f54817e73dn/a 
2019-04-24QL_878104_04242019.zipzip 5e2a66149dce4932d2db063ba82ce39e617d9138ba8769cdfd7204fdc3ea981an/a 
2019-04-24JG_744668_04242019.zipzip 0e447b9d2c2398b45c5506b9b4fe1d52400e3c9b18b3d46cfe25546393144644n/a 
2019-04-24I-984217-04242019.zipzip 9bb6556c87944e639243ed1b2f03beecf5776fa9e0933cb6c8e8c881fe8b2269n/a 
2019-04-24W_402734884_04242019.zipzip 0780061d5dd0ded0dd208c43ce05cc7b4e2bce003fbc5c452cd359853bc52221n/a 
2019-04-24E_6791790_04242019.zipzip 623a73888f8523eab6087c2d82dc6bb2c5679f28efc4f59366e2a733f3a68f62n/a 
2019-04-24ST-373235742-04242019.jsjs f9a3d8d2568059bff0da6d27fe8d474fa8dc1c0f97c24433f2fd9caed3594b0fVirustotal results 10.71% Heodo
2019-04-24A_399695304_04242019.jsjs da2d68c98cb3e9214a1e0bb58fc5fcd77c1435e63282c0602f085f56f6aa3e29Virustotal results 10.71% Heodo
2019-04-24Y_43060454_04242019.docdoc 0450bfede94b319cea0c9c2f42fee0dd63677fc3b04491bf348bf14fd7df87abn/a Heodo
2019-04-24M_9364360_04242019.docdoc c89c4a93830f003dfc0192b8b45c334872b98ec57f081fcfed7976ca4fb344c1Virustotal results 24.56% Heodo
2019-04-24Z-3211035-04242019.docdoc ce9a9f8bf2b7042befa0fca4a99e8ec872a93ff80f66c650292b8c8a867ee516n/a Heodo
2019-04-24XW_1195994_04242019.docdoc 8f2002168bbdff63ed1e3e257d470ac5f3579a68a2412543f937cbe0e3e7d43eVirustotal results 24.14% 
2019-04-23UR-284595-04232019.jsjs 8870927b7fcb804322779608fabf59e1c019245df08aaaf5f9202d131e92efdaVirustotal results 14.04% Heodo