URLhaus Database

You are currently viewing the URLhaus database entry for http://stickzentrum.ch/informationen/Document/nmBzDOCEPz/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:184376
URL: http://stickzentrum.ch/informationen/Document/nmBzDOCEPz/
URL Status:Offline
Host: stickzentrum.ch
Date added:2019-04-25 04:48:08 UTC
Last online:2019-05-31 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-04-25 04:50:02 UTC to abuse{at}cyon[dot]ch)
Takedown time:1 month, 6 days, 4 hours, 58 minutes Bad (down since 2019-05-31 09:48:21 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-29Document_06388382484US_Apr_26_2019.docdoc 9ec754906cd974949805241075b0309f01f428c0dffc53b4aaff2e43a79265bbVirustotal results 69.49% Heodo
2019-04-26FILE_171917022192US_Apr_26_2019.docdoc 751ccbeabee910ea022ebc97fde11d5e1c3bba9f83b6d2df09a927924eb1e60eVirustotal results 32.20% Heodo
2019-04-26LLC_95435299521US_Apr_26_2019.docdoc fd84376ecb2845381d03f46851fb6328f5c0f26c51fb515c74f21b2326031630n/a Heodo
2019-04-26INC_753757725298US_Apr_26_2019.docdoc a1be08364eef857af56f506b206e780c803c212b76dbac8dc17e7983d08f65ffVirustotal results 30.00% Heodo
2019-04-26LLC_7213346683US_Apr_26_2019.docdoc 8065d2137332893c6e189b09a0e6b480e2f2955e827e0b67e4418e6a268da467Virustotal results 32.26% Heodo
2019-04-26DOC_41770391032US_Apr_26_2019.docdoc 7a6a2c210aefa9f680207555c2b909616b54e3999945d22a47241c2987debd7bn/a Heodo
2019-04-26Document_39062229833US_Apr_26_2019.docdoc 3dbb4ca641797b6f3729fbd6512e83b47426b4a20d6b490d81100dcd6786d15eVirustotal results 32.79% Heodo
2019-04-26DOC_114270604186US_Apr_26_2019.docdoc 85986ff033d06fc7f8b1eaff949a4ad970240c2a64bada0f041756bcbf184bb4Virustotal results 35.59% 
2019-04-25FILE_23880039411US_Apr_26_2019.docdoc 828b7e9914f932108e52249577fa80987f20ebda94b8654fdc2964baa4d929a4Virustotal results 33.90% Heodo
2019-04-25INC_445943216556US_Apr_26_2019.docdoc 67d05dd367015c892e3f0f50e5737a5138f00f626a134a85f1c2a6496132e691Virustotal results 31.67%
2019-04-25LLC_36120143845US_Apr_26_2019.docdoc 2be2d55078be5d7a6982c89413fe4039cd65fd64f0e786481d785d726c24560dVirustotal results 28.33% Heodo
2019-04-25INC_8083037632US_Apr_26_2019.docdoc df0fb247a70c89c6562901405d16cc4d36f5052d95ecedc5b9ed5185a0125f91Virustotal results 27.42% Heodo
2019-04-25INC_872262766898US_Apr_25_2019.docdoc bce589ff607e5a60063fea9c3b4ad8ce6a89ef833e395500363fa9ed9246cee9Virustotal results 27.87% Heodo
2019-04-25LLC_8210712958US_Apr_25_2019.docdoc de56ff30c012fd1c2b28d5d9c9747afe58cc414e185d59ba81f0dcaeda44dee1Virustotal results 28.33% Heodo
2019-04-25LLC_321242139617US_Apr_25_2019.docdoc 64f50f8c4e9bd7b196aa3d88694280da4762e02157d0f53ac68ca37e86d9e6f2Virustotal results 30.00% Heodo
2019-04-25DOC_3902332609US_Apr_25_2019.docdoc 6e63ea61f944615450899ffdd9a9444c1051c7a66f3e5a089c4a6ed2da6e6ff1Virustotal results 29.51% Heodo
2019-04-25DOC_9832418546US_Apr_25_2019.zipzip 523bde2bd0da08007a76f3cc9fd5d4f9f5708609e611983dd2398344cf5383ean/a 
2019-04-25DOC_39073447996US_Apr_25_2019.zipzip eb92ac57ea899314f0426395ed16d93cc9b04fd829d3da0a5d175f8e5123846en/a 
2019-04-25Document_2772969257US_Apr_25_2019.docdoc 07cbd15ffbfd690ba40a5a9227a82b735917174ea595120009f01a04625f6556Virustotal results 37.70% Heodo
2019-04-25FILE_639690257911US_Apr_25_2019.docdoc be6473351331956dc550f794617da15925785c04c3c8bb63f998ef08b032aa2aVirustotal results 33.90% 
2019-04-25Document_57190596711US_Apr_25_2019.docdoc 47d15e14ae126a2a669ee71f409be3b80bb1127327933c8991b05ecd453cf656Virustotal results 34.43% Heodo
2019-04-25FILE_3803704087US_Apr_25_2019.docdoc adb17498e7aef92a20608d0899bca2e9c61c730889b3105e8e56517bb54217bcVirustotal results 35.00% 
2019-04-25SCAN_18501708951US_Apr_25_2019.zipzip 38c72e8ef2f5562dc42b16b4e116189af80866fa51b02165d19e3cca1845daa2n/a 
2019-04-25LLC_2343347605US_Apr_25_2019.zipzip 3e315495988cf55475560a807f1509d249e8e2683e5f15cdac91d342145f69aen/a 
2019-04-25Document_20114236029US_Apr_25_2019.zipzip 6ddbb4a449cf20db624091b8e69b87acca4ef216bf9398e201e4ccae4291670dn/a 
2019-04-25FILE_1736501464US_Apr_25_2019.zipzip 7b9163dd30d9f666ad8fde7e4b9589b6f79c248959f682d1ae8b3a9183beed76n/a 
2019-04-25SCAN_3846480889US_Apr_25_2019.zipzip 51927637dd0e7f326d218917ccd661bac08913b437117697e0eba89234713f12n/a 
2019-04-25FILE_951046545278US_Apr_25_2019.zipzip 232cdb5f48b1d9d23e7322d5f7ed37fe1a4eb285a75e0fc010f24add0b37f353n/a 
2019-04-25SCAN_018706666087US_Apr_25_2019.zipzip 8a5f2a2ba9c815a056cffb1f1dcca46848b1a9526939e4c9e9b90caf4e1c8b3en/a 
2019-04-25SCAN_9865144799US_Apr_25_2019.zipzip cffd030110f68d710cb817bcdc719b7b74655e873581e73357358e1d7668dbfan/a 
2019-04-25SCAN_254929206395US_Apr_25_2019.zipzip 5991c083b4c1c73ead4bd791bb85e2e5064239fee24700c5358290fe49ea2695n/a 
2019-04-25DOC_405019829795US_Apr_25_2019.zipzip d754a6b3502af4d81540f65cb5f56d6a7bcc2f456dc144abce25ad0b4bdd01afn/a 
2019-04-25DOC_55668330710US_Apr_25_2019.zipzip a32761c67b9dfb7412ddef183de59647638c88e6de84e4e61f2bca2cc7329fe8n/a 
2019-04-25INC_218733352534US_Apr_25_2019.zipzip 9e8ddca5540b25eaf020c322e09105321e09b2deda239538cf72a2b09414f07eVirustotal results 21.31% 
2019-04-25INC_0242128569US_Apr_25_2019.zipzip 6ba45ac2c64576f02d4c6b644dfb1167a61acaebbf08449b497935b064084e92Virustotal results 20.34% 
2019-04-25LLC_38125582774US_Apr_25_2019.zipzip 67c49f435c69518ca0c1794df1b7f47afa51cb6825d811b5445f7396bf07bf48n/a