URLhaus Database

You are currently viewing the URLhaus database entry for http://benzophen.com/pouchdirect/r6e9-eba9cy-boyp/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:191371
URL: http://benzophen.com/pouchdirect/r6e9-eba9cy-boyp/
URL Status:Offline
Host: benzophen.com
Date added:2019-05-06 11:51:07 UTC
Last online:2019-05-10 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-05-06 11:52:02 UTC to abuse{at}unifiedlayer[dot]com)
Takedown time:3 days, 12 hours, 45 minutes Bad (down since 2019-05-10 00:37:57 UTC)
Tags:emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-080917374647DE_Mai_08_2019.docdoc f0f86903255f88f4d0a80355d0dcc331e0f33f32b30505115fcd4727e91bbf33Virustotal results 36.67% Heodo
2019-05-08Rech_8988871610DE_Mai_08_2019.docdoc 24267568d3fa011adb7ef53f107f6aa01162750e40eef869781ceb0ce6651f54Virustotal results 32.65% Heodo
2019-05-08323864938492DE_Mai_08_2019.docdoc 9f1c7192efe5fd241d1df09e7705fafd9356fb2e03e08e0d82ee4a26535b4ab4Virustotal results 30.65% 
2019-05-08Dokument_4636713668DE_Mai_08_2019.docdoc 9fdc9305eec872f1ca504b377314371c1ced1b0772987356ea9fe9ab7662633bVirustotal results 31.67% Heodo
2019-05-08Rechnung_272684512724DE_Mai_08_2019.docdoc 3e7d6e2f8a0965f759788182fd17786fa9ba5ecafdca5b71b86c737d09ace85an/a Heodo
2019-05-08Dokument_30608841273DE_Mai_08_2019.docdoc 9cb9e15e944c542fc3308e7b5c9108994bc6522efa562d3c89d5b20d232a260dn/a Heodo
2019-05-08150848421831DE_Mai_08_2019.docdoc d7fc74cd2d6f34bcc7e02522812778a91bbc6591f4805164208847add84ecf2eVirustotal results 33.33% Heodo
2019-05-08Rech_1785467878DE_Mai_08_2019.docdoc ca3df80f2b645b8d3eca905f0640d605b9d70f79ae9424e883fa73c50ec1fe88Virustotal results 33.87% Heodo
2019-05-08Rechnungs_Details_45714637891DE_Mai_08_2019.docdoc d97f2899ee64066ec4a0e641b598c9203a52800de6f3bebe11edad394043add7n/a Heodo
2019-05-08Rech_25601917071DE_Mai_08_2019.docdoc 942c15d908cca46bf861a0f12afaa5564f358631ac5438f46dd8aec5320ec8caVirustotal results 25.81% Heodo
2019-05-0893964276625DE_Mai_08_2019.docdoc 4f55f58bff347fb85cc57d6ca1b3558cd0854ab94889455f7c9c297e0a53f296n/a Heodo
2019-05-08195940215235DE_Mai_08_2019.docdoc 1667101838ea1804515221c8a6b6b55f2629605f5900e10f5ad9681d62659ab7n/a Heodo
2019-05-08Rechnung_010220878291DE_Mai_08_2019.docdoc f47066b0cc76015cc75de6b864de2d94048b07e5907d3aa8de1716050d655b22Virustotal results 28.33% 
2019-05-07Dokument_675583598706DE_Mai_08_2019.docdoc 0d259d80a2460b40a664d20e76eebbe3bea398cc0a391c3bb201e6fbf18979e7Virustotal results 25.00% Heodo
2019-05-07Rechnung_68363967259DE_Mai_08_2019.docdoc e0cca29fbe79912a60ba57c8776d7f84e85495fa54a0e5244c0917df09b6b359Virustotal results 24.14% 
2019-05-07Scan_76006056373DE_Mai_08_2019.docdoc 497fe0c5adffb28afd5d1add4b8fff359cd9a43fcb88aaa1f0e3ff9c30e268b8Virustotal results 26.67% Heodo
2019-05-07Rechnungs_Details_825791705426DE_Mai_08_2019.docdoc 3ca3b11abd89194bed84645f9427a71ca200fb70aef0af93eb6e20511228f36fVirustotal results 26.67% Heodo
2019-05-07Scan_008909433427DE_Mai_07_2019.docdoc 0aaeaa93626bdc87153bcbd213712de5c3fa7f98f2455f1e6e5cd2f46c03b0d3Virustotal results 23.73% Heodo
2019-05-07917945660051DE_Mai_07_2019.docdoc f412a78d93f03f39f6a58c865c75d6481a3ecfb83a3fdbf1ed32c0c546a773f5Virustotal results 37.70% Heodo
2019-05-0780419239754DE_Mai_07_2019.docdoc 60b17d785dbd6e4dbee37c553fa9a5617c7d23bda1841de3659b72d910733d3aVirustotal results 26.67% Heodo
2019-05-07159034282737DE_Mai_07_2019.docdoc 222ce422ca63999aef3b717a2e9eeb0c9d72599815c4f478597d451aeadfdb68Virustotal results 27.42% Heodo
2019-05-077938355421DE_Mai_07_2019.docdoc 22acd9dfb71a2c0c1a0ce6d0d750ba554e517075ec6958d107956776cacd8e37n/a 
2019-05-079163360201DE_Mai_07_2019.docdoc e9771e82271beb5c983f81566668f27bb2b45d500277e14612dc3cd86ac4b9c8Virustotal results 25.00%Heodo
2019-05-07Rechnung_73365171687DE_Mai_07_2019.docdoc 2ac313bde6bd9792f5f5b2abd91d5e7e2ce899c7631c261f4fb55cd9bb77f121Virustotal results 25.00% 
2019-05-07Rechnungs_Details_4156488599DE_Mai_07_2019.docdoc f12242ba8f3516adfe65d5e5754e1f910ba29a5a6acc66df4af5b85e8cdc1a6cVirustotal results 25.81% Heodo
2019-05-07Dokument_0050664495DE_Mai_07_2019.docdoc 568d369f2f809d7d70481953b14401f4d72fe4879ed817d66512cc7cd83f63f2Virustotal results 26.23% Heodo
2019-05-07Rechnung_90582887136DE_Mai_07_2019.docdoc c0b07e095ee0f8c7584d5521226c70d1ea1054130e7157f052c2d11461f3bd1fVirustotal results 25.00% Heodo
2019-05-07Dokument_396076076147DE_Mai_07_2019.docdoc bc55ef241e0a712138ce620fa54a11cf7f58170517e497267026016bce9d211aVirustotal results 24.59% 
2019-05-07Scan_624514368597DE_Mai_07_2019.docdoc 8f0d1f5f9444e54e4d5e9b991b587b672650a440350b2412dcc9c876df527ba9Virustotal results 27.87% Heodo
2019-05-077010338835DE_Mai_07_2019.docdoc 89cf5a3d050ed936c030df8a3df1658dbc95bdf2c9cfb8abf52ca87020c8f727n/a Heodo
2019-05-077429964969DE_Mai_07_2019.docdoc 95c225d91c6742ee6e9de9078232173b4460b7eba84d9028d67a30403bfe4781Virustotal results 28.33% Heodo
2019-05-0720545415607DE_Mai_07_2019.docdoc e87fb6d5b919dfb4afdd5749b378723d06980d41360ce49e4e681b15adf00b7dVirustotal results 26.23% 
2019-05-07Dokument_370304225395DE_Mai_07_2019.docdoc ea5bc88cfbb5d264ce5618d10691dc17d9363ee80775446c88aa7024bd9bf5d5Virustotal results 36.67% Heodo
2019-05-078172031040DE_Mai_07_2019.docdoc 52aad4bfb55e81033f2b2e0717328fc6f3b14a8fc06fac721fe4846c1641bea3Virustotal results 29.51% 
2019-05-0742451083097DE_Mai_07_2019.docdoc 05516ecea548f83b5ceb14ab7237a40f8c54e39ed0b5c1e9a94edcb9a5e581ddn/a 
2019-05-07Scan_3951402343DE_Mai_07_2019.docdoc 0fa9d4896df9e87c4eb4b76eb95672d804783705810fd229e114859bb7dcc370n/a 
2019-05-06Dokument_75565435768DE_Mai_07_2019.docdoc 50913fde5c989b2abda49269d9cc1872ef9f7ce9fe42391b08126415eb5e51b8Virustotal results 32.79% Heodo
2019-05-06Rech_388041860663DE_Mai_07_2019.docdoc cb5d61dbb577162397d82eb7353fa47e3e4ccdb4a852405c497b365c45fab88aVirustotal results 30.00% Heodo
2019-05-06594876642428DE_Mai_07_2019.docdoc 81a459d380755575753cbbf2f67801affa3f89093015df85d01b83dda00e40b0Virustotal results 35.00% Heodo
2019-05-06Rechnung_6675210918DE_Mai_07_2019.docdoc 49502af62972b3d73a981c7ee270e3e82db44d7cbff3bcba0c2032b3d005f3e9Virustotal results 33.90% Heodo
2019-05-065370379141DE_Mai_07_2019.docdoc f0497dd5ae50bb5773cd4796e1314942072157247d3e6dbbeb6b7d7e6f5fa3dfVirustotal results 29.51% Heodo
2019-05-06Rech_1142789428DE_Mai_06_2019.docdoc 7d01b3eac8a7eef6e57bcd509c6dc5fdd09b9306b07cfe668bf47a060c064e8fVirustotal results 28.33% Heodo
2019-05-06Rechnungs_Details_181638237328DE_Mai_06_2019.docdoc 14e2c112179900b4a24259af0f459268113ff941cd93d5dde161d0db48e34bb9n/a Heodo
2019-05-06Scan_6271021376DE_Mai_06_2019.docdoc 268a180b6c5dc8a4e70e883ba6bae41b38aabd07c9e2551d15d2973cbabd6caen/a Heodo
2019-05-06Rechnungs_Details_045895152041DE_Mai_06_2019.docdoc 3a5184bc92df457e98b04059df4a9710f418da8507cd0d22c853d1fa2743f059Virustotal results 28.33% 
2019-05-06Rechnung_05475236313DE_Mai_06_2019.docdoc f2434cbe02eeb7cb5de506e90b4e04f3f33be30f8cdb96248d6b290e2ca13cd7Virustotal results 29.03% 
2019-05-06Rech_32728090706DE_Mai_06_2019.docdoc eea95bd823fb174c71e3f70a9d625bd51f0b30fc77d2d76d651eed945c7295e1Virustotal results 29.51% Heodo
2019-05-06Rechnung_47291625479DE_Mai_06_2019.docdoc 242ed851ce446cd9277cab80cb6a9a30af117cf4eab6fede6aefa47c50d14bdaVirustotal results 27.87% Heodo
2019-05-06002460023487DE_Mai_06_2019.docdoc 6392934e41ae2f40f51d103a91d43ad0b29695726c9b019eacccc15a918a6ac2n/a Heodo
2019-05-066563393925DE_Mai_06_2019.docdoc cec5c446695643355f24d074e42f004566b33662dab7713103d60c09a7548b1bVirustotal results 23.33% Heodo
2019-05-06Rechnungs_Details_0032852307DE_Mai_06_2019.docdoc 44f2e0866bf35fd497dc99d78088dd491c6cc298d5811d8f8b11684812e63cceVirustotal results 29.51% Heodo
2019-05-06Rech_4507599275DE_Mai_06_2019.docdoc b696acec3d27a5a7d4d5c8eaf93c4ae348ab17f78fadf6bf591a194047c742d1n/a Heodo
2019-05-0616870129987DE_Mai_06_2019.docdoc 1241503187e6eab61e28a83e423358b340acd60ce4dcea04d61946f9c8b6644bVirustotal results 25.00% Heodo
2019-05-06Scan_614306222812DE_Mai_06_2019.docdoc 055cba13db6f9913a4e120ffe4c9721cc8f9866776444de9d6496b29316ed76bVirustotal results 26.79% Heodo
2019-05-06Scan_6049453273DE_Mai_06_2019.docdoc ab75715c26fbf12dc10460dd719871341530fad6658df693ff358c9ce36f1c99Virustotal results 22.81% Heodo