URLhaus Database

You are currently viewing the URLhaus database entry for http://sandkamp.de/Bilderftp/sites/ya0gn5dv_plip6td-85739464849/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:203870
URL: http://sandkamp.de/Bilderftp/sites/ya0gn5dv_plip6td-85739464849/
URL Status:Offline
Host: sandkamp.de
Date added:2019-05-30 10:03:02 UTC
Last online:2019-06-12 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-05-30 10:04:04 UTC to abuse{at}strato[dot]de)
Takedown time:13 days, 0 hours, 6 minutes Bad (down since 2019-06-12 10:10:28 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-06-0183916467729.docdoc ef62880b29c9e9403633bfe2c0572d75e5d9ee3fa4fb698697dceb9efc99ec3dVirustotal results 49.18%Heodo
2019-06-0124455621894_PL.docdoc 570a32b3a97f12b17246e9940817c9c72ee63ac383f6983e342e09f79debb17eVirustotal results 49.18% Heodo
2019-06-01942746245639.docdoc bf032ea596d973c8333c4a7d4e7338cdb4276e3d2e8ae5046b8bfbac20941c92Virustotal results 50.00% Heodo
2019-06-01541334352534_PL_01_cze_2019.docdoc be08e4e434bf6ffb686cc050d2d014fbc47fdfa0ba3abbd8f33b0aa11ab2d23dVirustotal results 44.44% Heodo
2019-06-01198694552237_PL.docdoc 545a4700f14d2cfd7f03499246dbb2738f5555f92ed45538f5301622f220c985n/a Heodo
2019-06-011381451138_PL.docdoc e5cd9fb3599e112d7f690ec64cc87eaca100d75fc46123812fb4a690ad71be55Virustotal results 48.39% 
2019-06-018473625824_PL.docdoc 015d2e25bab599d1a78b8d7f021f29d07fd98d092a4d8558171c21b2ff2d5cf1Virustotal results 49.15% Heodo
2019-06-0161287294194_PL.docdoc 1c2f25113cf027732770e9f16c727da8ed92c9503034e0c7642bf26d939a8c84n/a 
2019-06-01829483921933.docdoc bffe54938b6af06cb9d5792d99ed694370b373ca0aba791a5ba9b1028fbfbc92Virustotal results 47.37% Heodo
2019-06-01396556636913_PL.docdoc d777840280b22871584a1f1a9fb73dac5b7b335ed3089c35c638e0ad6984eb5bn/a 
2019-05-3156397243695_PL.docdoc 71bfba9498217d205555c3c7f0896f3930029f0ebc78a09e0ceb48cbbe8b2899Virustotal results 44.83% Heodo
2019-05-318491788631_01_cze_2019.docdoc f8e39ecf6d736e3e321da3e786e095c108564c0ada8a0916f70e04bc642e60d5n/a Heodo
2019-05-3124321126253_PL_01_cze_2019.docdoc f2c59cc9eaffd0c7050123d864febc3e5380b439d1041aaeb45b04ae7c6e6bbaVirustotal results 48.28% Heodo
2019-05-31183855834495_PL.docdoc e1e0d91e131669f5c88bd9a851b270f11c8eb364f13253c1adc7c965db858dcaVirustotal results 45.76% Heodo
2019-05-3125638983848_PL_01_cze_2019.docdoc 7894381b0ab455b3f831f689607a32a015b1a244cb633a040c887eb3976258b8Virustotal results 46.55% 
2019-05-3121516613819_PL.docdoc 14e39469bea5e529217ebf13911d4c03eeba3657b224d187be857903cd4a6018Virustotal results 46.55% Heodo
2019-05-3143859283355.docdoc aa42a5f10fc08dd7b5e163a4e84cdf5e7f8315f53b3cbd258003e4cda1859a56Virustotal results 39.34% Heodo
2019-05-3176893241616_31_maj_2019.docdoc 986652393c298d31d83a2822e5b396602f156a65f461bc36edb04ff1447cea07Virustotal results 31.03% Heodo
2019-05-3119278557838.docdoc 8f4852fa2c68ac025463fc858447d51fdcb2d4d7bc4d1ea7987563baf0ca3febVirustotal results 29.51% Heodo
2019-05-316866427365_PL.docdoc e5009799562414d49629a271b53611e9e72d6886a79f293f417d75822de62318Virustotal results 26.67% Heodo
2019-05-316196978561_PL.docdoc a66b5982e41c8e78c0a807d5c1e7ecf9d554b941fad99bb856564e4ddbb5d295n/a Heodo
2019-05-311419945357_PL.docdoc a45823ba084d0d78d09d4326a97572fb65035c88e1db0c5ee841f2843c28d7f2Virustotal results 24.59% Heodo
2019-05-313554299699_PL.docdoc 6a32e95f42d02af5eb94739c1e17710bb7f6ffa890efce01e12cbb50e201a906Virustotal results 24.14% 
2019-05-31613137369176_31_maj_2019.docdoc b1a76d5bd22e884a6992fed64848e840fe9603c35473ca3ba16a7ba71a2336a4Virustotal results 23.33% Heodo
2019-05-3143429387343_PL.docdoc e50892cdd3dbdff6f0516653e9f59ac44bb20a0f739a95b6e25d89cb7a2e196fVirustotal results 39.34% Heodo
2019-05-31636947984262_PL_31_maj_2019.docdoc 7e8dd2fa267e6b9a56a7ae76e223e438d952c15f34fcc840616668bc6c34358cVirustotal results 36.67% Heodo
2019-05-31839183967357.docdoc 2742424afed9491f159edd49169c32dfc2b2f5c2a540bf83c58cc882929f2b3eVirustotal results 37.29% 
2019-05-31774453247733.docdoc c438665a42f5535f079f5cc9dd504fc0b0b3ee0388608daec1e9c118edb8da7bVirustotal results 31.67% 
2019-05-31553426325773_31_maj_2019.docdoc 8e2c8cfb11035d6ba9d0e8ddf02d1acfaf0dff72080892eb51ca7f199d30dc02Virustotal results 35.00% Heodo
2019-05-311198663197.docdoc ad20956b5f9639b1ec95cd3c06cb2d5727f9bc6e8079e411d2513b6b5cf671caVirustotal results 36.67% 
2019-05-3176648617225_31_maj_2019.docdoc 58c47c1e48d2560fe96dc03eeaec4ef61cc4b057eabc323ff140d505ec9b2358Virustotal results 28.33% Heodo
2019-05-3134975656338_31_maj_2019.docdoc b8ffba5933a7f1ab10640674515407df874291c9b965091706b22960b3dadaaeVirustotal results 36.21% Heodo
2019-05-313457434897_PL.docdoc 96e2d1631b87443d845db9feb1cf3afe3bfa55759427a709cc4889a20c4dfb29Virustotal results 35.00% Heodo
2019-05-3112435425127_31_maj_2019.docdoc 2b2ca9cfa5e7efb20e6ec52b7e5effbb02ac817544a2f77c69b13b1a46038506Virustotal results 34.43% Heodo
2019-05-3136291347894_PL_31_maj_2019.docdoc 065c4bd9f352f3dde47629101839b08d1264027623d68fda03005789cab0861cVirustotal results 33.33% Heodo
2019-05-31264829899241_PL_31_maj_2019.docdoc 38950a41bb0d5c61efcd0dab8ffae15d49454a792dd55507eb3fd2cc1d1a2a3eVirustotal results 27.59% Heodo
2019-05-3142527148621_31_maj_2019.docdoc 841ea7eed1c264c08b46b6feed248dbe7bc255773c0b06a9bf565a43ff54e808Virustotal results 30.00% Heodo
2019-05-3172839816889_PL_31_maj_2019.docdoc 963cceba0759dd50fb2a087ce21e144c64e5973e78a397fd2bc7e30fc444db8dn/a Heodo
2019-05-3025386254255_PL_31_maj_2019.docdoc 7a973404b546486366191a83c0e04aaa83a732b2133883f1a9246c296318d79fn/a Heodo
2019-05-303512946731_PL.docdoc 3b8afd70befb29f9b95436a16fa5dca6193af7788369d026e065f70872078604Virustotal results 30.00% Heodo
2019-05-309235478266_31_maj_2019.docdoc a46c2718370f531a3e6ec951ccb19c56159f26b77d6aa3bab0731ce2c794076bVirustotal results 25.42% Heodo
2019-05-3034127397621_PL_31_maj_2019.docdoc 36845718eeaa9e0e992076372c53bc185aec96a9506eb277c809d49dc4c29878Virustotal results 28.33% Heodo
2019-05-3089725657646_30_maj_2019.docdoc 35bf417fb46a528bbb9f07dca28408a72e066c835f258474536525deb26bb17dVirustotal results 28.33% 
2019-05-30461746452157_PL.docdoc 59c2d27bd9acdfa4f8097b8252e06faee7f0affcdafe972f7d0defbe57428fd7Virustotal results 28.33% Heodo
2019-05-30542228359938.docdoc 0cf70cd6e3ce218ca6e0fb3bb7a79d13b176b75c4e29a332fad0aaee559f6970Virustotal results 30.51% 
2019-05-3071627299749.docdoc 9ce35e0f984b50c21084800ab5b826228b65719e69144d21fa7dbbee249a5bd9Virustotal results 26.23% Heodo
2019-05-308742227458_PL.docdoc 230c0ba0db8fab4da33517e2b6a245c359cf04fa1ac17f877bcb5aa30ca1b0a5Virustotal results 25.00% Heodo
2019-05-304378472725_30_maj_2019.docdoc cab1d98b0de123c454a48060e7c3b8e33cda47b1dc2612f37a96bb5c066297a4n/a Heodo
2019-05-309298722855_PL.docdoc ff60d17aee6a178f5d9506325bbece194f115bd4e8e16eabab54796247372617Virustotal results 30.00% Heodo
2019-05-30622462392359_PL.docdoc 8f3bce40479c866d1bca464b6d7f1be39087b21eebd361cf6c3f5e6d8cdb7ca5Virustotal results 28.33% Heodo
2019-05-30789415458423.docdoc f04df50720f0478869b245979c39281cbf17d6cb2c08c33221d3934b1e1f1fd3Virustotal results 28.33% Heodo
2019-05-306393417673.docdoc 380bc34ae6bcee0b78b3c7a7fa35b93f56a83669c38c3acff66b18956ca40be3Virustotal results 28.33% Heodo
2019-05-30963845643957_PL_30_maj_2019.docdoc d4fb2bc73c3c422c6b8fbe929655fe87c05bc2057a50e85cf0ae655d4dcc6781Virustotal results 28.33% 
2019-05-304653566192_PL_30_maj_2019.docdoc 743bb6f03307fbcb5878e462019a6d417299c7b313ba0c201256038bd11d53dcVirustotal results 26.32% Heodo
2019-05-30856992444375.docdoc 834744cf97f29821eb41536ce05002ec897bca897939c2c79d8c8d23a61ff0adVirustotal results 26.67% Heodo
2019-05-305683655974_30_maj_2019.docdoc 6356ac1b2179f02132e2387d2f3881969bdac03169f7bc08001536dda0a40324Virustotal results 26.67% Heodo
2019-05-30585556383924.docdoc a6de48d770963d4712ba096c29dd64e887e16771109fa75f1fb4c9feb2f66dc5Virustotal results 23.73% 
2019-05-301426498843_PL_30_maj_2019.docdoc 3f029af254121deedc506e6cc2eadc6310318ab93f61e2d6c60be4a806c9bed1Virustotal results 27.59% Heodo
2019-05-30235817296379_PL.docdoc 05aad39628f200ae651d034b8c609c0f1059aaf24d91203eac3059c72d5c7a3bVirustotal results 28.33% Heodo