URLhaus Database

You are currently viewing the URLhaus database entry for https://herdt-privat.de/cgi-bin/TegGepvUa_68tXp0Wii_module/8jgtsu_f2ovvwgz_portal/1373144244089_xyxaIe/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:417914
URL: https://herdt-privat.de/cgi-bin/TegGepvUa_68tXp0Wii_module/8jgtsu_f2ovvwgz_portal/1373144244089_xyxaIe/
URL Status:Offline
Host: herdt-privat.de
Date added:2020-07-22 17:17:04 UTC
Last online:2020-09-06 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-07-22 17:18:05 UTC to abuse{at}strato[dot]de)
Takedown time:1 month, 15 days, 23 hours, 48 minutes Bad (down since 2020-09-06 17:06:43 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-23DAT 2020_07_23 836028.docmdoc aec05999d3751d7cfd9ade2316388ee6da303748401fb7eada3edaf2b37a18a3Virustotal results 43.33%Heodo
2020-07-23rep-20200723-235720.docmdoc 907cdbd0036f8c72ef0830f26aee15b16f5498fe3fb88c9ac852fecebcfd2771Virustotal results 44.26% Heodo
2020-07-23MES 2020_07_23.docdoc b60064c8db21645429edab0b94dcb5dc93c7325774e13b65c0bd79497eef8296n/a Heodo
2020-07-23rep 20200723 3816.docmdoc 5a2ebbb1273d774d883ccc80441f1c0a31352cca7114330d6272919625c803efVirustotal results 44.26% Heodo
2020-07-23Doc_495496.rtfdoc c685dc92b2f626e331f4d31a5db4b218823c143b7c5338fe29b8518455179cfaVirustotal results 43.55% Heodo
2020-07-23INF_2020_07_23_4434.rtfdoc e73f1ef263f3c13e83599b2740bddf21cac0115e8a8da4a0c728e024efc669bfVirustotal results 44.26% Heodo
2020-07-23FILE-20200723-SPU050.rtfdoc a3efe658daa71ba1bcb8da17390526c7f0690c7edc527df4d7945b4af34ab7beVirustotal results 45.00% Heodo
2020-07-23Mes_20200723_P900192.rtfdoc 34184c5992ed62afbaee71a96232106fc41857b255341becc56b01722b343c3fn/a Heodo
2020-07-23LIST-20200723-775198.rtfdoc 654e6bd6920ccd6177242d7e58e504e354a9e5fc0be08816ce3afaa64b0dee93Virustotal results 44.26% Heodo
2020-07-23inf 20200723 DCX12913.docmdoc c16f62ec18e9ca91236dfbab6da3e98fc15a8574e3c66dcb4c652ba820bac07fVirustotal results 45.00% Heodo
2020-07-23file I38729.rtfdoc ac7930487897476241e49fbc630ae0da49daa5efde7a3b8f017ec4e1a6d97133Virustotal results 45.00% Heodo
2020-07-23Mes-20200723-437086.docmdoc 57c916ce284fef78cf597e34daaba2cf0aeed7a30602b72dc93b8ec0a1aa8cc9n/a Heodo
2020-07-23Dat-20200723-CZB3671.docmdoc c4ddc964c0d911deab5fe24136c588c63d4fe247aeedd42d0ea37491e44af3e5Virustotal results 44.26% Heodo
2020-07-23Rep 20200723 6606070.docdoc 4e765584956c4f9fe770cd92e1d32522023508d48ba53b6ce7ace6c04d4e8d83Virustotal results 43.33%Heodo
2020-07-23DAT 2020_07_23 Z074697.docmdoc cec6250fbf5fb227dd2bdf92b7031f41fa3d65fe1f1d5a441229c14913884ea0Virustotal results 43.33%Heodo
2020-07-23Doc 20200723.docmdoc 3871eed6206b0a99254d0c9687c02a628857c89231e009285a476dacff80d98dVirustotal results 43.33% 
2020-07-23arc 581413.docdoc 769b01f8c9dd10732e0a5d287a38b2946260496bcb17be7319e7070e4f3a62b0n/aHeodo
2020-07-23mes_2020_07_23_5565.docmdoc 3f733796d3615608e933be5a6880061ec7fc506529e9ca3ad7c555fe460fb388Virustotal results 42.62% 
2020-07-23mes_2020_07_23_5565.docmdoc 3f733796d3615608e933be5a6880061ec7fc506529e9ca3ad7c555fe460fb388Virustotal results 42.62% 
2020-07-23Doc_20200723_938.docdoc 9a3ea141f8d72bc76545f030fe43d91476ce753bd525ed872269184599692c81n/aHeodo
2020-07-23Rep-20200723-9968.docmdoc 1b9e74162d42d570c37b7fb5cae6e43929257833fbbfd3fbc9d26579650840ddVirustotal results 44.07% 
2020-07-23Arc_20200723_93297.docdoc 9a85400cf019aec876aa8f402aa493488a4baabd22e521a73a69397b09854156Virustotal results 43.33% 
2020-07-23MES 20200723 5299495.rtfdoc f5a1617ace3c119f8b0da4e5f5d71a16ed13263569af554bb722341c3fe2a67aVirustotal results 44.07% 
2020-07-23rep_MC068.docmdoc afaba3e7c44f16cafd700c3cf2bb48367f1319234da31884c14d364c90c15700n/a 
2020-07-23Mes-2020_07_23-3862.docmdoc 23645a86e01e57b408b09718faf59f3efcf7586cc8c41a1c47780472f5ea9e26Virustotal results 41.94% 
2020-07-23file-9052680.docmdoc e50229adad96d87fc334ebdc7b337d1d90eb8fbcac675be16f14bd72254aa0e3Virustotal results 43.33% 
2020-07-23Mes 0643235.docdoc f90d92c5c4d8e67b7332df917d99caa81a46a3fde2e3686f43af146265bdd6b2Virustotal results 43.33% 
2020-07-23inf 20200723 8669.docmdoc 3479ceef59526d78569e37da10322c1230cbd27228b79fc3d57bcac836896f94Virustotal results 43.40% 
2020-07-23Arc 2020_07_23 L667.rtfdoc 1dfea81b5777c0554c227f6e584810d2cfe5a178e38133583c6e936f8405c36aVirustotal results 42.62% 
2020-07-23list-20200723.docdoc 1a2486d1109323b6b9e00bcfb625af22c1bd1c3538a97870d4e96b9a95648a0eVirustotal results 43.33% 
2020-07-23ARC S564.docdoc 8d52990eb4b83e90b44ee30643fd95f19f9388ee75c00be6df5599390ad4e60cVirustotal results 43.33% 
2020-07-23doc_20200723_850.docmdoc d112ebefe37af03ea837d3e0c1d8649cc81fd4340141163b072c8e1df2df3529Virustotal results 41.67% 
2020-07-23ARC 20200723 96990.docmdoc 9d0012fea01df26cfc4c35de504723054fe05b21727960ff8dfa77dcb27bdc3aVirustotal results 43.33% 
2020-07-23Inf 5908.docdoc cdaf685fd8b510f10e149f663e8f7bc591d2351bd7296fd34a358f0f9f26b7c3Virustotal results 41.67% 
2020-07-23DAT-2020_07_23-T3104.docdoc 1fd1cac3c782288baeb2c1b23dce8e5bbddd7d5b8ee10ee798017eddee05db3bVirustotal results 40.98% 
2020-07-23MES-20200723-D884556.docdoc 4ece67785ff57d602ca2e5c69538ef2b7118da45f20bad760bb950556ede54b6Virustotal results 40.98% 
2020-07-23Mes.rtfdoc 04f164be53df8877786862bdc212d2138e66e3d3eec4669585165b8957de5897Virustotal results 41.67% 
2020-07-23File 2020_07_23.docdoc db63760903d7321d485e5e4de4871219bcf280aa8d10a5b45adcba8968650ab0Virustotal results 40.98% 
2020-07-23arc-87747.docdoc 2baeb9021538a6e46d0f337320965c7765bec4f69047f0cb249fff3c51972a81Virustotal results 41.67% 
2020-07-23Doc 20200723 W509.docmdoc 57dfd33d9f1ac2d1ac1e989fc1f64affb20aafc1530591370203e9bd13be3e82Virustotal results 40.32% 
2020-07-23Rep.docdoc 19fb3f434975d157f252494d3d919bdc412e6018df10f3b5b293f7bb65ae1d32Virustotal results 40.32% 
2020-07-23inf 20200723 840362.docmdoc 6042f1b7f7bc35380db47233f01f51564c5f1dd87e38e1c7f0af9605d557ccafVirustotal results 40.32% 
2020-07-23List-20200723-7778138.docdoc 33c154cefec10fc509dc5502bf3632658935229cf47994b249d2c528c0c5bbcan/a 
2020-07-23Mes 20200723 T399.docdoc e881a58826ad79a56fff01bc459089e0e02bcaa8071bbf4737279a153c4c60ean/a 
2020-07-23REP_20200723_463.docdoc e4c0c53d2566fd3d639ce00a49816d813b56df5c37b964bbc9a551a411f8873cVirustotal results 40.98% 
2020-07-23MES-20200723-1404459.docdoc 74bd3d0b665c51b3517da40d77beefa5dbe6983292640c44650a350187dcfd9aVirustotal results 41.67% 
2020-07-23LIST-2020_07_23-3886461.docdoc 57c701ff4952c9b4178af5689028a04b38a2db1ff57b28ad534d1b1d804ee028Virustotal results 40.00% 
2020-07-23Mes_547523.docdoc 72d01c86f0d425a4f2bb8b4bf5e4321c7f49cc1283bcbc074d66c366f6ffa324Virustotal results 40.00% 
2020-07-23INF 20200723 793218.docmdoc 79b3b0ed83202e34b8f1e3030face4fc7df332281b16802674bc0cd0dd27bf5aVirustotal results 39.34% 
2020-07-22REP.docdoc b936ca1824141941696f21188294398f23a5bf8f6dc5211f7a89d68996eb1496Virustotal results 39.34% 
2020-07-22MES_20200723.rtfdoc e9ec8dcf35e5618cf483a8622e4660b2ad226abbe8e88df98e25db180a1f8aeeVirustotal results 38.71% 
2020-07-22Arc_737198.docdoc 85c9b8464b14bbfbc90c01fe540a9ba134191dd42668aebfb5c09e35b1887dc0Virustotal results 39.34% 
2020-07-22Arc_35243.docdoc 8aa7ea8c9d1c9de29d54f88600c9ffc99c05fafa3017b298e03b7cbc73ddf5e7Virustotal results 40.98% 
2020-07-22inf 8818561.docmdoc 093cc1977c0adf342635037335e8d76802041ca0b406c065ee63bb3c4b0d30aaVirustotal results 37.70% Heodo
2020-07-22INF_K1053.rtfdoc 06ea16c8f47256c5551752bd00c34d5cb30e9b5ea7daa3434e35ca178ca75c2bVirustotal results 37.70% 
2020-07-22Mes_8870.docmdoc 9ca7a8bb979b122572d3ac88c0a7098b351bdc0146d1a2d1e0b37bb133d9c427Virustotal results 36.07% 
2020-07-22Mes 2020_07_23 TE21788.rtfdoc 7b0a43ed14a889ff1b2f26657bc4453ef52f45ffa85ed059e8109ce860239530Virustotal results 37.70% 
2020-07-22list-20200723-I986144.docdoc 86ef20dcbdc30f082e16816d3281b197b1e34d03d05c1098a867b9d840802cabVirustotal results 35.48% Heodo
2020-07-22Doc-948.docdoc 41386a0cbdfd22f4a7d46f44c00c2e393e548a2c722a7287046bd76f946c386eVirustotal results 34.43% 
2020-07-22arc I440.docdoc b7443aa0dd6d738e32a1c4fcd5990b7ca23d2fa98f65c703514e3e82d72d7843Virustotal results 35.48% 
2020-07-22Arc 2020_07_22 333775.rtfdoc e5b1755803e1fd990e3747b22c5b2e5dd674c403a309b2931ca7b5ae74262d91Virustotal results 37.29% 
2020-07-22mes_052535.docmdoc 61ac92f083c25879585954c7ade43b7b17fefbfadc38a09fa9793f769f33f9f4Virustotal results 36.07% Heodo
2020-07-22List-20200722-L752.rtfdoc 73d6cf5248a0604eba81bfe1a1f55473820a97df0c5746014dd47e3d10071cb2Virustotal results 35.00% 
2020-07-22MES 20200722.rtfdoc 905996c85050d4b5b56ece80b9a231c6e5d46d0ec5e5ed84d7ee33f64011f88dVirustotal results 36.67%Heodo
2020-07-22Dat_4961.docdoc cf53854628d9e95bf9c5b164c75908fcd42e2de87401607eaa617f331d376864Virustotal results 36.07% 
2020-07-22file 2020_07_22 KF7810.docdoc 4e5ca71ab308655fe2a2430dfbba2c2f7633fbda4a0e4c44714724f00e27dc51n/a 
2020-07-22dat-2020_07_22-DZY8279.rtfdoc 0eeaea647018150c88d5f2e63cdcdba4dbae14ad5e23b7ac5ae1a632965674c7Virustotal results 36.07% 
2020-07-22INF-9881228.docmdoc d516375ff9a645547e27b1359395936c1ba1c5725795a78864b281f8a8b426d3Virustotal results 36.07%Heodo
2020-07-22REP.docmdoc e3a151fd0c1efbcd3873fb1cd5992e620ab4d82343fea02cdd59df1fd962bb2cn/a 
2020-07-22REP_2020_07_22_755941.docmdoc 542819b27b072fd1341c7dd6e46836eed08511bc4ae33bea70fccb341d1da1a6Virustotal results 35.48% Heodo
2020-07-22INF-HA800511.docdoc 4e537fac2f1b71c8466b55b1539006dfebfcb9d8d01c793df2ba1198de425f12Virustotal results 38.33% 
2020-07-22List.docdoc 96836e41326e43b6568b375f848f490a866b35aa2247df397caa46a4f00961d4Virustotal results 37.10% 
2020-07-22inf-20200722-952837.docmdoc 5f934443860f4ada8773989bf4ef1a4f9b25d5b0b8449222afdcc5ed0f44748bVirustotal results 37.70% Heodo
2020-07-22Dat-2020_07_22.docdoc 3cdc4b152007b8583277c7ae4ad9e2df4b455d70ea68db4e16537a0354c97362Virustotal results 38.33% Heodo