URLhaus Database

You are currently viewing the URLhaus database entry for https://www.darknova.eu/Stronghold/protegido/or0pzvwahje13_r2mneofcn_recurso/7336102_SHhyw1/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:420048
URL: https://www.darknova.eu/Stronghold/protegido/or0pzvwahje13_r2mneofcn_recurso/7336102_SHhyw1/
URL Status:Offline
Host: www.darknova.eu
Date added:2020-07-27 17:54:50 UTC
Last online:2020-08-07 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-27 17:56:10 UTC to abuse{at}netcup[dot]de)
Takedown time:10 days, 20 hours, 9 minutes Bad (down since 2020-08-07 14:05:25 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-29ARCHIVOFile 29 072020 92984.docdoc be2027c6883f2a36dbfcb80a08ed653081a307d44fb9375ffd655c4c9d223383Virustotal results 28.33%Heodo
2020-07-299347923 2907 072020 6/63883885.docdoc 38abfb804f211446b990821687dd9cf99d962c6b52703b9a45b69d3f8124f82dVirustotal results 27.42%Heodo
2020-07-29ARCH_2907_K-7821.docdoc 201d5cf6e6de292a7fa7914d5471ec348f2b134b2e961d666cf19b262570e100Virustotal results 27.27% Heodo
2020-07-29HMO6478-29-2020.docdoc c2e47faf5a472c7ba02cc29a36639663e9c4f7c1dc0b73da066050da0fc0c17cVirustotal results 27.12% Heodo
2020-07-29Datos.docdoc 4cad41a2c94580e73badd4c35c2282597f7708204d5214f88c3f9972e3d99bbdn/a Heodo
2020-07-29ICO15920-2907-2020.docdoc eeb47806c7d6c1359a856ad4ce35e3a9838326cf7024325e39b48e902db69824Virustotal results 25.86% Heodo
2020-07-295298032 072020 12/49595648.docdoc 2376e8d554f014b53f97ab04db0649032b1f9cc4a949c2a37e4c5c7ce04b576dn/a Heodo
2020-07-29913438 29 072020.docdoc 6a8bb6e77fb312e9755b5119e1f2d52a58b9f11f1ffdd96eb7c937a0307cc6a7n/a Heodo
2020-07-29Documento.docdoc 2358e95d172df16e4ee84738952acac2857dd1c6ca1fd8d4f5a1cd6d3dec5b74Virustotal results 45.00% Heodo
2020-07-29Archivo-072020.docdoc 18eb3a42e22bad4739e7e30656ea54d812b781b53f4bdfb702acc5e440a0b6dcVirustotal results 43.55% Heodo
2020-07-29Adjunto_2907_2020_370_02143946.docdoc 820134a5637582882bafcc6aaee3741fded6acffba0751a562ebff93370f7a64Virustotal results 45.76% Heodo
2020-07-29307967.docdoc 581b3d0fa7b6ae23cef3a8e882801014964734eb92d18b457027199033b4690aVirustotal results 44.26% Heodo
2020-07-29MENSAJE_2907_072020_608-8295321.docdoc b83b73c67632686490ef3198ab96f4202bf007bce5df43a744af04c764b3f258Virustotal results 43.55% Heodo
2020-07-2942780_2020_WTN_7076.docdoc 57762ae9b274f78f82bc45f3b59af74465d25bf85817dd487d1176b6b55813d9Virustotal results 44.26% Heodo
2020-07-296620296_2907_ZTM_559187.docdoc 3448b0512e1a0c8ec1d49cd9975755a1dab0622d094c82733af6b0c04c1c1abaVirustotal results 44.26% Heodo
2020-07-29DAT 2907 6/432525.docdoc 4e3808817bb507df34adf6e9462ee9b930a58efe48f3c757f4609662bd75bbe2Virustotal results 42.62% Heodo
2020-07-29info_2907_866_95396253.docdoc 69d9c2636b810aad6ced6aafe53a2425b05e93f1a62ddbbf9d09b352cec0271aVirustotal results 44.26% Heodo
2020-07-29INFO VJ_7090.docdoc 915ae2165210e21055c3ce6e6c455943b75d0ab07c690a48d810bcf2ab79d0f3n/a Heodo
2020-07-29Arch 2907 2020 63_019826.docdoc f108b93f8a51197e20952752105e589dac418d57b106df142a474ed7f8627354n/a Heodo
2020-07-29DAT 2020.docdoc 4939104d6ac747a434d08a86353fdba0f99fab4fdfc1fe2791945d8bcb3f8482Virustotal results 44.26% Heodo
2020-07-29036_2020.docdoc b1694404ff4e0dae6ea880bf9200e1c9df0ff1818d7e3d5aa816aebe7aa4a8f5Virustotal results 43.55% Heodo
2020-07-29Adjunto 2907 072020.docdoc 53f3da92ee3ce408ff2015548c4b05bdfd2bde5a32397c042bcf1dacd802fab8Virustotal results 41.67% Heodo
2020-07-29file-2907-072020-ITS-6649280.docdoc 87f39e22654ef1ce46b3b78df7085ad350cee20210b2d1aa473fd2991126eb43Virustotal results 40.98% Heodo
2020-07-289425975_2020.docdoc 94ddcb3d527aa945321d1e706a0d7cdebe9b0380b2ac33918e02ae142da93a34Virustotal results 42.62% Heodo
2020-07-28Adjunto.docdoc 560f5cc2d9a6a987bec2c57b8cacda03229c7f0fcd7542b764adc99d5f7e2f2aVirustotal results 40.98% Heodo
2020-07-28mensaje-2020-NFK-5655274.docdoc c8ada972b3fdd490d032ec05fa07067848d049d418cb998ec26c55fb881520f2Virustotal results 40.32% Heodo
2020-07-28ARCHIVOFile-2907.docdoc b08aee092cb3defc671949d65b32da80150ad60e64554f24eb25bea83ade4708Virustotal results 40.32% Heodo
2020-07-28ARCHIVOFile_2020.docdoc bd5cbc8583305658dc0266f8fbfced9e57e41d459fb3120bff3df95fcacccba9Virustotal results 41.67% Heodo
2020-07-28ZV2756733-29-0468598.docdoc fb90356d79e9ba8d05117bbe7a1a492bf6c07c94898b826ce206235d63792248Virustotal results 40.98% Heodo
2020-07-28244-2020-BFM-35185.docdoc b6277264511a02af2111a576b9bb860665865b9fbdf30b99add2b0f5aec1f307Virustotal results 40.98% Heodo
2020-07-28FILE 2020.docdoc e57fb1f02363f851607b32a8ce3fb93bf2a12acbecc0c649d9ee5b83fabd3d97Virustotal results 40.98% Heodo
2020-07-2863 AF/5730517.docdoc fea74ef73aeff3c000de4d0fb83881380d352b00842be1eb8bd91a4e991e7705Virustotal results 40.32% Heodo
2020-07-28Info_2807_072020_RY/660527.docdoc 539ff641f2ad4aeff90b35b5fd17121ac44fcc6081483bc9d1903c33c99b8d46Virustotal results 40.32% Heodo
2020-07-28Mensaje_2807.docdoc 29a7137455b89bdebf29ad563be2d14d562fb893592105905684cad22b3b7691Virustotal results 40.00% Heodo
2020-07-28Datos_072020.docdoc 512e1272b8fecfa6ed817f3034429a7d7bf2057092dc4d58d78adebc2e4ea13cVirustotal results 42.62% Heodo
2020-07-286765 911/0163.docdoc 5503bda26f875335ce0c0c502d7b02a0200af991907621b0ac9262f5cfdc7fedVirustotal results 41.94% Heodo
2020-07-28Archivo.docdoc b2660bfdc637dd30977a0d2353b9c9dd6d75cb409d1385a65d6f0ab621d18e63Virustotal results 42.62% Heodo
2020-07-28info.docdoc 687cf32a1f55ee68a9a7bdf43a0e0598aa7275cb6d10eb00d88d226f4e8b36daVirustotal results 41.94% Heodo
2020-07-28Documento 2020.docdoc 2c08dd8d76220e75360438dfc6211357fe013525c32c839df3070b40d0f211f6Virustotal results 45.61% Heodo
2020-07-2827821-072020-RGQ/71889205.docdoc 75e56956026c96623f0bf37ddf77f557ee8a7a67b66dd78ce46f9741d6eb0157Virustotal results 41.94% Heodo
2020-07-28FILE.docdoc 951647176f6bd4cc42c106ebe9e5a386a6a5213ba218d29c5e0b8b7c7ecac82fVirustotal results 42.62% Heodo
2020-07-289098103_072020_4_9376.docdoc 1151e7ac96e0e3b70a1ffaee5c9b97aa4aed6e2140e17ec6799b568a578c2870Virustotal results 41.94% Heodo
2020-07-288654 072020 CZC/6502.docdoc 683a2ea0b3953d097f3252a5334c7651d31c5fbe2264867e637cd30cc20140b0n/a Heodo
2020-07-28ARCHIVOFile 28.docdoc 7062f6009b062252fc3dd1ea29d46265a166398e42cd997b8a8f72b1bb231350Virustotal results 41.94% Heodo
2020-07-28R9359_2020.docdoc 45261cdb48919132b134b190e6bf3a8d25027a224985b567f0a97ec33a4641bbVirustotal results 41.67% Heodo
2020-07-28Arch_28_2020.docdoc 3e6bedc906a69aff43fab9f79f7e1eaa50c23b8fcf6b3cff3238c7560a3e25efn/a Heodo
2020-07-28Adjunto_2807_2020_III-584005.docdoc f898c2ac5936c81024e1c459a3c1ce7be3c0542d5449dab89009de372f814beeVirustotal results 39.34% Heodo
2020-07-28file-2020-8596.docdoc 1b02232f395b97397de48fdb5b000365622b6fc633f0171bb9e8434fff99faf7Virustotal results 39.34% Heodo
2020-07-28Documento-28-DP/9939.docdoc f1d57605a40b68b680448c915d43de5ee6a2d1b3622a56112eefa6cbca8e28f1Virustotal results 39.34% Heodo
2020-07-28Archivo 072020 1305822.docdoc 3ba184b2de88c686683e25f96b41d6d46537b86b857736459e286253a59c4dd2Virustotal results 40.68% Heodo
2020-07-28MENSAJE.docdoc 4545350210bf1fd8b012fbac3ea72c145dc9d12457597946a9e2b1c167659bfan/a Heodo
2020-07-28FILE 2020.docdoc c886af6a164ef32164d83f2dbaa1d353aafb9289858ea9bb2e78674b4ed9e632n/a Heodo
2020-07-28Adjunto-2020.docdoc 7c76382a386308e490c7bede412bce41103071c93c2908cb1ab8489eb302b31fn/a Heodo
2020-07-28255-2020-2-376682.docdoc 0086265c2f4da7654f02494ee0cbf199fc621cd86d4d0b7ed80b5af62252209en/a Heodo
2020-07-28Documento-97-01101647.docdoc d50606e53c27b5e7138d2be53d6a9a60ff578c5435394e7abd8692d19a31f013Virustotal results 39.34% Heodo
2020-07-289515671.docdoc 13824696141402fe137e5e58955f5c27d0c6921c9c6d1111ed0d2fb0214d03b3Virustotal results 44.44% Heodo
2020-07-28Adjunto_240-14170.docdoc 9b99486eed10794305fde884a8485b04d32bbf215cc45559bcd7e74ff2a753d6Virustotal results 39.34% Heodo
2020-07-28Documento 072020.docdoc cf18e1a6342f94e888186b84b0c81c120ab3cfcb3023234fc4ae013dfafe734fVirustotal results 38.33% Heodo
2020-07-28Archivo_2807_072020_5/18179.docdoc 1c648236392b6af46a065a1053a547456076ac083b0ebe9c699d8511ccc2af69Virustotal results 37.29% Heodo
2020-07-28FILE.docdoc 98512d3cdde2d7ee7c25a7498e0b82cfe878002aeeb60bc8d9c1c77aa8230541Virustotal results 36.67% Heodo
2020-07-28Mensaje-2020-692/39728.docdoc e4f202476429f6ff5d69372983be2a0efe9e6ee8dfe8f2f466d235974421b2ebVirustotal results 36.07% Heodo
2020-07-28409947_28.docdoc 9a607d7180b06b7e61ac102458c6319f79e974e4bad33d27ee757a66c18f7f11Virustotal results 36.67% Heodo
2020-07-28Info_28_2020_766/4704780.docdoc 6387bc4484750efab15cb9bc530a51f91ce86e20e43c10d496b70b4e3afd99bcVirustotal results 44.26% Heodo
2020-07-28ARCH_28_952162.docdoc 016d35e74af3e0f39c21c51cc13daaa14078437e8b3b01d09f9ffb46f64551e0Virustotal results 44.26% Heodo
2020-07-28MENSAJE 072020.docdoc ef6ef0f8ef438897b207562f0d8b11883e9f757636f1a59848d19d93549a1eeeVirustotal results 45.00% Heodo
2020-07-283727076_28.docdoc dae4e93ae3617109edbfdb2c05221f3dd5f725cf6e19d8e85881a5bd4afadfc0Virustotal results 45.00% Heodo
2020-07-28Arch.docdoc 5d30cf78ec026213975d6d3450f121e6eeaa19836c38bbdccb18827071c6aa45n/a Heodo
2020-07-28ARCHIVOFile 072020 G/46819.docdoc 9daf8a671b527a71c8a7a17a95ee2828e782aeb81f3e718acb747945a617bb2cVirustotal results 43.55% Heodo
2020-07-28FILE_2020.docdoc c2c286c513606c5ebbc5bad98047dc2c6887966b0a3e972c7fc53bc25e1584beVirustotal results 43.55% Heodo
2020-07-28Informacion 2807 072020.docdoc 6f752dcbe61a11bdfe7b1b0d52104ba5efec6539f9588696876a091ae7feba58Virustotal results 45.00% Heodo
2020-07-283783.docdoc 21dce6efb379371051277359737d8c090f5bd3feb2322f04fadc8c1da068432dn/a Heodo
2020-07-28INFO-072020.docdoc 1285ab067041ccc47554c1b6a78dd2ab191d2426e7242817235a92f1f674307cVirustotal results 44.26% Heodo
2020-07-28QE98765 2020.docdoc 88f424caef167c363184d8497774224063f29ad00f73366ac8d1cfe921b19741n/a Heodo
2020-07-28DAT_2020.docdoc c8f7207b776cd41fd7bbd4a9c1bba2c4c1161dc9a1e132d8754d87743107e43dVirustotal results 43.55% Heodo
2020-07-28ARCH 2020.docdoc 0eac07138b228f378cdcf932ae99d43434a3a644db3255f402e18a63335e9ff4Virustotal results 44.26% Heodo
2020-07-28Documento.docdoc d579e990b4b7d3f7232f569d7bcb7f6f783d8019f52490d87a83c675e80570dbVirustotal results 45.00% Heodo
2020-07-28Arch 2020.docdoc ae7f037dd7436f637bbb6f62f4a44f2dcf5ddbe56fa25edd87e054d203e34d27Virustotal results 44.26% Heodo
2020-07-28DAT_28.docdoc a07b7087aa9e62580d3df6662c97f7827de42955fe766f0969af529daaee016bVirustotal results 43.55% Heodo
2020-07-28mensaje_072020.docdoc ed42839bc1ce973dc9b130fc3bf6f29300210d2351b6caae9b715bbaa5a50e8eVirustotal results 44.26% Heodo
2020-07-28Datos.docdoc 65750bf28b7d4acf01b9eb045e261c88920a881299f29c97aff7ff4d42be2104Virustotal results 43.55% Heodo
2020-07-2736831084 O_6130.docdoc 80c2733aec99f5aab73c4555949f84ae4ebf7369955d07fa9a0c4a8d06265fe3Virustotal results 44.26% Heodo
2020-07-27Documento_2020_4_1782561.docdoc 9b9fc48b3a867f41ceafcad4eb30f015f67a30ad192aae45018b530c6f4bffaaVirustotal results 44.26% 
2020-07-27165_072020_212-2161.docdoc 110958842970c18b548f32979e2f8dda09be2245e346597e747d1268e4439987Virustotal results 43.55% Heodo
2020-07-27FILE.docdoc 6318006343841f00c3c81c36a2259fc2744780c8d0ea1de93d8920116f8dd2acVirustotal results 43.55% Heodo
2020-07-27Info_2020_VR-401010.docdoc a286e9a82e74a59c3b03dfefaf39ed3c8b2f2554210ce258c56e08cd486f603fn/a Heodo
2020-07-27Mensaje 1/54757909.docdoc f9e21c32753d07b9af540aa838505f4aab10a1fc3e670affaae3c322976891ffVirustotal results 43.33%Heodo
2020-07-27mensaje-072020-HHQ-45153.docdoc fa3daccc5bb500ad9b60a7054441ea832c9f792285acbe3dfdb188763bac9019Virustotal results 43.55% Heodo
2020-07-27Archivo.docdoc d53a4cb7864f052064e6f1ac8c44d2b19adf97f76c8649ae19690e73fedcd67cn/a Heodo
2020-07-27ARCHIVOFile.docdoc abbadc25a1fb109c75ed4598fcf4b1e85e7b90faf37dc756f6ad2aedc32eb874Virustotal results 42.62% Heodo
2020-07-27MENSAJE 072020.docdoc e299332998555c891b03ca53925fec891dcb9d18cab97a3553d2a46cfff9ca97Virustotal results 41.94% Heodo
2020-07-27Archivo-2707-072020-951_40276954.docdoc 5588396b9cf93b36678e28fd8d7d99d5cc61d2f6b5ed687ebb6f68332bef4f76Virustotal results 40.00% Heodo
2020-07-27Documento-NUX/49010.docdoc 119dc14d82594f4cb906423ef91d04a73923483bedaeafbd0a2cdee19371a96eVirustotal results 37.10% Heodo
2020-07-27334-27-072020-5744282.docdoc 3e46e35eafcbaed6de99b5c2b731a907d06a02d41fcb9e091f4d99d7d2c73bden/a Heodo
2020-07-277046869_072020_2/88182.docdoc a5ea66d512c83bf1ac341d08d6e0a51fed0e643ad0874f6e79830b294ac8c1b6n/a Heodo
2020-07-270810-27-70-151257.docdoc 5bc7153f58c1054b9b7ab4acfbaee97f11d2a6d74cb2986319b6b3f76c4f546fVirustotal results 35.48% Heodo
2020-07-27Info-Q/663205.docdoc bdb7009a123c7ba63e38623f092b18a53f921fdbcd502761d42fbf4869fda5b6Virustotal results 35.48% Heodo