URLhaus Database

You are currently viewing the URLhaus database entry for http://bouwer.cc/fonts/RyiTiIEy-NOtfEBqKROxW-sector/interior-space/wtkb-95wtv2zvwwy0/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:420099
URL: http://bouwer.cc/fonts/RyiTiIEy-NOtfEBqKROxW-sector/interior-space/wtkb-95wtv2zvwwy0/
URL Status:Offline
Host: bouwer.cc
Date added:2020-07-27 19:28:06 UTC
Last online:2020-08-13 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-27 19:30:03 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:16 days, 20 hours, 47 minutes Bad (down since 2020-08-13 16:18:00 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-29list.docdoc b9593e63da666f8ca84a76b19d7d977f807b5a7c67ea38ae197662d0be594a10Virustotal results 34.43%Heodo
2020-07-29arc_V781.docdoc cf42932dde6d129bdedd4e85239538c36cc48ae21f55ca8c9d269cf361636566n/a Heodo
2020-07-29FILE_2020_07_29_8734.docdoc ffcdf6865a74947c31474d3e634fd2644a1775ab9917348a7be9d93bc333b691n/a Heodo
2020-07-29Mes_20200729_86873.docdoc 12ea69c0f06d93807bb816e89efcd511f5cc595a9d7aae61d2efe767a1da93e7Virustotal results 34.43% Heodo
2020-07-29file 2020_07_29 M208561.docdoc f2c22f4c9711c00f827b3f8c169a2015251c002399ff5743386d66b8f3732840Virustotal results 34.43% Heodo
2020-07-29INF 2020_07_29 356.docdoc 1fe4d521255587cd2a2c70cea35dbe67834911b19fb74766e4ff2171474ef9f0Virustotal results 34.43%Heodo
2020-07-29List 82098.docdoc 15ddca441eaf21ac43c89a89b31df4b31d74f6c4aa8b9be4ce0d7c5e43eb9765Virustotal results 34.43% Heodo
2020-07-29list 2020_07_29 GT38097.docdoc e62490a742be58160f4d28fb8c54619df5d7de514b3ca405319c21dcee47c4a5Virustotal results 36.84% Heodo
2020-07-29Rep-4311904.docdoc 18464cb3917116dacc0f1955b64b685c01cb765fb05522ee18a8ad19176ee29dVirustotal results 30.00% Heodo
2020-07-29FILE.docdoc 2b79d56126fdd082cf261cb7d8a38892673df518eeb6a41ad25cbc99ec9b68bfVirustotal results 30.00% Heodo
2020-07-29arc 20200729 203398.docdoc 7c370934a6f35edcf95ea69cad3b0fd20be6e5a73b2317037deb7e826bc6f6b4Virustotal results 28.33% Heodo
2020-07-29Rep 20200729 40199.docdoc b06acafc9440a1f2036e66f3df5827f31e50da3ce6dc66114ea7a224c1b5fc9dVirustotal results 28.33%Heodo
2020-07-29File-2020_07_29-0432072.docdoc 375e2435e02c9737138c8aae0b92e35078cd0aa24e20400453f68aaeefc1d5a9Virustotal results 28.81%Heodo
2020-07-29Arc-J6799.docdoc eec719798de02c60d853dfa81688d2668a95e113447753ca1c764d9dd1245e65Virustotal results 25.00%Heodo
2020-07-29List_20200729_96577.docdoc b634a13842496e97c7aa7f19aac5e5f06cf0936219788ca3e6240b415e5874d5Virustotal results 27.87% Heodo
2020-07-29DAT-20200729.docdoc 201d5cf6e6de292a7fa7914d5471ec348f2b134b2e961d666cf19b262570e100Virustotal results 27.27% Heodo
2020-07-29arc_20200729_5587.docdoc d7951e559261c3225ed42966e1137828687a654779689a6a231639dab1a04b25Virustotal results 27.87% Heodo
2020-07-29DAT_19232.docdoc 4a491a72d63e81fa9c3c75f9a748ed7e305415689cd5dd082c6a41e6dbc78039Virustotal results 26.67% Heodo
2020-07-29FILE-KJ8973.docdoc 149e107551946e1f9b4d3bd1bf5e840673cba2e5ca5a9968259cd738f0bf50d0Virustotal results 26.23% Heodo
2020-07-29FILE-295043.docdoc 6d33d26c6514907d83ea254422280f50c6087470e0014a527536e49da0a65359Virustotal results 44.07% Heodo
2020-07-29DAT-2020_07_29-W690.docdoc 194408bb97cffb158444952de9bda64dcbfb2cb9a52f6f1df9b0ae1da9b6083cVirustotal results 45.76% Heodo
2020-07-29INF 2020_07_29 RJA514493.docdoc 18eb3a42e22bad4739e7e30656ea54d812b781b53f4bdfb702acc5e440a0b6dcVirustotal results 43.55% Heodo
2020-07-29Dat_2020_07_29_UHL722.docdoc 820134a5637582882bafcc6aaee3741fded6acffba0751a562ebff93370f7a64Virustotal results 45.76% Heodo
2020-07-29List_20200729_150.docdoc 53f3da92ee3ce408ff2015548c4b05bdfd2bde5a32397c042bcf1dacd802fab8Virustotal results 41.67% Heodo
2020-07-29Arc_20200729_LTO968169.docdoc 0a3991096a1362548e6de042c3174a436135be87ffc6fae6a721103ec9642105Virustotal results 40.98% Heodo
2020-07-28List 2020_07_29 X93697.docdoc f37ae711b262ab3caff91d44e0ef517c066e9eafcff80cef84ac904d8efad0aeVirustotal results 40.32% Heodo
2020-07-28File 2020_07_29 CIE922442.docdoc c14881380d3b455bd2d466c9faaae7b1fd9e8319ec59724a6ea345ca13dcab51n/a Heodo
2020-07-28doc-2020_07_29-61569.docdoc b15efa03e4076cbb66aa63e8e5d8e93f4c81a61dd15f225f7e88bec58841d7bdVirustotal results 40.98% Heodo
2020-07-28file-2020_07_28-FUM130.docdoc 03d305262c813c8499df55f06b291331f87758dd0a17daf10b8d7c4a82bc795en/a Heodo
2020-07-28MES 2020_07_28 UAA494.docdoc 539ff641f2ad4aeff90b35b5fd17121ac44fcc6081483bc9d1903c33c99b8d46Virustotal results 40.32% Heodo
2020-07-28File_2020_07_28_3864.docdoc cac82767427ea3ebfc0e8f64c5f3d58bfb5a97ba333bf935631b378ac7e0378eVirustotal results 41.67% Heodo
2020-07-28List-20200728-815.docdoc a3aac1adfa8874acd44c2f6bf92fe24120cc1012306610a61c9fa711d237c652Virustotal results 43.33% Heodo
2020-07-28List 20200728 54986.docdoc 0d5b495d6f115769d47dec86d8eeb4570bbb87c875ae4c4a42fd2ece16b36ad3n/a Heodo
2020-07-28file-20200728-3740769.docdoc aaf6f1a13815f9bb3047ac7df028f3943b8e939a0363a736a575dff36184a962Virustotal results 43.33% Heodo
2020-07-28ARC_2020_07_28_256.docdoc 8b84f0c7a08e17c108f35d35b7507cb8164d1801c14e619882312f087a401899n/a Heodo
2020-07-28mes 20200728 2189491.docdoc ed274c50509cacbabdd68141b16252822b16d2666adb272d66624a2f1bb3e637n/a Heodo
2020-07-28file_55329.docdoc f831057ed2e448c723eaa816ab8f6c90edeec0429c085392504a49779d7eb425n/a Heodo
2020-07-28doc_2020_07_28_974031.docdoc 158fdf3094384b4ecf3ee77431720a6bb83c64ec46654f962933020abcbcf008n/a Heodo
2020-07-28Dat-20200728-U6304.docdoc 0426bde1c11882e8c7dfe85a1f176412a6fc3935f9df847838f7c71e14c47c64Virustotal results 43.64% Heodo
2020-07-28inf 20200728 012.docdoc 6d0be2e14c6453ca0f24a3f870b88f60078f4dfb462dab7982b85ed6f0c18ae4Virustotal results 41.38% Heodo
2020-07-28Dat 2020_07_28 UYW3426.docdoc 660176fb3fc418b2aa5b8c0030f4c2f7f17031eb19b0a37482d165af0e44e3d9Virustotal results 38.71% Heodo
2020-07-28DAT-HH761.docdoc c9edcff144b42d51f5e3fa6a6b81bc616a2569a9273535ae31a8d529f1494c9eVirustotal results 41.38% Heodo
2020-07-28doc-20200728-RP089419.docdoc a37dc4182d7ffca273b56acbe0cdddcfec2f23b05fc1cb5fe0a551f58f7ecc7fn/a Heodo
2020-07-28MES-20200728-OIO2113.docdoc 7c76382a386308e490c7bede412bce41103071c93c2908cb1ab8489eb302b31fn/a Heodo
2020-07-28Inf-2020_07_28.docdoc 98e0855664b2a2180e94c26613176f7bbda9e071a5851085e0b99f8041f9c911Virustotal results 39.34% Heodo
2020-07-28ARC_XUQ148635.docdoc 504fa30fd0f82b9b4ca1ebd125ab22a5aaa20e50c9b2082e7a9c0b0eca53473eVirustotal results 36.07% Heodo
2020-07-28MES-20200728-5584492.docdoc 9b99486eed10794305fde884a8485b04d32bbf215cc45559bcd7e74ff2a753d6Virustotal results 39.34% Heodo
2020-07-28REP.docdoc 6d41956ab2324e6d9e134b3e73bf93c9a9a5734468aead7d72031e862c132e45Virustotal results 38.33% Heodo
2020-07-28Rep A91818.docdoc 8569197f11449180f55febfa04670d4a42f7310dacb346eb50cef1f797928814n/a Heodo
2020-07-28INF 2020_07_28 RPP3041.docdoc 231a0e9672ea9bd8a4425055e34051b2105ffbfdf3c2a40ba5677eb17b36cfd2Virustotal results 37.10% Heodo
2020-07-28file 20200728 B678.docdoc 2550a5c3df58e8632ee9c585e783c4e58113931859c01984fb707b11b1627bd8Virustotal results 38.98% Heodo
2020-07-28File-20200728-81593.docdoc a07b7087aa9e62580d3df6662c97f7827de42955fe766f0969af529daaee016bn/a Heodo
2020-07-28INF_2020_07_28_423575.docdoc ed42839bc1ce973dc9b130fc3bf6f29300210d2351b6caae9b715bbaa5a50e8eVirustotal results 44.26% Heodo
2020-07-28list 2020_07_28.docdoc 65750bf28b7d4acf01b9eb045e261c88920a881299f29c97aff7ff4d42be2104Virustotal results 43.55% Heodo
2020-07-27Dat_QI38021.docdoc 80c2733aec99f5aab73c4555949f84ae4ebf7369955d07fa9a0c4a8d06265fe3Virustotal results 44.26% Heodo
2020-07-27DAT-2020_07_28-059.docdoc 9b9fc48b3a867f41ceafcad4eb30f015f67a30ad192aae45018b530c6f4bffaan/a 
2020-07-27Rep 2020_07_28 BVV90934.docdoc 6318006343841f00c3c81c36a2259fc2744780c8d0ea1de93d8920116f8dd2acVirustotal results 43.55% Heodo
2020-07-27Mes.docdoc d5c02f77a90c627c04faa9dabbeb7271d11a7df0749d07af987994c830ea0657Virustotal results 45.00% Heodo
2020-07-27List-2020_07_28-078.docdoc f9e21c32753d07b9af540aa838505f4aab10a1fc3e670affaae3c322976891ffVirustotal results 43.33%Heodo
2020-07-27List DZE7915.docdoc fa3daccc5bb500ad9b60a7054441ea832c9f792285acbe3dfdb188763bac9019Virustotal results 43.55% Heodo
2020-07-27INF 2020_07_27 710358.docdoc d53a4cb7864f052064e6f1ac8c44d2b19adf97f76c8649ae19690e73fedcd67cn/a Heodo
2020-07-27Doc 20200727 72678.docdoc 8bcb81a90d9831d9b0ffd723b83b907cbf0011de32de2cb18c01cbd66b11d47eVirustotal results 41.94% Heodo
2020-07-27List_2020_07_27_108.docdoc 7e25f8539f47f3cef0d29e21908b832af0eefee1b8e16582d7dfa7cc09d8f045n/a Heodo
2020-07-27File_2020_07_27.docdoc a9c11a62d3cba4b7948c7a00b342caa1660ea8d163397917165c179ac8ee9d36n/a Heodo
2020-07-27Doc_2020_07_27_7517814.docdoc e9ef5c401b58fc9ea7f505e34f8ce812c324732ada0d7b7780bf19f93b360af6Virustotal results 38.71% Heodo