URLhaus Database

You are currently viewing the URLhaus database entry for http://zurfluh.net/PDF/multifunctional-module/additional-space/ygrb98s28sfl0uhc-6w3t/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:420409
URL: http://zurfluh.net/PDF/multifunctional-module/additional-space/ygrb98s28sfl0uhc-6w3t/
URL Status:Offline
Host: zurfluh.net
Date added:2020-07-28 06:45:53 UTC
Last online:2020-08-01 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-07-28 06:46:06 UTC to abuse{at}newtekone[dot]com)
Takedown time:4 days, 9 hours, 52 minutes Bad (down since 2020-08-01 16:38:30 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-29File-AWU658121.docdoc 6f062a915f1c5dfdd4374f9bfdb41555d86e258cd2d69fb4269cec2b4afa3a5fVirustotal results 35.48%Heodo
2020-07-29Rep_J242473.docdoc 4d61ec3669b0eae3184f23cc9a259f86a9c8dfc470aa3143378100e32c003872Virustotal results 36.07% Heodo
2020-07-29REP 20200729 61803.docdoc 862de76653dba450b8330a09dca707bc56c1db7a7ca344086b6ac6eced0f3e98Virustotal results 36.07%Heodo
2020-07-29LIST-DTC5586.docdoc c7f06e29013c41471be4bf8f61f472b9778bf35a6bf7e6aaff3a601f60c557d0Virustotal results 36.07%Heodo
2020-07-29mes 6579.docdoc 9dbce8fd3bc06c6f6965bdb0d32cd55ae1f196bc57dc5c0622a0dee787ec66caVirustotal results 35.48%Heodo
2020-07-29list 2020_07_29 164.docdoc c07058b752d2fcef9f37c55ac8fffea93ec89a3b27d462825545b9092aed07faVirustotal results 35.48%Heodo
2020-07-29file_2020_07_29_3835796.docdoc ac12bfd17290d68dd86ea22a43bf4f6f0ade51e8a38d377c20050add454536ecn/aHeodo
2020-07-29MES-2020_07_29-8805144.docdoc d009612760ad9dba467fc8f4cf70df7525b45c528a2e14a49cedbccd0203cffbVirustotal results 36.07%Heodo
2020-07-29List-JVK01119.docdoc b59438bf0809a2ec76626ee7018667a2435fd22280415c54b3d0b51c09d66c45Virustotal results 36.67%Heodo
2020-07-29MES-2020_07_29-MV879.docdoc 4ee5376ca1ab5c1f49bddd182e7fc412f36875312a81f11518f81ff52fb166e0Virustotal results 35.48% Heodo
2020-07-29MES-20200729.docdoc 22432edf35d5245c7e5b9613890819c87862cfee69167a8741e4fb2e3867479aVirustotal results 36.67%Heodo
2020-07-29Rep-2020_07_29-154.docdoc 1737fcd14cb7773ecf1bb14e6a2247c38814b753acafdf1a343e184131c8608aVirustotal results 36.07% Heodo
2020-07-29Dat-2020_07_29-HOV80162.docdoc 4174168df0202ec0fc0570fc65b4fe9fff2699fd99649dfd8cddb823e8efec6dVirustotal results 34.43% Heodo
2020-07-29Dat_SCY44522.docdoc ba70e5201cfbce20c6c71c9b53e47e758e4f13da5db46260d3feae0824f1e749n/a Heodo
2020-07-29Inf 20200729 J7528.docdoc d076cf496cceee93a7feff09cde2c3debeca7167b511425696cb3a76f3ffc843Virustotal results 35.00% Heodo
2020-07-29Doc 2072.docdoc 47482467cc04e69d03d51061b35e629ea671fcfdef9cd16b6beba53c363753a6Virustotal results 33.87%Heodo
2020-07-29Dat-20200729.docdoc 337ff5bad42b25ee7ab31bb784e45ffde10b240213a4bc6d70b1eb8ac83ca73eVirustotal results 34.43% Heodo
2020-07-29LIST 20200729 50829.docdoc f7816c5ca35de9feb6af3b0bc50b2b9cef3455d88fc8bc29c90e1958d18d2e3an/a Heodo
2020-07-29arc_2020_07_29_8274.docdoc 6faec6f4931105e85117d2768cb9f3b66d3e139009b44e23344dab4ab4c64712n/aHeodo
2020-07-29dat.docdoc cd987bab9d46a89430fb908a81bbdea51ef80e20f184c2e01e32d1bf2ebeee2an/a Heodo
2020-07-29MES_2020_07_29_818110.docdoc 84286b6fcd1ad93cf269c8291b8a71f65e5d71ad1194e5da2839aa19c6c72a9an/a Heodo
2020-07-29ARC-R61741.docdoc 15ddca441eaf21ac43c89a89b31df4b31d74f6c4aa8b9be4ce0d7c5e43eb9765Virustotal results 34.43% Heodo
2020-07-29inf_2020_07_29_377469.docdoc 424bb85c7aeb485a5d5c0a1b73c7fbb050fb9d4c165c7306f43e89b19013c385n/a Heodo
2020-07-29Doc_2020_07_29_BZJ09960.docdoc 3f629a6878b4ff4383a80723718f32ed1ab5e210433db014412cc12d5d1cdf3dn/a Heodo
2020-07-29ARC-20200729.docdoc da24a272d223ef5972038d08b189efe6c0b6db9a658b9715d26989c9db59d52dn/a Heodo
2020-07-29List 2020_07_29 5886431.docdoc a847231d5708cf4fa1bc1eb59123255d08f297856d4f5e46b11e28aae6a8de73Virustotal results 28.33% Heodo
2020-07-29Arc-20200729-E873434.docdoc 9a4098702f77f9c17710381c6420db214a9ddd6bed24413d5e4e316176b2b756n/a Heodo
2020-07-29File 20200729 8879148.docdoc 8573774044a49e7316a321d69acb770875f59ae6ed2cbbaca074c22e24f82878Virustotal results 27.87% Heodo
2020-07-29list JXX8293.docdoc 8fe804416a77bba32e0c65d0aa4b17b862bbe3da25f5e27c7ff8e1685ac961c2n/aHeodo
2020-07-29inf-2020_07_29-G351.docdoc 1d0bb5c581a0f8a3dc4f7ab5877b022219815e0e329934b45f2cac61d31cfe6dVirustotal results 27.42% Heodo
2020-07-29LIST-2020_07_29-944.docdoc fe2947d15986710cbddbb2552a05de1d18f25e9dd8bc62b3fa9ac26b14b1cb25Virustotal results 27.87%Heodo
2020-07-29Rep-20200729-6937576.docdoc 55d7eeeccb0e00f25102e6fd9028528958e90188130196bc7a981aba84aa3169n/a Heodo
2020-07-29MES-9026.docdoc 86faea602286868ec996cf729e4ccae016707f4589c35ca444ad8e2f82c48071Virustotal results 28.33% Heodo
2020-07-29LIST 20200729 506249.docdoc d80d4a17577b544fa7da9fb2fef8c39d77ebaf839456255a0fb4994148b0f00bVirustotal results 27.87% Heodo
2020-07-29INF-20200729-WM940.docdoc d7951e559261c3225ed42966e1137828687a654779689a6a231639dab1a04b25Virustotal results 27.87% Heodo
2020-07-29doc 2020_07_29 15639.docdoc 9fe355810178fe930723ac4fef37d67ef5750d3ddb01e805896743dd09591345Virustotal results 27.87% Heodo
2020-07-29LIST_20200729_4171838.docdoc 1dff7522268177019ac3c0d665957bf8abda88a39c90b09b24cbbc2c668d49f7Virustotal results 25.42% Heodo
2020-07-29Inf 2020_07_29 BFF457.docdoc 9890475f020efa660854e167de44045852e57c9a202a1ed39fba865070723598n/a Heodo
2020-07-29Arc 20200729 Z81799.docdoc 1d08f0b597c36bdbeff2046fbc31263ea2c4044af0e4040aae479badb1a900b2n/a Heodo
2020-07-29MES_2020_07_29_VK0814.docdoc 6d33d26c6514907d83ea254422280f50c6087470e0014a527536e49da0a65359Virustotal results 44.07% Heodo
2020-07-29FILE-FJ354627.docdoc 6a8bb6e77fb312e9755b5119e1f2d52a58b9f11f1ffdd96eb7c937a0307cc6a7n/a Heodo
2020-07-29list_2020_07_29_999924.docdoc 2358e95d172df16e4ee84738952acac2857dd1c6ca1fd8d4f5a1cd6d3dec5b74Virustotal results 45.00% Heodo
2020-07-29Doc-20200729-JGF0341.docdoc 18eb3a42e22bad4739e7e30656ea54d812b781b53f4bdfb702acc5e440a0b6dcVirustotal results 43.55% Heodo
2020-07-29FILE T495.docdoc 75054d37db4cec9d1e647c93b7d5eba72b29c8e8f3664263ebb4f48775c07710n/a Heodo
2020-07-29inf_20200729_B188376.docdoc 581b3d0fa7b6ae23cef3a8e882801014964734eb92d18b457027199033b4690aVirustotal results 44.26% Heodo
2020-07-29REP 2020_07_29.docdoc f89b0ab3a3817bdaaca98ca6ebdd47fea5c4ee59872c90a4fccc23463d192e52Virustotal results 45.00% Heodo
2020-07-29INF_VY1277.docdoc 2d0a50c2b71293e0d232856f5b99127f9a871bb9e7e2a731280462f0f48ad966Virustotal results 44.26% Heodo
2020-07-29List-2020_07_29-82625.docdoc 31a705c847b5a8e8e18857c0a1b1fd7ab4f65ad44d4d860c12c2001c25c67fd7Virustotal results 43.55% Heodo
2020-07-29File_2020_07_29_1480.docdoc dc9ed541230e97a30f45695e066b67e80728f6963ada93b7fb8d9617a653857dVirustotal results 43.55% Heodo
2020-07-29DAT-20200729-103553.docdoc 4e3808817bb507df34adf6e9462ee9b930a58efe48f3c757f4609662bd75bbe2n/a Heodo
2020-07-29FILE-2020_07_29-392.docdoc 915ae2165210e21055c3ce6e6c455943b75d0ab07c690a48d810bcf2ab79d0f3n/a Heodo
2020-07-29MES 20200729 VH417.docdoc f108b93f8a51197e20952752105e589dac418d57b106df142a474ed7f8627354n/a Heodo
2020-07-29REP 20200729 3488825.docdoc 4939104d6ac747a434d08a86353fdba0f99fab4fdfc1fe2791945d8bcb3f8482Virustotal results 44.26% Heodo
2020-07-29file 20200729 1492.docdoc c5fe30ccdc224f47c8059f8abf775b896101e8e9d007aa2f41a9071562390b1eVirustotal results 43.55% Heodo
2020-07-29inf_2020_07_29_RIU5139.docdoc eeeffe5ba0fcb1fd64fc11747b2b463cb84f1acd64201609163da191e142aa36n/a Heodo
2020-07-29FILE 2020_07_29 LL4894.docdoc 0a3991096a1362548e6de042c3174a436135be87ffc6fae6a721103ec9642105Virustotal results 40.98% Heodo
2020-07-28Dat_CDR091988.docdoc 94ddcb3d527aa945321d1e706a0d7cdebe9b0380b2ac33918e02ae142da93a34Virustotal results 42.62% Heodo
2020-07-28Rep-2020_07_29-7824572.docdoc 2921a5edaa2846bc5bb45cd6962c46cb936bdf64f171d9f6a42e686e02d1984aVirustotal results 40.98% Heodo
2020-07-28Rep P1322.docdoc 54a962d82de3bdeb06f38850bc6cb537b3d35c6d95c97b7b1ccbc4948e0fb3e6Virustotal results 40.98% Heodo
2020-07-28Arc-20200729.docdoc b08aee092cb3defc671949d65b32da80150ad60e64554f24eb25bea83ade4708Virustotal results 40.32% Heodo
2020-07-28LIST 2020_07_29 ELF1185.docdoc 63e8efafd895a3c81e6b57f8df7af0d841c821d7e99b7dc74c82906d3291365bVirustotal results 40.32% Heodo
2020-07-28INF 83001.docdoc f37ae711b262ab3caff91d44e0ef517c066e9eafcff80cef84ac904d8efad0aeVirustotal results 40.32% Heodo
2020-07-28REP_2020_07_29_8984642.docdoc c14881380d3b455bd2d466c9faaae7b1fd9e8319ec59724a6ea345ca13dcab51Virustotal results 41.67% Heodo
2020-07-28file_2020_07_29_652585.docdoc eedf4533a63bc5838e513e7b015e80ab717a608090e7b3715c06a4e349cdbbf2n/a Heodo
2020-07-28REP-2020_07_28-9511777.docdoc d92a10a91fc1b1b8ac3bda947f552a110b71c174f5b3ab1db2aa711a7efa7eb2Virustotal results 40.32% Heodo
2020-07-28Arc 20200728 E505.docdoc 539ff641f2ad4aeff90b35b5fd17121ac44fcc6081483bc9d1903c33c99b8d46Virustotal results 40.32% Heodo
2020-07-28Arc 20200728.docdoc cac82767427ea3ebfc0e8f64c5f3d58bfb5a97ba333bf935631b378ac7e0378eVirustotal results 41.67% Heodo
2020-07-28mes_NGQ32567.docdoc 0f599d109b56e630f4c3ef53180751cf1ada640dd266d6a49c659e4064482110Virustotal results 45.61% Heodo
2020-07-28Inf 2020_07_28.docdoc 7dfe8c017d0ab4f45bff8329eac5216dd63d5f32323126740cafcfcab0444082n/a Heodo
2020-07-28arc-20200728-043628.docdoc 8d20ef33d66a7420d531e21e7af2b64a56301b1569de8ff307b6326f38b73f69Virustotal results 41.94% Heodo
2020-07-28doc 2020_07_28 8490196.docdoc 7c91ca6956e0430bc2d4abb390650f3b92961c93f12f0d1da0410d68da768d81n/a Heodo
2020-07-28LIST_20200728_5187.docdoc 75d8adb84b4f6e8554293102bde287c1e4ebc2bc7baa0d8452ee8b75e14344acVirustotal results 43.33% Heodo
2020-07-28mes-20200728-AW3538.docdoc d1b7f51229d1e6bec56c0b426de2ff60b9ba60b02fc5ab8cf28d9bee1dff2812Virustotal results 41.94% Heodo
2020-07-28DAT-2020_07_28-YKD690.docdoc 951647176f6bd4cc42c106ebe9e5a386a6a5213ba218d29c5e0b8b7c7ecac82fn/a Heodo
2020-07-28Doc 20200728 7162.docdoc 9a25233d8195a5b81c448574c1f555009c14b4e5e4291da25f9ab354b999a8bfVirustotal results 42.62% Heodo
2020-07-28doc_Q76232.docdoc 3f60b5fea62ea2994d8fa4137de92118f8f50315419bcb9e678a0b66b434b6d7Virustotal results 42.62% Heodo
2020-07-28mes_2020_07_28_ZPD733062.docdoc 7062f6009b062252fc3dd1ea29d46265a166398e42cd997b8a8f72b1bb231350n/a Heodo
2020-07-28Rep-RDJ804.docdoc f831057ed2e448c723eaa816ab8f6c90edeec0429c085392504a49779d7eb425n/a Heodo
2020-07-28FILE_2020_07_28.docdoc 158fdf3094384b4ecf3ee77431720a6bb83c64ec46654f962933020abcbcf008n/a Heodo
2020-07-28Mes-8224.docdoc 3e6bedc906a69aff43fab9f79f7e1eaa50c23b8fcf6b3cff3238c7560a3e25efn/a Heodo
2020-07-28dat_216.docdoc da39c8cba72d0e21b873c18e2717dfa3514d955ae45232c1896fae95b36990e3n/a Heodo
2020-07-28rep-2020_07_28-847.docdoc 76e3d5f5723f45341a8f69cb98945096ebed68bc0b919158fe077be65fb4b093Virustotal results 40.00% Heodo
2020-07-28INF_2020_07_28_ABY810709.docdoc bc8ed220d589f5b992b17855748e438261a53484daa608dddf8def5be64e0804n/a Heodo
2020-07-28File-20200728-YMT09842.docdoc 96b92a507285aec2864fccdab3cd183d2a4fda565c812dc189511a085c96f0bcVirustotal results 40.00% Heodo
2020-07-28LIST_2020_07_28_157.docdoc 702fd9bb99bbf2fa2901fc1d43cf18ae23d625a09c1eda18f476fb6cbdf8459cn/a Heodo
2020-07-28rep_2020_07_28_PKE846.docdoc c9edcff144b42d51f5e3fa6a6b81bc616a2569a9273535ae31a8d529f1494c9eVirustotal results 41.38% Heodo
2020-07-28Mes_20200728_755.docdoc c886af6a164ef32164d83f2dbaa1d353aafb9289858ea9bb2e78674b4ed9e632Virustotal results 39.34% Heodo
2020-07-28Doc-20200728-867351.docdoc 0394beb7ade32f9f0c257a008092f970080964af0432185bcc5b2b897d56f914Virustotal results 38.71% Heodo
2020-07-28Arc 2020_07_28 266.docdoc 49a829db25a031f897c810bec82adf3f2af0166b1d5043dcec07db0ba72546b0Virustotal results 38.71% Heodo
2020-07-28Dat 20200728 IQ6720.docdoc 49ff5d4fee2426f6557c41aff1d8a1f9469a4b56f97632916474912559edeb03n/a Heodo
2020-07-28dat_2020_07_28_81359.docdoc bf50bfadde92545c84380eb0e51fbd76f41cfd5d558dd7865e45e256be8dbc26Virustotal results 39.34% Heodo
2020-07-28REP_2020_07_28_M074606.docdoc d23680d922e87a0b9bbaad4803126f3076c1208e1efe41f35f6b212dcf32a460Virustotal results 38.71% Heodo
2020-07-28rep 20200728.docdoc 504fa30fd0f82b9b4ca1ebd125ab22a5aaa20e50c9b2082e7a9c0b0eca53473eVirustotal results 36.07% Heodo
2020-07-28Dat 2020_07_28 626.docdoc 7f901905cee7f7176e3a6118e01efc82181b58cada7801cc121f2d440c3781cfn/a Heodo
2020-07-28list 50787.docdoc 6d41956ab2324e6d9e134b3e73bf93c9a9a5734468aead7d72031e862c132e45Virustotal results 38.33% Heodo
2020-07-28LIST 23331.docdoc 8ad5258045f9c1ec73dd06d74b5b6157a12c15166fa0c8e2fc8106e78227af6dn/a Heodo
2020-07-28mes_20200728_299278.docdoc 231a0e9672ea9bd8a4425055e34051b2105ffbfdf3c2a40ba5677eb17b36cfd2Virustotal results 37.10% Heodo
2020-07-28mes.docdoc 0d08cf10fd555b812e4db0c9a9ead8a9c4b9f0dd9f3921e9c7db137e8cd22220Virustotal results 37.10% Heodo
2020-07-28REP-NJI7563.docdoc 0a384d82e09c34d4d2640f65b81ad80cdf69813b44697f6f870e1f47d1f5de8bVirustotal results 37.70%Heodo