URLhaus Database

You are currently viewing the URLhaus database entry for http://beenakker.eu/cgi-bin/i0zrp8-g44d-2191/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:421455
URL: http://beenakker.eu/cgi-bin/i0zrp8-g44d-2191/
URL Status:Offline
Host: beenakker.eu
Date added:2020-07-29 13:56:35 UTC
Last online:2021-03-02 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-29 13:58:02 UTC to abuse{at}axc[dot]eu)
Takedown time:7 months, 5 days, 11 hours, 6 minutes Bad (down since 2021-03-02 01:04:03 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-01Inv 7-321125346.docdoc 061f4c387df2a0e388b644d647379077b84ea8a2a52eec31d3e2f95b0984be9fVirustotal results 70.00%Heodo
2020-07-29INVOICEEBIQ1 63533325.docdoc 0154bb8b4ba5c8ae6953ccef01b7c2520377c676c34d08564a7fb556b5dd5dc3Virustotal results 38.71% Heodo
2020-07-29InvG03-307228531.docdoc 26c166a9ac0dbe51032e4bfcbd085f892aff04ef46a649d4e51a11d2a1ae5848Virustotal results 36.07% Heodo
2020-07-29Invoice-R661{:REGEX:.docdoc bf57e995ed5164cb8ce9480d1fbda2caf6151a35967a50f14c191d96881f227en/a Heodo
2020-07-29Inv-B4 70954949.docdoc 9a2096146b8ace7eb4e64e5a25cf48da7bfe891b37e48e83edd349cce12d5628Virustotal results 37.29% Heodo
2020-07-29INVOICE 8_48092631.docdoc 0644fc32d19fccfcc17f4c76d1f463049498e6005f7228f63aa9b88a1d17c95eVirustotal results 36.07% Heodo
2020-07-29INVOICE_AACZ0_9305385.docdoc f993b6aad57f95ab2b4d2dadf658a9accec7c914478dadf58e5d136f42b5f0b7Virustotal results 36.07% Heodo
2020-07-29Invoice D8023{:REGEX:.docdoc 46019bce6a3fc37ac4ba303099277dbaf8bb4e7fb09196ab0317ee1f5fae9da4Virustotal results 34.43% Heodo
2020-07-29InvDDPH440{:REGEX:.docdoc eedf761aed061fa63744aa541d5ddef3b7d53978fd00882cbf9fb0f88bd82550Virustotal results 36.07% Heodo
2020-07-29invoice-YEKK6{:REGEX:.docdoc 090a984722426633b73001523378c0fab17c231b0f9702306e9caf01c98f3655Virustotal results 36.07% Heodo
2020-07-29INVOICEYG4-1877821.docdoc 237c43a5291d6a1fcc464727bbfdd174bb1225e9c12283348c788b1b884b1dcaVirustotal results 35.48% Heodo
2020-07-29INVOICEGIJ0287 1692521.docdoc 6bd95c503150dd15cb18ddacc365a182f9dc405d69fc8cb0c081ff4e8064e9d4Virustotal results 37.29% Heodo
2020-07-29invoice ML580_10115233.docdoc e73f2075610d9b2cdef2e9a0cd4cfb82d1be854382f0fd03f5f1f9b28707e914Virustotal results 36.07% Heodo
2020-07-29INVOICECM84_5225718.docdoc 18b4fa83a6ab9f4a394a9642e954cf6b8184bd9b0597de0ff9fe3376db4a6c86n/a Heodo
2020-07-29INVOICE HWJU486-437642.docdoc 016b416def5205972b6d2651f449b02216a8063c2d205249bc8e1d58ae914a99Virustotal results 35.48% Heodo
2020-07-29INVOICEMRQN2-292506362.docdoc 836f741608d5aee28ac46b0fa047807f7ae6a35279131bda901f56e31f4d9561n/a Heodo
2020-07-29Invoice_764-909688.docdoc 2a59d9b88e40862915ed05312bdb0097e6f8d0138c4938eabe16726757916e00n/a Heodo
2020-07-29InvoiceMJU5{:REGEX:.docdoc 97a557ae705e271cd03bd01b09e1aa4f9444bf680a1db82849dda991516bc2d8n/a Heodo
2020-07-29Invoice-ZJ741-1949998.docdoc c8dfb11359ae7f34a5db54fc283c581df04497264808ffb9ff1d379f15f8c83aVirustotal results 33.87% Heodo
2020-07-29INVOICE IMM721-7353709.docdoc 4adbc680dd0c1628ac9eb574490455094bb4e74161f5799f2107898c35fcef61Virustotal results 34.43% Heodo
2020-07-29Inv-DWHW6767_303011162.docdoc aaae64787da06e6e2306d537a93c5ca9956fcaea67be4026f5597c46d1176ddcn/a Heodo
2020-07-29INVOICE 2143-191717544.docdoc cfc4f08eac512749e059176dd3bd0dcaab3bbabbed46c9a54aec74e7b4d1c28cVirustotal results 34.43%Heodo
2020-07-29Invoice 0584-51497901.docdoc 98f17256c293c9d59235854b445eefe7587415563922d028dad64b7ea2732964n/a Heodo
2020-07-29Inv-ENX4 44535550.docdoc e9c41a03b0a30df94da213516e68cb7f81634c2d04fde2f5fd4f4b72d0e58b79Virustotal results 34.43% Heodo
2020-07-29Inv-BRZ439 2527664.docdoc ecd6f0ecbe8a5736cbbd0ad4095e8d9197f31f8278a839928a6b1ff342310541n/a Heodo
2020-07-29Inv-B25 88914211.docdoc 0d29a39642786d047d8ff02c3573244dce73524a73d0f97b4a3f1ff1c935d9feVirustotal results 34.48% Heodo
2020-07-29InvIK8680_705400282.docdoc df26600619cca1e39dee2d493975dafbe94b1e1667abad484e8fe2cb750cf031Virustotal results 31.15% Heodo
2020-07-29Invoice4790{:REGEX:.docdoc e8764c1eeb1526e93e19ec21e83404f0657dcb6b9edb0a29a88f4527b8ef1871n/a Heodo
2020-07-29invoiceWW4{:REGEX:.docdoc c0ec41394c2d55c0cc47feaeb28e0b9e39a1fbf831ce6d675329aefa97dcd43fVirustotal results 28.33%Heodo
2020-07-29Inv-J6{:REGEX:.docdoc 579b15c447154b6113417ba91fbf52c227a7bf0a0044311929dcf20a48481779Virustotal results 28.81% Heodo