URLhaus Database

You are currently viewing the URLhaus database entry for http://ebe.dk/_bordershacked/open_zone/security_area/b2jys09lmne9_7x511w3242360/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:421802
URL: http://ebe.dk/_bordershacked/open_zone/security_area/b2jys09lmne9_7x511w3242360/
URL Status:Offline
Host: ebe.dk
Date added:2020-07-30 07:00:08 UTC
Last online:2020-07-31 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-30 07:02:03 UTC to abuse{at}sentia[dot]dk)
Takedown time:1 day, 10 hours, 58 minutes Poor (down since 2020-07-31 18:00:21 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-30MES_86386.docdoc f1ffb1c42ae9ea328c97357aee4bca00d283e0853592b8f048c0ade268d30404Virustotal results 49.18%Heodo
2020-07-30MES_2020_07_30_359128.docdoc de22f3d159bf17825aa2c83805068b8ebe5d690f6981d2e8102613087fd3b6den/a Heodo
2020-07-30Arc 20200730.docdoc 81aa6e9beeed0b3b39e5fd0fd9b9667fb666a9b5d48b35d1f86447febb5e2053Virustotal results 47.46%Heodo
2020-07-30file 20200730 JPX7072.docdoc 8fa056cca848c61d974a9bbcb5ee31aa9e45987ef15a2589765d61065fa9fc1dVirustotal results 48.33%Heodo
2020-07-30doc_2020_07_30_OG995.docdoc c52589c34fc9f77cdb0ac7ebb6235fb2a936af8cb2993c2a7b73e8203883c112Virustotal results 47.54% Heodo
2020-07-30FILE 20200730 JO3998.docdoc dbdabc0245226588757dd5317307e3e4d7307b6948dc4c467a1dbff0231e7e0bVirustotal results 48.33% Heodo
2020-07-30MES 2020_07_30 4637276.docdoc 46815e894a9b6f7e7ad9bcb948b69d2b4847dbfd865ad522641c8d73fac7cbafVirustotal results 49.15% Heodo
2020-07-30Dat-20200730-932611.docdoc ad92d3c3a20bc981d01c9e656562b497f7231f4aae963d83823611086b681496n/a Heodo
2020-07-30File_2020_07_30_LO253.docdoc 8a1fba88b4c01acc0265806ff8f82b7bf292654f354481021212bb8bdb372409Virustotal results 47.54% Heodo
2020-07-30list-198553.docdoc c7cf836f720de4f6ca197815eb09d5588d630f613b082ead21ca6fcbdf124f3fn/a Heodo
2020-07-30FILE-2020_07_30-377979.docdoc 02531e08b264009913fc3abc4e4d6fb0c3e4096c45ad1ae813a5cbddf4a5d43bVirustotal results 47.46% Heodo
2020-07-30REP_37464.docdoc 093e1000147aabe0b38214e2060d1d52e6592e7aea8e0f1ee01e0735f5421e89Virustotal results 44.07% Heodo
2020-07-30REP 20200730 FA780.docdoc 61d1c837552514e529851b1509ec8fb93740554e3824ea4ce426da48baede50bVirustotal results 44.26% Heodo
2020-07-30file-2020_07_30-1928.docdoc 69cbb0b1f6900a121b7b27ae55e71124bfec8baa108abc09348c4cdee24a63b6Virustotal results 45.76% Heodo
2020-07-30DAT 20200730 J117.docdoc 25cafbcaa169e7b33aacb6993e04413dc440de3425698a848701168658bc34b0Virustotal results 45.76%Heodo
2020-07-30File.docdoc f7d13e2cfd426f099a64142f47ad2cb24409a54e1973096dd09f6d2846bef1b2Virustotal results 45.76% Heodo
2020-07-30mes_GXA942126.docdoc b64f3c6b96c306203cbfdd87bec5557adc23c16364cc8a57241c90da622ea2a7Virustotal results 45.76% Heodo
2020-07-30rep 2020_07_30 T8038.docdoc 1834144c4703ed1b69531325d653c0aa6091ab557084f4e52ae3bfcab031fa13n/a Heodo
2020-07-30Arc.docdoc 30457b2777d9f1f27693e4302b57ef31b6998063752f8701e5b7468587857613Virustotal results 41.67% Heodo
2020-07-30mes_QD46898.docdoc 55e2f9923223da9087bc00229657bcd3d9d2387be7bb005eadf888a6f87d1bbfVirustotal results 40.00% Heodo
2020-07-30FILE_20200730.docdoc 2ec69b0d7d023da2b0a019381a48ea93b9275ef7efe97b42a5ed0ded96dc2394n/a Heodo
2020-07-30list L39128.docdoc 1a5108af699bf53170f24e2ae8aeee21624a4e7571c7da1884247a785d001415Virustotal results 40.00% Heodo
2020-07-30MES 2020_07_30 RT0721.docdoc 712a296f06d759585de34af3e07e7145f761ceb84a57bdc207b587ecc21669e7Virustotal results 41.67% Heodo
2020-07-30rep-20200730-LG929438.docdoc db8ab0dbbee2a35bb4fa7c7a2530483cab14784286dade9a981013a60c2bf1ffVirustotal results 41.94% Heodo
2020-07-30rep-2020_07_30-KP4859.docdoc 5ef167e81636402225db824690fd944390baeaae1d833f42e3f04e776119d4d9Virustotal results 42.62% Heodo
2020-07-30Dat 20200730 K775343.docdoc af6883b14fd8ac025308d08c5e117d1553ef3f4a88594a7098ca8e526840d314n/aHeodo
2020-07-30arc_2020_07_30_034355.docdoc 7c17f04e0e5e512dcba89bc6caa22241ffae5b239fec8738fad88fca572b3293Virustotal results 40.98% Heodo
2020-07-30inf_WM7581.docdoc e6c998de2f01f9c208d12725ba4817561dfb8ece5eb846d953579db56548c2fen/a Heodo
2020-07-30Dat_LXX5241.docdoc a3f3d935aabf688d3c996e3e4934caf7d38969ec3c799f0cb80a323a560b2843Virustotal results 40.98% Heodo
2020-07-30Mes 20200730 488747.docdoc 50a168135f749041f0c6965b975cec42c11a600a00dd266fd8537b87a991bb59n/a Heodo