URLhaus Database

You are currently viewing the URLhaus database entry for http://tjr.dk/aspnet_client/open_disk/guarded_space/4RSWJ_6y23eeJhv2rev/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:426189
URL: http://tjr.dk/aspnet_client/open_disk/guarded_space/4RSWJ_6y23eeJhv2rev/
URL Status:Offline
Host: tjr.dk
Date added:2020-08-06 10:18:04 UTC
Last online:2020-08-10 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-08-06 10:20:02 UTC to operations{at}azero[dot]dk)
Takedown time:3 days, 22 hours, 26 minutes Bad (down since 2020-08-10 08:46:32 UTC)
Tags:doc emotet link epoch1 heodo link Quakbot link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-08LIST-20200808.docdoc c16d709aa67dd00794256f4f7cbce899ece6f7d22a9964a67237372c08b1ed9fVirustotal results 47.54% Heodo
2020-08-08ARC 2020_08_08 4232.docdoc e5e2f23eae1e5ced0e4dd57ce7c5c5ebb9206decd8ef46a05c454df21be49ea6Virustotal results 42.62% Heodo
2020-08-08arc 20200808 R951294.docdoc dbbfe251ebab8c3e19de23d3e0aca5661d1e893f34b9a123699fa7f2d3d5b8abn/a QuakBot
2020-08-08INF 2020_08_08.docdoc a0106e59dd260be14700f439f7a350fc5c02d1c3f1eea2c3da779ea8edbdee42Virustotal results 42.37% Heodo
2020-08-08inf D806.docdoc c955a3733756053d6df67e42eaf5f05cabb32674a85a7a97fd4be03a74332edbVirustotal results 41.67% QuakBot
2020-08-08mes_X66893.docdoc 56cdba181ffde696964d97ad5737c127e271d4beb75e1ef87eb83d1c3242831bVirustotal results 40.98% QuakBot
2020-08-08arc 20200808 GPK91888.docdoc d840943a1f750210b98a2f26d5852b1c58ce7e454a38b38884f0b5371ec1198aVirustotal results 40.98% Heodo
2020-08-08FILE_2020_08_08_XBQ56307.docdoc a671e2959966d9a945046df0dd4a878fbe99b378e108e50c8de5a2746ce7dde8Virustotal results 42.62% QuakBot
2020-08-08FILE 20200808 MX78236.docdoc 4be780211b5eeca427c252f629f2ed5b1e7062193463819a056e705ffa9df1ban/a Heodo
2020-08-08list_20200808_CCN0569.docdoc a06d116a6a22a8bf4413f8be14dc63fced336358a21a7711ab9ac2f94da681b2Virustotal results 40.98% Heodo
2020-08-08Inf_20200808_F801935.docdoc e9bf95d02c5b2b1e8ac21c595cce59294b8a54da32e71a619cdf2ed03448dc96Virustotal results 40.98% QuakBot
2020-08-08FILE 20200808 1792794.docdoc 501893610fc7b68385c512147e464fd30fbe631de1d21b4b7f2f89bbc7583e81Virustotal results 41.67% QuakBot
2020-08-08LIST 20200808 UJ606785.docdoc eece4ec540e8ae52c63b4384986f2de0003b5b51d486ee8602de1709feb06dc4n/a Heodo
2020-08-08list 20200808 4836.docdoc 7db111b6a3b2b44ddb5ce3413643af61cc16843c9921e8fd636a7d8cfb7894d6n/a Heodo
2020-08-08Rep_228.docdoc 132a79f10403808ae939cca854d6eb7a7f061536f04f3d1b735c0284ac46b163Virustotal results 40.98% QuakBot
2020-08-08Arc 20200808 444792.docdoc 4749be0b925b0d49c831813a68772865cc0448b80e10fc43d06b81c93c5c9e34n/a Heodo
2020-08-08Arc-PRY22838.docdoc 63c966c20ccc686dfa62a5063bff299d385ea9f159cc9a5b79dc59063fb9514fVirustotal results 43.55% QuakBot
2020-08-08List 2020_08_08.docdoc ec11d3cebaa5d4d05ef93c8b88ab79e34d82fede8daa5a821d119d12de060ffbVirustotal results 39.34% Heodo
2020-08-08Mes.docdoc 63d401363df2dded7f8e2507f64a6f20c9443fccc2f862d8b78641328d13f579Virustotal results 40.98% QuakBot
2020-08-07FILE-20200808-706081.docdoc 5d2b88e4fefb1593bca1de5b27276ba0d00140416c91339fc6fd44431c8ccbd9Virustotal results 40.00% QuakBot
2020-08-07REP 2020_08_08 JYC22783.docdoc e8cfc1ea617361564b695bbb732436a5b497bec2660b878ca91e398406298900Virustotal results 36.67% QuakBot
2020-08-07LIST-2020_08_07-645461.docdoc a69000df0de02fa33f76a39760c10e3b343cf3987577aadd182e361f49d7f5ebVirustotal results 34.43% QuakBot
2020-08-07DAT 2020_08_07 TB412419.docdoc 646ccd64823cfa77dbb491953dde3333f48c8c19ac7a2753088a96dce8b0d397Virustotal results 33.90% Heodo
2020-08-07Inf-XW060769.docdoc 1da264741da26d5235adcc736828d7c8f3297c6a299bd6f1f264ef21de841c04Virustotal results 34.43% QuakBot
2020-08-07Arc 1221.docdoc d44dbb7dff5cb10abc9c612c5b8a79f2b57a93a11cc8f8da66d9879ab5bc8dc3Virustotal results 33.87% QuakBot
2020-08-07Rep 2020_08_07 M28815.docdoc 0c521d971d4f848f0fe2d2602be0198ed41c412db71a3dab065d5100be08bb04Virustotal results 31.67% QuakBot
2020-08-07Arc 2020_08_07 U2731.docdoc cb1f2bf4578f29a20e8d2870d56795a1b2ebc499d05b0b2398af82735726cb6fVirustotal results 34.43% Heodo
2020-08-07rep_2020_08_07_FEF2540.docdoc 420cf1f6784246f59cc804ab9685106d033fb5d1d8d3e76558418bc0786f7b69Virustotal results 29.51% Heodo
2020-08-07FILE.docdoc 612b33cca81c88e812436d48c987273b54a73bdc04a908102beac2aaf50b5825Virustotal results 26.32% Heodo
2020-08-07Arc 2020_08_07 RCE529.docdoc 8e2bbe860f81156cb3f65c53cc9e82ba407d702856b895049330baf81c76a673Virustotal results 25.81% Heodo
2020-08-07Arc 25387.docdoc 9f3d4befc75b49a5e090558b5cf953d5da87bfac56db564bfdde1d36d6ad7b74Virustotal results 25.81% Heodo
2020-08-07list-8455.docdoc e557c9d2cc0e3f2aa2355b58c657834d11c61fe22903ea0800713dc9e09632c0Virustotal results 26.23% Heodo
2020-08-07arc.docdoc b4bfa9abdc1af9d31045f6c98499ccfa5e332945a2b269c064bc108023673a2en/a Heodo
2020-08-07DAT 2020_08_07.docdoc a288dd3026142c4fb729f070fdb05a968a11a0cb77d24bdcc066866ac51eb936Virustotal results 26.23% Heodo
2020-08-07list_2020_08_07.docdoc 3ec975d212b214553bac033787cb72d8310c493b5261f76b8ba3b5421b9f31e1Virustotal results 26.23% Heodo
2020-08-07ARC 2020_08_07.docdoc 11a879a7d8dec97462c1c9185051ef6a793dfa91fa064697aebc8e58839b888eVirustotal results 26.23% Heodo
2020-08-07list-20200807-518.docdoc b584a5aebf9d1ad385649f724d7889be3f925dbb7a40ecce452d88f63462e44cn/a Heodo
2020-08-07INF 20200807 NEQ604628.docdoc c9446d50702574217eb30ddf8a9f1752c77215b5a1d6a451532920aa2a8ad5e5n/a Heodo
2020-08-07DAT-2020_08_07-046311.docdoc 382174823a7c36d512b36fa77c017170465f34034a645db3517ca6de6e902aaaVirustotal results 25.81% Heodo
2020-08-07file_2020_08_07_781.docdoc c048712c7175ac9b0fa6c2860bb9bcfd5ce5d4e6c6d7723c7f49ff3a1bc35c75Virustotal results 26.23%Heodo
2020-08-07LIST 2020_08_07 523049.docdoc 4d66b8fafcf69f590dc74a3383fa08576a6de54ef030b8d47bced68e03f63065Virustotal results 29.51% Heodo
2020-08-07Rep-2020_08_07-G980071.docdoc e3cfb2e0648535875890582842fe912425271c2dfaeb7c1ef7f982a9ac41c18fVirustotal results 37.70% Heodo
2020-08-07LIST-20200807-MOT7470.docdoc 8a05d2fa81e61dc7197f89395e1217f66bbf6daeca792b192b49eafe167ee0aeVirustotal results 38.98% Heodo
2020-08-07LIST-OSI0860.docdoc 2a7f0551cd0fa000ed5992db4346987430e32084240b9eb53ad0369763734b71Virustotal results 33.87% Heodo
2020-08-07rep 509658.docdoc ff8de7de95e6aa0e4144a28e204c568e2b0897039d3c6925195053aa742cd7f6Virustotal results 37.10% Heodo
2020-08-07inf 4813.docdoc bde536ff0957de3adb9867d66016e8c3cbf60783323bb1589b762ca55e034fd0Virustotal results 37.70% Heodo
2020-08-07Mes-20200807-C3893.docdoc ae908684371dfff2fef8392c36cbf6a27800823f0c41b16230094f8dce844029Virustotal results 32.26% Heodo
2020-08-07DAT.docdoc 8dee1c489137e967d7674246af7a20f33986189be2bc33d2d1c2a766391d65d1Virustotal results 32.26% Heodo
2020-08-07file 20200807 7431.docdoc 017a10a1811401d7e7500e1b999024f7188b0636a16751e309fe8dc474232b95Virustotal results 30.00% Heodo
2020-08-07inf_2020_08_07.docdoc a9f3247aa61118e5538983621ebddd91a88c6fef1097fd3f142ce169b078cd7eVirustotal results 29.03% Heodo
2020-08-07List_15766.docdoc 6c822bf85153ffff4d424e12352a19e60d31782008681d7287a00bf4750feb70Virustotal results 29.03% Heodo
2020-08-07inf_20200807_ZKC797.docdoc 5bb39eafa5028062850d6792e1c03eb121c1102ab0454e68ab2ae662305c2f3dVirustotal results 31.03% Heodo
2020-08-07dat_2020_08_07_RA001790.docdoc f68b4830444215e42c2235d3a089e701433125057f88922a9e957fa59cd9fb58n/a Heodo
2020-08-07rep.docdoc b8dacf3ee73cdfc545f0e66e81dd8331ad345136a5a94dcc78f387bc7dfbea3fVirustotal results 29.03% Heodo
2020-08-07INF.docdoc 2a005cc6ecad083fbacad57dd64f003039138ab3058b1914a4857ea7390df298Virustotal results 29.03% Heodo
2020-08-07Inf T866370.docdoc 2d9e8d19691ccc198cf997196c54e831404e2577b1bd3c17ae29b1c78b0f95a8Virustotal results 29.51% Heodo
2020-08-07doc E16110.docdoc 73e2caa408d07e0108e48b2636910a8894434b6f052b80a142eadc2b8e4390feVirustotal results 30.00% Heodo
2020-08-07DAT-20200807-HIZ088112.docdoc 1cc3fe55cd9952581cd54ff7b1a12d5a7a2aa90d760fda8b9a6b2ea8d010e1a7Virustotal results 27.87% Heodo
2020-08-07Rep-20200807-SUL438.docdoc 36cf71324f57ceb43b443ab2e5d0670e4adf672165537042e46c23de797186d2Virustotal results 27.87% Heodo
2020-08-06Inf MI5263.docdoc 24572c0cb1a22167d4116bd6452b5130cbe3926a970ab4fa6185863253b7563fVirustotal results 27.87% Heodo
2020-08-06list_20200807_SE358776.docdoc 2c5b7f8488ec8abc944d1a90f84293494cb7c6dea6cd23bad40fce8429f41442Virustotal results 29.03% Heodo
2020-08-06INF 2020_08_07 XG3351.docdoc 834ae3e3344f994a972b0a6dd3850fc3a7d26a9d1ab48ed2c3ec49e34239147eVirustotal results 29.51% Heodo
2020-08-06Doc_20200807_9276.docdoc 9fda153dee6f47ac4ab198402cc17dac3bd96bd975458ef5dc23e2345abe48bdVirustotal results 26.23% Heodo
2020-08-06List-2020_08_07-490807.docdoc a1668530748354caf4b83b007f729aa168414a2e53c2c87bc4043bdd0c7a3c06Virustotal results 25.00% Heodo
2020-08-06doc_20200807_410753.docdoc 706fdc7d420cdb00957231e66056423617a36dbb164b61b2e24642e26c23311dVirustotal results 27.87% Heodo
2020-08-06mes-362999.docdoc 2390a70453dddc7b17d5b2b8ddccf943b3004dc5550d6537d2bbaa9b5e7feff1n/a Heodo
2020-08-06file.docdoc e4c0b9acd76b72b5cfaae774818c9222ae052b5fdcb6c29bac642d6c0b720477Virustotal results 26.67% Heodo
2020-08-06mes-2020_08_06-48725.docdoc 5aa5250ff5c978f28b1cae5cd797f549c018e87636de1298771d8c1fa0e7ad0bVirustotal results 28.33% Heodo
2020-08-06mes.docdoc 8b7d452fbddc7ae83d98a52e61df4d58e8376e0aac9419dcfa40777aa279a0a1Virustotal results 29.51% Heodo
2020-08-06ARC-20200806-960967.docdoc b1677b8c7736ccca1544b631f95f9c8997e288c8a69b94d957c518f0b12c9076Virustotal results 25.00% Heodo
2020-08-06INF 2020_08_06.docdoc 700aecc7e91d44127bf925bc60a0fa24d7c0b35914acaf5174cb77e3994ce30aVirustotal results 22.95% Heodo
2020-08-06Inf_20200806_KM5156.docdoc 0f53f1a12b18b9ffd6a1ecb0dd0ac95f53dca712c3a48686ecf1c84b256ae763Virustotal results 22.95% Heodo
2020-08-06rep-2020_08_06.docdoc fee5f03d9808ee5aeef5b926cdabd3b142953d0f9f99e64f98da383a2cc5f5c5Virustotal results 22.95% Heodo
2020-08-06INF 20200806.docdoc d0a24444d0f97ecbc49b529c1e8ad930ad3c32d18b825aa7f90cb9ddc45ece0aVirustotal results 23.73% Heodo
2020-08-06arc-U654535.docdoc 3ab9a472141139b40fc79113a1938a4e2a47b4e3ef657dcb687fe93a3ef23299Virustotal results 22.95% Heodo
2020-08-06List_2020_08_06_XYF6048.docdoc 5873abe6b1138fa9a96b16c1618e16318c9391dbb010afadd26008c1bc824cc8Virustotal results 21.67% Heodo
2020-08-06DAT-2020_08_06-33076.docdoc 19b8385b0b03c41090e393a31e0b86cb628b2d697fcbe1c18e359dac4fbc83e1n/a Heodo
2020-08-06doc_20200806_67161.docdoc 7e3748cb30eae6aea8ece0f485bfd8d0c1afd577570b3e5187292d0628265fcdn/a Heodo
2020-08-06MES_2020_08_06_10039.docdoc 4b5b26ca7cc728978ea9c6d3acc58e52aa719b30a35d994041cb88d6b35b76b8Virustotal results 22.95% Heodo
2020-08-06arc_2020_08_06_SBQ32741.docdoc 197e3c11e30b5ac40cf44d64892fde49f4c6dc66bcd343027d78159fca14ac18Virustotal results 22.95% Heodo
2020-08-06Rep-2020_08_06.docdoc 48c9122a26741dad73b2b5eb26728c9aea5e93081462554216fe3710ce612a22Virustotal results 23.33% Heodo
2020-08-06dat-Z7638.docdoc 4d8a76fb397eadec8bf35a9af47f70773ad8d08b861c9c8a30563621dfc15dd4Virustotal results 19.67% Heodo
2020-08-06list_X066305.docdoc 7d7926ab7557159227fb12686b96a4dabbc210f14f85066feffb3c03e351892fn/a Heodo
2020-08-06REP_477.docdoc 3232e01e2de692c5ff7997ab9d7ee6bfdbcda1cdb653b6c895b307bb14e7c1b8Virustotal results 23.33% Heodo
2020-08-06LIST 20200806 IV845153.docdoc 6cb2eabf38773a6fdd75f91d9f161ee146ebba489d6615a09f7f8209fc742be7n/a Heodo
2020-08-06Inf-20200806-PCD306316.docdoc bd30b85256bf54e1d6020ee831ecab5b478f172e50514d26854a0702e1cd673cVirustotal results 20.97% Heodo
2020-08-06Arc_2020_08_06_DCS319.docdoc 94eff29b2b66cf56b9c1289701c955774757c6da23fe473f56064bd6bfcac9b6Virustotal results 19.67% Heodo
2020-08-06doc_20200806_S87318.docdoc 914ff166e7ba02dca99b938cd726852832e3104bc6b007ad1c8e9660840cde74Virustotal results 18.64% Heodo
2020-08-06list 20200806 825210.docdoc e2ff20f2c1bf84a8a797acf35679cf6d162cae5fbcaf74d7cf48f95be49b4b8dVirustotal results 19.67% Heodo
2020-08-06arc_2020_08_06_5635831.docdoc 14de1c40e4027806af271169b685d2690fb89bd72b327d13dea014aa9704c5c1Virustotal results 20.00% Heodo