URLhaus Database

You are currently viewing the URLhaus database entry for http://wolfgang-brodte.de/3_jsb_1/InAUSx3_YvqcLPC50WmjwpA_6F42D_IlppKeWVoP/additional_Pl1BhCsQs_YZU1zDb4UNEM/jzl_90sst29933z/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:426364
URL: http://wolfgang-brodte.de/3_jsb_1/InAUSx3_YvqcLPC50WmjwpA_6F42D_IlppKeWVoP/additional_Pl1BhCsQs_YZU1zDb4UNEM/jzl_90sst29933z/
URL Status:Offline
Host: wolfgang-brodte.de
Date added:2020-08-06 15:10:05 UTC
Last online:2022-01-21 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-08-06 15:12:02 UTC to abuse{at}dogado[dot]de)
Takedown time:1 year, 5 month, 22 days, 16 hours, 18 minutes Bad (down since 2022-01-21 07:30:59 UTC)
Tags:doc emotet link epoch1 heodo link Quakbot link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-08ARC.docdoc eea494e866becd4ce5d21eaf4ba21c10cb806a32d385336edd7517d8b14af028Virustotal results 43.55% Heodo
2020-08-08Inf-2020_08_08-CQN85240.docdoc ba50483a5407dc7d213263534638c2e4e0445d9d06f977dc496e979beda32f33Virustotal results 40.98% Heodo
2020-08-08arc_U734.docdoc 84cce9a551dc2eb66990351d4d17dd8c37f457ad337bcb9984231f608208258aVirustotal results 43.33% QuakBot
2020-08-07Mes-2020_08_08-F059376.docdoc 5d2b88e4fefb1593bca1de5b27276ba0d00140416c91339fc6fd44431c8ccbd9Virustotal results 40.00% QuakBot
2020-08-07inf_2020_08_08_T691.docdoc 0ac47ffbd42f03c480345a7dd4402200a64b23da9c45e237bc7dd243e9047948Virustotal results 37.10% QuakBot
2020-08-07file_20200807.docdoc ee7b2f0042263d2cbc547f52e238a8a60507a9ff53e108b1d5b6b69f8b1f9cc5Virustotal results 35.00% QuakBot
2020-08-07INF-FMM412.docdoc acf64b8e97e3201f06314a33733d479adef77620d8c569663be2e02c3ef38e98Virustotal results 33.87% QuakBot
2020-08-07doc-20200807-5947.docdoc 016ca89513a40f3189a3620d63b4ddeecb49bb57f1459ad75154e1ddd9f2370fVirustotal results 30.65% QuakBot
2020-08-07List 2020_08_07 860092.docdoc d44d322769b573492a8bb345b4ffa1062789e82c500080d25cd09227c79d8483Virustotal results 33.87% Heodo
2020-08-07mes_20200807_5736.docdoc 072138e64fe9212286d645d47ab5325eaae32be326e84d10ccabd02db7a7a320Virustotal results 26.67% Heodo
2020-08-07Arc-2020_08_07.docdoc e557c9d2cc0e3f2aa2355b58c657834d11c61fe22903ea0800713dc9e09632c0Virustotal results 26.23% Heodo
2020-08-07File-20200807-O67215.docdoc bb249753b6fd6220b43602a1122cd458d29055d3e37603c1a3a1e2f21a81366eVirustotal results 26.23% Heodo
2020-08-07Arc_2020_08_07_P121.docdoc aaf9724d17a02da2ebb37c991ad51b1636ae22b4af318713bc3aa68538bb632cVirustotal results 25.00%Heodo
2020-08-07arc.docdoc 6e71a853888a1003e802086ff2678b16c1ac8438a7aad302b425a38ddf758a49Virustotal results 26.23% Heodo
2020-08-07file-20200807-190.docdoc dcbca5178ec82c9ca7b5355ddb5428abcfdb200b495fbc9326d3692f7397817cVirustotal results 26.23% Heodo
2020-08-07INF 2020_08_07 5673.docdoc a6cf38618a58d0076e02ca5aa15020a6971e1367e0b8c00168775a31f8b92618Virustotal results 40.00%Heodo
2020-08-06list-20200807-402.docdoc bacc4dea56cd5fd7eb1e3ac21f3f21298ca2c977a2989aa1e5caedb79e6d566aVirustotal results 26.67% Heodo
2020-08-06ARC 2020_08_07 4601.docdoc 4408cae66caeccce648cd57d6487635ff1ee6f3a9cac4830ef484df4b24c2fa8Virustotal results 29.31% Heodo
2020-08-06File_20200806_JDH898405.docdoc 70600ea20b1ce00f93af9afd801ce0915972b4102901b00d37b8f9a7f782a036Virustotal results 26.23% Heodo
2020-08-06REP_5015416.docdoc e4c0b9acd76b72b5cfaae774818c9222ae052b5fdcb6c29bac642d6c0b720477Virustotal results 26.67% Heodo
2020-08-06LIST_20200806_B2647.docdoc 197e3c11e30b5ac40cf44d64892fde49f4c6dc66bcd343027d78159fca14ac18Virustotal results 22.95% Heodo
2020-08-06Rep 2020_08_06 12239.docdoc ddb652ec9e00912f9e8a8906221af430f98963061d663c02245d43c49ce1ad4dVirustotal results 22.95% Heodo
2020-08-06ARC 20200806 RYS855.docdoc 8c4880300209ca49fdbbe5ccc1b13e131a7c6cd2407e916c1f524caecc30fc3bVirustotal results 19.67% Heodo