URLhaus Database

You are currently viewing the URLhaus database entry for http://lindnerelektroanlagen.de/pages/esp/x6q21ny9s/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:429854
URL: http://lindnerelektroanlagen.de/pages/esp/x6q21ny9s/
URL Status:Offline
Host: lindnerelektroanlagen.de
Date added:2020-08-12 03:42:02 UTC
Last online:2021-07-18 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Abused domain (malware)
SURBL :Blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-08-12 03:44:02 UTC to abuse{at}dogado[dot]de)
Takedown time:11 months, 10 days, 16 hours, 39 minutes Bad (down since 2021-07-18 20:23:07 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-14E_PO_08142020EX.docdoc d4fade764b1ae03f546843ff7b67176a1d7fca0c1cad66455d0770c364b5746eVirustotal results 36.67%Heodo
2020-08-13EBP_080120_JLP_081420.docdoc 5eb176742446a3e0c9a403d44fbcdc29c1fb4cb7c445de80f174c40d5d096f06Virustotal results 36.67%Heodo
2020-08-13FILE_48048863.docdoc 1688c4e554ca89ab4e4da29beb1bc0bbd684b61e7aca912fdfa91f3c126728bbVirustotal results 35.00%Heodo
2020-08-13FILE_TKT_080120_NBY_081320.docdoc cbd048b311c5ccf06b6122168b1b0a72d717f5912a471f21ba2c0ccbf5ccb8ceVirustotal results 32.76%Heodo
2020-08-132917800178.docdoc 9ad97679cbee7aac235985d49340c9b7f81becacdc6718cadc94648869514682Virustotal results 32.79%Heodo
2020-08-13AVT_39CZPD9F.docdoc a10bbdb1aeaf73f5428667df09a171b10525dbe87b6b436d6f93ae27b8568ee5Virustotal results 28.81%Heodo
2020-08-13DOC_SD2426323391DD.docdoc 593849aa485a444afc4b5c2ac577d0bf0a8b96a7523c93977903f6da138ecb66Virustotal results 25.00%Heodo
2020-08-13INV_7REPSNX.docdoc 88bab9477b241c915c4828229812ee9c6bcfafcd6d303a02feace7bfe146de75Virustotal results 28.81%Heodo
2020-08-13REP_GLM_080120_SOH_081320.docdoc d13374a43739a62be86e9cd0195f99e350d2fc50121d35e18c3dd603d92cbfe7Virustotal results 26.67%Heodo
2020-08-13INV_PO_08132020EX.docdoc c739f4f8bbb61fb4382962d0662823ff1a36d981d54d8231ad013c0dac1768c4Virustotal results 27.12%Heodo
2020-08-13DOC_50287074.docdoc d3e93e422450aeca81d6f2816df1ad745cf50420cf385ab95281d6c135a6bc87Virustotal results 51.67%Heodo
2020-08-12S_669155311955024620.docdoc 2b66ecd3111becc2a55700b18472d4d52f1647499c9946c6ce191a23b86feb20Virustotal results 48.33%Heodo
2020-08-12TG2704068104BG.docdoc 6d377770b986243d95806974b9d72c7f06f0cc80801d73a0860866cf4d95376eVirustotal results 50.00%Heodo
2020-08-12FILE_88951792.docdoc a60558a7dfbe4e862f3eadcdb17ae60763476f2941a79db0ba679e0756cf4e18Virustotal results 48.33%Heodo
2020-08-12REP_76419678024777.docdoc f19b16a6b70c8cb1df5f029983b5176588645914bead2d0b21292174bf7d0839Virustotal results 45.00%Heodo
2020-08-12FILE_66266270.docdoc c0888a804c01b5a1930c35ea4bc60c7e4a2321b9302ac603cde1c030b02196c8Virustotal results 43.33%Heodo
2020-08-12BAL_MG0654715807ER.docdoc 1b1919e46000cf3882b244d173a0773e617c7208552cf45cb0b605538fb1505dVirustotal results 38.98%Heodo
2020-08-12DOC_LA7502142153MV.docdoc 1b43dacaa3825888c4583607901a5fad687f60840690fa8dfb7b5ab72e28c27aVirustotal results 38.98%Heodo
2020-08-12YW0300464816KX.docdoc f7839e4820b80184243adc516719a06331ca2214d95f1f803b33f2884cc5cb22Virustotal results 28.33%Heodo
2020-08-12QES_GUY_080120_BRR_081220.docdoc 1f1a6a0dbefcc80a0303cdd5d9efc76784286fe3003a19b0e1ca9e0da6b7d030Virustotal results 29.51%Heodo
2020-08-12REP_MF3612027379PG.docdoc 6d984efb9b2aa17ccff6a96fc873b78a7bf6d092f2ffe3ec0f716a67e39712a9Virustotal results 28.81%Heodo
2020-08-12INV_Q0V6YT5MLXNONWFL.docdoc 8133ad23a95674ac43c254256076e1571b6ac10c7fa712df1a0a3fc9054f2093Virustotal results 27.87%Heodo
2020-08-12BAL_K7YSA7COR9LDO.docdoc a5bc97511b478f3a0cb376d9770206b613961a830cf10d66287e57fac1586cb6Virustotal results 27.87%Heodo
2020-08-125U393K0AK.docdoc 05fb55b118852bdde2c76754d2d2b2700accc08481280cc2309ab985aeb86c06Virustotal results 51.72%Heodo
2020-08-12AI_DKBFXXSAJX9GI.docdoc e4f019ef8be62a9c5395e8b39d905db38b30874cbd10d4824a08b5ce4db9fc59Virustotal results 52.46%Heodo
2020-08-12PO_08122020EX.docdoc 800955e479e02bc926fbe59a6e5a8ad7e3405546c4084e4004d5afda9fbb90f3n/aHeodo