URLhaus Database

You are currently viewing the URLhaus database entry for http://falkgerlach.de/cgi-bin/multifunctional_section/9n9n4ysc0qgp_8z9v8f4o_area/u2eyh5lyn0z_2t4vuv4454/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:436865
URL: http://falkgerlach.de/cgi-bin/multifunctional_section/9n9n4ysc0qgp_8z9v8f4o_area/u2eyh5lyn0z_2t4vuv4454/
URL Status:Offline
Host: falkgerlach.de
Date added:2020-08-19 21:17:33 UTC
Last online:2025-06-03 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-19 21:18:04 UTC to abuse{at}strato[dot]de)
Takedown time:4 years, 10 months, 8 days, 16 hours, 0 minutes Bad (down since 2025-06-03 13:18:12 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-21doc_CE43216.docdoc 42cd1526e8dc5c2eb9e1cd5aa13c9dd5068358c7f29defbac1a97b67f59b36bbVirustotal results 35.71%Heodo
2020-08-21Arc_20200821_EU5962.docdoc e57d599086e79ba7f1f77e0a2feed6facfad3c7b3d142c75c2608906fdc6656cVirustotal results 33.90%Heodo
2020-08-21MES 20200821 U707973.docdoc afae193e15a1015938b4d38c1c3a60e066a7de17e27e599fb8afe90d97dcf749Virustotal results 27.59%Heodo
2020-08-21Dat 20200821 RP027243.docdoc c4525d8d12b2ae0b6f7695fee8ce9fd554341878ff6ead657048680e50beefccVirustotal results 25.86%Heodo
2020-08-21DAT 2020_08_21 13957.docdoc c2c1a4ecf50678af6b02774320786168daa080cf095685ad465f1d4ba3eb083bVirustotal results 25.00%Heodo
2020-08-21inf_2020_08_21_8564560.docdoc be2af2b1457217ae5aa292321ad48fea1ecc86961ff0d3ff163351bad2e4b58fVirustotal results 26.42%Heodo
2020-08-21REP 20200821 Z496998.docdoc bb5ea6401f31e4c9a16297546ea7dc58a1b86dec75837de0e5ce9e9709a53919Virustotal results 26.32%Heodo
2020-08-21ARC 20200821 VL329167.docdoc 4ef406cbd292a2602745706a761c8de68c0df760d10bad90be6443056674c9c2Virustotal results 27.59%Heodo
2020-08-21MES 996.docdoc 6d50456c3290a78c53c586ad8eee0f6156fe29bcbf3e0af00e3646bb85dec3d2Virustotal results 26.32%Heodo
2020-08-21INF 20200821 39338.docdoc d878966783b12d88e9b423f7197c32558e7a6a90f59f218d29ae46bb03b8b939Virustotal results 27.59%Heodo
2020-08-21Inf O074.docdoc ca6159cfb8c0492a5de566fe70b1741acf00e6111f45c291e520c13a8cac9b69Virustotal results 21.82%Heodo
2020-08-21mes 2020_08_21 X06213.docdoc 41b160a7d55e5fee3871597117f8a0606985711d0413a8378ea0127fcf9e58bdVirustotal results 22.41%Heodo
2020-08-21rep 20200821 6818240.docdoc 752d91924381fb8b6fd87454022cecc75e98a3274f628049158974fe49161386Virustotal results 21.43%Heodo
2020-08-21Arc-2020_08_21-5635551.docdoc ba5472a30812aa52184f748504cc057f145bbf2bf03a2808785af67df5e2865bVirustotal results 22.41%Heodo
2020-08-21FILE-20200821.docdoc 3e43e602bf681ea67efd7104df9d70f8546ff38d967993a5aa4ea3cdef6b0f2dVirustotal results 20.69%Heodo
2020-08-21File_20200821_7845637.docdoc dba1866ba18f33e0225fd995db16edcaead43edae0108a69bfbcc55fb3681e97n/aHeodo
2020-08-21doc-TV907.docdoc de515e7ec0dae90d1800cbb006a20ce039f15b596a5125ad9a44859bb3efe77fn/aHeodo
2020-08-21dat 2020_08_21 1475396.docdoc b148d085ba83f250eb10d2a636900d58212f8725fcb783566c0de0ce822d49f6n/aHeodo
2020-08-21list_NVS258362.docdoc 46e0471a4ef5b075bac9fc9db5a1c2c2c56ddd03c87e15d8c658fdd4ff865912Virustotal results 20.69%Heodo
2020-08-21REP-2020_08_21.docdoc f82a8e3d673d04163870c652bf79760f7a9f4644923e1c1a506114e2b344dcb2n/aHeodo
2020-08-21Inf-20200821-67064.docdoc eba8ffc3c1fc4d1ebcf33cc7e1aa34d5c99f7bd59095363ad7515afcb73141dbVirustotal results 28.81%Heodo
2020-08-21arc-QW309.docdoc c69ea10443ff91142a59112f029a71717d582ef3a01e2f2315745a3d6d8adaefVirustotal results 30.51%Heodo
2020-08-21mes.docdoc 823259e20aee973e7f3a3066d4fe14f60b4b0ba731059c37b07274421ff68c52Virustotal results 30.00%Heodo
2020-08-21arc 2020_08_21 850886.docdoc d197888c1aa3df7eecf029acae0150d6092c71f5ff95a9f10c54b8d3567c982aVirustotal results 30.00%Heodo
2020-08-21doc-20200821-KI7574.docdoc e934e66e19e33d54a2df8f96b7f7f1313d001e2d20259d4826a43f27e4819f34Virustotal results 30.00%Heodo
2020-08-21ARC 940720.docdoc 8249d499b12e354fac54093bc1e6e8f5148ab8992fc6980ee512ba0758f6020fVirustotal results 30.51%Heodo
2020-08-21REP.docdoc d81bcd54a974481512658b1e338327e30563dad626425a6c5350d4308691cf97Virustotal results 30.51%Heodo
2020-08-21ARC_U94220.docdoc 929e57448d880d8b99401501f36fc5a5c348191d9c46198a2c855ffacf0f92dfn/aHeodo
2020-08-21List-20200821-681.docdoc f91a96081837854ffffabe55a4e0cf1566efe7e766ed9f69e7787250b8438ff5Virustotal results 30.51%Heodo
2020-08-21arc-20200821-59782.docdoc da0e89a0758ddeaabbf75668f4631c30ae311a1facc583f9e7f031fb678bbcd4n/aHeodo
2020-08-21DAT-2020_08_21-M424.docdoc 4cc1da12449a3482d7e0b3de9cba0ee86abb8ad7e7f368ea5600eed7027c1a9cVirustotal results 28.81%Heodo
2020-08-21mes DT077075.docdoc f22454d1893035ebbd4d351bba85a37567652de7fdf9ec748f475328c783f752n/aHeodo
2020-08-21DAT 20200821 9465.docdoc d94fa91cd49d2cc2c0ef403e63c96542fb64a3b558c819845c4463dcdb9d4360Virustotal results 31.03%Heodo
2020-08-21mes-2020_08_21-647426.docdoc 844c7eca130f2bd45a05aba07bed7decc0a9e845347c56976289b2b80fd4e8can/aHeodo
2020-08-21rep-2020_08_21-DWS62466.docdoc 787791fc510f985811dc139c9ccacad673d5ef20030d69b0bb63c9a12ab7ada6n/aHeodo
2020-08-21INF 3568.docdoc 8d533777e5e6b3040faea6d6f9c839f55ce377d49607833baefb3a1141eeef47n/aHeodo
2020-08-21inf PJD18408.docdoc 5c59c4068237c92461ea1c885bbca743f0dd4dd20b557ce82241ce7be79fb5dcn/aHeodo
2020-08-21file 20200821 82256.docdoc aa352f9f148665dc543c2b994ff0cc542319e2a6a4c5a18a9d52c7488ec5a247n/aHeodo
2020-08-21Arc-N48376.docdoc abfc420601b0287aec162de246589aecfff4819b9e63229e06225ee8dc13f5f3n/aHeodo
2020-08-21rep_20200821_XI7244.docdoc 5fdeffc6dcb0b6b42be8a6ad3eb7831fb9c36464eb39adfa4a091e1798700c16n/aHeodo
2020-08-21Arc_2020_08_21_RI7860.docdoc 387e73e8b041a7eadb9503b7cd1f194ec03c786ba1d81b2c895fa324e27e7866Virustotal results 30.51%Heodo
2020-08-21Inf-O571.docdoc ab8d9d75cd5cc9e9f51caadfc388fb9f40a60dc0dbe1762011f7defb520e9d44Virustotal results 30.51%Heodo
2020-08-21mes_2020_08_21_E73721.docdoc 74aa225334a26fc1cdf238fed7de6f44a9d131122ac0f220d79467853579708cVirustotal results 30.00%Heodo
2020-08-21Doc-20200821-FN7068.docdoc 083fb252fa515eec398b54d1cd4ac9b2eb4f036bde680135b33bd25f97256726n/aHeodo
2020-08-21dat_QXG823253.docdoc 174b8620c03615174f2b7d2ab5cb4adb81d92cc6c863c02d7e66812c1c35d60fn/aHeodo
2020-08-21inf 20200821.docdoc 86b2e2bb47bbbea1a01f03f9d4a2d191f0f9ca40c688f6b06378db262cb20e3cVirustotal results 31.67%Heodo
2020-08-20doc-2020_08_21-4719.docdoc b135596817592f86075306dd65d590f784e864963d463676af67625110f53f88Virustotal results 32.79%Heodo
2020-08-20Arc 2020_08_21.docdoc 6fedc65aac1657796c58784a454ac62ee14a2a13871f3f013ec531e333298a63Virustotal results 32.79% Heodo
2020-08-20File 20200821 Y290.docdoc f3628cce512675151ecc79b76c4fab0c1be35b785bf673ff2a44d61dc3066048Virustotal results 32.79%Heodo
2020-08-20mes 20200820 H65252.docdoc 739d1a0cb32d1185c3a29e2fdba23d010d6f89076810095357750c6960ddbfd4Virustotal results 30.00%Heodo
2020-08-20REP_20200820_34627.docdoc 27b0bbb8e92f8126f8412fe15b213bab3ea2ad4202e3ef5e8502c3bb3c255dabVirustotal results 30.00%Heodo
2020-08-20dat 2020_08_20 SJ779.docdoc 159b1ac85cc5f359caeafbcead2301d0ecb224d8febbe419bc1a6979352e3197n/aHeodo
2020-08-20arc_2020_08_20_F05215.docdoc d74739d4b2e9d93a617920af5b793616e0269bb2ad9bae8117508032830bdf52Virustotal results 26.67%Heodo
2020-08-20Doc 2020_08_20 86167.docdoc a0e3d30d67f46e04c013de05d8b38e9c74b5492edb81ff230f147e7bc2d0e23dVirustotal results 25.00%Heodo
2020-08-20MES 20200820.docdoc 68b69b5d2e24cc47641188c0c342da1340bae2965f274f48727f53c757e0be72Virustotal results 25.00%Heodo
2020-08-20INF_250362.docdoc 73198101e95bfef34926be6d2ffbe774214a82cb2c9b8965bc6d9e6d9b20aad2n/aHeodo
2020-08-20doc-20200820-20120.docdoc e3f9b8da114b44116fff2cfbbb0507613ba10565de8c874a56b16934ea2f7605Virustotal results 23.33%Heodo
2020-08-20INF_20200820_DQ6652.docdoc 9ce07c9533158a2746e1d54d350d03cd64b1504b69558341659a574238f74753n/aHeodo
2020-08-20mes-88034.docdoc 48c065c3c6c626c7fca855686845bf480a74dd0902ae005eeea171dcb5237947n/aHeodo
2020-08-20rep 2020_08_20 TAB22333.docdoc 9c9367c53706fa2ba5f1d7fb94dc1e4f88c020964733d83eb07c6b6df1e54c3cVirustotal results 23.33%Heodo
2020-08-20Mes_725.docdoc bd074de7433279e0cc643f3cb23cd96cd5ff3ae7fdc879e39f6d1ed6dbd7180dVirustotal results 24.14%Heodo
2020-08-20REP.docdoc d8a8a0f1dcbf50e189a8b0433e5c62e8ff908e4b29ef93c4d0ecb9efd87402a5Virustotal results 21.67%Heodo
2020-08-20Mes 485723.docdoc c770bba68818296583e90edb1401e456254a70721f9572ed9036d9a4aabd3aa5Virustotal results 22.03%Heodo
2020-08-20Rep-20200820-136136.docdoc c11d62723af7a6fe384f8bba4caebff15e9e0888fc230a14099888cbe4e058adVirustotal results 22.03%Heodo
2020-08-20List-2020_08_20-254.docdoc 6b754f9fa73603a870be77bf320fdbd456f68f73c9f2f70e9c4598554d3deb9eVirustotal results 21.67%Heodo
2020-08-20List-2020_08_20-0009.docdoc 8072c5b68b5f032f8c9269d8941c036435d85d0fc7f7239103e28a92f6a52d1dn/aHeodo
2020-08-20File-20200820.docdoc 9fd1da8df0b3d674db426702e9198f3d5c335e71356534cd8f2943bef5dbd1d2Virustotal results 21.67%Heodo
2020-08-20Doc_IX0024.docdoc 953b662d9aef02326fea06afebcb2c0f499bf6075210cee6bc361cbf62c74c8bVirustotal results 22.03%Heodo
2020-08-20Arc_7989742.docdoc 9e08feb4d085c83d5cad778dc1f2c5e7fceb05170cb280c972dfba853d70fd72n/aHeodo
2020-08-20Arc XMY117295.docdoc a6495ce0634ebce9b181f45914574e07b54400238c8a8eeeacd6516ccce7752dVirustotal results 43.10%Heodo
2020-08-20arc.docdoc 06c1e44e06eb6b439d5cd8c0bbc56c48e33b613fdff9f70f7f8d93d2ba739f2dVirustotal results 41.67%Heodo
2020-08-20Mes_2020_08_20_W740.docdoc baecfd05f5a6a6f654ef927e3a8bd1c298a12f8cfaa1a494cca33e97f45329d3n/aHeodo
2020-08-20arc-2020_08_20-886057.docdoc e47caa21a204cff18af76ca9418e048f41e70ffea406ea5c41bbb6fc6bac357fVirustotal results 38.33%Heodo
2020-08-20rep_2020_08_20_S25990.docdoc a8674afb879095fe024ff1393b62c3ea5ca0cd80132f7ee4e603434686f3d199n/aHeodo
2020-08-20List-411813.docdoc 62ec1bd0426af880a8212346e5dd56fa705a031c9b838cba9dc012e37a661cean/aHeodo
2020-08-20file 2020_08_20 A717.docdoc 139d96003a5964f811cfd1d2a1c28130de97b7b0a548b04e7eb8dbf7331d94e3Virustotal results 40.68%Heodo
2020-08-20inf-20200820-N234.docdoc 6679ce1f8ad158f0d6b60d0ba53a9320239863e3250674f436ec67091b98ae80Virustotal results 38.33%Heodo
2020-08-20List-X256.docdoc 5ad149456e0772a69b4139cd61954bce1285c24eb8e99a88b9570736e7ddae47Virustotal results 36.84%Heodo
2020-08-20DAT 3555150.docdoc 38910d48a5b54e7d0b4f33b6ae9ff7668cb5a8ea4b8895d894b73115cf8d3596Virustotal results 38.33%Heodo
2020-08-20INF 20200820.docdoc 744029fece917740a88f43a6f35c563dce6abb340e34652085620785547883e6Virustotal results 36.67%Heodo
2020-08-20ARC-2020_08_20-307984.docdoc b9dd0c46c40a59f5ee13585b936980a4e93d12bace98f342421fbb63fc15a460Virustotal results 38.98%Heodo
2020-08-20mes-2020_08_20-71399.docdoc fa5fd14228252426c8224b795502a3ba3af894cc4117e8247d8bc9901d4a2588n/aHeodo
2020-08-20Doc-20200820-68444.docdoc d551c7110c0181f84537e3409a1adba4a5ea0f98caa90475c6ce740e2c3fa9c6n/aHeodo
2020-08-20mes-2248653.docdoc 81bed19efa97ba8177bda3736a8ab04d1a331974d94e3ccbda0e1c85f0cde5d5n/aHeodo
2020-08-20List DFI829394.docdoc 9ea89a24c2efb06595aa09d8d9dc8ac79ad4a9df0d0d99a7fd5fe63fe9e1f7f8Virustotal results 38.33%Heodo
2020-08-20REP_2020_08_20_379.docdoc b9c36d0ae81127e9a86b1e0fa168ac30bc961720617f9aba50858f99186786d0Virustotal results 38.33%Heodo
2020-08-20FILE 20200820 21964.docdoc 7875c099d3368f0dabcd982c420529e831349780eb8572e5fba2f7ac8b31ecf7n/aHeodo
2020-08-19INF-98376.docdoc 2c5b0a5c645d8ca87fd7a703e770536a91e2178a14a3b50980fc71231a5c9049Virustotal results 32.20%Heodo
2020-08-19rep_G7178.docdoc d27a2d2d7d79ac94d25d245dbde58decc78089b56c1806894d7f8090f62e5fe2n/aHeodo
2020-08-19Rep-2020_08_20.docdoc 18f2491dcef8d7f0113049e146994fc5a8fc1615ff0fbbd659fa0a5d580ea72dVirustotal results 28.07%Heodo
2020-08-19DAT_20200820_JK080.docdoc c940432dc1875cdb1adfbda4eb2c3a23b3a10fd0a53cf12cc32e79389120b5d8Virustotal results 26.67%Heodo