URLhaus Database

You are currently viewing the URLhaus database entry for http://brandy.de/admin/available-0562199068784-dpDEpb7k/104022-WwhYw7Y-forum/193eh-txw4z481/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:436882
URL: http://brandy.de/admin/available-0562199068784-dpDEpb7k/104022-WwhYw7Y-forum/193eh-txw4z481/
URL Status:Offline
Host: brandy.de
Date added:2020-08-19 21:42:06 UTC
Last online:2020-08-24 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-19 21:44:05 UTC to abuse{at}strato[dot]de)
Takedown time:4 days, 13 hours, 42 minutes Bad (down since 2020-08-24 11:26:53 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-21mes-20200821-29670.docdoc 90e7e0a921f7805d5392b6725349de6ed30c7a234187790c6579d8cc240ebce2Virustotal results 34.48%Heodo
2020-08-21Rep-20200821-JGA526.docdoc cb287e0f1c5c665ef93e28cbdb60577752f5d54284d99490407ed6d44bb0834fVirustotal results 33.90%Heodo
2020-08-21INF-20200821.docdoc 9bc64010c8d94a22d54acf8497f0854e97dc1cec1f0acb8a662102adc4763b89Virustotal results 27.12%Heodo
2020-08-21dat-84405.docdoc f2c0a9d43cafec33593c0c1b398666406637529e89fd4a4190490dba25ff71c1Virustotal results 26.32%Heodo
2020-08-21FILE OJ625.docdoc e5127f6a2dd3584ac76aad5bb3faa8eb109205c8e04c1b879e75a95a6a2304a8Virustotal results 27.59%Heodo
2020-08-21ARC_20200821_8436.docdoc 5b5891bfbc8b88ab10b54cc859b95f089ec8a3f4b990b33062d97591f1c3b8d0Virustotal results 27.59%Heodo
2020-08-21Doc-20200821-B264.docdoc bb5ea6401f31e4c9a16297546ea7dc58a1b86dec75837de0e5ce9e9709a53919Virustotal results 26.32%Heodo
2020-08-21DAT_2020_08_21_Q78122.docdoc 3b17e737a54751a71b9d73e78868fe24f0033eac1b31dd744fcbc169eab139beVirustotal results 27.59%Heodo
2020-08-21File-2020_08_21-Q84988.docdoc 724d953a4997af7b3a5c2bec95637951b71b9fe76a9c284327fe66156080efbcVirustotal results 27.59%Heodo
2020-08-21Rep-2020_08_21.docdoc 848d5febc73e0d59d9734c204014975b49f0811f8bf5ed87c21493135b5180c6Virustotal results 27.59%Heodo
2020-08-21REP_2020_08_21_1843.docdoc ca6159cfb8c0492a5de566fe70b1741acf00e6111f45c291e520c13a8cac9b69Virustotal results 21.82%Heodo
2020-08-21list 20200821 9748669.docdoc 41b160a7d55e5fee3871597117f8a0606985711d0413a8378ea0127fcf9e58bdVirustotal results 22.41%Heodo
2020-08-21file_2020_08_21_YD181756.docdoc 752d91924381fb8b6fd87454022cecc75e98a3274f628049158974fe49161386Virustotal results 21.43%Heodo
2020-08-21MES 2020_08_21 KVA588726.docdoc 46a025740279d934562690c712ca905cc8ff7c09b3b0d504ee948580dac3e0f9n/aHeodo
2020-08-21REP 20200821 ZER6637.docdoc fae6fbedadd26c76dbcaa75514769c59112d32fb0ff622f067470808f9184460n/aHeodo
2020-08-21Inf_2020_08_21_634.docdoc dba1866ba18f33e0225fd995db16edcaead43edae0108a69bfbcc55fb3681e97n/aHeodo
2020-08-21DAT-20200821-OLU25073.docdoc de515e7ec0dae90d1800cbb006a20ce039f15b596a5125ad9a44859bb3efe77fn/aHeodo
2020-08-21ARC-0155.docdoc b148d085ba83f250eb10d2a636900d58212f8725fcb783566c0de0ce822d49f6n/aHeodo
2020-08-21Inf.docdoc 46e0471a4ef5b075bac9fc9db5a1c2c2c56ddd03c87e15d8c658fdd4ff865912Virustotal results 20.69%Heodo
2020-08-21Rep-2020_08_21-V698094.docdoc 69e2642a39f3623ff4684c8edd401395687e6df7b69781cbfbda139c3893e56dVirustotal results 19.30%Heodo
2020-08-21File-2020_08_21-S377788.docdoc bd1f61a672ca313044042393a055b7741609f6a39d20a47c39ddd7b75fa32a08Virustotal results 21.05%Heodo
2020-08-21doc_20200821_N831662.docdoc 3317b2100c0f5cf9fc3ff03f6aa9668c2c09b126df8bb491651a8adb8364d1e6Virustotal results 28.81%Heodo
2020-08-21inf_TBQ521.docdoc aaa01af0f27eb593d643b168b18a437509c5a06ad05cb2d5b85aa1af301c2ca7n/aHeodo
2020-08-21LIST 2020_08_21 Q5927.docdoc 823259e20aee973e7f3a3066d4fe14f60b4b0ba731059c37b07274421ff68c52Virustotal results 30.00%Heodo
2020-08-21FILE 20200821 36607.docdoc d197888c1aa3df7eecf029acae0150d6092c71f5ff95a9f10c54b8d3567c982aVirustotal results 30.00%Heodo
2020-08-21file_898236.docdoc e934e66e19e33d54a2df8f96b7f7f1313d001e2d20259d4826a43f27e4819f34Virustotal results 30.00%Heodo
2020-08-21Dat_2020_08_21_124.docdoc 8249d499b12e354fac54093bc1e6e8f5148ab8992fc6980ee512ba0758f6020fVirustotal results 30.51%Heodo
2020-08-21File_20200821_CHR2726.docdoc d81bcd54a974481512658b1e338327e30563dad626425a6c5350d4308691cf97Virustotal results 30.51%Heodo
2020-08-21LIST-2020_08_21-83009.docdoc 929e57448d880d8b99401501f36fc5a5c348191d9c46198a2c855ffacf0f92dfn/aHeodo
2020-08-21Inf-2020_08_21-078.docdoc 1041d215adf5d2e0fbc48e95e42e71b6a39d5f07484f553324cff17cd1b17b63n/aHeodo
2020-08-21FILE_20200821_32931.docdoc da0e89a0758ddeaabbf75668f4631c30ae311a1facc583f9e7f031fb678bbcd4n/aHeodo
2020-08-21List_2020_08_21_LY778.docdoc 4cc1da12449a3482d7e0b3de9cba0ee86abb8ad7e7f368ea5600eed7027c1a9cVirustotal results 28.81%Heodo
2020-08-21file-2020_08_21-H53879.docdoc f22454d1893035ebbd4d351bba85a37567652de7fdf9ec748f475328c783f752n/aHeodo
2020-08-21FILE-20200821-DGL677.docdoc 64577b122e08ff791d955ce2758f2c256ee71fca48d12f7612b056cf4de541d0n/aHeodo
2020-08-21List_20200821_98262.docdoc 0aef0abb386c3c08a0f0e185462213b345f9591e943882b015b1d0ef8eeaa2e3Virustotal results 30.00%Heodo
2020-08-21REP_20200821.docdoc 8242d4d77189a2403f037a61016571515646e1973a6c324eeb899b22a7a67196Virustotal results 31.15%Heodo
2020-08-21doc-2020_08_21-VVT846.docdoc 8d533777e5e6b3040faea6d6f9c839f55ce377d49607833baefb3a1141eeef47n/aHeodo
2020-08-21ARC 20200821 IO66839.docdoc 5c59c4068237c92461ea1c885bbca743f0dd4dd20b557ce82241ce7be79fb5dcn/aHeodo
2020-08-21list-20200821-Y308806.docdoc aa352f9f148665dc543c2b994ff0cc542319e2a6a4c5a18a9d52c7488ec5a247n/aHeodo
2020-08-21Mes.docdoc abfc420601b0287aec162de246589aecfff4819b9e63229e06225ee8dc13f5f3Virustotal results 30.00%Heodo
2020-08-21doc.docdoc 5fdeffc6dcb0b6b42be8a6ad3eb7831fb9c36464eb39adfa4a091e1798700c16n/aHeodo
2020-08-21inf-2020_08_21-ERO737.docdoc 387e73e8b041a7eadb9503b7cd1f194ec03c786ba1d81b2c895fa324e27e7866Virustotal results 30.51%Heodo
2020-08-21ARC_20200821_NHP73943.docdoc 320f79bc8da507b0654c51440956e4baed76ba2e755cb5cd0c66b9f3cb4ccef1Virustotal results 30.51%Heodo
2020-08-21list-20200821-K7263.docdoc 4110ff6fd94e12036973899b93449ae19fa8f38a35133ea442c8418c6f7721ffn/aHeodo
2020-08-21Mes H943037.docdoc 083fb252fa515eec398b54d1cd4ac9b2eb4f036bde680135b33bd25f97256726n/aHeodo
2020-08-21FILE_2020_08_21_ED05374.docdoc 174b8620c03615174f2b7d2ab5cb4adb81d92cc6c863c02d7e66812c1c35d60fn/aHeodo
2020-08-21DAT-20200821-2475192.docdoc 86b2e2bb47bbbea1a01f03f9d4a2d191f0f9ca40c688f6b06378db262cb20e3cVirustotal results 31.67%Heodo
2020-08-20rep-20200821-CCA174.docdoc b135596817592f86075306dd65d590f784e864963d463676af67625110f53f88Virustotal results 32.79%Heodo
2020-08-20Arc 2442.docdoc 1b867960e5ab02a6d80e0a17c3d320992910d1600eca110899808b4dec8b6050Virustotal results 32.79%Heodo
2020-08-20MES 20200821 DDO4507.docdoc af738f10af52ce239d235cabf217d42389b6a45c9bbddbf0679640ee350151d6n/aHeodo
2020-08-20List-F74929.docdoc 739d1a0cb32d1185c3a29e2fdba23d010d6f89076810095357750c6960ddbfd4Virustotal results 30.00%Heodo
2020-08-20Doc 20200820 79045.docdoc a188cc37f6aa01d2f1449c8892bc75e22ae587b9ea10bd7a8f14aa1f865d7defn/aHeodo
2020-08-20inf-2020_08_20-46237.docdoc 159b1ac85cc5f359caeafbcead2301d0ecb224d8febbe419bc1a6979352e3197n/aHeodo
2020-08-20LIST-292.docdoc 59eeaeb5d757a4d6b8dd8a5af73c3ee5c2ea4705640addf3ea235ebd1d4e519dVirustotal results 27.12%Heodo
2020-08-20Doc-2020_08_20-F131.docdoc a0e3d30d67f46e04c013de05d8b38e9c74b5492edb81ff230f147e7bc2d0e23dVirustotal results 25.00%Heodo
2020-08-20Dat_2020_08_20.docdoc 68b69b5d2e24cc47641188c0c342da1340bae2965f274f48727f53c757e0be72Virustotal results 25.00%Heodo
2020-08-20Arc T847756.docdoc 73198101e95bfef34926be6d2ffbe774214a82cb2c9b8965bc6d9e6d9b20aad2Virustotal results 23.73%Heodo
2020-08-20Rep KHP632.docdoc 711ec1b4eba69f2fcebbbc34d8c9fb907e9867bda52cac144a671bf808beb2f7Virustotal results 24.56%Heodo
2020-08-20FILE-2020_08_20-T14769.docdoc 48c065c3c6c626c7fca855686845bf480a74dd0902ae005eeea171dcb5237947n/aHeodo
2020-08-20list-2020_08_20.docdoc 9c9367c53706fa2ba5f1d7fb94dc1e4f88c020964733d83eb07c6b6df1e54c3cVirustotal results 23.33%Heodo
2020-08-20Inf-F01472.docdoc bdef849f4450adcfd79bfa5fcd4c4797ff8110ca034ac2164b0e3e38e576e538n/aHeodo
2020-08-20Dat_2020_08_20_VT369.docdoc d8a8a0f1dcbf50e189a8b0433e5c62e8ff908e4b29ef93c4d0ecb9efd87402a5Virustotal results 21.67%Heodo
2020-08-20File 2020_08_20.docdoc c770bba68818296583e90edb1401e456254a70721f9572ed9036d9a4aabd3aa5Virustotal results 22.03%Heodo
2020-08-20file_2020_08_20_UN524236.docdoc 56036d4f91d588879040deb29a6acc4940e7b33007f647ad866359a47a53da7fn/aHeodo
2020-08-20file 2020_08_20 ILV841.docdoc 6b754f9fa73603a870be77bf320fdbd456f68f73c9f2f70e9c4598554d3deb9eVirustotal results 21.67%Heodo
2020-08-20INF 2020_08_20 39299.docdoc 8072c5b68b5f032f8c9269d8941c036435d85d0fc7f7239103e28a92f6a52d1dn/aHeodo
2020-08-20File_20200820.docdoc 9fd1da8df0b3d674db426702e9198f3d5c335e71356534cd8f2943bef5dbd1d2n/aHeodo
2020-08-20mes-V3265.docdoc d2facd4ae0b3d244e4f38cb95e23764ff0f8854d9d6a7e6c8204561ac04a6f07n/aHeodo
2020-08-20File_6082.docdoc b3d5549c41a6159ff9e0df4205dc4cc52da484301e854c8b9d34fbc808bb49d0Virustotal results 21.31%Heodo
2020-08-20File.docdoc a6495ce0634ebce9b181f45914574e07b54400238c8a8eeeacd6516ccce7752dVirustotal results 43.10%Heodo
2020-08-20Arc 2020_08_20 6772.docdoc ff2219bf2a6e79b513db9d0cf17c1ba49ab9b6b9b64ccc86662e2a8090a54b13Virustotal results 41.67%Heodo
2020-08-20mes 75023.docdoc 89b6ed4e8a0cf8a07e457b0f616f06fc4770fd168802ee6180994858453dc3f3Virustotal results 40.00%Heodo
2020-08-20List-2020_08_20-34710.docdoc e47caa21a204cff18af76ca9418e048f41e70ffea406ea5c41bbb6fc6bac357fn/aHeodo
2020-08-20Dat S66015.docdoc f28b0ecc48cbc29c0012148055d79a34ab74c7915bf0cca7ba368c935913dad2Virustotal results 40.00%Heodo
2020-08-20ARC 2020_08_20 830336.docdoc 3053fecb237566671c1a363da6607e769c25e6b7ba72d41a683f18a8f128072fn/aHeodo
2020-08-20inf-2020_08_20-964378.docdoc 1d2b1c4630cfe0d010a3f59c5fe31ac16e7a9d9647202a9d7a6c94d602891fa7n/aHeodo
2020-08-20Dat_20200820_96195.docdoc 6679ce1f8ad158f0d6b60d0ba53a9320239863e3250674f436ec67091b98ae80Virustotal results 38.33%Heodo
2020-08-20Rep 20200820.docdoc 5ad149456e0772a69b4139cd61954bce1285c24eb8e99a88b9570736e7ddae47Virustotal results 36.84%Heodo
2020-08-20List-2020_08_20-687.docdoc 952683edbc68d14ab30b2b3030a02fc68c3210a7f1a95ba97cf484fbb25c045fVirustotal results 37.93%Heodo
2020-08-20ARC-2020_08_20.docdoc 744029fece917740a88f43a6f35c563dce6abb340e34652085620785547883e6Virustotal results 36.67%Heodo
2020-08-20File 2020_08_20 2348711.docdoc b9dd0c46c40a59f5ee13585b936980a4e93d12bace98f342421fbb63fc15a460Virustotal results 38.98%Heodo
2020-08-20Arc.docdoc fa5fd14228252426c8224b795502a3ba3af894cc4117e8247d8bc9901d4a2588n/aHeodo
2020-08-20LIST_674.docdoc d551c7110c0181f84537e3409a1adba4a5ea0f98caa90475c6ce740e2c3fa9c6n/aHeodo
2020-08-20rep-2020_08_20-L4481.docdoc 81bed19efa97ba8177bda3736a8ab04d1a331974d94e3ccbda0e1c85f0cde5d5n/aHeodo
2020-08-20arc_2020_08_20_PX037.docdoc e5deca8f8e045063d0e0afeda512241e1a5e236df99787831cb21e3efe335acfn/aHeodo
2020-08-20FILE 528285.docdoc b9c36d0ae81127e9a86b1e0fa168ac30bc961720617f9aba50858f99186786d0n/aHeodo
2020-08-20MES-20200820-J351335.docdoc d328fbbc3e82b9e2db08fbfcc9d4554921637299f82f0cd330253529ba130219Virustotal results 32.76%Heodo
2020-08-19FILE 20200820 5124.docdoc 763cc0ddbf92ab735d7975d8e7137950d402f8475ab7f08f1e332940e4dbdd05n/aHeodo
2020-08-19Mes_20200820_518629.docdoc 446c2fb367a6b3f01cb6ebea3d7cf2addb59449f0d53875f0e510603e2e82ebeVirustotal results 31.67%Heodo
2020-08-19doc_20200820_9249.docdoc 18f2491dcef8d7f0113049e146994fc5a8fc1615ff0fbbd659fa0a5d580ea72dVirustotal results 28.07%Heodo
2020-08-19FILE-2255819.docdoc c940432dc1875cdb1adfbda4eb2c3a23b3a10fd0a53cf12cc32e79389120b5d8Virustotal results 26.67%Heodo