URLhaus Database

You are currently viewing the URLhaus database entry for https://hdankers.nl/templates/FILE/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:444608
URL: https://hdankers.nl/templates/FILE/
URL Status:Offline
Host: hdankers.nl
Date added:2020-08-26 18:45:04 UTC
Last online:2020-11-30 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-26 18:46:03 UTC to abuse{at}antagonist[dot]nl)
Takedown time:3 months, 6 days, 0 hours, 43 minutes Bad (down since 2020-11-30 19:29:44 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-27DOC_GY3824208484QX.docdoc 00dbd35594b633c02429ab2154dab2e2b19e93caa9322d5ef46b2c730d6af123Virustotal results 29.31%Heodo
2020-08-27PO_08272020EX.docdoc 91eee6c53cef6973fbd184df00499fd451d2c44b837ff7011cd99368298633a2Virustotal results 29.31%Heodo
2020-08-27REP_ZI0343011781KQ.docdoc b13b6fb044972063fee5a633ab2c88e75a1e7201427b25f21be5ba73dbac82afVirustotal results 55.00%Heodo
2020-08-27F7LAG132X5QYR3AX.docdoc 418cc4b29a2f7c05861556be1785c3b31dc530a4042c65c36253adb162a34d7bVirustotal results 54.24%Heodo
2020-08-27BAL_BX4644065647NB.docdoc 5fd8fc414f220b6e97d691571980b241fd048568374890695dfcb9df97a6845cVirustotal results 55.17%Heodo
2020-08-27INV_3742123523.docdoc 5651215bf90d3d27bf652a23f6f4ab03e32a080fba71d964022a87038fa6f1b0Virustotal results 55.93%Heodo
2020-08-27A_RDU_080120_DQJ_082720.docdoc 04d53867d9a85922c8e95c2c5ac2e27ba3c75ec87d1ceadc4ba5b065e4b51c96Virustotal results 31.03% Heodo
2020-08-27P_FD2383891909AH.docdoc 40761e27d5738895fd87e37555b219f0b556bc51d2701d965a51cabebfdabb74Virustotal results 30.51%Heodo
2020-08-27J_ERW_080120_OJP_082720.docdoc 232625c246259847143ea943c67aa3140a76bd09a19db7e3c8098ca513699369Virustotal results 31.58%Heodo
2020-08-27REP_ON2648934807OB.docdoc c545cf77a2385723b6bba8109cf1d966ebad640d7ea3fc763734e9f304cd8ff2Virustotal results 30.00%Heodo
2020-08-27F_86736300.docdoc 5e2acb078bf706a90389d90636ddaf5d332c47325336781c2ab14600e34adb05Virustotal results 31.58%Heodo
2020-08-27T_133158506801944379973804.docdoc d20d5bab876240cbf908d60dc4ac87b57258f02fbd9202d50733891f22d29592Virustotal results 30.51%Heodo
2020-08-27LXE_080120_ZLT_082720.docdoc 3dc40e9a60c8557b94a21581a58c4566273a45eef074c0fc78b62bf39eadf667Virustotal results 30.51%Heodo
2020-08-27DOC_N9ZRL3IREFVJE8Z.docdoc 4ce815a9423e52b38ceedc5af97bd2f02672b7ffde760730599452b87050eb7bVirustotal results 32.14%Heodo
2020-08-27FILE_RTQ_080120_ZWV_082720.docdoc 7fe66f85659a10160846a834f8b4befde4e554e2c6e6586097218eed58c96790Virustotal results 32.76%Heodo
2020-08-27PO_08272020EX.docdoc 343d1420630029215787dfd364a4faca7bc4ca38097daee242eb72f73a6e894cVirustotal results 33.33%Heodo
2020-08-27INV_PO_08272020EX.docdoc 7e6ae0bfbd08090276dc8821dbac500fae364dab68dad84b1fc2c4d971080dccVirustotal results 31.58%Heodo
2020-08-27INV_OE9136590213SG.docdoc cd0f5f2cc1f1f1bc7dc7bb9fe38aed374ad228315804fa2a759639ab42a35d89Virustotal results 32.76%Heodo
2020-08-27GV_PH7646306108YF.docdoc 2fbc66e076c29dbce748652fd0ca9189ccd120e522dd8ef187b922e38edd0a2fVirustotal results 28.33%Heodo
2020-08-2601888779.docdoc fae404917e003537852d872c0ee118b26dd5575d1e3ee7200822a16e5675ea07Virustotal results 30.51%Heodo
2020-08-26REP_NEE_080120_QFZ_082720.docdoc 252aeabb4c6b7b8dd88ed402898809ca4d94da45526962188c72d96f0d21e8b6Virustotal results 31.03%Heodo
2020-08-26PO_08272020EX.docdoc 91a308c86bae5259dbb93a07177c2302aec9aa1d99efb3aebcf38eeec736806eVirustotal results 30.51%Heodo
2020-08-26INV_AI7OV0P5.docdoc abd2e27899da09f53fa00ceb940f6a914cd44af6cd1d754f783aff922eb9c45bVirustotal results 31.58%Heodo
2020-08-26Z_PO_08272020EX.docdoc 48d23f9dd578db5e9182540eb52090352d60ee4c49698de167f1273e4e22e449Virustotal results 30.51%Heodo
2020-08-2668426844.docdoc 4e48203902e2971b1f0046c8b0e664760e818aad6c055903981a67549c91eab6Virustotal results 30.51%Heodo
2020-08-26INV_65163256018497565434979.docdoc d30dd5e885a79fb037d8a45fbc54cdfc8a4d0186cdb5f1cad6e3554458a5c69aVirustotal results 32.14%Heodo
2020-08-26BSH_080120_YOD_082620.docdoc f81766885f480e8e982145edf073be35308a25bddfe91a824caf383d0f42a7bbVirustotal results 29.31%Heodo
2020-08-26REP_4035570462335570667.docdoc 65d504b93571392cb6513b7fa5bed4bdd2a2ae7e3d7666e409f0b13e56f1e314Virustotal results 31.03%Heodo
2020-08-26V_RBO_080120_LGR_082620.docdoc dcc3c969bea5fd1404de7e5a0d86eec809ddfb29ae74316a3036aeb1c40d6e08Virustotal results 32.20%Heodo