URLhaus Database

You are currently viewing the URLhaus database entry for http://spanferkelgrill-verleih.com/cgi-bin/Yk/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:451195
URL: http://spanferkelgrill-verleih.com/cgi-bin/Yk/
URL Status:Offline
Host: spanferkelgrill-verleih.com
Date added:2020-09-01 15:47:04 UTC
Last online:2020-09-02 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-01 15:48:06 UTC to abuse{at}strato[dot]de)
Takedown time:1 day, 1 hours, 35 minutes Poor (down since 2020-09-02 17:23:47 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-02gY8op1rf3fx.exeexe c4d9c6c1f660509d7ef87fa95e5ebcf24aa987d1f6352dcd44778f7b098b465bVirustotal results 10.14% Heodo
2020-09-02rqAmPhowyWrFFwE4E.exeexe ab01b7f93e92a36b510fec79f812e7b6e9fe50c827881e49f16b8c8ba448b985n/a Heodo
2020-09-02xtR7HLmKsSI2fOK0TC.exeexe 5107f28444305c627da5116809a485600960b751c970eb604a0a15c9af3c1029n/a Heodo
2020-09-02T3EYPu.exeexe e846561f4f128c5585c2059b6a6d632b6f3db999573b6e4166aa7ec1503b98a1n/a Heodo
2020-09-02bo4vFdt.exeexe cde5bac50d5f802e32c5a7dfbd265a456ff6321e23ecda48d5fef69207f9a62en/a Heodo
2020-09-02Cr9zW.exeexe 9ecffc7e78d55ab5770a04336a958c5140a6978b73835dcbe0d658c8abe7bf2fn/a Heodo
2020-09-02aqBJf6pf.exeexe eb5de2975d9a0b487f8708be89b8e492a02093e4de1e33668b7a0770a68f9d8an/a Heodo
2020-09-02Njks14roOl8OTVVHu.exeexe 69c5a5ff3f0ea4fac006ccbaec5bbff171f4c8341fc6478cb42d29a3134acf0an/a Heodo
2020-09-024ZHARH.exeexe f9e895185c5529a355bd9bae2e3c1125d94caf08167850262c9ff7a8fe1038a7n/a Heodo
2020-09-02Yopp0.exeexe d9089993d2663f7383ec739319100534b2011c92fd1fa32701266e95c6c103a3n/a Heodo
2020-09-02fDost41QLAf3Bzv.exeexe cfa9b99e06fa7dcd934f8ad1fdedc838575d349a96a0264996eef24f6aee2e6fVirustotal results 16.18% Heodo
2020-09-02vhJDNAgild6.exeexe e40dec3f51ab89e8a42db9813c17109b6c1856539c2b9be161ce1ab1dfef5628n/a Heodo
2020-09-02bwtGDBkHa3pZEfwncc.exeexe c6b92a52fa9ff7fca35417c913bcfeaa38615030a4edf42f1af3eaf7f70a3c51n/a Heodo
2020-09-02skoQ299Z.exeexe 01f19832930019d60872ae4c6a49c439e010a179cc37309c732c6c918f0a0fa4n/a Heodo
2020-09-02Mbs66.exeexe f116ca7cf03c341d887f1f199e55117ad15f3138582805ce08154511940c8024n/a Heodo
2020-09-02JHX4.exeexe 5b9b9f654b08d664dc0e77c8840717df466b58e6b203bffeff53ec0cab20a44an/a Heodo
2020-09-02cz13hKqgXe1QOkZz.exeexe e6689b36324c3522309b07b0cbaa873749173c835d1bf06f51faa1ee98c1730an/a Heodo
2020-09-02RrHo.exeexe faff84a85af5e0b3b1296c4b973c5426a04198b9ee9d45abb7745019fcd2f32bn/a Heodo
2020-09-02UCpFfMDJi.exeexe 7f6e6569fbefdd152dcdf58d575064256c7069634a03b8c0d64fa9331dc57952n/a Heodo
2020-09-02hYL62RhFKokGgO.exeexe f14433c8e16ad95d8d2bebf993e84c050b413a17768a734da359cb420b86891an/a Heodo
2020-09-02V9hVLpZJ66.exeexe 6633b2254604c32391cf5e735fa3c5c931de4671dfd0b4362c6e187e9bd0cec5Virustotal results 8.82% Heodo
2020-09-02XSz1x7l0fwyx9kkv3axVD.exeexe 07e54e1b89b5fd54835a707c66df41621610746d2c008a084694c99ba9c16232n/a Heodo
2020-09-02Lmpxuwtw.exeexe a868d7424d7d3da5f9ff1b47d8854552f2cb90edc6dbb9af8054ad799e32fe31n/a Heodo
2020-09-02oCzAtRabohOZGjRymd.exeexe 66571960e3b85e07661e6ffa51b029695b2128b146bc2e9ff420dc5f5d410ce7n/a Heodo
2020-09-02CtId2Dvew.exeexe e548aca5796f5559b4ef7d1e3307817fb3c10efa9ac0479f8ce7c2dbce214102n/a Heodo
2020-09-02j1uz8MC9fbQ6xS1bfY5.exeexe 460cd5e4f6632868b5cead8c223f590678d1e43c95b4cfa96af9ab40dd9deb15n/a Heodo
2020-09-0257r2Tr9dhguSnQL.exeexe 8ee0f6b24dfbb16f88d83c43bea28eb3dbfd274d13e6c6053975c0e1b542e7c1n/a Heodo
2020-09-02YdvTxBenZT6o5J3PV.exeexe 01d219de64d27583488deb12c9ddb28b5d3743dc6fb6c2a0e887eabaca249c1cVirustotal results 8.82% Heodo
2020-09-02aZeq5dK.exeexe 6dd5d673725341b0790fa4f3bed96e49d656118994b0b19c38e62fd53defb39dVirustotal results 14.49%Heodo
2020-09-02aPlgRrjpjqXNW.exeexe 598bea746526d6eae854e126eac4b4b22e1023363875c53142ef4b05491fdcb2Virustotal results 7.35%Heodo
2020-09-01wKK5LQhhmQNCbVP.exeexe b6f2457e50dc2fdd2cf809ebf63577c7277e0e26bf8e87188572c01d96d48f97Virustotal results 7.35%Heodo
2020-09-017Vb9WeqDtHGzWe35C.exeexe fb13df8b0a039ba2084a3a5e4214347716b56fdbd7f3c708717bb439acce3656Virustotal results 20.29%Heodo
2020-09-01qhBVwog8izQ9Br.exeexe 149ba940f317f3592cfdfd4b6bcba5f890072a7b93478332680908d7e9d6a588n/a Heodo
2020-09-013wt2VvdAPyYlT.exeexe dca6ccb2fd14c64f51ded885d4696af76a753b4fe58a64e6a2ddd4a312ade917Virustotal results 11.59% Heodo
2020-09-01eOhEoZsS11G.exeexe cc08d530fd5309c5ee844f4abe6634619c3b6923a1a4dcd44757e5624a023f7en/a Heodo
2020-09-01BFW2Bf56ketj5C8JOj.exeexe e552f15db67dd0cd5bfb9fd4de5274d5d3fc196401f0a9905942591bf11ff206n/a Heodo
2020-09-01sSu1ix115qVivxElAtJTG.exeexe 749f9b4397a5700133e724fb08b5662693c18e722e8ffc7729e56250cf163567Virustotal results 11.59% Heodo
2020-09-01ABzGb5qjXqWk.exeexe c7d4df4e81a85aa6eefa211f02ab3f18f92ccec5fb7b95e2c673ede90a52d19bn/a Heodo
2020-09-01YLgsoOYBDhb.exeexe dc8fe494b2c1f563445255b15528e11a1e887567d53cc1c3422c945b82004c0fn/a Heodo
2020-09-01pjJ.exeexe 556684375397cd4392fd1ffb5ae5bda081c4f9fc6331d479157856e6d18a94a3n/a Heodo
2020-09-01xdBF2G5Kf2RZ.exeexe d845301b7ddebd092f82f33984e372a768c3346f2eae7937f7025d8019dbd0b8n/a Heodo
2020-09-01plDZOIbEURCd.exeexe 0a3bb66447b589b8f49a9d4261a1e04bcbb6d69a9896388398de8ede4956c0d4n/a Heodo
2020-09-01tLr8um3SO1.exeexe 5fb494dde48006a3d5f4767f7a0e395bf30d0fba259bf14cebd6946b777f9519n/a Heodo