URLhaus Database

You are currently viewing the URLhaus database entry for http://rechtsanwalt-storek.de/cgi-bin/http://Documentation/gKPYlDqI8y/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:451771
URL: http://rechtsanwalt-storek.de/cgi-bin/http://Documentation/gKPYlDqI8y/
URL Status:Offline
Host: rechtsanwalt-storek.de
Date added:2020-09-02 16:01:08 UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):No
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-02rep-2020_09_02-AU60967.docdoc 53d349c64c0fc0e79d0af5102868d6ce2b1b36db00a737fb045215415f0ffe9an/aHeodo
2020-09-02Arc 2020_09_02 TX7631.docdoc 4cd0f515b8f4dfcb82e6632f6265788a3f8e06cf975b79a57e4be2bc586ecc9dVirustotal results 22.95%Heodo
2020-09-02FILE-2020_09_02-892479.docdoc f5aa298753f22134327ca1421cf6f5ba524e8d4b5935c9c90f2733780a492290n/aHeodo
2020-09-02Untitled-20200902-FR31891.docdoc 78df54e013eec7c5840a232217b575026b958ff69eea895f43e7acbb54aa386dVirustotal results 21.67%Heodo
2020-09-02736218_20200902.docdoc da9add46fb0eeb814f98d08df6c5e4773f1bca4aab793be51549617c3fc2aaecVirustotal results 22.41%Heodo
2020-09-02Rep 20200902 565.docdoc 8179b17f5da98d6dc74fae15ac0b3c72209d7ac4606b8d3b36f8cc9d71856fe0n/aHeodo
2020-09-02UNTITLED_3706.docdoc 0eb92730fcaba36a39d85a8c960f6374ddee85feab7375574626f576306110e0Virustotal results 20.34% Heodo
2020-09-02List 20200902 ZI424714.docdoc eb6e96a5447a58530267b5ef42547ddd25a7315751c11e55f60b97248241fe27n/aHeodo
2020-09-02Mes-20200902-4938.docdoc e058eea34d69029ea680d152b00bad1d3a6bb648b6df9dde40e51cc1cfb495c6Virustotal results 20.00%Heodo
2020-09-02MES-639.docdoc f83857a17aebd4777c9ea725049d7deb70045ea04105d927e84ab06b50b6ee80n/aHeodo
2020-09-02Doc_2020_09_02_FII1849.docdoc 58c7b45cd530652d333fbf4b2fdbfffa31739dff81e78e0a4d7f8231d13c0386Virustotal results 20.34%Heodo
2020-09-02rep 2020_09_02 2397721.docdoc c3efefd3fc4d7d5f5a2d79f649c055290e3e77e4905fedbca034de6f70449d2aVirustotal results 19.67%Heodo