URLhaus Database

You are currently viewing the URLhaus database entry for http://julegaveregn.dk/wp-admin/http://FILE/tJdkmCy7t7wIMk3sxch/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:451808
URL: http://julegaveregn.dk/wp-admin/http://FILE/tJdkmCy7t7wIMk3sxch/
URL Status:Offline
Host: julegaveregn.dk
Date added:2020-09-02 17:35:35 UTC
Last online:2020-09-03 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-03 08:40:49 UTC to abuse{at}zitcom[dot]dk)
Takedown time:6 hours, 12 minutes Good (down since 2020-09-03 14:53:37 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-03File-20200903-K4415.docdoc 3c0e5411a0af16e59dfcf6e89d26ace2ebe5b936b5bf36a5f03ffc9673813254n/aHeodo
2020-09-03List-2020_09_03-U171.docdoc 010725a82107c0b0313be31a0051e0639d606503644442a16d8ee6c1f064da41Virustotal results 18.64%Heodo
2020-09-03Rep-VY81662.docdoc 87b4d1ae8ecbc05b5057c45bfc7a453dcf8265ad3d685e3e4c05b240da8f9f52Virustotal results 21.67%Heodo
2020-09-03file-2020_09_03.docdoc 9a6f34385dbe97d930ddcc9802f71cb44af38c64df5b40a013d592052de7b0a4Virustotal results 22.03%Heodo
2020-09-03List_20200903_IDR921591.docdoc c8a71c528548306c663f2b0c7b602a3d23ca301c9a946f6a105bd11ae7f1b8a6Virustotal results 21.67%Heodo
2020-09-03INF_20200903_7382.docdoc 8390907055ffb930aa5f635104036583a933e16508d58f68399a49df3d304736Virustotal results 22.41%Heodo
2020-09-03REP PG232.docdoc c0af2be2400e298680651009e6586ebd35f1655cc541948d513020e716155acfVirustotal results 20.00% Heodo
2020-09-03Inf_20200903.docdoc a6fe7d2643055e787bc0810d3015fbdfe01cd70f734f9a5a991923a27133edf6n/aHeodo
2020-09-03mes-20200903-997567.docdoc 440eda7eb112dffd4940b418cec78792c65e1e157ae407dff6fddc5f09361d7dVirustotal results 20.00%Heodo
2020-09-03Dat-20200903-SWE89263.docdoc 4605de521a5c8ea6ed6776f702bbc6cd5c5c7c4f5138782994e3de529ac5c2edn/aHeodo
2020-09-03REP_2020_09_03_419.docdoc a7feb70fc3867ed145a59e051b4869480f6afafbc9436c6fb7fbae07155cad73Virustotal results 16.95%Heodo
2020-09-03UNTITLED_20200903_K220248.docdoc b8fbdbecff601ccb014f2c75b6b1abc8695f66d01d265f4d01b39f951fb4db2fVirustotal results 18.33%Heodo
2020-09-03INF IWO3300.docdoc 2093e4fd8ab95bad14fd905f68453c18c64bd03c156f830cfd5af8ca03103eadn/aHeodo
2020-09-0313992-20200903-287.docdoc c0ed199d0bbe902fbe3e9edcb2c1fb18b43cb04112722ae6b9f41d38f0a5f843n/aHeodo
2020-09-03Dat_20200903_K4645.docdoc 68c5b0b61dcddea7b47c877d02a5d3d308d9753bcfd281a5aac05b1fbf496bf6Virustotal results 18.33%Heodo
2020-09-03Untitled JYW29688.docdoc d742952f4e6160da55a1d1f4851c20d36b539b3bd51eef7c8c3fb43aff4e7e8cVirustotal results 18.33%Heodo
2020-09-03UNTITLED FW475.docdoc 4f7503d4f30c170cf73668df230de8124b998e45689637bf2846db3e3185fb6bn/aHeodo
2020-09-03List 20200903 C3976.docdoc db086b8728ea16bc67645ad3a8087b50c7876cb33c1e752f445d11a5c4c42dc2Virustotal results 18.33%Heodo
2020-09-03REP-186251.docdoc 290ed9c24539d01f8be31a788976ceda4646eccf4c0d685d5907a924a0aabf49Virustotal results 26.67%Heodo
2020-09-03DGO040 20200903 1882103.docdoc cfcb64aa9a177d841f8032e616c8bd5837d2e17f9996746b6773e6350d18e335Virustotal results 26.67%Heodo
2020-09-03list 20200903 Z884.docdoc 3b9ae29dfc77210c64539999fc0cc72fed7df798f7f5adef5c8d5bb7ab9ab4afn/aHeodo
2020-09-03mes 20200903.docdoc a3e2eb1611caf695f981fe0341b42b3eb3ce6c89d4c5592e3a6f42de7fd61c50Virustotal results 26.23%Heodo
2020-09-03DAT 2020_09_03 2694784.docdoc 5b27a5e6cdae618e9eb5e14035ea32c95ce43e30a8c36e1402d81e941dbebb03Virustotal results 26.67%Heodo
2020-09-02MES_20200903.docdoc b4516e62068c35d8814a1d175c4f1062a9bb15afc1120a5c017d52a0b8b2ab98Virustotal results 27.12%Heodo
2020-09-02File 20200903.docdoc 307a4fbaa0d80db37e3ea6e971fae14df8588da457932320d6ea7f4d4df61ac4Virustotal results 26.67%Heodo
2020-09-02FILE-BMA198.docdoc e2903eb4f9230ac21528b58d84f15ae6dbd4191f8f0ca869657e9f04d6b1ff75Virustotal results 25.00%Heodo
2020-09-02file-20200903-N17151.docdoc 6e6db219ffe9ff6be1e7df214bd10146f8df7e51344845c7c8ed5ab7954e58a6Virustotal results 25.42%Heodo
2020-09-02Rep 301.docdoc 9e843c5909d8d51573070e5305cf349f5f653516f981ed2408fe345d6917f6ddVirustotal results 27.12%Heodo
2020-09-0228320-20200903-3039.docdoc bdb1bca8969343d2a7323c24065f294827f3f79eb047d138c5102bc9a026530eVirustotal results 23.73%Heodo
2020-09-02mes 2020_09_03 75690.docdoc de53464b8b694b4f672a2f55429b372de0dfd04906cc310700ad0201e16bd5ecVirustotal results 21.67%Heodo
2020-09-02608359_20200903_813683.docdoc 13ab456a38769f62874636b17911970ca8c4886474e7b3229d86d0559e50d33aVirustotal results 21.31%Heodo
2020-09-02list 2418733.docdoc d5632b761f91aedf966b27495697bb0943e9c1b1e8b6706fa781d8af58485d67Virustotal results 21.67%Heodo
2020-09-02INF 2020_09_03 15883.docdoc 47051914b32358b3277db21d76c1f681d97058305cb4d6b55d4bac81816a6f47Virustotal results 21.67%Heodo
2020-09-02rep_20200902_BU7868.docdoc c3815498d0ab03e8e6573ecaff58207363aa23d7ed116b5d10bbf72fda771fc8Virustotal results 20.00%Heodo
2020-09-0280374D_2020_09_02_9394160.docdoc d4f7ee63f0a3c8af9924120e046cd07ba698bdd1b26009646e37ba4bf591e705Virustotal results 30.51%Heodo
2020-09-02LIST-20200902-ZV352.docdoc 51088d5bba86975b26c3b0f9c503364aeb2d87f454e45e6c9d4cc2a6c5281c4an/aHeodo
2020-09-02Dat-5201945.docdoc 336e92ab1d170735ac2c49a67a5d819ec8260f2aabf4fe60158953222716789cVirustotal results 30.00%Heodo
2020-09-02File_2020_09_02.docdoc 6527116041dfc94bcf1f5eee275f11a909a43ac3ba6a928b5a897d7ed0d27414Virustotal results 30.00%Heodo
2020-09-02DAT_20200902_47657.docdoc d4b4b9f21b22b73cf88fd15efc55f3f3cb141a8cb8f441b6947541c813321414Virustotal results 30.00%Heodo
2020-09-02List-28274.docdoc 3ad2bb539377892228ffba50184870b7cbd2e77a6ee4336265e005d18a9c5468Virustotal results 29.31%Heodo
2020-09-02arc-UGW900.docdoc 03f5c7ea3d7e0b9237a7dcbbf5a23ec1b4cff95adf7e73f263b0a41ff97c45b3n/aHeodo
2020-09-02Dat_2020_09_02_358.docdoc 4cd0f515b8f4dfcb82e6632f6265788a3f8e06cf975b79a57e4be2bc586ecc9dVirustotal results 23.33%Heodo
2020-09-02inf_20200902_000.docdoc 5bb0cdb3b79a8771fa36c719b0698bc0b7757aeeae32421626bc80a6d18041a1n/aHeodo
2020-09-02UNTITLED-2020_09_02-OES009026.docdoc 65180d8e88bd40e3449a5075f009cf32dfc0cbc1705a8b4860c326a94d9a8e15n/aHeodo
2020-09-02ARC 2020_09_02.docdoc 825eecf0d9b3c9a1c3f03364fc288a2f3fdf9f0faf59f2cf801c8faeeed3e958n/aHeodo
2020-09-02Attachment-20200902-3460572.docdoc 0eb92730fcaba36a39d85a8c960f6374ddee85feab7375574626f576306110e0n/a Heodo