URLhaus Database

You are currently viewing the URLhaus database entry for http://amaga.de/WordPress_02/http:/attachments/Knd9uXzSwtr75bbNb5F/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:452143
URL: http://amaga.de/WordPress_02/http:/attachments/Knd9uXzSwtr75bbNb5F/
URL Status:Offline
Host: amaga.de
Date added:2020-09-03 04:09:04 UTC
Last online:2020-09-04 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2020-09-03 08:43:42 UTC to abuse{at}strato[dot]de)
Takedown time:23 hours, 45 minutes Good (down since 2020-09-04 08:28:48 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-04Dat-1494.docdoc 47942152b879136b37f93a091fdc0995ae8dc63870ec7644620fc97205c8aa51Virustotal results 23.33%Heodo
2020-09-04File 20200904 HUA3990.docdoc 970e16cc8aabea583a577bb3ca6a50b795357231ff02822fafb8aa7dd143667fVirustotal results 22.03%Heodo
2020-09-04Y19445_20200904_NQ731830.docdoc d38918707adc1b43963df18c7c3483e35cb906f58221fbe54adcbf770706feafVirustotal results 21.67%Heodo
2020-09-04Untitled 20200904 M89620.docdoc 2be118d48f3e89cf53df13c43a01cdea40d8ffc9ed68e343636386badff6200dVirustotal results 22.03%Heodo
2020-09-04rep_20200904_RV09391.docdoc a116a068131b7ef0d015c07614c3e6f346f604fd7d9b5b974b9f09a997916732Virustotal results 44.07%Heodo
2020-09-04Arc 20200904 RD0082.docdoc 4e3917d545fe670b0ea8dd1cf91701595c3cbe5ab87b5c53a826514778bad6f6n/aHeodo
2020-09-04Attachments 2020_09_04 C6145.docdoc 44bd0a16a6f05906c4a20b9fdb23d798223e07db04cdbc4a4fb1adc219679627Virustotal results 41.67%Heodo
2020-09-04Attachment_2020_09_04.docdoc 4abe421f4bf82588ca7772c685416eab8133054e1ae9fcedc245167e272b6105Virustotal results 43.33%Heodo
2020-09-04INF 2020_09_04 DMX327870.docdoc acb81dc6508ccc95393a57308575ed700b2dca51e4f0658f6ce9dacfd214dd3fVirustotal results 40.68%Heodo
2020-09-04MES-20200904.docdoc ca1b62ba1f6df4e6e7ee6b0ae0cdbf41303c29e916602d32ba15df885ce8d527Virustotal results 40.00%Heodo
2020-09-04FILE_20200904_AX680.docdoc a7f7db7e743de3993fe73005b54d739c61d8b922446cf434ecedcca82c63e922Virustotal results 40.00%Heodo
2020-09-04doc_2020_09_04_70231.docdoc 05558fbc6250f15d45880b5ebfb3798d415fad3e982b503fd6b61e658d902aaeVirustotal results 39.66%Heodo
2020-09-04File_20200904.docdoc b928a4ea1aae65b1c3ee2634f0d4d3bba7d8f0d7bd647c3befb30ba0f8b6a1abVirustotal results 40.68%Heodo
2020-09-04doc 20200904.docdoc 7f52e258980628fde30f218b911a2e930d0bb7245dbe6093e35eaf7e61c3e688Virustotal results 40.00%Heodo
2020-09-04LIST_20200904_QY242811.docdoc 4808444c5d5d505fcdfe5814913d92dea2c41dbd68018cff2817cabd134441a6Virustotal results 40.00%Heodo
2020-09-04dat-2020_09_04-5637.docdoc 9a9c96896e784dc4ac0ff44a3052d2ff2d7cb744fcf3255981f30894e95d6c42Virustotal results 40.00%Heodo
2020-09-04255SF 2020_09_04 VJA321.docdoc b25414b4b759b6517cfc1ce36e58d10a5aac59912adc8230095f50f6659af778Virustotal results 40.00%Heodo
2020-09-04FILE KTM966.docdoc 90d7013803edb798ee2da7fcf3de07420ccd536dd01c96d0c787a80c0923f08dVirustotal results 40.00%Heodo
2020-09-04Dat_VHS048.docdoc 2f40ae83dd7e6ea630b731213a7f9629565af65eca2bf9990d77114dc2b441e5Virustotal results 41.38%Heodo
2020-09-04FILE_2020_09_04_JD92520.docdoc 3b921395ead4db8129425113780d7d7391058b9a70f1bfadaa36d56c48de30edVirustotal results 40.00%Heodo
2020-09-04DAT 2020_09_04 170.docdoc 1fa1544383bbda2ef984f9c0a8a1e3ec9c37ede4a0e897d8177d7e92d3809ea1n/aHeodo
2020-09-04inf_2020_09_04_F041985.docdoc 9cf29b7fcce905e807fd1e4493af36f7f0e8618912601f1a85cf52af6d38d6b8Virustotal results 40.00%Heodo
2020-09-043209.docdoc ed80367a721e5c5ea3048c5688d5b8446bfed75afd70f06932dd66e94a437a93Virustotal results 40.68%Heodo
2020-09-04Mes-36513.docdoc 41b51c9c72e134b6a5183ee31357d58d19e875c56db068adc0b5f8a3d12bdc3eVirustotal results 40.00%Heodo
2020-09-04MES_20200904_VPD37663.docdoc 6300e903bf3720bb91e4db31ad186d98f0b8307f0abd3b785145f72f0a89edefVirustotal results 40.00%Heodo
2020-09-046994-20200904-68790.docdoc daa812c082d4d470cfad19c540bfc6ea7adbcd3859273af885dda81d2722e1e1Virustotal results 40.35%Heodo
2020-09-04Dat_2020_09_04_4436807.docdoc ee7586771fa02df0ef18b9f88c3bb45135371e5f7a16f6304b1b500a99a0ca6eVirustotal results 40.98%Heodo
2020-09-04INF-20200904-B94836.docdoc 0bed9ceb6c02ac01c38804705e397d72379abfba81c416c2deca29e08e32bd54Virustotal results 40.00%Heodo
2020-09-04File_587.docdoc d6da8adc7df4680bdfe56aded8385d20e63b8af6ac83ff2abdccf2910232809bVirustotal results 40.00%Heodo
2020-09-04mes_2020_09_04_XK80605.docdoc 05fad6322a91dea215be2ca369db898c378e92eed38030f6dc4bdca1eabf3836Virustotal results 38.98%Heodo
2020-09-04Dat_20200904_4053.docdoc 39f12f314a1431044af9b7061ac6b7b2d68e29927ba8650ecfd4a5a41337922cVirustotal results 36.67%Heodo
2020-09-03Arc.docdoc 62f2e2f1e282bf930eaf8a31d9904112fa33e4c5bcb2d14f0efc91df5351ae54Virustotal results 35.00%Heodo
2020-09-03file 5184.docdoc ea4fc36885f9979ad9f5fa421926dba611a7a272abbc518fdb4da57125d0f548Virustotal results 32.79%Heodo
2020-09-03Mes 2020_09_04 7593.docdoc 5870705910f4290f13346efd3c9113483974723cc840cd330844efa6f5b3be19Virustotal results 33.90%Heodo
2020-09-03mes 66478.docdoc 198716bbb4d8d22a81603b2d905312ceae4b0f8df0a17ccda349c44ae024011bVirustotal results 33.33%Heodo
2020-09-03INF-931.docdoc 1665a376712705dfdb732a6d623d3e5802e79b68082691dbab100757b018cb8eVirustotal results 32.20%Heodo
2020-09-03Dat 44511.docdoc 10d9f95cbaae87c8e1ee5a2d4ed21022d9a419859eb29f5cb055497a345006a1Virustotal results 31.03%Heodo
2020-09-03LIST-2272.docdoc eb96e6409fa3b1e2510201d45d3a629be387c1d50ca84645b13d0614702d7c62Virustotal results 30.51%Heodo
2020-09-03arc-2020_09_04-28962.docdoc 184ba331ed727480fd65743bfe0cf1489eca3b4d49b68a31b970ee96288c9484Virustotal results 30.00%Heodo
2020-09-03Arc_IHN81843.docdoc 3c9f9e08bf1785b8c6c1fed306eb5e322fb63ea73a8d01a9fc83af4006d64008Virustotal results 31.03%Heodo
2020-09-035246WXA 2020_09_04 342.docdoc 7e3a1e6d36b83671b756096e60fc53cab42b64bdb208c976b889540d6e90bf17Virustotal results 28.81%Heodo
2020-09-03File JTD168693.docdoc 6e09b7ea9721f1af117d11158633cf55d038617f7ac19748f9280bc43c46ecdcVirustotal results 28.33%Heodo
2020-09-03inf_2020_09_04_5246.docdoc 42ccf0abf046317f8dd2f1b447cbc691402c7d009419cbaa98148c4812f9fe14Virustotal results 28.33%Heodo
2020-09-03UNTITLED JUS629649.docdoc a0c7d7125079c31ddaf2b7b1955bf7992183d25c6c03b5d81ce1a17ff8ad612dn/aHeodo
2020-09-03rep-FK71504.docdoc 7e4f4220d0928275cb69116e38929352184f121750af357692c93335665fbe02Virustotal results 28.33%Heodo
2020-09-03doc.docdoc 54e914ada679af6812636e98ea035a024075eb6c2d3c5691d7ecb4bc6912e3b9n/a Heodo
2020-09-03Rep_2020_09_03.docdoc 3d79b0e046a8c799ccb81e9bac59c0b8f45b767a92e8c32465ebb56975ddbbc5Virustotal results 28.33%Heodo
2020-09-03ARC 2020_09_03 K508824.docdoc 45dfa0acd3e383703d19e0c80284cce37c8de2fa9e193ce08e94e49a97d530afn/aHeodo
2020-09-03NHE841-WG55640.docdoc 689e1b27324a65ca3e5c98ad7cfac2125fcb8d64bfd863fe1f0a26c16f68f9a0n/a Heodo
2020-09-03rep 20200903 1964.docdoc dfb1031ce56f9f39a32ed410629d9f46e753b4e0671d121c063d52a7a23785f8Virustotal results 23.73%Heodo
2020-09-03List_RI18344.docdoc b1c32ab9829ce18688bdc2f48a63f967f67366e2d725ae16bad216cbc79158e9n/aHeodo
2020-09-03CR7881 20200903 40668.docdoc af81984de14d081c2a5d015a4266dd625fd7eb4153810cb71c2ba3e9dbf382ddVirustotal results 23.73%Heodo
2020-09-03Rep_2020_09_03_849472.docdoc 87dc054eccdd1cd6182d372f5fad56aae34971c4a0ab10e92fd242ee82e9c785Virustotal results 23.73%Heodo
2020-09-03Dat TI19295.docdoc 75e21b06b155b76eeb61cf02a1e3d2ed091b180853d2c6dba9aa7f4afa014aa8Virustotal results 21.31%Heodo
2020-09-030456_20200903.docdoc b9f390e14ff3a741d40f78b33a9e82622638b6a50caa19f042764a40ffea8236n/aHeodo
2020-09-03Inf-2020_09_03-89149.docdoc b66793cda5150365d467a564f89991b5d8c1942368050aeefee9db6fe5c8a107Virustotal results 24.59%Heodo
2020-09-03DAT-20200903-4411.docdoc b3e8c0e919099fb81b81d2528d22d103fad4fcab8c2729d0f93419b0718bbaden/aHeodo
2020-09-03dat_2020_09_03_KI17741.docdoc 7a10fa5e42ffaf9baddc54567556ebe14f3b6a31b1c4cd39193fc742546d6538Virustotal results 25.00%Heodo
2020-09-03Attachments-2020_09_03-REV117228.docdoc c443164c089fb4765ca30a77309a379fa8ee043af4e723dfc4ffc6d977656613Virustotal results 25.86%Heodo
2020-09-03list_20200903_953.docdoc 95a7e791afc63ee2afec1fb8ed9283881d2afc17110419804e6dad34cf0914ddVirustotal results 25.42%Heodo
2020-09-03Rep 2020_09_03.docdoc b14443ae26e257ef4d41a942b378470af758b31d9c8d7946861ebb13f8f853daVirustotal results 25.00%Heodo
2020-09-03Doc-20200903-QLZ0449.docdoc 4a2ee0cb09dab923da14ab985f65d156e600b82e42b0bb53bf982243bed9400eVirustotal results 23.73%Heodo
2020-09-03MES-20200903.docdoc 431ec558729a17c71ef7827a20d49d5577d19b03f8ccaa3e0615a8db09ed3c54Virustotal results 21.67%Heodo
2020-09-03arc 2020_09_03 E470777.docdoc a174b2bf75543a4a1190ec9dc367943e05b0ad1872ef71382a25e16c6d104399Virustotal results 21.67%Heodo
2020-09-03Doc 20200903 VFM460299.docdoc d78448b6db249a6ecf36f11026d7ba586a6348ce297651d61e1d7e555e07e60eVirustotal results 21.67%Heodo
2020-09-03ARC 342040.docdoc 942091684482d678974c9220ad745980d533bda5f758b93ee3cd5fda40373a3fVirustotal results 21.67%Heodo
2020-09-03ARC-2020_09_03-GG358.docdoc e066308839f458b9477414e501caff74c793580cb0188acb9cc3bd188f5aa215n/aHeodo
2020-09-03Dat-9436.docdoc f61c2ad341e1ff7a97fc114cfd2ac23ae1d962acd6b08143b5325e781291abafVirustotal results 20.00%Heodo
2020-09-03DAT 2020_09_03 8700.docdoc dab3bc7362e4597f36aab7f7beda32f427aeff29e1fdf026a9d3188c7bb38226n/aHeodo
2020-09-03List-2020_09_03-308.docdoc 815168cb370218c44fb6dbfc404707f828fd24638e20cce9bfab49ba4d3fac22n/aHeodo
2020-09-03mes_20200903_321447.docdoc eea93466af698f59add0eca4156036f410856376f19d5ded5ecb8acba9ebfb61n/aHeodo
2020-09-03INF-20200903-CG4410.docdoc d72fe928030db9d36cf3dc5a158cbf874821f50d6cbd16f3774ae62acda06b3bVirustotal results 22.03%Heodo
2020-09-03521 20200903 UQE196208.docdoc 8390907055ffb930aa5f635104036583a933e16508d58f68399a49df3d304736Virustotal results 22.41%Heodo
2020-09-03Dat_2020_09_03_91217.docdoc c0af2be2400e298680651009e6586ebd35f1655cc541948d513020e716155acfVirustotal results 20.00% Heodo
2020-09-03INF 20200903 KGG249462.docdoc f4fc8ed450e3b86dc85e37b8c98ea3a5749d5f4c25ce29f28691d08df1e56b9dn/aHeodo
2020-09-03DAT-2020_09_03.docdoc f2ec9f235e2ecc536b662cc5fd8b7ebb4893228c8b9d52bdab8695bdba0ad2adVirustotal results 20.00%Heodo
2020-09-03inf_2020_09_03_796659.docdoc 4605de521a5c8ea6ed6776f702bbc6cd5c5c7c4f5138782994e3de529ac5c2edVirustotal results 18.03%Heodo
2020-09-03rep-RXX9802.docdoc 7a571bdfac93a5d054c876fd020668e2700d7c5220404591908b208f5a68d4adVirustotal results 18.33%Heodo
2020-09-03Attachment U7854.docdoc 3410f86def5e10b6693847d80f4cd14f0cce3e3d61e06e0aa3483be447e14e58Virustotal results 18.03%Heodo
2020-09-03ARC_2020_09_03_9994363.docdoc 4a5029949cfff6d3fa6b2c99cccc0629409c47ec3c1998fc74c2af39a84fb774Virustotal results 18.33%Heodo
2020-09-03List_20200903_XOH1663.docdoc 9775f8f46b36abeecfb6b000e26183a69e630b41dbdde865a9f58922e241ebedn/aHeodo
2020-09-03inf_2020_09_03_RO1609.docdoc 475d8fda613f9584e77724a38a4bbd51bb5b035c5c29016ea7b91ca4bf188865Virustotal results 18.33%Heodo
2020-09-03arc_20200903_M888.docdoc 48cbc1f9d16ee39f9b8965f396d8004058d53b4391d3c72b810c214bc051d457n/aHeodo
2020-09-03275AD-2020_09_03-C41038.docdoc 537b13b52bea3093f294ca644caa54d62586885a5ee0302974e81f7a7fcc5c7fn/aHeodo
2020-09-03FILE-W65091.docdoc c0cbde26c26008c28e57c09b3755a36c862bf431e69e8a8c6efa181a5c135343Virustotal results 18.33%Heodo
2020-09-03ARC-20200903-2846077.docdoc ed6240fd2124412946415b92d407338c50bc81b417c2b69f6503dd63e9c98869Virustotal results 18.64%Heodo
2020-09-03inf 2020_09_03 734951.docdoc 7fa4dcabbc254d8edb38a866c0073738d9e80aa44927ca2dffb57ef1895a1de1Virustotal results 18.33%Heodo
2020-09-03ARC_1584217.docdoc edd24d1a4d38c00b10ada9eaa24138cdbb5b2d6fcb80ff5350576827cf792494Virustotal results 35.00%Heodo
2020-09-03File-20200903-736.docdoc fc90610a242c7e63c5308bdbe1465659981a65be23ca2ee1d99930fdde9cfdcdVirustotal results 35.59%Heodo
2020-09-03UNTITLED-20200903-F441.docdoc cacf08dc29380900a46bd3ef7a8d9df051aae704102a5878816183cfe16caf1bVirustotal results 31.67%Heodo
2020-09-03FILE BKZ03767.docdoc 3505f54cbf2ddab863054dc37a1c898cc5ff3f4dc69ef57ca0f8a32a132588e1Virustotal results 32.20%Heodo
2020-09-03GND482_20200903_521020.docdoc 45e8b6124baf40d040598548d898861fa405d2e9bf0e88cc8606a16d7a018ca5Virustotal results 30.00%Heodo
2020-09-03List 1700.docdoc c4e63aa4bd93111e81fc78b0cf516be383a95aaa80e1afbed1215283c56ad3adn/aHeodo
2020-09-03Untitled-D616.docdoc d1736bb7fba0d5f83c964fd5e9c3d2659a1a1ff6eb178441309a83e9fa00ef5fVirustotal results 30.00%Heodo
2020-09-03Inf_20200903_5550851.docdoc fec90b9f6fbd9d737bfb18e0f1801b841454d1857793a0cb6484f891a1a495fdVirustotal results 30.00%Heodo
2020-09-03File 2020_09_03 H0741.docdoc 10b9c4bca67ace9500467fe62f3f429c09793aad07493bb237def1c168c83000Virustotal results 30.00%Heodo
2020-09-03Doc 2020_09_03 143.docdoc a4b4827811c223bdb21e19eca21093bfd039640ef42b2f6df2bbd36db7f59a5cVirustotal results 30.51%Heodo
2020-09-03Arc 390.docdoc b9a8cd441d4272f268bfe4f6d07d3e7d847df248f08827b609db5336c4cb8c6an/aHeodo
2020-09-03688046-2020_09_03.docdoc ed9827a493cf03febb984e81ed9277dd7da365a7d84aeed254f720d8072eadeaVirustotal results 30.00%Heodo