URLhaus Database

You are currently viewing the URLhaus database entry for http://juergens-gebaeudeservice.de/cgi-bin/http:/OCT/rnZjFZAKfiSoGGbz8/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:452147
URL: http://juergens-gebaeudeservice.de/cgi-bin/http:/OCT/rnZjFZAKfiSoGGbz8/
URL Status:Offline
Host: juergens-gebaeudeservice.de
Date added:2020-09-03 05:04:04 UTC
Last online:2020-09-04 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-03 08:40:45 UTC to abuse{at}strato[dot]de)
Takedown time:1 day, 0 hours, 46 minutes Poor (down since 2020-09-04 09:27:08 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-04arc_2020_09_04_80172.docdoc 2f0f9e8cde5b53aa80b32d713adc28fff055196706c5e13da4e760a06873daffn/aHeodo
2020-09-04Attachments GIY170003.docdoc edf870edb55e5142744c18f6834fdb1518565ccaca223c5375787ae927ef4a3eVirustotal results 22.41%Heodo
2020-09-04REP 479.docdoc bfc004f7ac8d0c2e241dc8086e3e58fb542fcc47b5114ab614fa893199328acfVirustotal results 23.73%Heodo
2020-09-04472MO_20200904_93137.docdoc 12f0fe0be2051b0b2db3468b20798d7813c859384af5be7c18845165d1bc9240Virustotal results 22.41%Heodo
2020-09-04Untitled_2020_09_04_UM7910.docdoc bbb72c4df6c036dd3b187c18c6ba7bf547ed934e658bdcd5d3c23d14d244c2eaVirustotal results 23.33%Heodo
2020-09-04LIST 20200904 79473.docdoc d9c975b6db619552db6df9461b3c0947dbeb829698591386f2c86994a414e005Virustotal results 23.33%Heodo
2020-09-0421879443-BO284.docdoc 970e16cc8aabea583a577bb3ca6a50b795357231ff02822fafb8aa7dd143667fVirustotal results 22.03%Heodo
2020-09-04mes-20200904-TJ228441.docdoc 3416451c32e492acc9198b4de63c14aa38c110a4a023ae4f01fec692c0a5ffafVirustotal results 22.03%Heodo
2020-09-04328902_ZZ4389.docdoc 2be118d48f3e89cf53df13c43a01cdea40d8ffc9ed68e343636386badff6200dVirustotal results 22.03%Heodo
2020-09-04REP 2020_09_04 87731.docdoc 425e52461ebc8d48bfd618d18286f0f60b45a26d89da4a25c07ea36cb359aeeeVirustotal results 41.67%Heodo
2020-09-04mes-70331.docdoc d310bc1324e7bd2e09dde5482cc4390a66257737f2da4ce7c2bc2f05d04663d7Virustotal results 42.37%Heodo
2020-09-04Arc-20200904-N2649.docdoc 4abe421f4bf82588ca7772c685416eab8133054e1ae9fcedc245167e272b6105n/aHeodo
2020-09-0484436_20200904_056.docdoc 933a5acf70c2c8f24a3d359a43ab898e556cdcae740ddcaf33acbc356ae1d9d5Virustotal results 38.33%Heodo
2020-09-04arc 2020_09_04 259324.docdoc 0ff1c95a7d850d74903fb10610c4d99e54fd900d51cad0f2deda82e1122f403cVirustotal results 40.00%Heodo
2020-09-04doc 2020_09_04 25941.docdoc a7f7db7e743de3993fe73005b54d739c61d8b922446cf434ecedcca82c63e922Virustotal results 40.00%Heodo
2020-09-04MES-991253.docdoc 6bb0dcdffbd9df010a6d7951c4a8ecb8596b694a6b4f59c866f30a012bc325f5Virustotal results 40.00%Heodo
2020-09-04FILE 2020_09_04 AE575.docdoc ac647d90b3039bce667132dc5186534b23351caaf4e883d9bf6330a66d6d84a2Virustotal results 40.68%Heodo
2020-09-04File-138732.docdoc b928a4ea1aae65b1c3ee2634f0d4d3bba7d8f0d7bd647c3befb30ba0f8b6a1abVirustotal results 41.38%Heodo
2020-09-04inf 2020_09_04 253.docdoc 027746c91762be2cd5ecdd301acedfce96399a7961478130a7c6e26d2e47ea3cn/aHeodo
2020-09-04Doc-20200904-0396769.docdoc 9a9c96896e784dc4ac0ff44a3052d2ff2d7cb744fcf3255981f30894e95d6c42Virustotal results 40.00%Heodo
2020-09-04doc 2020_09_04.docdoc b25414b4b759b6517cfc1ce36e58d10a5aac59912adc8230095f50f6659af778Virustotal results 40.00%Heodo
2020-09-04Inf_20200904_PPE435710.docdoc 90d7013803edb798ee2da7fcf3de07420ccd536dd01c96d0c787a80c0923f08dVirustotal results 40.00%Heodo
2020-09-04List_20200904_67914.docdoc 113f271d566b508aed976158e057211703fe30c314960665466fe58d9e08e50bVirustotal results 40.00%Heodo
2020-09-04Attachment-O719.docdoc 3b921395ead4db8129425113780d7d7391058b9a70f1bfadaa36d56c48de30edn/aHeodo
2020-09-04Attachment 20200904.docdoc f9cb536060fce2bb170aa95f67947db48d9b7e43e2095dad2337eda509017040Virustotal results 40.00%Heodo
2020-09-04rep_20200904_VV328065.docdoc 9cf29b7fcce905e807fd1e4493af36f7f0e8618912601f1a85cf52af6d38d6b8Virustotal results 40.00%Heodo
2020-09-04REP S4717.docdoc ed80367a721e5c5ea3048c5688d5b8446bfed75afd70f06932dd66e94a437a93Virustotal results 40.68%Heodo
2020-09-04Attachment 20200904 110075.docdoc eaab7e71c3da44a79d28d2bef0582eeadb430df7d20febba2eed46323d6dd3eeVirustotal results 40.00%Heodo
2020-09-04REP-20200904-287872.docdoc 87b97c090bc37e5a2a9ff93540bcd5085c42db5b1d0d4db34a0c68ab714044afVirustotal results 40.00%Heodo
2020-09-04Untitled_2020_09_04.docdoc 6300e903bf3720bb91e4db31ad186d98f0b8307f0abd3b785145f72f0a89edefVirustotal results 40.00%Heodo
2020-09-04Attachments 2020_09_04 H3528.docdoc ee7586771fa02df0ef18b9f88c3bb45135371e5f7a16f6304b1b500a99a0ca6eVirustotal results 40.98%Heodo
2020-09-04rep_EEH386.docdoc 0bed9ceb6c02ac01c38804705e397d72379abfba81c416c2deca29e08e32bd54Virustotal results 40.00%Heodo
2020-09-04Untitled 20200904 DMO628.docdoc d6da8adc7df4680bdfe56aded8385d20e63b8af6ac83ff2abdccf2910232809bVirustotal results 40.00%Heodo
2020-09-04dat_2020_09_04_H08876.docdoc 945f9c6c84eff86e098fcb02268e716fb80f5c6fa8a5e64e08175a306d3c0a2bVirustotal results 40.68%Heodo
2020-09-04doc_2020_09_04.docdoc 479a6416cfb665d2d0f0b6e39d11282a0d31d799d87898d50f066e8d564808f6Virustotal results 36.67%Heodo
2020-09-031862ASD 20200904 34986.docdoc 62f2e2f1e282bf930eaf8a31d9904112fa33e4c5bcb2d14f0efc91df5351ae54Virustotal results 36.21%Heodo
2020-09-03rep QZT2903.docdoc d313ce8483aa86f33b4fb8f8eaf32cc9162fea1ecd980baf5fb9ae5ba1e2024cn/aHeodo
2020-09-03Attachments-2020_09_04-705831.docdoc 9e3d362ff8dc1daec89813f11f73bac91ac2ee3f97f803fd413522874432ebb4Virustotal results 32.79%Heodo
2020-09-03FILE V83656.docdoc 198716bbb4d8d22a81603b2d905312ceae4b0f8df0a17ccda349c44ae024011bVirustotal results 33.33%Heodo
2020-09-03Rep_20200904_6208761.docdoc 93b78de73040a3429d67f551e6a789cd2a141185e4bdba2cb74d575346b169f8Virustotal results 32.20%Heodo
2020-09-03J4074 2020_09_04.docdoc 10d9f95cbaae87c8e1ee5a2d4ed21022d9a419859eb29f5cb055497a345006a1n/aHeodo
2020-09-03Dat 20200904.docdoc eb96e6409fa3b1e2510201d45d3a629be387c1d50ca84645b13d0614702d7c62Virustotal results 29.82%Heodo
2020-09-03Dat 20200904 3029280.docdoc d0b12e270e83660cf1af25738d605f6c9a9edbd56f777bf405d01602fd42a201Virustotal results 30.51%Heodo
2020-09-03ARC 2020_09_04 X691.docdoc 657e6e8ae1d0a5dd81e22e4c5966596510d091f0621e520d9f85c46ddad6f3b2Virustotal results 30.00%Heodo
2020-09-03inf 20200904 4234.docdoc 3c9f9e08bf1785b8c6c1fed306eb5e322fb63ea73a8d01a9fc83af4006d64008Virustotal results 30.00%Heodo
2020-09-03L4824_20200904_0719839.docdoc eff6ba195fc7d083d41cc3c5d0bf90588ba4de22599bc9adeb053e04f0f4d55cVirustotal results 30.51%Heodo
2020-09-03Arc-ZXN739774.docdoc 4f5a405c856619a4ed5e618fd60249ffb0ec9437f94ba328f235c14375271a7bVirustotal results 29.31%Heodo
2020-09-03FILE.docdoc 4e03b8184bb5825cbae8683aba941b0a129e1929f4c4dd13f662948f9ebe9009Virustotal results 27.87%Heodo
2020-09-03Untitled-2020_09_03-168542.docdoc 94c93d633c31ebbc8eaec7112735a0e0c02e83826c66628d9c88dd7fc04700ccVirustotal results 28.81%Heodo
2020-09-03Dat_2020_09_03_963.docdoc 2bb99d9824b62fad58399309008db0c35224a435f3128a9f1104bae218fff192n/aHeodo
2020-09-03MES 2020_09_03.docdoc 349cb26e54b95d8b8902d5adcb96d1901780dc4b79c294e28b4c6cba21776a8cn/aHeodo
2020-09-0331381XKK_20200903.docdoc 2a9b356e211b6fc43b720fc28d8c9e2845466e9c79163ddb6b75ba3f9851b5adn/aHeodo
2020-09-03list_0990781.docdoc f70cea3bda98140e023f339d8c5ebd63935b269da5f1dc201819cc9d2a8dc78fVirustotal results 27.12%Heodo
2020-09-03rep_20200903.docdoc 8271c25e365343d937c375bcf822595d5cc823433d3d01b5a24874d1bcd89f9fVirustotal results 23.73%Heodo
2020-09-03Attachment-2020_09_03-AZ0749.docdoc 11a48462bad54a423a4107a55186e4d10c0ec205bd1ca12673171f08fdfba500Virustotal results 23.33%Heodo
2020-09-0358152BV 20200903.docdoc dfb1031ce56f9f39a32ed410629d9f46e753b4e0671d121c063d52a7a23785f8Virustotal results 22.03%Heodo
2020-09-03081110_2020_09_03_7011.docdoc b1c32ab9829ce18688bdc2f48a63f967f67366e2d725ae16bad216cbc79158e9n/aHeodo
2020-09-03inf-7477108.docdoc 63930b14af729c7269381e50fe9d2aa5c1e270c629023c4a39564d39ef0d42f0Virustotal results 23.33%Heodo
2020-09-03Arc 20200903 A486.docdoc e6c4accc4dc0b7466fe7c7fb8bde85ef87a0604f53bdf089c2def419214f14faVirustotal results 22.03%Heodo
2020-09-03dat_20200903_5503.docdoc 7542089a9b48b8812b9b4746ac6fff006e18134f861730e1c85c4cfadcebd7d5n/aHeodo
2020-09-03UNTITLED_895.docdoc b66793cda5150365d467a564f89991b5d8c1942368050aeefee9db6fe5c8a107Virustotal results 24.59%Heodo
2020-09-03Inf 2020_09_03 22360.docdoc b3e8c0e919099fb81b81d2528d22d103fad4fcab8c2729d0f93419b0718bbadeVirustotal results 25.00%Heodo
2020-09-03Rep-TQ496451.docdoc 4a3bedb4532a6a86ab7b29012a3adedfe19e06aeb7e032dc0514039f3622b6acVirustotal results 25.42%Heodo
2020-09-037632148_2020_09_03_18530.docdoc dbc13cd5e6ecadf32014b392f23502deefc834c7eb890da0946c1a50d059aebbVirustotal results 25.00%Heodo
2020-09-03Arc-2020_09_03-615.docdoc 68d32abf2673eb48f6df74b063aa17e978d10a50c746d8e0f27ba51c93779d01Virustotal results 25.00%Heodo
2020-09-03inf_20200903_406556.docdoc b14443ae26e257ef4d41a942b378470af758b31d9c8d7946861ebb13f8f853daVirustotal results 25.00%Heodo
2020-09-03inf-2020_09_03.docdoc 4a2ee0cb09dab923da14ab985f65d156e600b82e42b0bb53bf982243bed9400eVirustotal results 23.73%Heodo
2020-09-037428 20200903 WAG85781.docdoc 8e0ae601e353b70b9a13a7fda1f70f4739bc059c0ecb33bf2d0f4e767e2a3ba7Virustotal results 21.67%Heodo
2020-09-03List_20200903_2919.docdoc a3cb0dab145b2e5b5000b6b134acdb73594fb0bec769212dc3b848b5eb16d284Virustotal results 21.67%Heodo
2020-09-03List_20200903_2919.docdoc a3cb0dab145b2e5b5000b6b134acdb73594fb0bec769212dc3b848b5eb16d284Virustotal results 21.67%Heodo
2020-09-03doc.docdoc 8da638f633a35eb320331bc3842f55e54256cd7f625997eff55eb120af446fc1Virustotal results 21.67%Heodo
2020-09-03Attachments_VLX5200.docdoc e7e413e55d2e05e8668cb234c1ce64384a2b9a4fc74af9abde1ff07030da5d8fVirustotal results 20.34%Heodo
2020-09-03UNTITLED 2020_09_03 SH3544.docdoc 3c0e5411a0af16e59dfcf6e89d26ace2ebe5b936b5bf36a5f03ffc9673813254n/aHeodo
2020-09-03LIST_20200903_SWX908195.docdoc 010725a82107c0b0313be31a0051e0639d606503644442a16d8ee6c1f064da41Virustotal results 18.64%Heodo
2020-09-03inf 2020_09_03 EK9427.docdoc 2b4be15f0d85e69f6e3af8ff6a07242ceef68ac071cf2c5b71002187354cb1ceVirustotal results 22.03%Heodo
2020-09-03Arc-20200903-7442.docdoc ec4e2217ccfa3e601f1227b3b6ca3bc3a9126cad211c5b303d7c9a6ded11b93dVirustotal results 22.81%Heodo
2020-09-03Inf_2020_09_03_8699.docdoc e445cc23780034f91248c80336b0845b7d92ae1e82f8f0723e8862942c25d9e5Virustotal results 22.03%Heodo
2020-09-03Attachment 20200903 SJY923.docdoc c8a71c528548306c663f2b0c7b602a3d23ca301c9a946f6a105bd11ae7f1b8a6Virustotal results 21.67%Heodo
2020-09-0345252X 2020_09_03 H5663.docdoc c0af2be2400e298680651009e6586ebd35f1655cc541948d513020e716155acfVirustotal results 20.00% Heodo
2020-09-03Untitled 20200903 YX445.docdoc a6fe7d2643055e787bc0810d3015fbdfe01cd70f734f9a5a991923a27133edf6Virustotal results 18.97%Heodo
2020-09-03LIST_679928.docdoc e6a1c45cd63a70584775660392b75daf492da30a18f989cb055e43c5282d8ac0Virustotal results 18.33%Heodo
2020-09-03rep 20200903 933.docdoc 2f9bf5d35451e037422e2b366dc024aa5461f020c7ea3bda3212b0a354d568e8n/aHeodo
2020-09-03N312 9507.docdoc ec694d65b8558d8ae93d7dcb5b232189d20440574c9eba95443c19f05de0cd20Virustotal results 18.33%Heodo
2020-09-03Rep TLT9576.docdoc 2f71eaa981c83d30d3ec1f042fab4edc54b367a5079b7ebbe32238cd5165b038n/aHeodo
2020-09-03Mes 2020_09_03 019950.docdoc 7e5f79bdca6dfebf582fad70beed3b0aa59c947394bfc17cb3aa2f8b13d4d620n/aHeodo
2020-09-03List 9443.docdoc bce89001b89cdfd2100f452c3575dc57eda064e71c324ca8570f84ca39b19c9dn/aHeodo
2020-09-03LIST_2020_09_03_6703.docdoc 475d8fda613f9584e77724a38a4bbd51bb5b035c5c29016ea7b91ca4bf188865Virustotal results 18.33%Heodo
2020-09-03dat-20200903-NO54931.docdoc 23ee2ef5f3f4759e3eb0626e51c285c92f02b2460a13b9e752e2069afe53407dn/aHeodo
2020-09-03LIST_20200903_CT46725.docdoc 5314972bbe5ddc2ecbc3d8518e28e11506f697e9474c1a7c333aa0289aad7039n/aHeodo
2020-09-03Rep_20200903_913.docdoc 114c63d1f56bdab107f97b6249d88799bc1902213c8dd15436b63373ec365ce4Virustotal results 18.33%Heodo
2020-09-03inf-QB337.docdoc c0cbde26c26008c28e57c09b3755a36c862bf431e69e8a8c6efa181a5c135343Virustotal results 18.33%Heodo
2020-09-03LIST-20200903-5368923.docdoc 141021353b7fe52866701e33bda646b1e2fd7951b345a5ace3e5822f9ecfc983n/aHeodo
2020-09-03MES_K296.docdoc 788c7b77559d2d0a88092ab0519e1d089d11d14ccb86c6f1a1a23f1b610de73bVirustotal results 18.97%Heodo
2020-09-03YN38719 2020_09_03.docdoc 1a4f785565e762ebb5114a4fa08330ab74c2e36f6b8c581022ee6b475b0b9313Virustotal results 18.64%Heodo
2020-09-03MES-2020_09_03-5412959.docdoc 2d05ca541e0f2f0062ff2f5bdd4c3d472180f28d4f7084b30c361182249b7de4n/aHeodo
2020-09-03Attachment.docdoc 3e0be4ed5da1702faca0d2cd0ca1f13267be6c7af90459dd04c5de4478cb9220Virustotal results 35.00%Heodo
2020-09-03Doc-20200903-D73210.docdoc cacf08dc29380900a46bd3ef7a8d9df051aae704102a5878816183cfe16caf1bVirustotal results 31.67%Heodo
2020-09-03Arc_2020_09_03_608686.docdoc 3505f54cbf2ddab863054dc37a1c898cc5ff3f4dc69ef57ca0f8a32a132588e1n/aHeodo
2020-09-03dat-3730851.docdoc bd90747f1511858126540aead236b837e454d2ed8692d76022d72801a8006a6bn/aHeodo
2020-09-035663907_20200903.docdoc b3a06afe37d63e434d8ac12e8f2ed2fa8826d8153e9d5f6a3ec6793b11d43277Virustotal results 32.20%Heodo
2020-09-03INF-20200903-W474425.docdoc 45e8b6124baf40d040598548d898861fa405d2e9bf0e88cc8606a16d7a018ca5n/aHeodo
2020-09-03mes-2020_09_03-5489919.docdoc d1736bb7fba0d5f83c964fd5e9c3d2659a1a1ff6eb178441309a83e9fa00ef5fVirustotal results 30.00%Heodo
2020-09-03Arc-2020_09_03.docdoc e16df740c6b4d003b00ff92bcecbffcee7c2b1beb17d9bdfe388f753ffeee9a3Virustotal results 30.51%Heodo
2020-09-03List-480.docdoc 10b9c4bca67ace9500467fe62f3f429c09793aad07493bb237def1c168c83000Virustotal results 30.00%Heodo