URLhaus Database

You are currently viewing the URLhaus database entry for http://am-sat.de/cgi-bin/wSqwb5pfb76/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:452244
URL: http://am-sat.de/cgi-bin/wSqwb5pfb76/
URL Status:Offline
Host: am-sat.de
Date added:2020-09-03 08:48:38 UTC
Last online:2020-09-04 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-03 08:50:06 UTC to abuse{at}strato[dot]de)
Takedown time:1 day, 6 hours, 3 minutes Poor (down since 2020-09-04 14:53:48 UTC)
Tags:emotet link epoch3 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-040000676714487.exeexe 33d90071a59719d44e6a8fa7c1061d8c7ca971c3212989db75ab8e0cc3366317n/a Heodo
2020-09-04iSBqH45569736432.exeexe bc36627452408b55a26154b0df4dfad284107ecf22e7d598894c8e0c32f73fcen/a Heodo
2020-09-04I9o14.exeexe 1c0328f24d4bcecf62efa08dc9659ce564b64c57f81374cbd8f3f051ff5b43b4n/a Heodo
2020-09-04eiC.exeexe 8c348615fa51b43a0c34ec6fbf3819a8d2a94284e621d8305bbf368f0cf53208n/a Heodo
2020-09-04lx4O000679880337664.exeexe c71fb73c09c5f54ae950ed2c05766ce1e11e7a0fc41330a8d956ae70482bfb9aVirustotal results 2.99% Heodo
2020-09-040034212w2juPyg.exeexe ee583f170602dda1dcf04203eca159a2736b17dae1c33164d0feead0580cf941Virustotal results 4.41% Heodo
2020-09-0400072US3.exeexe 400943ae5c04632b261104623bdfad8e8f246dde6db179803be30b035a0325a2n/a Heodo
2020-09-04KX.exeexe cb087fd26568501317456faa635f039c2b7ab91a80b0c8e348a0ae32da210fd6Virustotal results 4.48% Heodo
2020-09-04tyvVggsfIer1LL.exeexe 4330d113520e31e0cb5dfa5146491442dde06d0c5417b8deb69ea3bb58952e73n/a Heodo
2020-09-04YQcdQoTcjKv40079873.exeexe 10827b5a6f210570f6edcf312ecb78cf2899397b3c50429148b1d2ffddc44940n/a Heodo
2020-09-044Q9f2eDA0.exeexe 4e42e1fd52ff7b38396bf7e84cc647b8afb95e0eddbc71eb50197c20bd49937fVirustotal results 11.59% Heodo
2020-09-04BEW441.exeexe 52da9b46dabb22a9bb5743be5a491758f9f2421c57c721e72955c33a09bd64d7n/a Heodo
2020-09-04xluuXcv6905003.exeexe de45b298369b9c1454a0388ade8250710fcff077bb4857a1793ff6415e09d4f1n/a Heodo
2020-09-04qEYwsyVN56S2.exeexe 18d54702bb4b51e57c28b15e8de3d089d7ada4e468c57b331c47eaa5610ae392n/a Heodo
2020-09-04jInfhAV8g9.exeexe fe383c93e5f664eadacda6bc9036b0129981e5a42645c88cabc2c0fb5d11c8f9n/a Heodo
2020-09-04EiuJAex12397311.exeexe 0c330bb4b2ae02a7f38a16fae9ac1c56ba32797de73136c91d101c40a204028cn/a Heodo
2020-09-04nGAmfrvKFZ91.exeexe 271476e0ae6fec1da9c41e3c3ab7269c5318d07d97869a7342260b3fa6e4fa31n/a Heodo
2020-09-0400005688073885169F3.exeexe 21d038d6b62211ccf5f82f26db5da530fa8b06187eb68518cdffb6b027170665n/a Heodo
2020-09-04nQm3633.exeexe 00117c8ea20b23cb08f3001e4441082ec1613f5a08068d12cfcbf510269138e2n/a Heodo
2020-09-04000064JKK2OinDKI.exeexe 28a9dc0e6a4f7cb194fca6fb2abab19fec4313ccaada126a0f674527a51c2bfdVirustotal results 7.25% Heodo
2020-09-04Kwru7mK.exeexe a8e956d0c00b10e2c85b812c988d98e8df466197c92519979fbed0cdef6946d1n/a Heodo
2020-09-04000042183767211878zfRvbrYzSb.exeexe cb5d66a9d57e339e8b34b98d77cdb1858b5f20b2df684d4383ef26b26c229f39Virustotal results 8.70% Heodo
2020-09-042gVpGd3d5uf.exeexe 307e0832ad0ee4db165f92dc46afee519556d0514951e18e52c45450136f61d4n/a Heodo
2020-09-04prjxrUo131610.exeexe 75db45a4ee379c30656784c87b5c1ce66e723af87c985f1a6852af0f7b665e16n/a Heodo
2020-09-04xT58sZyybKsE8654295409.exeexe f042a8e3d031ee55e0c6087bd9d2683a0b09706acb163506bd6437a26f52a27cVirustotal results 22.06% Heodo
2020-09-04000014347F1yb07xn.exeexe d81d8723e5bc620723a35ffefd8d33d798eb8b023e9678bb188b18d6d53d5cb4n/a Heodo
2020-09-040042173022815buwylOC9.exeexe d4addde80af8ef27390f475f636c1e13c650018ce87ae526ab844cc9af1f994an/a Heodo
2020-09-04000072.exeexe 3e3a8fd5d6f4f43a3c4db93c87049d6495d30c7a354c648f323b6c62247a263bVirustotal results 18.57% Heodo
2020-09-04us5zn4HFbR7D.exeexe aaaa37997c49963176e51d0c043d1a174ccac85f83a48feb56640bd4cef30239n/a Heodo
2020-09-0492RLVJRw4i37hw00003508580723.exeexe 83682cf56a9d146d14b58c32f1a680949439a95aa6bf6d6277159bccee89b52bVirustotal results 17.39% Heodo
2020-09-040000332265920979r6X9liB.exeexe f884d429ec642785a97a133216ded053a13bc0d49729ecaa2be6f8437e73d611n/a Heodo
2020-09-04JbacRAKz.exeexe e53cca1ae2f6789e29ed1b4dc11c0a117fe12a54f2a00b9064a53c859b70582cn/a Heodo
2020-09-04009290.exeexe a888ec210b0ef63a39637cad415c536fee0b6ff527fec92ab2254078b7b03e62n/a Heodo
2020-09-04uzoTi8kkSo2q260815175443.exeexe 8cce69f7a75f1911d441850fbd4197de2bdb9fc5b7de2a0ef2a48a0a791b42a1Virustotal results 16.18% Heodo
2020-09-0405121076RTr.exeexe 38e4dc37524ddaf8721d0cd1f514e4e2b09ceb329daaaa0265701174382e1521Virustotal results 10.29% Heodo
2020-09-04058tnQtIT.exeexe 12c5a46c72211bd1227643dadac804e41c21879e03119c0bf93983eca0a57bb4n/a Heodo
2020-09-041515223160202NeahxurQ.exeexe edea6f0fdca0697d3129a25d25e3004c04032649429b6c5aefcf11e3bf9e7bb1n/a Heodo
2020-09-04bI.exeexe 4614e40de4e7d351be5cce0fb25bd0bdee22d74b0fe22454f657ea2ff99ed7e9n/a Heodo
2020-09-04tS5mC.exeexe ff333e04686daad7e069b789c8c12f8e7694851434c42d7a6fefa3bc14aec41an/a Heodo
2020-09-04000063546615.exeexe a63b27f4c491a7a9ec89a2926d87f30caf5ff8aaa6c2d4c3b022fafa6c4a6242Virustotal results 5.80% Heodo
2020-09-04YCPuiXqUsSW3001.exeexe b40c14b8f690bb05fb44de1cb5644cc6e3264b9a7c6ec34fb9980f67e35b4fbeVirustotal results 5.80% Heodo
2020-09-04qGpFR.exeexe 1cce4cde256454c58a0a2144dd38592e7c80619641038bffcbdff4274fd5a21cVirustotal results 4.35% Heodo
2020-09-047Dw5KxrCt9ZmXT.exeexe f429b7806c122845042aa20c590016d3ef53be097318782fc6452f8765aa8608n/a Heodo
2020-09-04C3BfQ5Oay0461406140.exeexe cd27fb0da3ae64d3998bcdfe096ce007db4fd3a675d56cfcd24b5c22b88a15e0n/a Heodo
2020-09-04BOMuMEs2cOer.exeexe f0e86dc9f39bc87e6fb98cb6e2991cfee4397d2e04485b5418e9c9a73ba31f01Virustotal results 4.35% Heodo
2020-09-040006714yhjTI.exeexe 67511b8d1375d9e27e1151f61ba4f547e289a0282a4c34f8cc3febdbaca2dfb5n/a Heodo
2020-09-04xTGv518110843748.exeexe f29ff8162edf82fc680245490323b94e317eaf6713c13286c31f7c9b4958121an/a Heodo
2020-09-04358Ff3VH.exeexe ab87e6256a0d597406b5f9415184ac411b4e9aaf825b2ecf83b1f005247cfac5n/a Heodo
2020-09-04VMgHUJiCTZX00039.exeexe c46dfd4dd10a05d07f6dad13af863210eb44c64209f711568114decc12d3004dn/a Heodo
2020-09-04Md.exeexe 28afdb69f9c2c543fce7e8b3ea1bd9e56a202f39236a46513719d623234549cen/a Heodo
2020-09-048621.exeexe e39d79b3abd800119e2a4b5849277fcbd7be576a9434bf945fdb79506d9f8c16n/a Heodo
2020-09-0424M7EQEpzE.exeexe 5df7a7ec0831247b01d40f750db60eed40c5b71b28253af45231eb3b2c40abebn/a Heodo
2020-09-045XF5GBYpxe0000794145.exeexe 09dcbe8cf4309f64746a0b622f9b1c7fb079fae1e3f748bb66779dd17676d20cn/a Heodo
2020-09-03JFhqJYXR042853056450.exeexe ed9ad98e8e2508fd8d67d29c7cecd53f62608025f8e559a7ac48fb435e88792cVirustotal results 5.80% Heodo
2020-09-03000009736AeuQWNf.exeexe 6498c65cad02640de8134f89c513a7ca087a3ec3181c426935c50a370251a71cn/a Heodo
2020-09-030000559271348698Y9Nml6P.exeexe fa624871f462d834ca87254e6dd3270c74449de5e52fcb15aae1e0407867e602n/a Heodo
2020-09-03aBIxHe66618199001.exeexe 3ab89f64aa171b0880df40fb82d277ab7078fd219b67647424c30b11780afd66n/a Heodo
2020-09-037284950075105.exeexe 10fdedd8a9a6bbc5d5e82f9edd5a364a7b1f07ccd53e3beb65c9c9092a548800Virustotal results 5.88% Heodo
2020-09-03rAxr613.exeexe 3423240b34ab6eeaa50e065750525aa5ef1be52741bfc0914cdfff51c1e06030Virustotal results 13.24% Heodo
2020-09-0300744875748701GjrlLcv.exeexe c5ec004d2b69b5ee73d08ae0c8e22c2887589df01648ca32070b9e98ac1bdab0n/a Heodo
2020-09-03F900647425.exeexe af6e8cf0ca3598960351b973a423c4c6f401256cb4e496d5e52f21ea47927790n/a Heodo
2020-09-03jCus7.exeexe 8b2ab74a8bb4fa8d71ed1d23d809e2a55c2322f52bf38e93b90b8a2289bda416n/a Heodo
2020-09-0300736660.exeexe f7277e77d85855e07e57d318ce20076e3d504f9e5711754d945558b2241dec17n/a Heodo
2020-09-03000095206.exeexe 5760696dd7beaf882861d67578120967416b09379df84c0e7c9168b323fa1951Virustotal results 13.04% Heodo
2020-09-03UaP4G0004528635.exeexe 3cdecf4e15e1e024e74565cb348b658f01351142ba817d050d9f49c844a20167n/a Heodo
2020-09-03KaRU7n7foANYaf000193192316.exeexe 7e892241a904a8b0307aa87b7b097dcbe6125fbe63a6b8133bc9c0e6446d7542n/a Heodo
2020-09-03TbZ.exeexe 5fe1590de662b9c1825df524788f0c94c9ddc0fd389144bb28267325c25ad323n/a Heodo
2020-09-03000440725528.exeexe 8c2ed8f82643d210e9b15c1e5b6e13a2fa196e4960b33f66cc8dff778d3bc3bcVirustotal results 13.04% Heodo
2020-09-03Dv.exeexe 13c7d6107460a3daa3243339cd7fd3afdf283261e607ab12a3728dcc06396328n/a Heodo
2020-09-03008612.exeexe df38082a8fdc5b3292b593b61dbf3a63c7f4cc8a9a0450a5e5d83f9191af64b3n/a Heodo
2020-09-037712ps168185.exeexe 5dce985765fe8e2815508c94ae5a2e0516ec554c326ba9058b961a0a8471b5bdVirustotal results 8.70%Heodo
2020-09-0300002821.exeexe 1e5dcbf39ed281caff4fe4d658ecda69fb48aad3c9792f14f21b3fd2bc41bb8dn/a Heodo
2020-09-030048.exeexe 5134940f4119b418b1622c21700a44b362deccd5685091192c0d7903895f017an/a Heodo
2020-09-03pebc943525.exeexe 863ba4455bc31fb6907a0cc3c78371705e1f5e4e5864a3327355f516abca4ef9n/a Heodo
2020-09-03007382935115.exeexe 31add79738bfc429055b768e4d9b0a7ca06ca39288fddb90d1596420a1a7b658n/a Heodo
2020-09-03eCbkZNA044036356472.exeexe 75057bcd9f88e17bf6d7d0291515e05c5830843857f638c33b304da9feda580eVirustotal results 14.93%Heodo
2020-09-03lLXmsN0659518.exeexe 720969b036459ab55258e2c80c1ce3cb072653ef3a1a4cdedf6d6322429a4992n/a Heodo
2020-09-030AWecuJCvH0000256164332731.exeexe fa2a81f2a3e229ef211c644eb1cc75feeb52baa56c8cbe00e2190135ef88d1c4n/a Heodo
2020-09-03u8HKnerejda003.exeexe fc5e9919e9f6794bd96a46eb08d580f6d66a763215a52e6153147bda6112a6e6n/a Heodo
2020-09-03rQ6jfngtbsMZRq.exeexe 70d32d09dd3a18a97de1f1d28d8a480f5fa6a77b5d116b9aae242ba5e3d90ed1Virustotal results 23.53% Heodo
2020-09-03ziexiY284339465322.exeexe 9fb72e54d9b034c854508bd5decb976b6397b9e405a36e9079fa190c816932acVirustotal results 21.74% Heodo
2020-09-0327166123904.exeexe 30ad57987e0c17977957c37097704a81e505a04d50bc69d251cdb059c9f3700bn/a Heodo
2020-09-0399hMdIv.exeexe c1708475dcf877d8f81a1edeef2aebca245a341db541ba29b57dd93778516329n/a Heodo
2020-09-0300231h3Dnxqua4.exeexe 9b07d885fbf8114a18490ffa523106e57e22017ec88eeb422448ccbfc0039ad5n/a Heodo
2020-09-0300003212230EnHY42J.exeexe 694bfdb6b6a5fa9baeaa81723e00da637625ead4e610aa5cf56cfe0a24bab8d5n/a Heodo
2020-09-03svh5egJ3Fn.exeexe 75c9505342fb594f7e16ad139fae3f5ef618afb0ddb66b239b033b7ae8305daaVirustotal results 20.59% Heodo
2020-09-03k26BqekcGu2Q.exeexe 0ebf3ef0e22091a7104a040a70e3fb304d92b1638e762189e7e6d764463cffefn/a Heodo
2020-09-03000061329.exeexe 4eadc9686140546aaf3aa1a8566386d6094383d391402e7a95519568b8c5014eVirustotal results 20.90% Heodo
2020-09-03Q0003L9Z093427040075.exeexe c6060b9caded4b4c3a5dbaa6793abbba02012e7d1ab405128c1f58249cefaa90n/a Heodo
2020-09-03C34Caz7183839080282.exeexe 07db9bda9fade6e525a9cbe1ab49495820036e2cba5d9c16ba334af7ccb86bb0n/a Heodo
2020-09-03080788raJF6BF.exeexe 9fff4ec969e9943a0427a2f297761b1b5a8f8d36b69186294f2f5dedcfd828c4n/a Heodo
2020-09-03LoCko8V007936146236821.exeexe ab26a574800e9f855077b588572819971c2c466de231eb47088dcd39ba866adan/a Heodo
2020-09-0300005230279308808.exeexe 36af79d797ea9600ef248671dd4fd5b3bf050004cafdc8c655e8baea65c55bben/a Heodo
2020-09-03YiBdJDRCD4h909361.exeexe d87366a3c21d3cc452c0315a07c2fb87c985dccdbae2316ba42ff0bbced4b769Virustotal results 17.65%Heodo
2020-09-030000153105782760f8.exeexe 94b6e340543e7c11f527f977aa45c44579af43e4eed1864a434690cc47bd04e6n/a Heodo
2020-09-03c8oPXSSrmCLS008985799962.exeexe 1c628095712213a57c32c5462b4647320f6a5f1dd3ed63981f43f0341e670f7eVirustotal results 42.65% Heodo
2020-09-039vr00000946402.exeexe 95b20413e8fdf276c12b8e0899b99246faa05f6d8c398e4012e4f3a491b9062en/a Heodo
2020-09-0300009017800wZHIAF.exeexe 9dd5f70ed24f7a11a4fc1d75a768eb743d7d21433c125645a1018d4251cdfc5fn/a Heodo
2020-09-03416021423768.exeexe b263d7ea899eaa7be0688365b211ceef648eff65c9dd9371c089f82c1fbfadc7n/a Heodo
2020-09-030009PbndfpzjEc.exeexe 07c3609993a3238d9ab7011bf6b956265371416ba698766607bac9801be4997cn/a Heodo