URLhaus Database

You are currently viewing the URLhaus database entry for https://nwfinanz.de/m/http:/Documentation/aaWHOK4slhw/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:452319
URL: https://nwfinanz.de/m/http:/Documentation/aaWHOK4slhw/
URL Status:Offline
Host: nwfinanz.de
Date added:2020-09-03 11:26:06 UTC
Last online:2020-09-04 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-03 11:28:10 UTC to abuse{at}strato[dot]de)
Takedown time:1 day, 11 hours, 19 minutes Poor (down since 2020-09-04 22:48:00 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-046403HRY-20200904-78345.docdoc 8e545a370b86ee0cd6e5c447811aee200ae42181090a0a262326de62dd93aabfVirustotal results 35.00%Heodo
2020-09-04arc_837775.docdoc 4f574c1f2f33241e9d1d44b74075d96778a9a152808b8c397f19a51c1b16ab2dVirustotal results 33.90%Heodo
2020-09-04doc_7874.docdoc 0cac10e553ca0da14b7f6e1bf4c0586be92226b4edb922d9d7a79fd366142df8n/aHeodo
2020-09-04List 2020_09_04 58021.docdoc 24401840c0ce4a3b8e35bdf4f126f227be7487c4747c57f1bea55e0d488ade46Virustotal results 35.00%Heodo
2020-09-04FILE_20200904_G617635.docdoc d4416a6ff0dbbf8a60d1df15030c7eeaf6be3883b9f4df72bd6312eb84caa672n/aHeodo
2020-09-04doc_5865367.docdoc 60417a3fac59e91bb0031c7e6fc97a808021296c159f11631bc3ac3e34ec5603Virustotal results 28.81%Heodo
2020-09-04REP 2020_09_04 FJ91466.docdoc 20f0a0ba4cd0dac615e918dd489d36a9dbe9da8eccd28074379ccb9297f44202Virustotal results 30.00%Heodo
2020-09-04REP-20200904-8555968.docdoc edbc22e742e12b2af45a775673812f2c751b4f9071a83b9565d3d547fa380655Virustotal results 30.00%Heodo
2020-09-04dat-20200904-LMO651995.docdoc be6a2393d8d58557a21737649e0977851d793862f1b80f1d27a1ee2ee70b3154n/aHeodo
2020-09-04Rep-VT9188.docdoc ba82dfa2da1757e5cb6ed6f9bb2d2c820d055dbab664b798475fd4a94d8476b9n/aHeodo
2020-09-04UNTITLED_2020_09_04_KE12281.docdoc c3850d62a95518f0ec62ce9f3f83163aa67b240ac7b21a8b6e1bf5e24005a4d0Virustotal results 28.33%Heodo
2020-09-04List 2020_09_04 209.docdoc cba83b613d73f634da924685c3cfdd701edddbc80bd28399548cbdee1e5f4df1Virustotal results 26.67%Heodo
2020-09-04MES 2020_09_04 YS106.docdoc 4f1efb479047eb160b579acb41f5f020b5c98546b837d8f74862d98ffef4840cVirustotal results 25.00%Heodo
2020-09-04arc 2020_09_04 AUC330.docdoc 3b8964cde0e41b835a06f77a2d1834dac132f78cdebaf8b6e89214daf39b8752n/aHeodo
2020-09-04Inf 2020_09_04 1508.docdoc 6ba1180f37e95dd4238a52435a56d2cb1483ed9a34af53b44e0fecd5863244ebn/aHeodo
2020-09-04BJ9429_2020_09_04.docdoc 2e6992209a57f96c89556ed36c0e872bf312cc0e79e673c6888fe3b263c1ce06n/aHeodo
2020-09-04FAG0981 20200904 2925.docdoc 0c906246c9944d2f025bffd01313418c70c77ee5e3ff89cc68fa7ecce69782bfn/aHeodo
2020-09-04Doc-20200904-HE215.docdoc 6b6138015363422437174a3e66d6fe9830722c6af61b695c5bef3200fe97a98bVirustotal results 21.67%Heodo
2020-09-042795 2020_09_04 D05078.docdoc c737b9843d1bd4e6071bdecec3832cb009922c322cb71ca5b8fb1f3af0febbc1n/aHeodo
2020-09-04UNTITLED_20200904_249970.docdoc 1c67628b01a329488b609ce13ceba3610a0d79cfe6bdb3d6750f714ffc97f27fVirustotal results 27.59%Heodo
2020-09-04Inf_UDL647.docdoc 8c4a8a1c7d4ddbfd0b727a5f169b6bc78e7997fd2b0947299d663a215bb3a9d9Virustotal results 27.12%Heodo
2020-09-04rep 3623.docdoc ca900ae40752b2a78feb23b6d8c3f29f674621fc5a6d90b99c3f2f2c6efbe075Virustotal results 26.23%Heodo
2020-09-04arc-2020_09_04-4808675.docdoc 24325dc08722e851f6637f34bd024e29a92a95a82f94fd5adf334df561dfd116Virustotal results 26.67%Heodo
2020-09-04File_2020_09_04.docdoc b6c9ea0c6311713092b07d9f28b5b798d84789c78cba9ce6f80d967cfec02942Virustotal results 26.67%Heodo
2020-09-04DAT_2020_09_04_73720.docdoc 6b12df90c4f1f8bdf2bcc412748ab826992ecf7c8f1d6dff2768fff19be85236Virustotal results 26.67%Heodo
2020-09-044229G_2020_09_04_2239868.docdoc e514ee40aaf58363f83b55c5bb9e01e591be5d5fbea0402363bfe659405e331aVirustotal results 25.00%Heodo
2020-09-04Rep 20200904 511451.docdoc 4dd07b5f70becd9fa1cd8ebbb833f449c200db06f39d962f13d96d55f4e61802Virustotal results 23.73%Heodo
2020-09-043847 2020_09_04 7647.docdoc 35eae4bf4a4e774e6e01de12b1358e0b431ba0b625952ca4b650849e31cfb1f8Virustotal results 23.33%Heodo
2020-09-04Dat-20200904-75021.docdoc 0333bff5ce7bc15e980682c145f4a161838a0772811528a5910da02b14a2431aVirustotal results 23.33%Heodo
2020-09-04Untitled 20200904 VT695810.docdoc 4db2255d31946791dda100686fe140e9c3b4df0060994abd723c697a68b5819an/aHeodo
2020-09-04Arc-2020_09_04-XK8008.docdoc a44af5b41212998f1fbe2710a20194236275ea73fe20d136c36ab549738d00eaVirustotal results 22.95%Heodo
2020-09-04FILE-2020_09_04-447632.docdoc bbb72c4df6c036dd3b187c18c6ba7bf547ed934e658bdcd5d3c23d14d244c2eaVirustotal results 23.33%Heodo
2020-09-04ARC 2020_09_04 LR66937.docdoc d9c975b6db619552db6df9461b3c0947dbeb829698591386f2c86994a414e005Virustotal results 23.33%Heodo
2020-09-04784227_2020_09_04_73781.docdoc a609f7e20b48bdd41568b99bce2cb2882716da265eb0b2da0207bfdccee6288fn/aHeodo
2020-09-04DAT_20200904_1924588.docdoc d38918707adc1b43963df18c7c3483e35cb906f58221fbe54adcbf770706feafVirustotal results 21.67%Heodo
2020-09-04Inf-B505.docdoc a116a068131b7ef0d015c07614c3e6f346f604fd7d9b5b974b9f09a997916732n/aHeodo
2020-09-04595740 20200904 953.docdoc 4e3917d545fe670b0ea8dd1cf91701595c3cbe5ab87b5c53a826514778bad6f6Virustotal results 43.33%Heodo
2020-09-0402965-2020_09_04-XJ79570.docdoc be658261ea85360800d4b052f23fd96dbadfe7171d308a38dba22b5fe4efadf0n/aHeodo
2020-09-04mes 20200904.docdoc 4abe421f4bf82588ca7772c685416eab8133054e1ae9fcedc245167e272b6105Virustotal results 43.33%Heodo
2020-09-04REP 20200904 59862.docdoc 933a5acf70c2c8f24a3d359a43ab898e556cdcae740ddcaf33acbc356ae1d9d5Virustotal results 37.50%Heodo
2020-09-04ARC_9022471.docdoc acb81dc6508ccc95393a57308575ed700b2dca51e4f0658f6ce9dacfd214dd3fVirustotal results 40.68%Heodo
2020-09-04Untitled_2020_09_04_09820.docdoc ca1b62ba1f6df4e6e7ee6b0ae0cdbf41303c29e916602d32ba15df885ce8d527n/aHeodo
2020-09-04dat-II440708.docdoc 0ff1c95a7d850d74903fb10610c4d99e54fd900d51cad0f2deda82e1122f403cn/aHeodo
2020-09-04494088_20200904_777.docdoc 05558fbc6250f15d45880b5ebfb3798d415fad3e982b503fd6b61e658d902aaeVirustotal results 39.66%Heodo
2020-09-04Attachments 2020_09_04 DFM0133.docdoc ede8d998dc31e2c855d01100bae27909e6fad8672e5bb1e7afced120b025c6a4Virustotal results 40.68%Heodo
2020-09-04arc_295176.docdoc 027746c91762be2cd5ecdd301acedfce96399a7961478130a7c6e26d2e47ea3cn/aHeodo
2020-09-0476104YF R359.docdoc 7f52e258980628fde30f218b911a2e930d0bb7245dbe6093e35eaf7e61c3e688Virustotal results 40.98%Heodo
2020-09-04INF.docdoc 4808444c5d5d505fcdfe5814913d92dea2c41dbd68018cff2817cabd134441a6Virustotal results 41.67%Heodo
2020-09-04REP_20200904_876.docdoc b25414b4b759b6517cfc1ce36e58d10a5aac59912adc8230095f50f6659af778Virustotal results 40.00%Heodo
2020-09-04K4048-20200904-L613.docdoc 90d7013803edb798ee2da7fcf3de07420ccd536dd01c96d0c787a80c0923f08dVirustotal results 40.00%Heodo
2020-09-041716-20200904-X0176.docdoc 113f271d566b508aed976158e057211703fe30c314960665466fe58d9e08e50bVirustotal results 40.00%Heodo
2020-09-04INF_2020_09_04_E367.docdoc cbf75dba4c6b4f8cbcfb647112f9a0a4f8efb293526aea73ffebcd800379e08fn/aHeodo
2020-09-04Arc-2020_09_04-I5626.docdoc f9cb536060fce2bb170aa95f67947db48d9b7e43e2095dad2337eda509017040Virustotal results 40.00%Heodo
2020-09-04List-2020_09_04-B08454.docdoc 9cf29b7fcce905e807fd1e4493af36f7f0e8618912601f1a85cf52af6d38d6b8Virustotal results 40.00%Heodo
2020-09-04file 20200904 86955.docdoc 87b97c090bc37e5a2a9ff93540bcd5085c42db5b1d0d4db34a0c68ab714044afVirustotal results 40.00%Heodo
2020-09-04670139 20200904.docdoc 7eba76e504a537e3600311969b0b159744d8f78d48891c9f06dfd9aa9798b9e3Virustotal results 40.68%Heodo
2020-09-04inf 2020_09_04 5817971.docdoc ee7586771fa02df0ef18b9f88c3bb45135371e5f7a16f6304b1b500a99a0ca6eVirustotal results 40.98%Heodo
2020-09-04ARC_B049377.docdoc 0bed9ceb6c02ac01c38804705e397d72379abfba81c416c2deca29e08e32bd54Virustotal results 40.00%Heodo
2020-09-04809274_2020_09_04_J120.docdoc 69e91274a22bb98b54013be9509ad757c17fd9ab44d80c5a8585ec639ea6f04bVirustotal results 40.68%Heodo
2020-09-04ARC HW602012.docdoc 40e46d87637cea2a6a20ca199855bdf702be9effdbbe4114bb50c812d1de9d4bVirustotal results 40.00%Heodo
2020-09-04FILE 20200904 014.docdoc 945f9c6c84eff86e098fcb02268e716fb80f5c6fa8a5e64e08175a306d3c0a2bVirustotal results 40.68%Heodo
2020-09-03Dat 20200904 WNI9048.docdoc 2ce02bed93b32642de024d52e2b8b0cdfc0716e8a0d1e617b67cdf14c195583eVirustotal results 33.90%Heodo
2020-09-03FILE_20200904_Y857.docdoc 62f2e2f1e282bf930eaf8a31d9904112fa33e4c5bcb2d14f0efc91df5351ae54Virustotal results 35.00%Heodo
2020-09-038991377-2020_09_04-UO859468.docdoc d313ce8483aa86f33b4fb8f8eaf32cc9162fea1ecd980baf5fb9ae5ba1e2024cVirustotal results 33.33%Heodo
2020-09-03File_2020_09_04_0735.docdoc 5870705910f4290f13346efd3c9113483974723cc840cd330844efa6f5b3be19Virustotal results 33.90%Heodo
2020-09-03list-D2300.docdoc dec0fc4e4611e340eb402f29ab07769dcc51d4a2806a8aa520f4332aca26f2dbVirustotal results 33.33%Heodo
2020-09-03Inf 20200904 2187295.docdoc 939b166130d34042d2f4e49e43067b7670e409ae8dfe5e7d675160a838878230Virustotal results 31.67%Heodo
2020-09-03INF.docdoc bf1b9f0a76233f9cc5983b3b48fad1f4edff9c94e363dbab7f91cb8050ab315fVirustotal results 31.67%Heodo
2020-09-03Rep 20200904 KKN142.docdoc 1665a376712705dfdb732a6d623d3e5802e79b68082691dbab100757b018cb8eVirustotal results 32.20%Heodo
2020-09-03ARC_20200904_ZIT742320.docdoc eb96e6409fa3b1e2510201d45d3a629be387c1d50ca84645b13d0614702d7c62Virustotal results 30.51%Heodo
2020-09-03MES_K08183.docdoc c9915f741ce8d4cf9ca8c30d7711a0152562b3b68514486b5b49442ea9fc3b06Virustotal results 29.51%Heodo
2020-09-03UNTITLED-KZ773157.docdoc 3c9f9e08bf1785b8c6c1fed306eb5e322fb63ea73a8d01a9fc83af4006d64008Virustotal results 31.03%Heodo
2020-09-03Attachments_20200904_02850.docdoc 57db4c9dcd57a6d59d1b728b6ada57bf429b28d3b3a3adf0416ed0dc9cf7dd5en/aHeodo
2020-09-03Inf_2020_09_04.docdoc 4e03b8184bb5825cbae8683aba941b0a129e1929f4c4dd13f662948f9ebe9009Virustotal results 27.87%Heodo
2020-09-03List_2020_09_03.docdoc 473941d39d5c25ffe3ce4b7d3da0b2e3203fc8fd7123c8392d025ea706d45d32Virustotal results 28.33%Heodo
2020-09-03file_T52825.docdoc b16c9c2d31951ab80547d278a185006a0373db64f717f620e03138688cbf2db4Virustotal results 27.87%Heodo
2020-09-033256IU 2020_09_03 UH129.docdoc e5115c3e86dd21ece011508d8b1b576b6b5b38eefde8dea14cdaac4a6a06f4e0Virustotal results 28.81%Heodo
2020-09-03322BU 20200903 QQ3349.docdoc e727d2e04c5bc6f27e4a73ce18b8074fc192758dc0abaed60480c0f1dcbbaa0bVirustotal results 28.33%Heodo
2020-09-03Attachments_20200903_Q442171.docdoc b16cdb69a8c0fb85792f37b8a979b0e3e9fe8abb6ee2dd5a0d21c50b8400720eVirustotal results 28.33%Heodo
2020-09-03Inf 20200903 E06495.docdoc f70cea3bda98140e023f339d8c5ebd63935b269da5f1dc201819cc9d2a8dc78fVirustotal results 26.67%Heodo
2020-09-03doc 2020_09_03 G730743.docdoc 509ecb6a2610738956ebdf8a885bdb413fe84bd8143e1012a1fb4a4e14333d19Virustotal results 22.03%Heodo
2020-09-03Arc-2507.docdoc 88c16f598ab3e2ae31833ecde0a55057c723a25101a16540d55fe86ea861fe2dVirustotal results 23.33%Heodo
2020-09-03doc_20200903_YA3779.docdoc 87dc054eccdd1cd6182d372f5fad56aae34971c4a0ab10e92fd242ee82e9c785Virustotal results 24.14%Heodo
2020-09-03Inf 2020_09_03 546.docdoc 63930b14af729c7269381e50fe9d2aa5c1e270c629023c4a39564d39ef0d42f0Virustotal results 23.33%Heodo
2020-09-03ARC-QDN63325.docdoc e6c4accc4dc0b7466fe7c7fb8bde85ef87a0604f53bdf089c2def419214f14faVirustotal results 22.03%Heodo
2020-09-03rep-20200903-263483.docdoc b9f390e14ff3a741d40f78b33a9e82622638b6a50caa19f042764a40ffea8236Virustotal results 21.67%Heodo
2020-09-03rep_IIE93520.docdoc f8ec34450b51c420b149e7ffca30b44a978962545ac0b69b15e4990fac11ad35Virustotal results 25.86%Heodo
2020-09-03V76736_2020_09_03.docdoc b8ba0380a86effc7221fa3321cfab63e2643490bb42ab24cd5e51aefecc9eb46Virustotal results 25.42%Heodo
2020-09-03MES-2020_09_03-Y95204.docdoc 98494fc713c44d8a04dfd9843ece379a625dc73ea24fa88cf65b60733b206390Virustotal results 25.00%Heodo
2020-09-03REP_20200903_O00971.docdoc dbc13cd5e6ecadf32014b392f23502deefc834c7eb890da0946c1a50d059aebbVirustotal results 25.00%Heodo
2020-09-03Attachments-705273.docdoc 68d0a89d26bba2a49d3271ddaa1104a60270cea28a6ef91c7aba13e0226eb457Virustotal results 25.00%Heodo
2020-09-03UNTITLED_20200903_FLB173.docdoc 8a7f6811cb75138e759a9a732ddfab4cf858c3f4f2e51adbe2ac1a26a438ed9eVirustotal results 25.42%Heodo
2020-09-03REP-2020_09_03-N347.docdoc 4a2ee0cb09dab923da14ab985f65d156e600b82e42b0bb53bf982243bed9400eVirustotal results 23.73%Heodo
2020-09-03Dat-2020_09_03.docdoc 8e0ae601e353b70b9a13a7fda1f70f4739bc059c0ecb33bf2d0f4e767e2a3ba7Virustotal results 21.67%Heodo
2020-09-03Doc_2020_09_03_229728.docdoc a174b2bf75543a4a1190ec9dc367943e05b0ad1872ef71382a25e16c6d104399Virustotal results 21.67%Heodo
2020-09-03doc ZQ947376.docdoc abeaab23c1c9c08c2cc470f886b692a6bb23a1a63ae63bacf06ed1d9ce181280Virustotal results 21.67%Heodo
2020-09-035626O-20200903-B009411.docdoc 8f3005dd01b057a916e725d8df5f16214633ecc82993787765bec64e206ccd97Virustotal results 20.00%Heodo
2020-09-03LIST_20200903_U527606.docdoc 3c0e5411a0af16e59dfcf6e89d26ace2ebe5b936b5bf36a5f03ffc9673813254n/aHeodo
2020-09-03ARC-20200903-52347.docdoc 7e979900e46de15883815a5c253c87cbb107219db542870c2c3da283394b7fc0Virustotal results 18.33%Heodo
2020-09-03K5693 IUJ2349.docdoc 4afb245cf18c3430df9ed8bf12ff6db5d008c76ee44237d07ce65dbfb3773a66n/aHeodo
2020-09-03arc_2020_09_03_IT721.docdoc 547682370b00ef8feb31a7dc3340735e6cd55b455dd7a259f226f094c6faa358n/aHeodo
2020-09-0308254T 2020_09_03.docdoc 481fe8b8e2ae22c0ce4c26fd4575526775f2ef93979eee241eed79d18e69f160Virustotal results 21.67%Heodo
2020-09-03Rep-2020_09_03-459.docdoc d72fe928030db9d36cf3dc5a158cbf874821f50d6cbd16f3774ae62acda06b3bn/aHeodo
2020-09-03List-555448.docdoc 6c01a992fe7958eb1e1b98b000f7c05e660bb11e7b8af632c27e70c0651540b7Virustotal results 20.34%Heodo
2020-09-03File_552.docdoc 1799833f25698f38fb404fc7bd8ba550560004a33bc1017f9da81ecf4ae1d869n/aHeodo
2020-09-03Dat 2020_09_03 B6785.docdoc f2ec9f235e2ecc536b662cc5fd8b7ebb4893228c8b9d52bdab8695bdba0ad2adVirustotal results 20.00%Heodo