URLhaus Database

You are currently viewing the URLhaus database entry for http://niedermeier-online.de/bilder/FILE/la2wg645j/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:452586
URL: http://niedermeier-online.de/bilder/FILE/la2wg645j/
URL Status:Offline
Host: niedermeier-online.de
Date added:2020-09-03 16:58:03 UTC
Last online:2020-09-04 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-09-03 17:00:05 UTC to abuse{at}strato[dot]de)
Takedown time:1 day, 5 hours, 43 minutes Poor (down since 2020-09-04 22:43:13 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-04DOC_V4ARAZHX1AZGA.docdoc 39fad32ff15c2ae8485f5b1e8d4c14cd1a34797e7c59d7569ee52834d69c1b02Virustotal results 18.64%Heodo
2020-09-04PO_09052020EX.docdoc b5533222607313c1e5318c308f318224a53034815f0c64c398f7a47c3a022efdVirustotal results 37.29%Heodo
2020-09-04807491117135882912.docdoc b24e807d0df1eadd028e3819c82a02a484506947497651f366a72b832ca55c24Virustotal results 35.00%Heodo
2020-09-04DOC_11044296.docdoc 135937e63e99259fbedd9a7fade8e7735873996e876d16a95e9eb3b634b3e926Virustotal results 35.59%Heodo
2020-09-042MM7AQOHHFS4IX0N.docdoc 59fdddd7d14174695b3060a24099fb534d15016cfee986d9a0ab15d779102b66n/aHeodo
2020-09-04DOC_J8QCCNIW7.docdoc 36175bb468657b427148c493fa79bd8b5a274d61b18bf20ae6de60800a42e644n/aHeodo
2020-09-04INV_YMJ_090120_DTG_090520.docdoc 5ca09a4a4928ed469d1e0eb9dacd92fe2003d0551aeb380a0c662ced78d6fa25Virustotal results 36.67%Heodo
2020-09-04DOC_PO_09042020EX.docdoc 0fc7be2a9f6e2bd7d080d5d7f6f609dc5281c52980e7d2871d6c8658a9980e83n/aHeodo
2020-09-045666627555606888481620.docdoc 4ef546f286f47adeb1332f3d817a9aaf39d7ecc531a022b9791eb14fc9de79acn/aHeodo
2020-09-04DOC_PO_09042020EX.docdoc 0ccc2086f49d393bf08092469d40a557d9b68c3653500e5826e7479b69b84c6aVirustotal results 37.29%Heodo
2020-09-04INV_RNC_090120_OHD_090420.docdoc f8a398d3de41f9168cb0da770bf87c578c800d80be14d824aa4ec8eb682cdd56Virustotal results 36.07%Heodo
2020-09-04PO_09042020EX.docdoc f6176c22c0dedb27565ce220ac7b9815469179392bb92fbe785be55cd43400ceVirustotal results 36.67%Heodo
2020-09-04REP_PO_09042020EX.docdoc fbd8470b180c9fd6fb38a881fc1a42abc34fade3e3dd008244ca9b64a1504103Virustotal results 37.29%Heodo
2020-09-04INV_52087809271975321247.docdoc 4bdad9499437443baa2a71d4808d355930f5c949852bfec67101ae162a82c7cfVirustotal results 36.21%Heodo
2020-09-04FILE_DC2613041067MM.docdoc 4f6f3359cbdba3072a048313de3684b0c2aaeb1953ba5e0c00eb50559bc8895fVirustotal results 32.79%Heodo
2020-09-04DOC_PO_09042020EX.docdoc 5dd7cb7722d8fbc0dd1e2c9e3faa7f7c0839734b00d04ee5b4fb1a6c09ab77d5Virustotal results 33.90%Heodo
2020-09-04INV_20172648.docdoc 97bb1c59501002142251c3e28b9a7a28febcea71e35e8bec59f15296fff0f412n/aHeodo
2020-09-04REP_PO_09042020EX.docdoc 8e57b65aa7cd3ca879219c76cafd4a747337352074fab3ebce5e8e22e33f2303n/aHeodo
2020-09-0480776624.docdoc 1ecdc1acc0c1afdbecca2c795c66cf57d8e5ad15c009c5adb31d12cc84b534e6n/aHeodo
2020-09-04FILE_6837998317294085455332.docdoc cfe4b358946c9eef325f5aa66f80f7db38ac84fbd985117f1bbf039bba8a3d9fVirustotal results 33.33%Heodo
2020-09-04INV_JI1132846716CU.docdoc 4f02bbb52510398b52bbb5043442fc936342a2e54b716793fa3ae3dd1ff7730bVirustotal results 33.33%Heodo
2020-09-04FILE_I8ZRU2Y3W.docdoc 711a615e79799f24e918d2e3a293d0082ae23fa3851e91ee4957edf5ec2a13d7Virustotal results 33.33%Heodo
2020-09-04PO_09042020EX.docdoc e627d5445b586181f22e9b1c5890b35c8ec027b86c72566fb2b9a685c10727ebn/aHeodo
2020-09-04PO_09042020EX.docdoc 49ceacd943fae43b7a507e471b1ba55a74ca7d8f40e98306807ba3c5df38ff93Virustotal results 33.90%Heodo
2020-09-0411969761.docdoc 121bf03a4ab3c4b45e699994504ce2bc327aea720cbac22a23c8b3fbf220e5a2Virustotal results 33.33%Heodo
2020-09-04BDG_NW4975639900TH.docdoc 977366194325b4a4c3d8ad98446a5a9741e25eae89523b7e3d1b19696e92ef09Virustotal results 33.33%Heodo
2020-09-04REP_OU8546170122RF.docdoc f19b7c3502d8e70e4a41fc4676cf0ba7a1de47cc19b1e961be4ceb8511119637Virustotal results 41.67%Heodo
2020-09-04INV_11316858.docdoc db8ec99d40ab02d4ccd48a1c7b15bf169acb5b672dad9862e19dcb7f2805cde6Virustotal results 42.37%Heodo
2020-09-04FILE_LBI_090120_MPU_090420.docdoc bd6d04f3dae6135958f29487917cf501c1fa74ddb6efc7ce60d56f2d71551b26Virustotal results 41.67%Heodo
2020-09-04MH_527501549109.docdoc 58688db2a10ad53af04287f0d28ff7a01d056a48dcb725797d9c1f724d13ff2cVirustotal results 41.67%Heodo
2020-09-04CP_YG2370350772IR.docdoc 1348492e73a12dca11baf904fd17a8f5ec479e7a535229a1d05f753cb81dc49fn/aHeodo
2020-09-04FILE_AYF_090120_TXZ_090420.docdoc caebf73081556f7f37180936a87c070873e8e00e37acbf388f4ede0388fc3a57Virustotal results 41.67%Heodo
2020-09-04VE4948026793YS.docdoc c189d47783e317fad94867d3dda3a2cbbfba58dc3cda5f354b7f43b8d80daadan/aHeodo
2020-09-04INV_YN2320178553ZA.docdoc af94a807ad27af0322ecdce2f282be8b0d3037615f7d64915e271c5db9016d18Virustotal results 41.67%Heodo
2020-09-04DOC_L71HGAQLO11XHZ.docdoc d4e4779bc7a595b54aef09d0febad3b0412b7919c11c7d60fb1350f25f9d8731Virustotal results 42.62%Heodo
2020-09-04DOC_KG6150733410OU.docdoc 8aa2a0bba5e9b2f0f212f07d152f089fd10e8ca4485608178547f12196348c45n/aHeodo
2020-09-0458432050.docdoc 6213a6690c58fe48fb522c125a84a5b500e3e17bead81239b107cc1fd336ee1eVirustotal results 42.37%Heodo
2020-09-04REP_73928780396816.docdoc 3bd6f6031787d67083679740e8f556ee96066d268960bd6a6eb4b23260e39c17n/aHeodo
2020-09-04DOC_01481727.docdoc e9a5c8f81a3a669685cf322e54f602a882b6a8843070c10d6f5e53794379a8daVirustotal results 41.38%Heodo
2020-09-04PO_09042020EX.docdoc 2fd8aea8d3be3ae3fadc472dd4a766ac279f36154f6001d577dca10c7a77cbf5Virustotal results 43.10%Heodo
2020-09-04INV_PO_09042020EX.docdoc 628bd28e635f7fa6ca78c666cd219873a82d1c749dcd80ca407469194fb0064cVirustotal results 41.67%Heodo
2020-09-04DOC_PO_09042020EX.docdoc d31c8d01e8f0d1245651c9e0ccd611e4b98beca169cb0cffcd86377c20beb0e9n/aHeodo
2020-09-04UH3681252881LN.docdoc f0e89834b4906361a067ea23efa018387f75a2dbf921d028779c2ad15a19bf47Virustotal results 43.33%Heodo
2020-09-04683242912005690629.docdoc 789a71395ae5c9ea3e1613452abd8ed4927d9baf524868cdac935110b5f6f0feVirustotal results 41.67%Heodo
2020-09-0479143474116594.docdoc edc285fb056f220eaf6bd0fac0b68417b1a433e5a1da2fcec0c518277f1cbbd6Virustotal results 42.37%Heodo
2020-09-04HC3G3F92.docdoc bf8ba4d58a232e576705b37030a7df091539bafb0051f4f28032d54fe49c4c98Virustotal results 42.37%Heodo
2020-09-03PO_09042020EX.docdoc f00f58cdf16e19d21e63d94d8fc0be44f2ca6b18df7ca59cb6aed2bba4b5ff97Virustotal results 37.93%Heodo
2020-09-03REP_39818561.docdoc 2e96dcfe760df7dd6db7de3e4a51f33e031a3c1c8d3aa5545cfe92fa072b6189Virustotal results 37.29%Heodo
2020-09-03INV_30843091293477549130.docdoc bfb730608ea4de6d4d60292f703782a118e42cee42d7c0b1077e6c70b3fe5491Virustotal results 36.67%Heodo
2020-09-03BAL_922764589543.docdoc 079755626794412a025b4f2e13b8a7900345b513afb0538ee3f16c638878c800Virustotal results 35.00%Heodo
2020-09-03PO_09042020EX.docdoc f95add757971b2b4deabdb71a2aaaddf3ea0cd2562b6bf7c1db04298470477baVirustotal results 33.33%Heodo
2020-09-03J_BG4645520079ES.docdoc 825d35892bf6164d6fa8cdd39478abcfb25e0cecf57211e3590e1f8da424dc99Virustotal results 33.33%Heodo
2020-09-03INV_PO_09042020EX.docdoc 230c3ef0751309b7f9f857b34a278f477fa7c0d6caf0b48f86c23529bc0bb0ddn/aHeodo
2020-09-03INV_68988561.docdoc 05239277c07c3d58fafd2922235b02d502219aa1490b863913b43a4e8260b705Virustotal results 31.67%Heodo
2020-09-03REP_RLV_090120_WOX_090420.docdoc e47d26772180e4227d58ece4d0e756d2c6994239a8705c054b2e365a2864716fVirustotal results 32.20%Heodo
2020-09-03FILE_YU8167678124DO.docdoc 4f571caa06d699bbfa89b824c79287911daedd1ce930b97f76d74c6e9add4895Virustotal results 31.67%Heodo
2020-09-03FILE_PO_09042020EX.docdoc 70456cbd5863ba0a0589d9c519d57d90f5ff4276ddfea58d14f1ebdcfcb43ff1n/aHeodo
2020-09-03PO_09042020EX.docdoc 9e79dbd711c7ebd622260b14fb8315fea7af36f7a38875d1e886ef499aa0043an/aHeodo
2020-09-03BAL_4BME35UH1.docdoc 5710145452a25bb5a086a9d9a933a2c6d6070a1a3ae1ecd6aa9e1bbb27eb6168Virustotal results 31.15%Heodo
2020-09-03DOC_LDN_090120_NLV_090320.docdoc e56820ed5e83d51aa84705e88d0ece136340abd67783ea2c9b47b055cd7d87e8Virustotal results 31.67%Heodo
2020-09-03INV_1YCCICGSRET1V9.docdoc b83c28832cf0d088ce5af294e1bd9b4a1d89768f3834e6b138d99169740fae99Virustotal results 31.67%Heodo
2020-09-03BAL_340308581007811412748774.docdoc 2e0f7c9e58ec09204861e7c69cc2d77222c4f4a676e25f9ba845352ed010978fVirustotal results 31.67%Heodo
2020-09-03INV_79Q4MB3R4WD6.docdoc f50133085cf408fa42e3568d8466e35d6ae2ceffb26ec78fc25041eb5e5d7c93Virustotal results 27.12%Heodo
2020-09-03REP_95576905.docdoc b4c26da2003c0bbd1df1fc293d4306987e7c99ab75a8627baa832df44fc0abdan/aHeodo
2020-09-03BAL_21781146337916716.docdoc d7dccaf606ccac241264d06440a58415ea545b955e3e2538954c3ab166c541c3n/aHeodo
2020-09-03P_370461934354743400844.docdoc 723556f3311a7ad834bd33b581fdbd12a85a5072ba86226ac49fcddff4a0c6ebn/a Heodo
2020-09-03INV_LQ0370198016LR.docdoc 34e226cc8c168a37bf37367d93f797b8a5b449f27218a526e356a1da9deb245fVirustotal results 25.00%Heodo
2020-09-0325453131.docdoc 1c8354b2ffd08c377bb61eabec461f1fbe0bd8e5a46aabe288066a665e7551a0n/aHeodo
2020-09-03INV_RY4328505029QX.docdoc 03d9aeb5a4238c8cf02bf8908fb5eefc7f88cfd9effa918ef5d9dc66a2d8e59an/aHeodo
2020-09-03DOC_3884932824.docdoc 70d8f24daa7b00f5210bbb7109a7b9975a0ad05c280d207f3504d82411c1bd83Virustotal results 25.86%Heodo
2020-09-0397709844.docdoc 05d744bfecc28524feb8ee4af23a35f5c39bf39572c5a31992e8020e47389e50Virustotal results 25.86%Heodo
2020-09-03FILE_PZ3422703446UJ.docdoc 65a803b10719f7420467e6a66a5dbe9f9dea0a8dada387e1022e3e3c8340f750Virustotal results 25.00%Heodo
2020-09-03INV_ZFY_090120_NPO_090320.docdoc ef83bb095a3464475617dee0fa7ca6f291815a93a7c984191bcbd689b167cd3an/aHeodo
2020-09-03W_IIM_090120_UWF_090320.docdoc 45338f5c6ffcdefdec264c2679b5db4fc7a3f12fb7597ed56e964adb3be3d98fn/aHeodo