URLhaus Database

You are currently viewing the URLhaus database entry for http://architekthenninger.de/cgi-bin/https:/sites/f9EyE7fvfFRhw/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:452636
URL: http://architekthenninger.de/cgi-bin/https:/sites/f9EyE7fvfFRhw/
URL Status:Offline
Host: architekthenninger.de
Date added:2020-09-03 18:16:33 UTC
Last online:2020-09-07 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-03 18:18:31 UTC to abuse{at}strato[dot]de)
Takedown time:3 days, 14 hours, 57 minutes Bad (down since 2020-09-07 09:16:02 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-04List-20200904-452913.docdoc 9f003b20287110dbbea8826454c0666aee189fbf57cb907e8cf072dfe3829b18Virustotal results 19.67%Heodo
2020-09-04LIST 9998122.docdoc 924f9439383931103e48f1a8618e3b5b0dc6e56ba52261116659d5dd2bbc3050Virustotal results 20.00%Heodo
2020-09-04FILE 2020_09_04 756.docdoc bd6fabb51f037d2253220c55129be8125a21f63b579dd69ca9d82604f0208b60Virustotal results 20.34%Heodo
2020-09-04UNTITLED_20200904_8928604.docdoc 9c0798c3e8889889ef70b039545920afb91f1508144606704a1889286192bbf9Virustotal results 20.34%Heodo
2020-09-04Inf_S44879.docdoc 623ee20c1b2e5a53a0bbf6eb21f4b87cb0e6392e023f1e08267abc08c26e5bbfVirustotal results 20.34%Heodo
2020-09-04Dat 20200904.docdoc a253aef329c83499bce145efd31ae02cea4034649151064020f8db8f5e18901dVirustotal results 38.98%Heodo
2020-09-04LIST-2020_09_04-255619.docdoc 0cfb4e12de240822e52fa2d66698bdcfea13a994ccf47b7fa45634e0dfff294an/aHeodo
2020-09-04rep 2020_09_04 63301.docdoc 112b31f94d0408209223b109553273ff732fcd2f05b532c53d7ef7e4658bec80Virustotal results 35.59%Heodo
2020-09-04139QEU_0083759.docdoc 2fa57b312c1f1976a6e1237388978f53045e0bd342f5ecb46de197c6f2e4b5b8Virustotal results 36.21%Heodo
2020-09-04REP J55158.docdoc c567ea1fcaf384bfd2ad39165ea9b07fc04bfcbd325f7b3ecbe8c7329e65611cVirustotal results 35.59%Heodo
2020-09-04Rep_2020_09_04_A247683.docdoc 6811ea887aa1fb0b0947ae4c101b1bccd01e6be62529652d9a9c70a8879485feVirustotal results 34.43%Heodo
2020-09-04List_UH037.docdoc 6c877a456539164bd26f3616e98e39cc8ccf75c2003dec0016ec825d2d1902cbVirustotal results 35.00%Heodo
2020-09-04DAT_20200904_XYI99464.docdoc 8e8bb14d7c6964d84ad5016d6a63ec747295fc8aa0ef30846cff4e5fce56566aVirustotal results 35.00%Heodo
2020-09-04arc GPE866.docdoc cc4f7c86201d0618e4cc76f2030913800e738cb4a46496daa65e8f3507b3e12dn/aHeodo
2020-09-04inf 2020_09_04 N092002.docdoc 4caf5eb87b69a8e37c3524c776870ace2c3a187f6d4956a9cf441148c4dc75cbVirustotal results 35.00%Heodo
2020-09-04Attachments 2020_09_04 UK381.docdoc 5f507662f25de9c594d9c295a8fcd49bab262c3b83c2a470ca2a0303834b57d1Virustotal results 35.00%Heodo
2020-09-04FILE-20200904-F359.docdoc 10fa2f7a4aa981b8f214a0875399cbb3052961541bc988e45faa9ffa346689c3Virustotal results 35.00%Heodo
2020-09-04UNTITLED 2020_09_04 DCP7255.docdoc 0cac10e553ca0da14b7f6e1bf4c0586be92226b4edb922d9d7a79fd366142df8n/aHeodo
2020-09-04FILE-2020_09_04-Z751980.docdoc d4416a6ff0dbbf8a60d1df15030c7eeaf6be3883b9f4df72bd6312eb84caa672n/aHeodo
2020-09-04Rep 20200904 991.docdoc 00a7e0634054721fe9f4467f8843d3558c3694215da05f6027c8444786c55d21n/aHeodo
2020-09-04FILE_20200904_R609117.docdoc 482e43557c2b67031f8b9141f11291ebb6d9fa946193ab1287ef2010ab18b462Virustotal results 26.67%Heodo
2020-09-04file-2020_09_04-Y7787.docdoc 20f0a0ba4cd0dac615e918dd489d36a9dbe9da8eccd28074379ccb9297f44202Virustotal results 30.00%Heodo
2020-09-04Dat-20200904-PCO105814.docdoc ac6a5c2f72c10af857d73db327000d07f01f791fe6638c339362584fe1293a4fVirustotal results 28.81%Heodo
2020-09-04file-20200904-V76075.docdoc 10120ac722ecdac5928884225db5f204e4e339196f5a48027e3bd623cb105542n/aHeodo
2020-09-04DAT_2020_09_04_135.docdoc ba82dfa2da1757e5cb6ed6f9bb2d2c820d055dbab664b798475fd4a94d8476b9n/aHeodo
2020-09-04rep_2020_09_04_I213500.docdoc 7160ce21f102d1b919bee53947094d83fd11055b2eadb90b11d5923498d504c3Virustotal results 29.31%Heodo
2020-09-04File 20200904 O900.docdoc 2c779ddbb7d854268e9ac9620cb12744c4ddd74e9763fd27acd34113605e50e6Virustotal results 28.81%Heodo
2020-09-04UNTITLED 20200904 S038602.docdoc 794287d8176f07c6943cc4ca303d03de2ec84b37ff7262e148c0451087177c86Virustotal results 27.12%Heodo
2020-09-04doc_20200904_ZEN00359.docdoc d0faa29d011a7abe3a5e2d03346780cebd6a5dc766e52241014b96e58b4a99d7n/aHeodo
2020-09-04REP_20200904_J917537.docdoc 006573a1a4acf93e1940fd56fea0e62fa51082d6e0209689974721fc1b3f9f7dVirustotal results 25.42%Heodo
2020-09-04Arc_2020_09_04_ZMI290433.docdoc 6ba1180f37e95dd4238a52435a56d2cb1483ed9a34af53b44e0fecd5863244ebn/aHeodo
2020-09-04UNTITLED-20200904-151201.docdoc 2e6992209a57f96c89556ed36c0e872bf312cc0e79e673c6888fe3b263c1ce06Virustotal results 23.73%Heodo
2020-09-045017M-20200904-843687.docdoc cb6f8268789cd833ce1b0c40a720e8f7b6bb9ae5c3d8cb8ae59e66391c81f606Virustotal results 20.34%Heodo
2020-09-04ARC_20200904_129403.docdoc 0b32acf0a3322fe655fc8ea7251ece0b782a819ae84d5819cbd4f1e2ce7fb031n/aHeodo
2020-09-04Arc-20200904-8877934.docdoc a3a6ac7d192be2e1805c8322a5902acff68c4ed635490764dff2be34287a7b6fVirustotal results 27.12%Heodo
2020-09-04E31393.docdoc eae2a3c4e7a60e5476ac2c92926540cf3c70568a318f1a20a996ebeb53e8749bVirustotal results 26.67%Heodo
2020-09-04HF2015_2020_09_04.docdoc 2ccde651fa61c7cd21ea8fde6ff8dbbd3945693f2e19a1ee1feebf25294199cfVirustotal results 26.67%Heodo
2020-09-04Rep_CXK596223.docdoc 260fbc9e9fe88d706ff79ffa20f96634ba7aecc723f8c8a0aa23b078a16455c4Virustotal results 27.12%Heodo
2020-09-04dat-927.docdoc 8a45d8a55c131c2f4b1eaa589e8fa23363814399c07e65ee602957fa88d6a976Virustotal results 26.67%Heodo
2020-09-04LIST_20200904_C85918.docdoc dd91e0f54696016ac33f44dbbabf15a089d0d2685b7e468529013e86c9522a99n/aHeodo
2020-09-04Attachment_1348753.docdoc 8025b46a7ad5a9b8f354866d31c2e8c41c319004e2f26825a94dea7c75465df8Virustotal results 27.12%Heodo
2020-09-04Attachment_YOH095.docdoc e71c38eb1939116c282af23aec1b2cc64e8a452a766d9fc5b7274d970ac57827Virustotal results 24.14%Heodo
2020-09-04doc 2020_09_04.docdoc 53919179b57227860a2520ddbfa45a9e7623735668070e5475b5cee6e42311aen/aHeodo
2020-09-04dat.docdoc 5c3e085b8dc0398471b039b43d850dc0dd50acd421707eb3296026e53b65d5a9Virustotal results 23.33%Heodo
2020-09-04Doc_1738467.docdoc edf870edb55e5142744c18f6834fdb1518565ccaca223c5375787ae927ef4a3eVirustotal results 22.41%Heodo
2020-09-04ARC-Q2272.docdoc 6e80f8c0bcada5875b9aeb8c66983961fcf02d5d34173f58dc2a8834db676703Virustotal results 23.33%Heodo
2020-09-04Attachments Z449.docdoc f9ea09e0474333e9c3d7ef368863f79db7654109197ee33b969b73757bcbf091Virustotal results 23.33%Heodo
2020-09-04CJ9636_20200904_97323.docdoc bbb72c4df6c036dd3b187c18c6ba7bf547ed934e658bdcd5d3c23d14d244c2eaVirustotal results 23.33%Heodo
2020-09-04arc-20200904-350168.docdoc 273cf35f21fb5cb9162d3d4a667f96b5f2b93c16327304b5a21c1d51448e0e78Virustotal results 23.33%Heodo
2020-09-04U22978-20200904-GU50148.docdoc 8b8167f9f9f0fb034acba8cfca499300531ee06a2c9ee705d976d007bb636f21Virustotal results 21.67%Heodo
2020-09-04Inf_2020_09_04.docdoc d38918707adc1b43963df18c7c3483e35cb906f58221fbe54adcbf770706feafVirustotal results 21.67%Heodo
2020-09-04mes-QH6321.docdoc 2be118d48f3e89cf53df13c43a01cdea40d8ffc9ed68e343636386badff6200dVirustotal results 22.03%Heodo
2020-09-04file-20200904-2289.docdoc 987e6058bcbb6e6830567bcbf092de202f9fc61bc7b1a6f282f6ee741685e442Virustotal results 43.33%Heodo
2020-09-040015H-20200904-0811.docdoc be658261ea85360800d4b052f23fd96dbadfe7171d308a38dba22b5fe4efadf0Virustotal results 41.67%Heodo
2020-09-04Dat-TBX1810.docdoc d310bc1324e7bd2e09dde5482cc4390a66257737f2da4ce7c2bc2f05d04663d7Virustotal results 42.37%Heodo
2020-09-04rep-2020_09_04-8960810.docdoc 4abe421f4bf82588ca7772c685416eab8133054e1ae9fcedc245167e272b6105Virustotal results 43.33%Heodo
2020-09-04Attachment.docdoc 933a5acf70c2c8f24a3d359a43ab898e556cdcae740ddcaf33acbc356ae1d9d5Virustotal results 38.33%Heodo
2020-09-04inf 20200904 0666.docdoc 0ff1c95a7d850d74903fb10610c4d99e54fd900d51cad0f2deda82e1122f403cVirustotal results 40.00%Heodo
2020-09-04Untitled_20200904_76427.docdoc a7f7db7e743de3993fe73005b54d739c61d8b922446cf434ecedcca82c63e922n/aHeodo
2020-09-04INF_20200904_Y391306.docdoc 05558fbc6250f15d45880b5ebfb3798d415fad3e982b503fd6b61e658d902aaeVirustotal results 40.68%Heodo
2020-09-04Attachment-2020_09_04-KBS7162.docdoc b928a4ea1aae65b1c3ee2634f0d4d3bba7d8f0d7bd647c3befb30ba0f8b6a1abVirustotal results 40.68%Heodo
2020-09-04UNTITLED_2020_09_04.docdoc 027746c91762be2cd5ecdd301acedfce96399a7961478130a7c6e26d2e47ea3cVirustotal results 40.68%Heodo
2020-09-04inf-7498.docdoc 6c3530951ad2bde0a96b5bda4698fb3638e360f5176d3f6aa4f9ea0570a3f45dVirustotal results 40.00%Heodo
2020-09-04Mes_2020_09_04.docdoc 9a9c96896e784dc4ac0ff44a3052d2ff2d7cb744fcf3255981f30894e95d6c42Virustotal results 40.00%Heodo
2020-09-04Inf 2020_09_04 K935.docdoc 352ed1583217d011b59331d9df7069fb05bffbee3823ffe2603a5cd74f16b850Virustotal results 41.38%Heodo
2020-09-04LIST THJ855.docdoc d771bd380512ca62d90490660909fd428aa582bd97ee49d263deaa6334170f65Virustotal results 40.00%Heodo
2020-09-04inf 20200904 MB520.docdoc cbf75dba4c6b4f8cbcfb647112f9a0a4f8efb293526aea73ffebcd800379e08fVirustotal results 40.68%Heodo
2020-09-04doc_2020_09_04_EA203671.docdoc 1fa1544383bbda2ef984f9c0a8a1e3ec9c37ede4a0e897d8177d7e92d3809ea1n/aHeodo
2020-09-04list 9690.docdoc 9cf29b7fcce905e807fd1e4493af36f7f0e8618912601f1a85cf52af6d38d6b8Virustotal results 40.00%Heodo
2020-09-04DAT-7876719.docdoc eaab7e71c3da44a79d28d2bef0582eeadb430df7d20febba2eed46323d6dd3eeVirustotal results 40.00%Heodo
2020-09-04ARC 2020_09_04 21680.docdoc daa812c082d4d470cfad19c540bfc6ea7adbcd3859273af885dda81d2722e1e1Virustotal results 40.00%Heodo
2020-09-040576967_20200904_16622.docdoc ee7586771fa02df0ef18b9f88c3bb45135371e5f7a16f6304b1b500a99a0ca6eVirustotal results 40.98%Heodo
2020-09-04557K_20200904_KK72307.docdoc c9760ed3a6abb462e2d429280f83f0e912114c2b1923fa1fec74b3ee350afa78Virustotal results 40.98%Heodo
2020-09-04Attachment-2020_09_04.docdoc 0bed9ceb6c02ac01c38804705e397d72379abfba81c416c2deca29e08e32bd54Virustotal results 40.00%Heodo
2020-09-04inf_20200904_RB176.docdoc 40e46d87637cea2a6a20ca199855bdf702be9effdbbe4114bb50c812d1de9d4bn/aHeodo
2020-09-0419923EZ-4933201.docdoc 945f9c6c84eff86e098fcb02268e716fb80f5c6fa8a5e64e08175a306d3c0a2bVirustotal results 41.38%Heodo
2020-09-04Rep-2020_09_04-434.docdoc 479a6416cfb665d2d0f0b6e39d11282a0d31d799d87898d50f066e8d564808f6Virustotal results 36.67%Heodo
2020-09-03INF-DMS110066.docdoc 2ce02bed93b32642de024d52e2b8b0cdfc0716e8a0d1e617b67cdf14c195583eVirustotal results 35.00%Heodo
2020-09-03LIST-QLI298727.docdoc d313ce8483aa86f33b4fb8f8eaf32cc9162fea1ecd980baf5fb9ae5ba1e2024cVirustotal results 33.33%Heodo
2020-09-03TZI059-20200904-R759.docdoc 5870705910f4290f13346efd3c9113483974723cc840cd330844efa6f5b3be19Virustotal results 34.48%Heodo
2020-09-03mes-20200904.docdoc 939b166130d34042d2f4e49e43067b7670e409ae8dfe5e7d675160a838878230Virustotal results 31.67%Heodo
2020-09-03MES.docdoc 10d9f95cbaae87c8e1ee5a2d4ed21022d9a419859eb29f5cb055497a345006a1n/aHeodo
2020-09-03LIST 2020_09_04.docdoc eb96e6409fa3b1e2510201d45d3a629be387c1d50ca84645b13d0614702d7c62Virustotal results 30.51%Heodo
2020-09-03mes_788.docdoc 184ba331ed727480fd65743bfe0cf1489eca3b4d49b68a31b970ee96288c9484Virustotal results 30.00%Heodo
2020-09-03FILE 20200904 V6063.docdoc 657e6e8ae1d0a5dd81e22e4c5966596510d091f0621e520d9f85c46ddad6f3b2Virustotal results 30.51%Heodo
2020-09-03INF 2020_09_04 AW015168.docdoc eff6ba195fc7d083d41cc3c5d0bf90588ba4de22599bc9adeb053e04f0f4d55cVirustotal results 30.51%Heodo
2020-09-03REP-2020_09_04.docdoc 4f5a405c856619a4ed5e618fd60249ffb0ec9437f94ba328f235c14375271a7bVirustotal results 29.31%Heodo
2020-09-03Doc.docdoc 6e09b7ea9721f1af117d11158633cf55d038617f7ac19748f9280bc43c46ecdcVirustotal results 28.33%Heodo
2020-09-03dat 2020_09_04 VK7765.docdoc 42ccf0abf046317f8dd2f1b447cbc691402c7d009419cbaa98148c4812f9fe14Virustotal results 28.33%Heodo
2020-09-03MQ75688_2020_09_03_815.docdoc 738f1619961898e3fb587f7ddf12662949f29da84a33fbbe505ad0fd3c42dbb8Virustotal results 28.33%Heodo
2020-09-03359XFE_TJM536033.docdoc 7e4f4220d0928275cb69116e38929352184f121750af357692c93335665fbe02Virustotal results 28.33%Heodo
2020-09-03Attachment_2020_09_03_A444.docdoc 349cb26e54b95d8b8902d5adcb96d1901780dc4b79c294e28b4c6cba21776a8cn/aHeodo
2020-09-03List-2020_09_03.docdoc 40ec353665d839a0fcec8f7a4d4ecd3b413df4f2f60186bf1adc7101a408a6e9n/a Heodo
2020-09-03arc 577027.docdoc c6100db3ca252938aefab6362140d6d30f93610ca723dc5fcc71f3caad117317Virustotal results 28.33%Heodo
2020-09-03File_20200903_FTQ06438.docdoc 509ecb6a2610738956ebdf8a885bdb413fe84bd8143e1012a1fb4a4e14333d19Virustotal results 22.03%Heodo
2020-09-03LIST 2020_09_03 M27052.docdoc 11a48462bad54a423a4107a55186e4d10c0ec205bd1ca12673171f08fdfba500n/aHeodo
2020-09-03FILE-4779.docdoc dfb1031ce56f9f39a32ed410629d9f46e753b4e0671d121c063d52a7a23785f8Virustotal results 23.73%Heodo
2020-09-03arc_2020_09_03_4712465.docdoc bc4ee7e49e05ab462e199c1a2635de8de23b9ca32d8c7634cc4902f425967e22Virustotal results 23.33%Heodo
2020-09-03REP_20200903_7773855.docdoc 79e5b3615d976f3fc68de6ea32f3fe71268405a19d5101f33e4428f333abd421Virustotal results 23.33%Heodo
2020-09-03ARC-20200903-4802.docdoc 5df80bddf0952d4068c9d2bdab9045f148de414681c96277199b4b06253b1cacVirustotal results 21.67%Heodo
2020-09-03inf-20200903.docdoc 1695d227dfe87081d279c0a10163f9230da66348eda90255188700c874414c8fVirustotal results 21.67%Heodo