URLhaus Database

You are currently viewing the URLhaus database entry for https://wolfgang-rulfs.de/cgi-bin/http:/browse/MdKP5k9q2hUsyj5OD/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:452641
URL: https://wolfgang-rulfs.de/cgi-bin/http:/browse/MdKP5k9q2hUsyj5OD/
URL Status:Offline
Host: wolfgang-rulfs.de
Date added:2020-09-03 18:16:33 UTC
Last online:2020-09-04 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-03 18:18:16 UTC to abuse{at}strato[dot]de)
Takedown time:16 hours, 0 minutes Good (down since 2020-09-04 10:18:44 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-04DAT 2020_09_04 K050231.docdoc 6cd410ea9e6acb847aa11305ad2f523edf3d087d6395719c5959c4ed434485e9Virustotal results 26.67%Heodo
2020-09-04doc_20200904_Z26686.docdoc e514ee40aaf58363f83b55c5bb9e01e591be5d5fbea0402363bfe659405e331aVirustotal results 25.00%Heodo
2020-09-04arc.docdoc a284f02a46598731799de94974fa3f27fe19a07877156a967e0112e1910a1eeeVirustotal results 23.33%Heodo
2020-09-04FILE 20200904 30603.docdoc 0333bff5ce7bc15e980682c145f4a161838a0772811528a5910da02b14a2431an/aHeodo
2020-09-04mes_GFY9232.docdoc 6e80f8c0bcada5875b9aeb8c66983961fcf02d5d34173f58dc2a8834db676703n/aHeodo
2020-09-04File-2020_09_04-VC94979.docdoc 52253d5cc807567a8465a7cf37b1101897ed3c19596c3261041ce32593e2f467Virustotal results 23.73%Heodo
2020-09-04Rep-2020_09_04-FLT144.docdoc 566612bbb46f6c6457676b10f1eada04c5385d9b4b7ddac7b97d6ba612793e8fn/aHeodo
2020-09-04REP 2163778.docdoc 8dbc5aa0e47afc92f01ac0be897f8cfb5650e25857c1c7bdaf605dfc90a0d5f5Virustotal results 23.33%Heodo
2020-09-046794-JV52833.docdoc d38918707adc1b43963df18c7c3483e35cb906f58221fbe54adcbf770706feafVirustotal results 21.67%Heodo
2020-09-04INF_1133179.docdoc 2be118d48f3e89cf53df13c43a01cdea40d8ffc9ed68e343636386badff6200dVirustotal results 22.03%Heodo
2020-09-04Rep 20200904 OVC59090.docdoc 59dca4cb54c947789abfb907c7c1ac28d15ad9883a693d5d3b56654c75bd5d8cVirustotal results 21.67%Heodo
2020-09-04rep_LA13050.docdoc 4e3917d545fe670b0ea8dd1cf91701595c3cbe5ab87b5c53a826514778bad6f6Virustotal results 43.33%Heodo
2020-09-04Mes 20200904.docdoc 44bd0a16a6f05906c4a20b9fdb23d798223e07db04cdbc4a4fb1adc219679627Virustotal results 38.60%Heodo
2020-09-04list_20200904_QZP745.docdoc 4abe421f4bf82588ca7772c685416eab8133054e1ae9fcedc245167e272b6105Virustotal results 43.33%Heodo
2020-09-04file_2020_09_04_966.docdoc 03cb9a738ad3ba7f5744d092532b2e578e9ade9b376af945fca5faf115b06c4bVirustotal results 40.68%Heodo
2020-09-04Mes_2020_09_04_032.docdoc ca1b62ba1f6df4e6e7ee6b0ae0cdbf41303c29e916602d32ba15df885ce8d527n/aHeodo
2020-09-04871894 2020_09_04 561166.docdoc a7f7db7e743de3993fe73005b54d739c61d8b922446cf434ecedcca82c63e922Virustotal results 40.00%Heodo
2020-09-04Untitled 20200904 M45984.docdoc 05558fbc6250f15d45880b5ebfb3798d415fad3e982b503fd6b61e658d902aaeVirustotal results 40.68%Heodo
2020-09-04Arc-20200904-F80815.docdoc b928a4ea1aae65b1c3ee2634f0d4d3bba7d8f0d7bd647c3befb30ba0f8b6a1abVirustotal results 40.68%Heodo
2020-09-04doc 20200904 848.docdoc 7f52e258980628fde30f218b911a2e930d0bb7245dbe6093e35eaf7e61c3e688Virustotal results 40.00%Heodo
2020-09-04rep 20200904.docdoc 886d63b614006458acc2c30f3864476e896c318a90248243fabf63f0e992f712Virustotal results 40.00%Heodo
2020-09-04INF_20200904_56379.docdoc 4808444c5d5d505fcdfe5814913d92dea2c41dbd68018cff2817cabd134441a6Virustotal results 41.67%Heodo
2020-09-04Dat-2020_09_04-882742.docdoc b25414b4b759b6517cfc1ce36e58d10a5aac59912adc8230095f50f6659af778Virustotal results 40.00%Heodo
2020-09-04Dat 20200904.docdoc 6fb9ee26a4d1cd44041b63fcb2e65e6a4e4b61ca73d4e847d56d47076abeb32eVirustotal results 40.98%Heodo
2020-09-04Attachment 20200904 318.docdoc 113f271d566b508aed976158e057211703fe30c314960665466fe58d9e08e50bVirustotal results 40.00%Heodo
2020-09-04Rep-2020_09_04-24262.docdoc 3b921395ead4db8129425113780d7d7391058b9a70f1bfadaa36d56c48de30edn/aHeodo
2020-09-04Untitled.docdoc 595e8a24f2e5e51e56138296f7c6cd58e709e8f532dbacc38ae66f462e0e071dVirustotal results 40.68%Heodo
2020-09-04file-CZD625089.docdoc ed80367a721e5c5ea3048c5688d5b8446bfed75afd70f06932dd66e94a437a93Virustotal results 40.68%Heodo
2020-09-04inf_VQF134.docdoc eaab7e71c3da44a79d28d2bef0582eeadb430df7d20febba2eed46323d6dd3eeVirustotal results 40.00%Heodo
2020-09-04DAT-2020_09_04-G726.docdoc 7eba76e504a537e3600311969b0b159744d8f78d48891c9f06dfd9aa9798b9e3Virustotal results 38.98%Heodo
2020-09-04File_20200904_MDL147318.docdoc ee7586771fa02df0ef18b9f88c3bb45135371e5f7a16f6304b1b500a99a0ca6en/aHeodo
2020-09-04MES_20200904_923.docdoc 69e91274a22bb98b54013be9509ad757c17fd9ab44d80c5a8585ec639ea6f04bVirustotal results 40.68%Heodo
2020-09-04MES-2020_09_04-VPP657469.docdoc d6da8adc7df4680bdfe56aded8385d20e63b8af6ac83ff2abdccf2910232809bVirustotal results 40.00%Heodo
2020-09-04dat-20200904-125.docdoc 945f9c6c84eff86e098fcb02268e716fb80f5c6fa8a5e64e08175a306d3c0a2bVirustotal results 40.68%Heodo
2020-09-04L6623-20200904-317.docdoc 39f12f314a1431044af9b7061ac6b7b2d68e29927ba8650ecfd4a5a41337922cVirustotal results 36.67%Heodo
2020-09-03QP479_20200904_736.docdoc 62f2e2f1e282bf930eaf8a31d9904112fa33e4c5bcb2d14f0efc91df5351ae54Virustotal results 35.00%Heodo
2020-09-03inf-20200904-V785688.docdoc d313ce8483aa86f33b4fb8f8eaf32cc9162fea1ecd980baf5fb9ae5ba1e2024cVirustotal results 33.33%Heodo
2020-09-03Arc-2020_09_04.docdoc 5870705910f4290f13346efd3c9113483974723cc840cd330844efa6f5b3be19Virustotal results 34.48%Heodo
2020-09-03Attachments_2020_09_04_21295.docdoc 198716bbb4d8d22a81603b2d905312ceae4b0f8df0a17ccda349c44ae024011bVirustotal results 33.33%Heodo
2020-09-03Rep 20200904 IT487.docdoc bf1b9f0a76233f9cc5983b3b48fad1f4edff9c94e363dbab7f91cb8050ab315fVirustotal results 31.67%Heodo
2020-09-03dat 2020_09_04 A0200.docdoc 10d9f95cbaae87c8e1ee5a2d4ed21022d9a419859eb29f5cb055497a345006a1Virustotal results 30.00%Heodo
2020-09-03ARC-2020_09_04.docdoc eb96e6409fa3b1e2510201d45d3a629be387c1d50ca84645b13d0614702d7c62Virustotal results 29.82%Heodo
2020-09-03Doc-AQ28700.docdoc 184ba331ed727480fd65743bfe0cf1489eca3b4d49b68a31b970ee96288c9484Virustotal results 30.00%Heodo
2020-09-03inf-JDC15034.docdoc 3c9f9e08bf1785b8c6c1fed306eb5e322fb63ea73a8d01a9fc83af4006d64008n/aHeodo
2020-09-03File 2020_09_04 697713.docdoc 1acd260acd4f2daddcbb52022a1e342445482a1f4fbcec46d0351b82d0eb8d45Virustotal results 27.87% Heodo
2020-09-03UNTITLED 20200904 0718.docdoc 6e09b7ea9721f1af117d11158633cf55d038617f7ac19748f9280bc43c46ecdcVirustotal results 28.33%Heodo
2020-09-03FILE R3503.docdoc 42ccf0abf046317f8dd2f1b447cbc691402c7d009419cbaa98148c4812f9fe14Virustotal results 28.33%Heodo
2020-09-03UNTITLED-20200903-K98600.docdoc a0c7d7125079c31ddaf2b7b1955bf7992183d25c6c03b5d81ce1a17ff8ad612dVirustotal results 28.81%Heodo
2020-09-03Inf_2020_09_03.docdoc e5115c3e86dd21ece011508d8b1b576b6b5b38eefde8dea14cdaac4a6a06f4e0Virustotal results 28.81%Heodo
2020-09-03rep-2020_09_03-H61765.docdoc e727d2e04c5bc6f27e4a73ce18b8074fc192758dc0abaed60480c0f1dcbbaa0bVirustotal results 28.33%Heodo
2020-09-03file-2020_09_03-342208.docdoc 3898915681d8baa76a674cb8386bd9a88f2b8b3883e5db87f3c43e6eda4c08d6Virustotal results 28.81% Heodo
2020-09-03Rep_8940908.docdoc 8271c25e365343d937c375bcf822595d5cc823433d3d01b5a24874d1bcd89f9fVirustotal results 24.14%Heodo
2020-09-03inf-20200903-X594112.docdoc 11a48462bad54a423a4107a55186e4d10c0ec205bd1ca12673171f08fdfba500Virustotal results 23.33%Heodo
2020-09-03FILE-B7144.docdoc 87c33ae0a712785fde7c483d86dbb964ab1db6cb7a0050ea07e5da240dba44b7n/aHeodo
2020-09-039239992-2020_09_03-78256.docdoc bc4ee7e49e05ab462e199c1a2635de8de23b9ca32d8c7634cc4902f425967e22Virustotal results 23.33%Heodo
2020-09-03File-20200903-UU89532.docdoc af81984de14d081c2a5d015a4266dd625fd7eb4153810cb71c2ba3e9dbf382ddVirustotal results 23.73%Heodo
2020-09-03ARC_20200903_22076.docdoc b577e4ea45a40a29dcfff06e9bf6917dc3d3475dad04807b10bfb0c565d014bdVirustotal results 24.14%Heodo
2020-09-03MES.docdoc 75e21b06b155b76eeb61cf02a1e3d2ed091b180853d2c6dba9aa7f4afa014aa8Virustotal results 21.67%Heodo
2020-09-03WB44781_20200903_I2141.docdoc 1695d227dfe87081d279c0a10163f9230da66348eda90255188700c874414c8fVirustotal results 21.67%Heodo