URLhaus Database

You are currently viewing the URLhaus database entry for http://stoepfer.de/cgi-bin/http://sites/TZTKiEtZYzOTsADBr/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:452744
URL: http://stoepfer.de/cgi-bin/http://sites/TZTKiEtZYzOTsADBr/
URL Status:Offline
Host: stoepfer.de
Date added:2020-09-03 20:49:33 UTC
Last online:2020-09-04 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-09-03 20:50:05 UTC to abuse{at}strato[dot]de)
Takedown time:22 hours, 15 minutes Good (down since 2020-09-04 19:05:06 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-04147324.docdoc 95718b95b1e8732ffb58a93557e44c7e7f99a0dec4ab200ad2ffa83e6b455780n/aHeodo
2020-09-04LIST 2020_09_04.docdoc 380c46aa7a6ebfb32b4e005930aa368ca90386ecf02e2587a0c6f035569df404n/aHeodo
2020-09-04Attachment 83271.docdoc 6811ea887aa1fb0b0947ae4c101b1bccd01e6be62529652d9a9c70a8879485feVirustotal results 34.43%Heodo
2020-09-04Y30875 Q18534.docdoc 8460a5fa5f04096785b86ecb12c7eb2118f8d5032be10ecd0bd9b49e728afaccVirustotal results 35.00%Heodo
2020-09-04Mes-20200904-DC97233.docdoc 1aa05e276c9fc45289cfe940287e1141128258a93052f3ac4d5d7b78c9b0f15cn/aHeodo
2020-09-04S9545 20200904 P569.docdoc c9b3d60eb5016eb7958189110cbe77208b4099ca5f9f4b71d6170a263905e07bVirustotal results 35.00%Heodo
2020-09-04doc-20200904.docdoc 5da16c9f1af8807ac20e6adce0424c7e8fb78d5a4187584a3587876c2affb1e7n/aHeodo
2020-09-04Dat_2020_09_04_Q423.docdoc 74f31456977a691fa6c56243890fd997e0ed0e2793ec4b6e1df8e8a0c93a22cfn/aHeodo
2020-09-04Untitled.docdoc d21d369a575521b056524693121464f2aa51cbbc0790a6b01069bae6bb4dbb32n/aHeodo
2020-09-04REP-2020_09_04-QKS7254.docdoc 791553d28205023fcec3eb1d7b8e89736e5f99b90e7e8a1ddfa4452f1897a74dVirustotal results 35.00%Heodo
2020-09-04Mes_20200904_GX893.docdoc 2de84dc5866a028c50d2092b83ad65d0377d6419786fcd9b87c75a624600ebcfVirustotal results 34.43%Heodo
2020-09-04List WPD1552.docdoc 9fcaf4513c97d7fc9141d719481fcd7479ef7213701221d18a3755a7035e4d3bn/aHeodo
2020-09-04Arc_2020_09_04.docdoc 60417a3fac59e91bb0031c7e6fc97a808021296c159f11631bc3ac3e34ec5603Virustotal results 28.81%Heodo
2020-09-0478276.docdoc 088de2c93ca2a5d1c4e17cab469aa2ea619a58e4c03c744b338f74787e4dca86n/aHeodo
2020-09-04DAT_FX794696.docdoc 9b5118c972be1fdccab96caaa3644530d5a73cefcb8b7a048497c43b3e1867dan/aHeodo
2020-09-04Rep-20200904-48465.docdoc 9c82f57cbccf6ba04020fd7828aff371796a2f69e908f5ecf8c25d921a13abf6n/aHeodo
2020-09-04Mes 20200904 DD9339.docdoc be6a2393d8d58557a21737649e0977851d793862f1b80f1d27a1ee2ee70b3154Virustotal results 30.00%Heodo
2020-09-04doc-20200904-TRC9455.docdoc 1a2267bf7b914a9de28507fa9a91a5ae83a2441428bd581f461b67abc2e84423Virustotal results 26.23%Heodo
2020-09-04LIST-20200904-YY710881.docdoc 07a163e438bc23f4ba37b5191bd5bd2134b87c7fe63924af48c3601f222bf676Virustotal results 28.81%Heodo
2020-09-04doc-2020_09_04-171216.docdoc fe8b0f5cf9354ea102596195bbbf5947c2103a393c585873166112b4734d3169Virustotal results 27.59%Heodo
2020-09-04MES-2020_09_04-J27447.docdoc 1c3e3bdb04dc52f5610c1079242b43b61f136a2a328a6813fe492e4092cd6e4aVirustotal results 23.73%Heodo
2020-09-04arc 20200904 R98244.docdoc 4f1efb479047eb160b579acb41f5f020b5c98546b837d8f74862d98ffef4840cVirustotal results 25.42%Heodo
2020-09-04dat-2020_09_04-556944.docdoc 22541ac301b5c8fdf15f74cc06df0c5a237bfe5593f910699acdaa3ae869edd9Virustotal results 25.42%Heodo
2020-09-04ARC_20200904_BTX389.docdoc 92292a49939cb6ff5b8d8da77b4c5a898f4d833bbf5ec9fc2ec997e254c91e35n/aHeodo
2020-09-04ST8846_A5663.docdoc 2e6992209a57f96c89556ed36c0e872bf312cc0e79e673c6888fe3b263c1ce06Virustotal results 23.73%Heodo
2020-09-04Doc 20200904 1175547.docdoc 7c92d272756fdd2e928979df95e5559a85fac4b8fdd04cb6c475bd102fadebd1Virustotal results 21.31%Heodo
2020-09-04KMZ04591-0389.docdoc 5e01f376491f37354db3791f6ec1c53893e852d5874971655f2b8c0c9bfa35cdVirustotal results 20.34%Heodo
2020-09-04List_20200904.docdoc 0b32acf0a3322fe655fc8ea7251ece0b782a819ae84d5819cbd4f1e2ce7fb031n/aHeodo
2020-09-04Arc_20200904_22497.docdoc eae2a3c4e7a60e5476ac2c92926540cf3c70568a318f1a20a996ebeb53e8749bVirustotal results 26.67%Heodo
2020-09-04LIST-45664.docdoc 8c4a8a1c7d4ddbfd0b727a5f169b6bc78e7997fd2b0947299d663a215bb3a9d9Virustotal results 27.12%Heodo
2020-09-04Dat_2020_09_04_PQ44943.docdoc ca900ae40752b2a78feb23b6d8c3f29f674621fc5a6d90b99c3f2f2c6efbe075n/aHeodo
2020-09-04DAT 20200904 4419.docdoc 3707b5de1e09741a173a932af10c341420b9303dd71c5e228345a8a9076edc11Virustotal results 27.12%Heodo
2020-09-04REP 2020_09_04 J50878.docdoc 4749d3ccec3b04f83f45466cc89c6ac00f1c8c24c60c3784c38e9b478dca0aaaVirustotal results 25.86%Heodo
2020-09-04Attachment_2020_09_04_W413617.docdoc 9da9e2af16844a3b0fc49e496b6a88773ebb122ac1471d654d696c4417c6c5d7n/aHeodo
2020-09-04REP_2020_09_04_4612174.docdoc 53919179b57227860a2520ddbfa45a9e7623735668070e5475b5cee6e42311aeVirustotal results 23.33%Heodo
2020-09-04dat-2020_09_04-AZ39917.docdoc 5c3e085b8dc0398471b039b43d850dc0dd50acd421707eb3296026e53b65d5a9Virustotal results 23.33%Heodo
2020-09-0426303503 2020_09_04 K575911.docdoc bfc004f7ac8d0c2e241dc8086e3e58fb542fcc47b5114ab614fa893199328acfVirustotal results 23.73%Heodo
2020-09-04dat_2020_09_04_PVG978375.docdoc a44af5b41212998f1fbe2710a20194236275ea73fe20d136c36ab549738d00ean/aHeodo
2020-09-04File 20200904 6420116.docdoc bbb72c4df6c036dd3b187c18c6ba7bf547ed934e658bdcd5d3c23d14d244c2eaVirustotal results 23.33%Heodo
2020-09-04Mes 20200904.docdoc d9c975b6db619552db6df9461b3c0947dbeb829698591386f2c86994a414e005Virustotal results 23.33%Heodo
2020-09-04MES_YDT963766.docdoc a609f7e20b48bdd41568b99bce2cb2882716da265eb0b2da0207bfdccee6288fVirustotal results 23.33%Heodo
2020-09-04UNTITLED-20200904.docdoc 1b9de5149166550851ee26d1ff101cb636ab70e0162faf31397c1b3d9efb8ac5n/aHeodo
2020-09-0408814580 20200904 0880073.docdoc b73bf6b8c71126f090ffbab7009d10d3841a42ef4ea96a8c2450a8179a8df736n/aHeodo
2020-09-04doc_YAY0736.docdoc 987e6058bcbb6e6830567bcbf092de202f9fc61bc7b1a6f282f6ee741685e442Virustotal results 43.33%Heodo
2020-09-04Rep-2020_09_04-3974.docdoc 425e52461ebc8d48bfd618d18286f0f60b45a26d89da4a25c07ea36cb359aeeen/aHeodo
2020-09-04REP_32737.docdoc be658261ea85360800d4b052f23fd96dbadfe7171d308a38dba22b5fe4efadf0Virustotal results 41.67%Heodo
2020-09-04FILE_4500.docdoc 4abe421f4bf82588ca7772c685416eab8133054e1ae9fcedc245167e272b6105n/aHeodo
2020-09-04Attachments_2020_09_04_7355284.docdoc acb81dc6508ccc95393a57308575ed700b2dca51e4f0658f6ce9dacfd214dd3fVirustotal results 40.68%Heodo
2020-09-04file.docdoc ca1b62ba1f6df4e6e7ee6b0ae0cdbf41303c29e916602d32ba15df885ce8d527n/aHeodo
2020-09-04ARC 20200904 MC9508.docdoc a7f7db7e743de3993fe73005b54d739c61d8b922446cf434ecedcca82c63e922Virustotal results 40.00%Heodo
2020-09-04rep-2020_09_04-232.docdoc 05558fbc6250f15d45880b5ebfb3798d415fad3e982b503fd6b61e658d902aaeVirustotal results 40.68%Heodo
2020-09-040881GE_20200904_GGN36700.docdoc b928a4ea1aae65b1c3ee2634f0d4d3bba7d8f0d7bd647c3befb30ba0f8b6a1abVirustotal results 41.38%Heodo
2020-09-04file-3117.docdoc 6c3530951ad2bde0a96b5bda4698fb3638e360f5176d3f6aa4f9ea0570a3f45dn/aHeodo
2020-09-04Doc 20200904 NQT5023.docdoc 886d63b614006458acc2c30f3864476e896c318a90248243fabf63f0e992f712Virustotal results 40.00%Heodo
2020-09-04DAT-2020_09_04-638.docdoc 352ed1583217d011b59331d9df7069fb05bffbee3823ffe2603a5cd74f16b850Virustotal results 41.38%Heodo
2020-09-04DAT-20200904-66469.docdoc 90d7013803edb798ee2da7fcf3de07420ccd536dd01c96d0c787a80c0923f08dVirustotal results 40.00%Heodo
2020-09-04Mes KIQ380553.docdoc 2f40ae83dd7e6ea630b731213a7f9629565af65eca2bf9990d77114dc2b441e5Virustotal results 40.00%Heodo
2020-09-04DAT_O8673.docdoc 3b921395ead4db8129425113780d7d7391058b9a70f1bfadaa36d56c48de30edn/aHeodo
2020-09-04MES 2020_09_04 LHP983.docdoc 1fa1544383bbda2ef984f9c0a8a1e3ec9c37ede4a0e897d8177d7e92d3809ea1n/aHeodo
2020-09-04FILE 20200904 D478.docdoc b0eafc0cd064f11cf1aaea20c1f55afc0770f81b4a59723d453b1ea6f6dd276cn/aHeodo
2020-09-04doc-20200904-63998.docdoc eaab7e71c3da44a79d28d2bef0582eeadb430df7d20febba2eed46323d6dd3eeVirustotal results 40.00%Heodo
2020-09-04arc_2020_09_04.docdoc 9fe427f893f6601d49765213f47af2ea3766457661b26cf705d4f30c267f3a73Virustotal results 40.68%Heodo
2020-09-04list 2020_09_04 87522.docdoc 6300e903bf3720bb91e4db31ad186d98f0b8307f0abd3b785145f72f0a89edefn/aHeodo
2020-09-04Attachments_X696.docdoc daa812c082d4d470cfad19c540bfc6ea7adbcd3859273af885dda81d2722e1e1Virustotal results 40.35%Heodo
2020-09-0450756889-2020_09_04-BGP353464.docdoc c9760ed3a6abb462e2d429280f83f0e912114c2b1923fa1fec74b3ee350afa78Virustotal results 40.98%Heodo
2020-09-04Attachments-2020_09_04-UBN760277.docdoc f5ace8d328883020ed6b37dfb50687886670fba064afbbbbf6e9e695ce35e490Virustotal results 40.68%Heodo
2020-09-04list 37961.docdoc 945f9c6c84eff86e098fcb02268e716fb80f5c6fa8a5e64e08175a306d3c0a2bn/aHeodo
2020-09-041984 20200904 17951.docdoc 39f12f314a1431044af9b7061ac6b7b2d68e29927ba8650ecfd4a5a41337922cVirustotal results 36.67%Heodo
2020-09-03Dat 084412.docdoc 5b1c5637bea570eeef52ff79044a41de92de4e33ddffcde3b3611bee6fc8e5b1Virustotal results 36.67%Heodo
2020-09-03file-2020_09_04-GZN388.docdoc ea4fc36885f9979ad9f5fa421926dba611a7a272abbc518fdb4da57125d0f548Virustotal results 32.79%Heodo
2020-09-032191_2020_09_04_036069.docdoc 5870705910f4290f13346efd3c9113483974723cc840cd330844efa6f5b3be19Virustotal results 34.48%Heodo
2020-09-03Untitled_20200904.docdoc 939b166130d34042d2f4e49e43067b7670e409ae8dfe5e7d675160a838878230Virustotal results 31.67%Heodo
2020-09-03mes ZP30878.docdoc bf1b9f0a76233f9cc5983b3b48fad1f4edff9c94e363dbab7f91cb8050ab315fVirustotal results 31.67%Heodo
2020-09-03rep-20200904-033.docdoc 2f9910b3fffce2373726bb19cee907def1ad66df1c9210d955647c7a638ef9edn/aHeodo
2020-09-03inf 2020_09_04.docdoc 184ba331ed727480fd65743bfe0cf1489eca3b4d49b68a31b970ee96288c9484n/aHeodo
2020-09-03File-20200904-0257828.docdoc 3c9f9e08bf1785b8c6c1fed306eb5e322fb63ea73a8d01a9fc83af4006d64008Virustotal results 31.03%Heodo
2020-09-03INF-20200904.docdoc 7e3a1e6d36b83671b756096e60fc53cab42b64bdb208c976b889540d6e90bf17Virustotal results 28.81%Heodo
2020-09-03list.docdoc 4f5a405c856619a4ed5e618fd60249ffb0ec9437f94ba328f235c14375271a7bVirustotal results 29.31%Heodo
2020-09-03Mes-20200904-ZLU4116.docdoc 8cf9bff9f058b2a79f8e84597c708b0d15b2235c89fd2b63d50c0e25db6090adVirustotal results 28.81%Heodo
2020-09-03LIST 2020_09_03.docdoc 8ec353b19baa29bb3ebb9f4baa55ac06aa90831fd8b27c1d41ecfdecdcb68a3bVirustotal results 28.33%Heodo