URLhaus Database

You are currently viewing the URLhaus database entry for http://familie-merz.de/cgi-bin/1UaR6/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:452866
URL: http://familie-merz.de/cgi-bin/1UaR6/
URL Status:Offline
Host: familie-merz.de
Date added:2020-09-03 23:07:04 UTC
Last online:2020-09-04 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-03 23:08:11 UTC to abuse{at}strato[dot]de)
Takedown time:15 hours, 20 minutes Good (down since 2020-09-04 14:28:30 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-04W8EbO2M1lRBVDbu3Uwd.exeexe c34938cdc0aa9c89a9d3420287c9cd76c7c35d09f4a36c69ae49f16539176157n/a Heodo
2020-09-04PecI60O.exeexe 8a9e879db6ff5bf8cce18eaa48a0624abbe1a5e64537788180a490988795ece6n/a Heodo
2020-09-04oFfwGu7vgiAHD.exeexe ffc4edc0686908b6212de5374b135de7b1472ae2b9b52488567db7475da0c10dn/a Heodo
2020-09-042EEsHuoFWOesBnC.exeexe 96a452b74b416b121477331b662e2abf3b194d1354d6ae5ade9df2b5d64a243bn/a Heodo
2020-09-04ab.exeexe 5f27ea74aca21b5077c2c0597620b13063d55da4969b647c664e21e71e49933bn/a Heodo
2020-09-0486zn.exeexe 8b9f21178360d503be970ea2fe02f5555fe66d346bfb41baea1191084552263bVirustotal results 7.35% Heodo
2020-09-04NBQul.exeexe 79f5de89d71037690c780ae068a7003d68ce2cbaa6e7efa06f844e09a76fb4f6n/a Heodo
2020-09-04Y5OzBiDI1RD0zvDnVaC.exeexe 03f76f37b216d00d74bc0a07a38b7f86031c4dec5a9e56403d678ed7cb39bd1en/a Heodo
2020-09-042JJA77BjtvYNjx.exeexe b79b07c35d28fc444e8fa29d6116aca545ea16758af45b682256ae1c6c2bc2c6n/a Heodo
2020-09-04coE7GwBY7mPBSmPi.exeexe 44b91c1edd6d119df7889da525c10d8cbfad88ea2e7aaa17b0651cd218d650f0Virustotal results 10.29% Heodo
2020-09-047V6m.exeexe dc1d5ed24779f88f6e2aafe16d6ce88fe69f7b72dee4cdb5f7122f4f8b89d16eVirustotal results 10.29% Heodo
2020-09-04A5DOGEIkp87mVlPiz.exeexe 5fb7cd03bd3a653068f513c8a21e2c27b131ea55febb5bda2e34805fa251fd19n/a Heodo
2020-09-040JZFUEr.exeexe 7eb659d381700a900703a22101738a3022f9506a97fbd19775815a87f8d0c7c3n/a Heodo
2020-09-04ZbZ7DUgmzKj4bbq4A.exeexe 1f77df085621cad2473ee10814a4b8be77f655ece3ebe6a9e97a4aeac36d4dd0Virustotal results 11.76% Heodo
2020-09-0447bJtinyyXbnhm.exeexe 0ae7a5e5f97fb49025f2e2a90fc5e71af11f672743465186f920af90ba960f72n/a Heodo
2020-09-04VO4xxugu1O3E.exeexe f84dc7e8fc5f9b5fc440ffac403f9be47893ac9a0b025e77cfe10406aa6a3851n/a Heodo
2020-09-04ZMSQHrXJk9wVOi6N8T.exeexe 02ec04eac01d48405d6eb0748c9741b459777001869b1d9cdcb5f73a6ab28285n/a Heodo
2020-09-04vvdK0mSHSQd.exeexe ff1876689dde88af884fcd292d1f7c1bfde18b0bf6ac2d49d66f3265d400ce3en/a Heodo
2020-09-04OLwP.exeexe aa6a1375296d8a5b10833cff8170cf3baf99263bb11dd925a7e23db33fb978c5n/a Heodo
2020-09-04Tb6iOKb.exeexe 8077129722667222361a3824a2da124ce2583a84298955fcd5b80c9e78025ea8n/a Heodo
2020-09-04rvDjO82OhMwG9beQ.exeexe 42a320980f0fe539b0076aee0a874d942329168c2939565f4d39c6e3a2ce3998n/a Heodo
2020-09-04spVGHzspKDrjpp.exeexe 86bff2a849393605639dbad3f2185c2743061c7b17419fafb920760686c45658n/a Heodo
2020-09-04K3mofOgbb.exeexe 03bb57a7b3dc6b4aa1cd743e18b022e0b9ca9c11f608653e28e9a5c01244f7f1n/a Heodo
2020-09-04bBQAq.exeexe 5e4cef383f9b57b225da1d8e14d2e22bbb4b47e0965ce2f46d43bc1b224f2b35n/a Heodo
2020-09-045NHGyTTCK.exeexe b289dc9a3b10817e9c9028e807dd2bfeff7dabf2cc4422c8113a1581d6dd5522Virustotal results 23.19% Heodo
2020-09-04WcGmv2z.exeexe 92831a0bcf1953893009f8d327cc5d0ff1437edfeb203506b59b16bccd8d7ca0Virustotal results 22.06% Heodo
2020-09-04snrpiBv2hbzTwgdI.exeexe 683b348b884f46ca4ea83e41d581ca8a8c49e82ce48e3dc6c96b9c1b4a3654fdn/a Heodo
2020-09-04qDgUvpwb0epr8In.exeexe 43fb5d0306e893c0f2e9d9457dd3fbca955a7a877f11781acaa07cc47d88e925n/a Heodo
2020-09-04V5EgUO4UiMZY6io.exeexe 437547c60537640e4270030c99556504f9e4fe0057ca280161b1c4b8ae7eebd4n/a Heodo
2020-09-045.exeexe 7afdde071537e339897035992e5092723f5ac4973cd668d6add38afa661700f3n/a Heodo
2020-09-04pPn5l.exeexe bcf3494b6679e4583474605d106efecefe44e2bd04d4c88e34b0454a53f1d9can/a Heodo
2020-09-04mGA.exeexe a574029f424bf3dfa76c587b61b45855cf694bca324111a3394bd989f3813325n/a Heodo
2020-09-04XZfA4lCEBmHGX.exeexe de17d8dc3ce602e86bfe7278590d59412892c9834ba224c3f7fccc7c32aafe01n/a Heodo
2020-09-04mYgk27C5lC0a6gN.exeexe 1b6e400f327d0c572c4a7d3bb1a0de55d4b4d65ea14a7cba091c55527c619106n/a Heodo
2020-09-04cIIitVP8elR.exeexe d1c4ae341fc060ffc01cfd529460a9ea142c4396c3fc11d652000b376227bc70n/a Heodo
2020-09-04aAYqG.exeexe 8b88e1616a228da4e313b543fd6a8b945a8ec71cc8267cf3b4b4350ead6f0dc3n/a Heodo
2020-09-04Y1dQCf6HjOe.exeexe 55679e1c6eb3ec10758cac6998b6f02e268e265d84c68eb6eb13ba52c55d784en/a Heodo
2020-09-04tu.exeexe 4903ab618282531129219f8c1e638398c3a3bfe3ea441265cbe18a3ccecf4666n/a Heodo
2020-09-04gjYmodwAQ0mhT.exeexe f2983dbd430f29441b20c360652b300161a94c20605b1c62841c856dc4a78b68n/a Heodo
2020-09-04eF.exeexe d57975d795b24e9f3a16ed27b194609b0e6b3155d07fc0201b66457290bb3d17n/a Heodo
2020-09-04AfUU5vzr6qIBeds.exeexe ecefa7bd211383a30e7e08a7909c801c7d396d5b289f6ce5748df8e0e218ec88Virustotal results 8.70% Heodo
2020-09-04b67wAPIhMGdzJRyM.exeexe 6bbf6cf12721d2b53cefb513d48673387e15029d19d943b82d681281aa1924deVirustotal results 8.82% Heodo
2020-09-04IPU3fFXV2nPNBWnpJD.exeexe 63b44cf33f2e3add6c254e3b9cb81f9d847892a883cf51697de7e8e8a5bb6bfen/a Heodo
2020-09-042MJVEhYud3pWwZQ.exeexe e4cf34c3d986cc7496b8f75ed345220d15e6c364d015483e164fc43842aad8fdn/a Heodo
2020-09-04XfagarA9XXXs9cb6Lj.exeexe 417a4fab6b5854594e10b4fc19d203f442d97b40840d96a568da2030477f5951n/a Heodo
2020-09-04QXzYcmr3tcyrs.exeexe 2bb5fe31f7e02aecc06d8bf61148d9841e415011c72ba289fe3a73c0b3b04001n/a Heodo
2020-09-04v9EUGBr6dXX8kOoMy.exeexe 4dded55e27339b16e566a1db9884569b59f7b4b3f0a9a8b048cd9eb174df57efn/a Heodo
2020-09-04MVVAg.exeexe 956d6e63f88eb9ab6848063afcd4eff0bd54cab75e87e11d8f9d10a39e91b8d4Virustotal results 8.70% Heodo
2020-09-04bQOt8x6K23iqyzq.exeexe 2fabf586a65e7b1fbbdfdb62d892ffa853ca2c76aad2b2ebe7273cfdf01b81c5n/a Heodo
2020-09-049reO3.exeexe 681195bbbc558b5c53b4f67fec6670830a7f09717f13e017c2a4ff8948ff2fd6n/a Heodo
2020-09-04VNUoTYknW8jp.exeexe 48f32abdc43423351b56d257fad29d8b42605806d4e43d6804180a9181398690n/a Heodo
2020-09-04Vdw.exeexe cca88065dff2c1e9de05cedb4da1ddd2848cb85a7d30cdf26a899db04e6a129an/a Heodo
2020-09-04J.exeexe 2f09427b805fb5176eb50a8d3675dab8fdc456841268b0d74263506c5d73c9efn/a Heodo
2020-09-03a.exeexe ad91da88d8d9ae1ede90761d68afa0d1beeabea32d9b74add109bc105493c507n/a Heodo
2020-09-032bceb9fI4VJAr5NFq.exeexe 3fa74b54c1dd1df32fbf5b430f881608053fc4b1e4957d7725336292786cc0edVirustotal results 8.82% Heodo
2020-09-03TbZxwRxKkrU8G4jCqTtg.exeexe 6f385d1636521b409247b01f196af3ac5b9e2d3a90b46b68522ed3c05403446fn/a 
2020-09-032.exeexe d9a8553343958f9d5aec8c3ef9b6802bc57eb22979efb1e6bd69d4bf1dee1aeen/a Heodo