URLhaus Database

You are currently viewing the URLhaus database entry for http://team-stark.de/cgi-bin/https:/Scan/Od2iMqYVLThNyd/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:453087
URL: http://team-stark.de/cgi-bin/https:/Scan/Od2iMqYVLThNyd/
URL Status:Offline
Host: team-stark.de
Date added:2020-09-04 06:59:06 UTC
Last online:2020-09-04 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-04 07:00:13 UTC to abuse{at}strato[dot]de)
Takedown time:11 hours, 59 minutes Good (down since 2020-09-04 18:59:52 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-04dat_133.docdoc 2b92a083d78d4854c3fa6ee427357e1a0c4f3b5fc4b22546712e350870b77c45Virustotal results 28.33%Heodo
2020-09-04doc_594201.docdoc 1a2267bf7b914a9de28507fa9a91a5ae83a2441428bd581f461b67abc2e84423Virustotal results 26.23%Heodo
2020-09-04mes-MIV94256.docdoc 6fe4e70594d98f07fc43fc54e2e24a57ba80babf404b803336a8c7cca7f4bd70n/aHeodo
2020-09-04Doc_20200904_VL909333.docdoc c3850d62a95518f0ec62ce9f3f83163aa67b240ac7b21a8b6e1bf5e24005a4d0Virustotal results 28.33%Heodo
2020-09-04File YON6600.docdoc 794287d8176f07c6943cc4ca303d03de2ec84b37ff7262e148c0451087177c86Virustotal results 27.12%Heodo
2020-09-04Arc_20200904_50561.docdoc ed63266e67ad9944d1501d2221c8390e1585ed5aed9397212441db07dea0b7e9Virustotal results 25.42%Heodo
2020-09-04DAT-20200904.docdoc 9e9d7588b44ebf875c00651584227efb05e4af6e16f2600db20005064e8787fdn/aHeodo
2020-09-04List 2020_09_04 A310925.docdoc c27583344f73b13cb65d7c3cd67e313618cc794ef5b48f1db3e39adde0dd90c9n/aHeodo
2020-09-04DAT_20200904.docdoc 52a1f3085fece2adb5e447183da5a37ab0c90019b2237702ce65ead6ba03cf96n/aHeodo
2020-09-04Inf_20200904_YHD450.docdoc f7347d7eb634ea2c2bdeb69d026c099ca12acf563a5b6681e6467ce9c7260619Virustotal results 21.67%Heodo
2020-09-04list_XFB320351.docdoc 5e01f376491f37354db3791f6ec1c53893e852d5874971655f2b8c0c9bfa35cdn/aHeodo
2020-09-04file_2020_09_04_4715779.docdoc 6b6138015363422437174a3e66d6fe9830722c6af61b695c5bef3200fe97a98bVirustotal results 21.67%Heodo
2020-09-04doc_2020_09_04_228168.docdoc 1c67628b01a329488b609ce13ceba3610a0d79cfe6bdb3d6750f714ffc97f27fVirustotal results 27.12%Heodo
2020-09-04Rep_2020_09_04_4646.docdoc 8c4a8a1c7d4ddbfd0b727a5f169b6bc78e7997fd2b0947299d663a215bb3a9d9Virustotal results 27.12%Heodo
2020-09-0420876687 2020_09_04 72480.docdoc ca900ae40752b2a78feb23b6d8c3f29f674621fc5a6d90b99c3f2f2c6efbe075Virustotal results 26.67%Heodo
2020-09-04LIST_20200904_221939.docdoc 24325dc08722e851f6637f34bd024e29a92a95a82f94fd5adf334df561dfd116Virustotal results 26.67%Heodo
2020-09-04LIST-20200904-5684.docdoc b6c9ea0c6311713092b07d9f28b5b798d84789c78cba9ce6f80d967cfec02942Virustotal results 26.67%Heodo
2020-09-04UNTITLED YA917.docdoc 6b12df90c4f1f8bdf2bcc412748ab826992ecf7c8f1d6dff2768fff19be85236Virustotal results 26.67%Heodo
2020-09-046030160_2020_09_04_OY0845.docdoc 8025b46a7ad5a9b8f354866d31c2e8c41c319004e2f26825a94dea7c75465df8Virustotal results 26.67%Heodo
2020-09-04dat 2020_09_04 HOT442.docdoc e514ee40aaf58363f83b55c5bb9e01e591be5d5fbea0402363bfe659405e331aVirustotal results 25.00%Heodo
2020-09-04dat-HCX434249.docdoc 35eae4bf4a4e774e6e01de12b1358e0b431ba0b625952ca4b650849e31cfb1f8Virustotal results 23.33%Heodo
2020-09-04Inf-U781984.docdoc bfc004f7ac8d0c2e241dc8086e3e58fb542fcc47b5114ab614fa893199328acfVirustotal results 23.73%Heodo
2020-09-04Doc-20200904-3332.docdoc a44af5b41212998f1fbe2710a20194236275ea73fe20d136c36ab549738d00ean/aHeodo
2020-09-04mes_20200904_175.docdoc bbb72c4df6c036dd3b187c18c6ba7bf547ed934e658bdcd5d3c23d14d244c2eaVirustotal results 23.33%Heodo
2020-09-04Untitled-290.docdoc f372c016209e74fc743edffac2666aff370e45615c65b28ec1ddb77efcbd87a0Virustotal results 23.73%Heodo
2020-09-04List_20200904.docdoc cf9b7b986e763e7ed395622f0e81f3ae662f65397ca0717169ada8127afce47fVirustotal results 22.95%Heodo
2020-09-04DAT 2020_09_04.docdoc dff60dc9f114e848e0904ff850adf4dfad09811c2ab905e56b1cb3f16dfbbe12Virustotal results 22.03%Heodo
2020-09-04Rep_20200904_860269.docdoc 1b9de5149166550851ee26d1ff101cb636ab70e0162faf31397c1b3d9efb8ac5Virustotal results 22.03%Heodo
2020-09-04Arc 20200904 62351.docdoc a116a068131b7ef0d015c07614c3e6f346f604fd7d9b5b974b9f09a997916732Virustotal results 44.07%Heodo