URLhaus Database

You are currently viewing the URLhaus database entry for http://diesner.de/css/https://INC/bfM0WNcCEf4jlZ1XZz9U/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:453294
URL: http://diesner.de/css/https://INC/bfM0WNcCEf4jlZ1XZz9U/
URL Status:Offline
Host: diesner.de
Date added:2020-09-04 12:58:04 UTC
Last online:2021-01-15 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-09-04 13:00:05 UTC to abuse{at}strato[dot]de)
Takedown time:4 months, 13 days, 1 hours, 11 minutes Bad (down since 2021-01-15 14:11:18 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-05inf-UEM176216.docdoc 4c3f9a91ab8bd67a7de8b61f6d5e49c34a0c3ded123f63205f02d17ff570c204Virustotal results 30.00%Heodo
2020-09-05UNTITLED 2020_09_05 TJH865970.docdoc 8abd1fd956a522b05535b6b9ddb53a6c4353e20235979a9ed05679ac4f2a95can/aHeodo
2020-09-05list-2020_09_05.docdoc e598cf9a18d4db4fa8174ec8f921eb470f8b844063cec6fa35185f7f8f1d2b4bVirustotal results 30.00%Heodo
2020-09-05Attachments_2020_09_05_LEW1447.docdoc 99b355a60a9590d4a7695c3e6dbd12bcc643041c7f98e39ebb7bd29d4300b770n/aHeodo
2020-09-05DAT-20200905-68735.docdoc 36db57afc7d4faa57d7bbd559db7ca4ae2bd483caacaa9fba1a3cc6839b240a3n/aHeodo
2020-09-055348_GC231.docdoc 4160aae4b7d4ee73a7137bbd2d8c5cad6f215282af86bec49526c1b15db1c50eVirustotal results 31.03%Heodo
2020-09-05725JBV 20200905 UZP021.docdoc 178548af9f561e5bf22a2a3bf689025f6219b073e79e56ea0b74f164dc02820eVirustotal results 29.82%Heodo
2020-09-0595284-F458519.docdoc d4c076603f475a562c8771e360b65b734aba563731f4417b117ecfad4297d562Virustotal results 30.00%Heodo
2020-09-05doc 20200905 NS5006.docdoc 0274b67e43f98e65033f7b7b9c341a6560e515e61187693dfa5b941a2545309fn/aHeodo
2020-09-05UNTITLED-20200905-Q814179.docdoc ca1ecf3a84713ebe3b95b15bb7e7d4fe779daa81b1a2879feb79423222472ec8Virustotal results 29.51%Heodo
2020-09-05rep-077.docdoc f71c39920ac9463b4be57b2c9ef5a795184d8adab4c0a8761d0d491ae6b5a140Virustotal results 30.00%Heodo
2020-09-05dat_20200905_HDY603.docdoc 62cc3eedb06b43f8a3e286b0a9f04cbf36fe240a532b217d91950ea20fa0ba9cVirustotal results 28.33%Heodo
2020-09-057485387-CMI818372.docdoc a6861aa553541ef958ad8dbfff87e748c920813dd0b745d69787b2818357158aVirustotal results 30.00%Heodo
2020-09-05doc_20200905_83176.docdoc 5b82741c8587a1a90e3ce044387a541c69a916330391030a4daa50aa1db6a445Virustotal results 28.81%Heodo
2020-09-05List-2020_09_05-WGG272.docdoc b647104789174776abced7dc5a7abaa47fa349c4b21749ca3b6634e4f039da4dVirustotal results 28.81%Heodo
2020-09-05rep_2020_09_05.docdoc 173c9cfe44cb721e3d1edede6afda3a107dd78b74c1adb41c19fae5ae6a382d7Virustotal results 28.33%Heodo
2020-09-05FILE-3351.docdoc 206feb1d69aba0e52a7d33975a49cc2a9443deb7bcf9fb4f8a6428ffcd95c97bn/aHeodo
2020-09-05list-15698.docdoc 0ca5df179f725a9c12ba1385711972c7e55bc02359435e954db6e65f1e2036fdVirustotal results 27.87%Heodo
2020-09-051174OU_20200905_CU49620.docdoc dcb081f33d098bd8befd0776a185a13823b7a4f29087f39cfb3b1cc9693722f9Virustotal results 26.67%Heodo
2020-09-05Rep_20200905_OYD2699.docdoc c66ac5fc632592fd547d29b2ea0d58d6fd421effca802489611fb9a43a656a45Virustotal results 24.59%Heodo
2020-09-05Mes 2020_09_05 W427.docdoc 346db091f843b130bc229ea6a6cf9d569e0a9d2408e413dd9a5087bb25437652Virustotal results 26.67%Heodo
2020-09-05Untitled_20200905_323.docdoc 0917f0cbca78c19301ba65aa799b29dcf90ee3666fc9f8b83f00c5ea34a0eba6Virustotal results 26.67%Heodo
2020-09-05doc-2020_09_05-A649.docdoc 6914af81ae643d0106a7cb16454991e2b4d29053551e92e659456ad592120f57Virustotal results 26.23%Heodo
2020-09-05MES_20200905_925612.docdoc a4455d8697ed542eb675343e5b8806faa6b522c16a69fa423acaef8577319b47Virustotal results 27.12%Heodo
2020-09-05FILE-06250.docdoc 8d7ac57ba3c19f60ff3e7d2e5bccfb5a790b9d05c84fd5237e4235be91fde6a9Virustotal results 27.12%Heodo
2020-09-05Doc-2020_09_05-2981.docdoc 83d89a6f47106112698cbbe3f9f407abbefeaa5304896f38e7bff037db8cf901Virustotal results 25.42%Heodo
2020-09-05inf-20200905-H6512.docdoc f0e8099995f3ce14cd75fb397efda8a5ef10d2360783b3321d55be49eb5a7888Virustotal results 19.64%Heodo
2020-09-05Attachment_XS798.docdoc 92bc3c4ef5b89ad046cb64e9cd6ee2eb8d1053b1b07620f1a0aa6503912b05efVirustotal results 21.67%Heodo
2020-09-05Rep AG4460.docdoc de7201ce2995436691a764734f9d6dc4395dba5066dc1c6c469fb2684daa58cbVirustotal results 21.67%Heodo
2020-09-05file-20200905.docdoc 2d5d1fe8c77135420414a5cef6384683cfbf59f04e7e9b03c909c2f4c3ec54e9Virustotal results 21.67%Heodo
2020-09-05inf_2020_09_05_FI011.docdoc fc3e08fd58ba899bf7597bdf599c48d0a7628661213da9a31f112a226748053dVirustotal results 22.03%Heodo
2020-09-05dat_2020_09_05.docdoc 22834da2a4895ae43256bc32fc3c6faa89ec4389406f7fd25032bedea74bda9fn/aHeodo
2020-09-05Arc_F75421.docdoc a0c340e5b8f401a13ec7ea03f405623ed8532d1bdfc9f708d34ad94a2c14ac47Virustotal results 22.03%Heodo
2020-09-05File-2020_09_05-32628.docdoc e5b5640cb999ccd3a5fa07ef28ecdb37ea16dbe142bd3cec619837a9c0c3baddVirustotal results 21.31%Heodo
2020-09-05LIST.docdoc 4c30d9c7120c06908f0bfdea08c45fbef17a72793a4688a2aa236899c0aa8d2bVirustotal results 22.03%Heodo
2020-09-05Inf FG974955.docdoc 78ed01b95752a63330a863810431b4d58ebbae0e20a745b6df4fe6799a0a8f1dVirustotal results 22.41%Heodo
2020-09-05Doc.docdoc b4301b5b4f251bbead273946c32085189c6ca478fd25ce929a0094c5500642d5Virustotal results 21.67%Heodo
2020-09-04DAT 20200905 317760.docdoc 4501204cd406a353ac88516bb9f133148c882ea030d84403dc54bd0297f68b6fn/aHeodo
2020-09-04FILE RFW04023.docdoc 6d8bb4cc926450189c32b7634d2940fba6556c2865096d7ccafec6b4b6e0c396Virustotal results 21.31%Heodo
2020-09-04Rep_20200905.docdoc 88d669402f9cb6d3c39a7de76b5e16c45d5db2b7a4e5c5f2b9ec112d299f85d6n/aHeodo
2020-09-04MES-LS3838.docdoc bb32a5e79b853e76e64596002da4cf3b42d9e2c10db3f2b7fc7fd805fa43ff71Virustotal results 23.73%Heodo
2020-09-04Inf 2020_09_05 285.docdoc a8e4d449c8018f90196d3de6e14d75cdca5c5f76b989880e012890f87d43f6c9Virustotal results 21.67%Heodo
2020-09-04UNTITLED_2020_09_05_5694.docdoc 44f213e9ff99dece96ea33d94a4e46bb3e508480002c5e255d46ca711b44a9e3Virustotal results 19.30%Heodo
2020-09-04list-2020_09_05-767.docdoc e3986d10ba408aefe9c0f44c298dafcd5501ea916fc093cbff42c479194a9309Virustotal results 20.00%Heodo
2020-09-04Untitled ZGX355665.docdoc 4833c57c4ff48c2720247aa3bc9c8d62222f9fe3d095924030c344bfa8673847Virustotal results 20.69%Heodo
2020-09-04Dat_2020_09_05_K35366.docdoc d22f6705c1735812ddadd90de20741627b3116e4f8f97de636b160757970fc90Virustotal results 20.00%Heodo
2020-09-04doc.docdoc b177d6304e1239837128c14fc3423ded464e3877b918bdf27db3d2f40375c398Virustotal results 20.34%Heodo
2020-09-04mes_2020_09_05_E00080.docdoc 4ad62f2c57a013638168235884ebd78c0b024008e87c9b2e84719d7543132e4dVirustotal results 20.00%Heodo
2020-09-04ARC 2020_09_04.docdoc 924f9439383931103e48f1a8618e3b5b0dc6e56ba52261116659d5dd2bbc3050Virustotal results 20.00%Heodo
2020-09-04LIST_20200904_N105931.docdoc 9c0798c3e8889889ef70b039545920afb91f1508144606704a1889286192bbf9Virustotal results 20.34%Heodo
2020-09-047673P_20200904_18214.docdoc aa3db031e17cd90af00951bc4d86c18c8e42328f47e9014b552993ff1b29c557Virustotal results 20.34%Heodo
2020-09-04Dat_20200904_634783.docdoc 623ee20c1b2e5a53a0bbf6eb21f4b87cb0e6392e023f1e08267abc08c26e5bbfVirustotal results 20.34%Heodo
2020-09-04576PTN 2020_09_04 U98211.docdoc eb98e413719e07262040b6d92f4ffbfd9cad979d4fd8e59932902374dd33cbd5Virustotal results 37.29%Heodo
2020-09-04inf_PT47749.docdoc 4c213965b64b715680686d5c98d5d0129fdccb424a5e74f561c6969fa785d75cVirustotal results 38.33%Heodo
2020-09-04LIST 2020_09_04 UW5532.docdoc 50b2236aa5eb66410121fae6fbee2696da6878e6e22da851a522caa037b65c25Virustotal results 35.71%Heodo
2020-09-04UNTITLED.docdoc 53e22a87b7381a9a4a9bea066f9d1b435964fddef4e38f321f372fe6abc16854n/aHeodo
2020-09-04arc 2020_09_04 3459.docdoc 4500dc04802c13fe7026076c983b30e2762694f15df4a35bec777b09e64b899dVirustotal results 35.00%Heodo
2020-09-04Doc_621.docdoc 380c46aa7a6ebfb32b4e005930aa368ca90386ecf02e2587a0c6f035569df404n/aHeodo
2020-09-04mes-2020_09_04-AKY831669.docdoc a49d6ff985f57e4d6e09893b343f97b9da664ae8c0b7c0e95f18f1a8f119f1a8Virustotal results 35.00% Heodo
2020-09-04inf_2020_09_04_L592189.docdoc 113c8c78cdad0ed438501117f87ca9b0d52b672ddd8b015284541ded516827e6Virustotal results 35.00%Heodo
2020-09-04inf_20200904_O714156.docdoc ad900916e28aeb4c2f84553981f044e225eb4864a9551af10c38733d1f13b7a9n/aHeodo
2020-09-04INF NI187.docdoc 403170a4ca043be478bde432c994bc04e0ec0bb95f4d457928890829a998e46aVirustotal results 35.00%Heodo
2020-09-04Untitled 20200904 6853697.docdoc a7f35b06b6d94b7aacb7aaf4681b81b3373a4051b74e97e01ae6d58a2f052b27Virustotal results 35.00%Heodo
2020-09-04ARC-O695305.docdoc 4f574c1f2f33241e9d1d44b74075d96778a9a152808b8c397f19a51c1b16ab2dn/aHeodo
2020-09-04list 20200904 APN322373.docdoc 24401840c0ce4a3b8e35bdf4f126f227be7487c4747c57f1bea55e0d488ade46Virustotal results 35.00%Heodo
2020-09-04LIST-20200904-4353903.docdoc d4416a6ff0dbbf8a60d1df15030c7eeaf6be3883b9f4df72bd6312eb84caa672n/aHeodo
2020-09-04rep-2020_09_04-V688748.docdoc 4ff12f48cce6bd43cadbeb06f54c727fa688da49d56903348dc190711e4d0891Virustotal results 28.33%Heodo
2020-09-04DAT 2020_09_04 5929750.docdoc ff21a2ec6d99469e4b92b0e12a00fde35952edf0f9d9d296eb4a9f5ec13d2a49n/aHeodo
2020-09-04DLT6437 2020_09_04 244288.docdoc 3616487fc9577f23d340266d9936a2e2553b1b9c340d3217345e74a4af603666Virustotal results 28.81%Heodo
2020-09-04Arc_20200904.docdoc ac6a5c2f72c10af857d73db327000d07f01f791fe6638c339362584fe1293a4fVirustotal results 30.00%Heodo
2020-09-04Inf_2020_09_04_0184.docdoc db32c617fdfbe03a214b3ea0e57620c34459f86b3c99d815fbc869c3dc5e5fe6Virustotal results 28.33%Heodo
2020-09-04Arc-612676.docdoc ba82dfa2da1757e5cb6ed6f9bb2d2c820d055dbab664b798475fd4a94d8476b9Virustotal results 28.81%Heodo
2020-09-04Arc-2020_09_04-R155416.docdoc 2c779ddbb7d854268e9ac9620cb12744c4ddd74e9763fd27acd34113605e50e6n/aHeodo
2020-09-04Rep-PL790550.docdoc 533b65838696f229623a8367b9367b80001a7af8125899e324d550f4b4c64456n/aHeodo
2020-09-04942_MX89074.docdoc 1c3e3bdb04dc52f5610c1079242b43b61f136a2a328a6813fe492e4092cd6e4an/aHeodo
2020-09-04Mes-IUC1773.docdoc ed63266e67ad9944d1501d2221c8390e1585ed5aed9397212441db07dea0b7e9n/aHeodo
2020-09-04Mes 20200904 763766.docdoc 22541ac301b5c8fdf15f74cc06df0c5a237bfe5593f910699acdaa3ae869edd9Virustotal results 23.73%Heodo
2020-09-04Doc_G691641.docdoc 6ba1180f37e95dd4238a52435a56d2cb1483ed9a34af53b44e0fecd5863244ebn/aHeodo