URLhaus Database

You are currently viewing the URLhaus database entry for http://novapress.eu/Adam/http:/Documentation/REn11wKpTFwMEZhJ/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:510252
URL: http://novapress.eu/Adam/http:/Documentation/REn11wKpTFwMEZhJ/
URL Status:Offline
Host: novapress.eu
Date added:2020-09-15 06:58:10 UTC
Last online:2020-09-15 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-15 07:00:43 UTC to abuse{at}lh[dot]pl)
Takedown time:4 hours, 58 minutes Good (down since 2020-09-15 11:59:14 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-15UNTITLED 20200915 949143.docdoc 11f042d9ae083d1301937770580eb5992dad3a45c7b2734bb6871d05d0a8aae4Virustotal results 27.12%Heodo
2020-09-15file-20200915-OUI4213.docdoc 3239da1a4a62043fc679f60663d8e79eb615f30abbf87ed332fc7b2c4cbbb7a6Virustotal results 27.12%Heodo
2020-09-15File_2020_09_15.docdoc 822b0ee6feffa446295a158caf0be5dd87f630715d1c1d5dc62c121a235a869cn/aHeodo
2020-09-15ARC-2020_09_15-38764.docdoc b96503ce8c81f9234169c129e5acf21fcb5d6c0b9dee0265c3fa76be06fbffe6Virustotal results 27.12%Heodo
2020-09-15dat-20200915-H136.docdoc 02a317ec58094969571a5ff198144a81dfb60daed60f646565d4281f9a268ca9Virustotal results 27.12%Heodo
2020-09-15666QEP-DKU821.docdoc 6fc669fc25d476c3d7c2cf9ea003a9db92b87a070d75bf30546e5642c1437d9fVirustotal results 24.56%Heodo
2020-09-15Inf-2020_09_15-7500.docdoc 4ffb60a6bdfa7e5fb63a913ab8545cfe5288827c74ea890d2aae2692f190737bVirustotal results 22.81%Heodo
2020-09-15UNTITLED 2020_09_15 SPX459667.docdoc 02bda32f554b15fe24cf07bdda78b9962698bbf3abc72889f5191af722807ab1Virustotal results 23.73%Heodo
2020-09-15file-2020_09_15-CK808056.docdoc f1889cf61020e82a3a09189d111623e320c0de288cf6358a8b78faf84c221f6cVirustotal results 24.14%Heodo
2020-09-15414984 A4141.docdoc 32cc40be2f8fc8479d706d387a2c2643b21119f4cb1d6de201886336618d6b04n/aHeodo
2020-09-15Untitled-2020_09_15-933134.docdoc b4cc02dfcf8d78c1ae755a87957b62e9bf8caaac7d5b7f9c821243c16156b1a1Virustotal results 23.73%Heodo
2020-09-15UNTITLED_Y20870.docdoc 61ece0282de0d8ea6739dea95cfbe7a08bae1059fbfc8aab9a9a57a996b7c927n/a Heodo
2020-09-15rep-QE8372.docdoc b81cfd4a25215c8ea1fce928fe34abac6aec507996d06e94517a407c2f830573Virustotal results 23.73%Heodo
2020-09-15rep 20200915 01262.docdoc 87292f124d955c46e0c4d803571e5d8cfbf8420c54b43a3a5982bcd91044f8a0Virustotal results 22.41%Heodo
2020-09-15Mes-2020_09_15-Z5846.docdoc 7463b8f26d81d26802635deb9e38b2d1f5edbdc4788affcd52d757a740b19b07Virustotal results 23.73%Heodo
2020-09-15arc_20200915_22265.docdoc 3efa7fdc4ca6834bb9660796ff8e44d4920b31e3cba358915cfc879f08cadbecVirustotal results 47.46%Heodo