URLhaus Database

You are currently viewing the URLhaus database entry for http://profbuh.org/content/scan/l12muwrvqr/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:725239
URL: http://profbuh.org/content/scan/l12muwrvqr/
URL Status:Offline
Host: profbuh.org
Date added:2020-10-20 19:52:04 UTC
Last online:2020-11-12 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-20 19:55:00 UTC to abuse{at}reg[dot]ru)
Takedown time:22 days, 17 hours, 0 minutes Bad (down since 2020-11-12 12:55:54 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-22ARC_2020_10_22_XCF361117.docdoc d698f9999a19af7a26cc57b993a61eab7797cd50b9d595533f4a42be249b72ccVirustotal results 45.16%Heodo
2020-10-22doc_ADU865704.docdoc f20c367c8117caea8f52fbfdcb354401d63195bdcd73a5b6fee8ff8ed836a6f7Virustotal results 42.62%Heodo
2020-10-22DAT-FYA416.docdoc 404c8b39dce14309a56474f06f3dc00bd3a3bf7a1042bfe724c3cf24f9a3fdefn/aHeodo
2020-10-22DAT_20201022_JY31032.docdoc 8c23e578f16b2d703020b370b1baf6a954bdb081411b4195a07acd937e31f879n/aHeodo
2020-10-22dat_957422.docdoc b1fcbe229b501258adfd4f698dc2a2bc801431066c82f50eef41dc4315265b08n/aHeodo
2020-10-22474428_BYE503704.docdoc bcadbfbc5486bef46f055a4327cd0ad2960e25cb078ed37ad99191369d2c8aa6n/aHeodo
2020-10-22Doc-TH099811.docdoc 8effef5ef1320d8e0c048881d13682b0321c3544a7d28a2687468ac8a08dd9b4n/aHeodo
2020-10-22File_WSL24661.docdoc 135cb539c0d9f861723acdc30ab6950ef610e097e40409ec4fcf9aee99fb40a5n/aHeodo
2020-10-22list BK524835.docdoc c53ffb4639e68722e714385b3296c8ad388a6f6004e2905dd2f7a86f3e2f59d0Virustotal results 57.38%Heodo
2020-10-22file 20201022 28754.docdoc 801d2ae370c4e9631b5740affb87d1628701bd436a299ea95ecc2df89a18e164Virustotal results 54.72%Heodo
2020-10-22dat 6533.docdoc 6df55c3f911ce158760ac06b0e28baa8315645d1dafe03ad8c6fdd0cd38c4e71n/aHeodo
2020-10-22MES-20201022.docdoc cba12caa2cd32ce18fa1c7352a3aae495d982a3e49981dc90335eafc919a352eVirustotal results 54.10%Heodo
2020-10-2258001K-2020_10_22-M19239.docdoc 949394bdc364c283732e10d165b523463c5e3415f4ca80269720f45609aaf1a8Virustotal results 53.23%Heodo
2020-10-22UNTITLED-2020_10_22-1400.docdoc 8b05297c048f55387edd8b05e69d2a1240c7906afaebaf370edb5b8124f57043Virustotal results 51.92%Heodo
2020-10-22arc.docdoc 0e6e7041e073516d6a5cb4022850591e6c21925ac9c0df1d5b08418b35fcf7d2Virustotal results 54.72%Heodo
2020-10-224075 267.docdoc 56b0146ade4758767f9d08bf5b7a71e892afb7d9edb8388a4ab6f346e58d8565Virustotal results 51.61%Heodo
2020-10-22file_20201022.docdoc 7721cf1daa797e7d3937a27f69b99ef2a6151487a971903c12c6974ced209725Virustotal results 50.00%Heodo
2020-10-22724_2020_10_22.docdoc 916610eecd9e0faf3813f4af060d636722a3a3d148e16373514ba8ef022ac631Virustotal results 52.83%Heodo
2020-10-22Untitled_2020_10_22_Q011329.docdoc 4cc7995cf34b8333e0c32474aaa114255bee33f8db8560beb601b5486bb5079bn/aHeodo
2020-10-22Attachments_S468.docdoc 4adb138d8a23b32849309c792bab7949cdff073d4d2c42b0f65860480aacce9fVirustotal results 54.72%Heodo
2020-10-22REP-20201022-469486.docdoc 6407da897b1e8b2083810dc2b7ef04784f712c5acaad0ff349c2b4f2da6d1c31Virustotal results 47.54%Heodo
2020-10-22File 4391268.docdoc 487f725ad8ca9d27909e0d464bd66320a013bc84772aeeacb8b50224615b3158Virustotal results 49.06%Heodo
2020-10-22DAT-AI138629.docdoc d71c098eeb288fe1dbc8460c546c271aac874e8f674e44c24a18ef4e358eda77Virustotal results 50.00%Heodo
2020-10-22doc 00292.docdoc 79923f0eb061a4a9ab9b4cd495ac19c821db61e54e38f752ada4e128e3c28c40Virustotal results 50.94%Heodo
2020-10-21File_20201022_00032.docdoc 125b5cd4a3af9b6349d297cafd2fe139ac13e7acc337d95cd3c034e2d89ba91cVirustotal results 45.90%Heodo
2020-10-21QN488-79982.docdoc b7e9cf82054a08fa01d9412cb90a56de33c1d1f0faf71f5ac572dc691b47fe81Virustotal results 45.45%Heodo
2020-10-21Rep-20201022-9112.docdoc d9bd69f241ea307af694ae3010651af65a9fdd62cef9dcde429d8ce6fdb9ecfaVirustotal results 44.26% Heodo
2020-10-21V8202_20201022.docdoc 301cf568e4fe620ea088536605e0337a3e04e40694ddfd1f7b66584b600b1252Virustotal results 43.40%Heodo
2020-10-21ZDS3628 2020_10_22 4875091.docdoc 42538e931722bfc76683ba8032a3f9771599b561326a105c20053210ee28d4c2Virustotal results 44.44%Heodo
2020-10-21list-536916.docdoc 0bfd0f8ada9d40a9b2a5b4488cdc5e9f65ee5eb9392124b281f422ef33a911afVirustotal results 41.94% Heodo
2020-10-21List.docdoc 2a134af3605cd8875600e60812b847503f74c33b2991c3fef4b4449ff3421233Virustotal results 43.33%Heodo
2020-10-21Mes_20201021_XP150508.docdoc 0a05340e1d61cf0994abfacdeb416ee8bc250794a5282cb2edcb4668387da003Virustotal results 45.45%Heodo
2020-10-21MES-2020_10_21-86740.docdoc 4495e02eb9c67c54be349e4212281f1c652234240082f96a9071ced88e8c6f9cVirustotal results 43.86%Heodo
2020-10-21FILE_2020_10_21_Z116862.docdoc 1cbfe4acb45540cc1c03e93696d3c85a5ce3162e105d69cbc2c24f6b468fba90n/aHeodo
2020-10-21Dat-2020_10_21-S061.docdoc 859abb1ec18da77d67adf4f8169fdaeb35da9b930db1f093e731b0749f6b82b2n/aHeodo
2020-10-21REP-845477.docdoc 2776ddec53bb1fb2deabfd3bcf61453c5f4f74c077b563b634fe985b43751befVirustotal results 36.67%Heodo
2020-10-21INF-70374.docdoc d5df4df2b5f06371db820290a854b5a2fd5357921027df714f500b948ed849d3n/aHeodo
2020-10-21Arc 2020_10_21 175.docdoc 1c9f16cb8efe6d27052e6e20471366e7516176926ff0f7c04038156016be4b0dn/aHeodo
2020-10-21248RJW_20201021_7731.docdoc cef936ee53c8e9333c3c499878b39e33d50a8e39f1674c63bdb34ac04ba01630Virustotal results 27.42%Heodo
2020-10-21MES 2020_10_21 EY860983.docdoc 23f330f0bf1a63c1c16750cb36dac328a7a4fe0b283187001340c613d73b8c38n/aHeodo
2020-10-21arc_2020_10_21_3131.docdoc 2700e74dfec403cdd5306ded2adb5a78f8cee0aeb693b9ad6708383785a2fd1cVirustotal results 27.42%Heodo
2020-10-21list_2020_10_21_B7487.docdoc eaeb4f164378a43e002228ed077d1ca35b642392aabf44539258434ce3a8ae20n/aHeodo
2020-10-21Inf_2020_10_21_GXS733.docdoc 15be5be4afec63a2c86195f7b5733fa641998ca2e269c2059104ece44f9fc883Virustotal results 30.51%Heodo
2020-10-21Rep-2020_10_21-IM939996.docdoc 640216a570296bf2130e64755dc2715b8949af7cf8acb0bc2eb44eaa0d91ba18Virustotal results 36.36%Heodo
2020-10-21Attachment_MUC2130.docdoc d66507e04664bc245fc279c53f5be49bc10b2677f4a82db33eb921845d8000baVirustotal results 29.03%Heodo
2020-10-21Rep_2020_10_21_7715541.docdoc c72823b8cc723bcccbd12917f6ee2c96aace3f7fa27b0ad8907d451ba9df5e1eVirustotal results 32.08%Heodo
2020-10-21file 075.docdoc 1930e41bffbc8dfa4c044617fcb320fa5ea042b5e2cc0ce7815e094856343671n/aHeodo
2020-10-21doc_20201021_6843.docdoc 0429da48f2a7712f9d48d30212b70720b93dbd7106a1f848b47eeb5765b3898eVirustotal results 29.03%Heodo
2020-10-2192554_437.docdoc f25033e642de4c3a110feab5d13c75c1c82a48470738715458315f1019691835Virustotal results 29.03%Heodo
2020-10-21Mes_2020_10_21_SN038840.docdoc 1c894bc498df3cdc23b9e171eb20b36c0ed3b7ead58ebce7eb9bce2eb163e1caVirustotal results 24.59%Heodo
2020-10-21Rep-20201021.docdoc 89a65e5df33d279e48b2150bd600011fdf99917ed9039ca23455af7f661d51can/aHeodo
2020-10-21file-2020_10_21-ZMI3476.docdoc 5e323694b07fc352f26cf139ccdea542f8128249c88836dfc5fddb016daab6edn/aHeodo
2020-10-21mes-2020_10_21-IWR685.docdoc bd3cf32d2c212f76acb68dd73eb7efa0ca8dc2c731b4671ebf63f9a19f4456baVirustotal results 25.81%Heodo
2020-10-21Doc 20201021.docdoc a495d84c58b2b130270804a0b6840b81578da34154f42c5223e3f34214daae0en/aHeodo
2020-10-21Dat_20201021.docdoc 6ee7221144959a0dfd4775ea0c04d42bdf8e39c34f4b7631636750ea80914f88Virustotal results 26.32%Heodo
2020-10-21LIST-20201021-3556724.docdoc 979c0685f093ea7bc14af8e86d49f06dcc4789b17b8fe8b318df26f5012b8f6cVirustotal results 26.23%Heodo
2020-10-21940D_AUV81585.docdoc 1924885ab53101752f2d462e884866c44923db9fa2abc8d6c779f614f2b5d615n/aHeodo
2020-10-21AMZ349-2020_10_21-NJ229.docdoc 51e5b175a3ae854fb025e7eb89ead4a7b465cb7bc6ff100dc065ffcf3a73c773Virustotal results 25.81%Heodo
2020-10-21rep 20201021 S188.docdoc cbe98d6f74dd99f2d19264587c61e4a84fe208b8a7b7744cb6b17a34b0cf6ab2n/aHeodo
2020-10-21Rep-2020_10_21-8812.docdoc f0a7bb8a3fd0206c7c6e89cdd949a4697bbcfbfd54420e08727801b53c3ec0f3n/aHeodo
2020-10-21Arc-7704.docdoc b73af9a2a940d0aa838d2c29ff6af0237d8411606bd7022b0b6b17581b52a58cVirustotal results 50.85%Heodo
2020-10-21list-20201021-4974510.docdoc 04d2d14956fbded096eecf36f6af427c0096f230240c0ed2ab6bdffa4c183f32n/aHeodo
2020-10-21doc.docdoc bcc4b6dd12c681e21f14ec6e0d79b4a74a6869536475fa61f8705c3a2a48efdbn/aHeodo
2020-10-21MES_2020_10_21_1212.docdoc 4e3e761ebff1b7e4d903dad33f0ef248562efc7c8ae950ef2ef68fcdbc365f55n/aHeodo
2020-10-21List_70055.docdoc 8cc00d46f56292d6c48a768afcee7d24c2b80736e7a2283e0827830769cd7041n/aHeodo
2020-10-21file_20201021_0361752.docdoc 2918744bd6d4370e10ecf517c9c5c264edf439dc9a11612a21db5306d4c1fac1n/aHeodo
2020-10-21mes_20201021.docdoc 9b5113e55188fa28b7186e461bf5c88065c351a5cbb85b9e30a1a222d17201can/aHeodo
2020-10-21inf_2020_10_21.docdoc 02adc1a510e1bf604b8c3213367eee939d64ff58772dda46fc8498180a27b6edn/aHeodo
2020-10-21UNTITLED_2020_10_21_1405.docdoc 41ecd60f9b52ec888a65419df5910382015ad496799b7b8865270fcaaf12ae00n/aHeodo
2020-10-21Attachment 20201021 G143267.docdoc babf60f02c1e6a8f67190de41f21329a21be9363a62229be2967f29822d82cc1n/aHeodo
2020-10-21inf_20201021_TA7462.docdoc 196183a2ecfd64ea9b1ae4cb56f69701880ae76cbf3fe15e6de06739f33254b7n/aHeodo
2020-10-2169048209_20201021_2072505.docdoc 1161ccd91275ccbaac32ef4906e3492003bb10612a836f77bb185f608beaf64cn/aHeodo
2020-10-212168413-2020_10_21-03709.docdoc ac06d56d750a46e13b29151c551aa058eb82fff816f2511d81ccf4fc17a582d1Virustotal results 40.32%Heodo
2020-10-21UNTITLED 2020_10_21 542072.docdoc 4718bbcc78d377303307ed12e6b5bdfe9f66529e240e7d142d51cb2859240186n/aHeodo
2020-10-20718649-2020_10_21-T736785.docdoc 0fe1e8504b3073bcac87230b7c8246dc263ad53568a2439f767e581be42409e2n/aHeodo
2020-10-20LIST_2020_10_21_EVQ76315.docdoc e29ed36edd45d2345cc8304608acefd9540287d4e6e84f9eb805893a1a646be1n/aHeodo
2020-10-20List_2020_10_21_SC9206.docdoc abd190507abe82dd0ba2c472139f8bd5622c4ed59ec44a53eedd9979daa2215cn/aHeodo
2020-10-20FILE-2020_10_21.docdoc be2f451e0ebe7e230d262cde9c384c049eee2e697c141941200fdd550e3ed917n/aHeodo
2020-10-20arc 2020_10_20 YGB221.docdoc cbf5c08f7777a6731236552b9de30fb880cbea1cd688065475f14c831361001bn/aHeodo
2020-10-20REP 20201020 WXS0393.docdoc 6242af547edfc24b0d1d59a0169dd8e612fab4d4ec5f56785ac1620bb52bc218Virustotal results 35.00%Heodo
2020-10-20list 2020_10_20.docdoc e92e321e0afdf0c386036389d40f8cfc7f3e8551c14f4dff051652d598894ac9n/aHeodo
2020-10-20rep.docdoc e9a5e9c3eacc517ddee148273dc5ef07f997026bed7f3ee2cb4d7c333a7fece0n/aHeodo