URLhaus Database

You are currently viewing the URLhaus database entry for https://www.frey-schrauben.de/wp-includes__/INC/S3aYNSv0SYLo5QTJah60/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:731324
URL: https://www.frey-schrauben.de/wp-includes__/INC/S3aYNSv0SYLo5QTJah60/
URL Status:Offline
Host: www.frey-schrauben.de
Date added:2020-10-21 22:10:05 UTC
Last online:2020-10-24 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-21 22:12:02 UTC to abuse{at}hetzner[dot]com)
Takedown time:2 days, 9 hours, 46 minutes Poor (down since 2020-10-24 07:58:20 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-23REP_2020_10_23_7337344.docdoc c201dc04bed84411f216935bcad9296fdb3e99daa909ead17006846758dc8346n/aHeodo
2020-10-23Doc-2020_10_23-2787905.docdoc 0066b1d5dd24b167cf158ec3c464c0fb0a4601c4ceb91b64832e7cc48b0b7bcfn/aHeodo
2020-10-23Mes 20201023.docdoc 044fbfe6a7af7880a4a79b11351a8b657219c5717280368151dc6564e7b81715n/aHeodo
2020-10-23Attachment 20201023 HMJ64786.docdoc b9745ad5da055a585ba0ae73db8e019aedbccbe23904d104d0ba10bb4bbd2668n/aHeodo
2020-10-23mes-20201023-48794.docdoc 8a528d954a8f9a3fbcc3da7a1888a95c3a827ef426f2ae24e57ca2e774f0b803n/aHeodo
2020-10-23UNTITLED 2020_10_23 164180.docdoc de3075003dae7cc1d27219ef1a911edea409e0977960756eb9b7dcecc9862aa8Virustotal results 51.61%Heodo
2020-10-23REP_46377.docdoc b333f4edbcd85640a50a2cacf9a116caa96e2026f2d2089c90b9c1b72e929581n/aHeodo
2020-10-23INF-20201023-8932581.docdoc 623493fea7d7d2f6e25e4e0c6d64d8bc684086cf8258e543f4a859b5e2080eabn/aHeodo
2020-10-23Attachments 2020_10_23 DN424.docdoc 88ede93bbd015607192a96718235dc0b427a8f654bec3ea00739a51abf19e5e0n/aHeodo
2020-10-23Doc 20201023 I1274.docdoc d81d19a33f0ac7b353c71ae0ee3bbc4fe3072d9ac384f22725e48503df8d8260Virustotal results 50.85%Heodo
2020-10-23mes-2020_10_23-S1747.docdoc 9207c7670fb6e70508d2f499abddeb5b8eba8131cb0a0929e75c83ee56d59cd8n/aHeodo
2020-10-23UNTITLED 20201023 5608606.docdoc 96140bee4d720328e2113c59df8157377c933260724ce09f2c7f60927b768f55n/aHeodo
2020-10-23Untitled-01033.docdoc 70fa07241369935edadd1ce5eaf42bd68603d3e67d3c0a2e6ec052f44a37e449n/a Heodo
2020-10-230418370-4404.docdoc 86eeb47ffd534154e6f1ef41bf80d2bb75d311a6f2ea21ca0ee51478e58aece4Virustotal results 50.00%Heodo
2020-10-23dat_2020_10_23_TGN19493.docdoc 467cff3339922c5222b7cf47bc2ed154aa32c672291b072854671117da5ee6fdn/aHeodo
2020-10-23LIST-2020_10_23-T9935.docdoc 7df71a638ddb96143a97778fcc28b8a4730001b82ef2c0ba7eff33a580b58023n/aHeodo
2020-10-237052-2020_10_23-9161678.docdoc 2eb12ffa679fb839847b56e9a70f0636ea3452803d9faedb03948144d6857e45Virustotal results 49.06%Heodo
2020-10-23MES-20201023-A397753.docdoc 4f47d35f875582f23b3901262ec4097e7d11df94dbafce009f1264ff100246c2n/aHeodo
2020-10-23rep_2020_10_23.docdoc c9babc044bb0a01c4400bd20a0fa2beb0f170477285b53f5590f52e7d5206e11n/aHeodo
2020-10-23List-20201023-8364146.docdoc 2df60a3a0b069c063741a94ff2a1c19bd0da7088ec932c4c12d7dcb186aabb06n/aHeodo
2020-10-22file 089928.docdoc 3a9457301ccae0550d3264295b9c9e32bfe72cf042698300e4c6cce9a40b9aa0n/aHeodo
2020-10-22FILE 2020_10_23 5095446.docdoc de17fe1232b69d5a889e5478613d1bc67355827d803bcec0779a120a0c933f51Virustotal results 40.98%Heodo
2020-10-22925-20201023-V336190.docdoc 5dbc67d9b88e0dd44bf600661d17c5726d09f83034d0d8c55dd65aac85569d11n/a Heodo
2020-10-22doc 20623.docdoc fb6e914a4c4dc5dd6576bfaf31de00e21069ef8c747b7339a67b451a7a3450b8Virustotal results 38.33%Heodo
2020-10-22REP 20201022 H790427.docdoc d8e5bdb5b00ab131084dd83a4173048d2a9956bcde30d8d4433e59d13ec9e56fn/aHeodo
2020-10-22Untitled_567.docdoc 9ba251b5dc945ddf16170c88b0c54d965a8d6de7c55566a9f1078a20aeb4c324n/a Heodo
2020-10-22File F54075.docdoc ccbfba7d79e071592742a4794e3c6910201deb2b5bc9f2ea2c2fe2df1b7ab3f1n/a Heodo
2020-10-22List-XQ8610.docdoc bb5a15289e914714df23dca931eedfcf917de06b79f8a2ee8d150ccfb475e4a0n/aHeodo
2020-10-22Untitled.docdoc f8238ca73eb3fdeb1f88f5688f5a30fee420309ae61ee7ac48a63b367e174c68n/aHeodo
2020-10-22Mes_2020_10_22.docdoc 7399fc6f61590ec699b38e20e9a8d38684ccd43941cd42f7c4d8fbc660de7736n/aHeodo
2020-10-22Rep-Y945.docdoc 8cd1c27e31ede752faf38d915cb7ecc05fd8044e331cebed09ad28fad2cfb8b1n/aHeodo
2020-10-22JRU01318 20201022 022688.docdoc a0928fd9bcac5b4cb4758bfd3b87cebd084d784c117fa9860b23dafedcb1de0cn/aHeodo
2020-10-22Doc_20201022_1786.docdoc 0c1e9db213b4bd4e65ad7efd5c37b96b478ce170f5df4707ea0920c5c217c8c1n/aHeodo
2020-10-22905FJH 20201022.docdoc 00ad72bb1e58786803aaee6dfa9219f44508be27c7806c618bbd5928d4c3b647n/aHeodo
2020-10-22inf 20201022 3832660.docdoc d9dc3781437235ccf4204c9b287ebdc320c13d76e3695b06bb4973d6a1604685n/aHeodo
2020-10-22Mes.docdoc db204c94c07e2234d6b37358c14ddadcc9a7bc56785f29245fc1069ba49fad42n/aHeodo
2020-10-22Rep_20201022.docdoc e46ddb149527e703127b0d3a92e807ff15e9505b665e69951f6486712ce6538dn/aHeodo
2020-10-22579JXR-2020_10_22-474051.docdoc 0e4e1bfaa0e58a742133e06d03d05462dc66388a69794a34ce16c3a232439f86n/aHeodo
2020-10-22REP 1369485.docdoc 44b746a3e834ca985a1485119a92b209202eea8a04967e94770181ac854b80bdn/aHeodo
2020-10-2250922_2020_10_22_33039.docdoc 57c1f23df2c1f827e744399fb2ee1d4f12f0499563ed8b6107f084c10468a565Virustotal results 34.62%Heodo
2020-10-22Attachment 20201022 GKN498235.docdoc 7a5d143f061f77beae7a31802e2ef8950751b83be5318a370196dd784508361an/aHeodo
2020-10-22rep_648164.docdoc f95cd6cae1ad58e0f1552f62e6c8d0b47ed21e023ac6f10758fcb47fd7002d8bn/aHeodo
2020-10-22inf.docdoc e1ed3c3f815aa1e73e275b805c64fe923c41a8fcf0a83ef0d10c29ebaa2e072bn/aHeodo
2020-10-22file 2020_10_22 53680.docdoc 184ca71adfbe1ecd4442ea73d4da439aaa94b1086865aaff6b72528811786a22n/aHeodo
2020-10-22file_2020_10_22_R924813.docdoc d698f9999a19af7a26cc57b993a61eab7797cd50b9d595533f4a42be249b72ccn/aHeodo
2020-10-22INF 20201022.docdoc 68bdf237183f84c903d36ca5c784bdaf03918f5273f5370f188ad2a934d97f70n/aHeodo
2020-10-22REP 2020_10_22 UL5486.docdoc ed5ed0dbdb32d5a4e93b6b07d2e19fa2e0e0c9d0d1276cb316f733f4345c9a45n/aHeodo
2020-10-22UNTITLED-798216.docdoc 6759c39cca89573c7c4515f4409dda904ae598d0b2e38b1169023f890647c133n/aHeodo
2020-10-22REP 20201022 CJT166728.docdoc 6bcabdc4f54569d1844998741b631e0a5cb9b9a83643ab9709e1b73aa721f86bn/aHeodo
2020-10-22arc-UA8468.docdoc ff463811a1b2d27096836980e07b6cc1e0d339a5ff6a07d9edfe141eb4a4de04n/aHeodo
2020-10-22List.docdoc 0cbb61a68e8ab2a5c0c7fc5ec5803c8f0e8e6f86626e0b7dab42080c2b6b7f39n/aHeodo
2020-10-22INF 20201022 6900983.docdoc ab28cd70227b6278a12e9ccf93a9969e4c35cc7b049ec8f0f6da797a4ab7aad8n/aHeodo
2020-10-22Rep 20201022 KIZ23536.docdoc d838943ba075b67aee959b8823eb168c74a7a28c300f77e3764043a572d20a8en/aHeodo
2020-10-22ARC-S308.docdoc f95182213ce7c6c1e585a1a0a4a11d9c9dd07358a8acef0539def794f40182fdVirustotal results 55.74%Heodo
2020-10-22INF-20201022-QR7834.docdoc c138df3717eabe4e3b8f31305c146e55769867a71b4d5963c4938125fa584f2an/aHeodo
2020-10-22REP-2020_10_22-080.docdoc 4fd05f115fa19fb83772d3774cbca589e514557731f2a46ac032052ab63e3cbfVirustotal results 53.23%Heodo
2020-10-2284925B 552770.docdoc 9a5f7fc561d1559bbe98baf1125219a78c0a7b1eac2b2ddbed4d43a7e4b810b7Virustotal results 51.67%Heodo
2020-10-22Dat 20201022.docdoc 8b05297c048f55387edd8b05e69d2a1240c7906afaebaf370edb5b8124f57043n/aHeodo
2020-10-22Untitled-2020_10_22-B53691.docdoc 6468266c5994c400937bb96f344756a764ad1fcf5b00cc3135183b89bc60eb4dn/aHeodo
2020-10-22FILE_20201022_8951.docdoc 97874f4b3e24d8afd368e2ddb1cc3618f8db1fd34e838412059a5f6e28a2e3cen/aHeodo
2020-10-22Attachments-K021978.docdoc 56b0146ade4758767f9d08bf5b7a71e892afb7d9edb8388a4ab6f346e58d8565n/aHeodo
2020-10-22mes 2020_10_22.docdoc 563326eee20b3251ff62a67fb84eb55b9ff922ccb553db1842e0bda2b2b4df4bn/aHeodo
2020-10-22rep_2020_10_22_TVP17353.docdoc 4cc7995cf34b8333e0c32474aaa114255bee33f8db8560beb601b5486bb5079bn/aHeodo
2020-10-22list_QU733874.docdoc 7512e266ad38f56ffe78e660347c98f0decf6bb495e53125976d71042800b3f4n/aHeodo
2020-10-22790275 20201022.docdoc 6407da897b1e8b2083810dc2b7ef04784f712c5acaad0ff349c2b4f2da6d1c31Virustotal results 47.54%Heodo
2020-10-22List_2020_10_22_9256.docdoc c775ac213184bc72135d373b13a19c873cb4d3823f8c895ddd4c6158886c08fen/aHeodo
2020-10-22Untitled 20201022.docdoc 554ff1a900c5b97921e83840914338e5cf8141643ab9e5a4e3a5744599c8850eVirustotal results 50.00%Heodo
2020-10-21arc 2020_10_22 IE89551.docdoc 79923f0eb061a4a9ab9b4cd495ac19c821db61e54e38f752ada4e128e3c28c40n/aHeodo
2020-10-21List_20201022_VT484723.docdoc a6a0435d980b4a2f75c95757aa7d6b7810c901e612b8d6414f8dee775adc4dc0n/a Heodo
2020-10-21Mes 20201022 XAJ678.docdoc c169510f02360921eba830fdd4cc4558b520eed16d652ca0fd6f8476a2961f9dn/aHeodo
2020-10-21Rep_999.docdoc d9bd69f241ea307af694ae3010651af65a9fdd62cef9dcde429d8ce6fdb9ecfaVirustotal results 44.26% Heodo