URLhaus Database

You are currently viewing the URLhaus database entry for http://espaytakht.com/de_DE/BPNBGIJ3132876/GER/RECHNUNG/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:97765
URL: http://espaytakht.com/de_DE/BPNBGIJ3132876/GER/RECHNUNG/
URL Status:Offline
Host: espaytakht.com
Date added:2018-12-19 13:31:06 UTC
Last online:2018-12-21 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2018-12-19 13:32:04 UTC to it{at}bertina[dot]biz)
Takedown time:2 days, 8 hours, 10 minutes Poor (down since 2018-12-21 21:42:38 UTC)
Tags:emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-12-2121_Dezember_2018_12_52_01_Uhr.docdoc 043d57e557fcd49c3543b30b1183e4b8ae5c3037b9154ccd8b65fe6ca658024bVirustotal results 16.95% Heodo
2018-12-202018_Dezember_8922007843.docdoc 92e39ac764a910ffc06acf41e43187003fcdc10d4076faa2640a4ac79e924cceVirustotal results 27.12% Heodo
2018-12-202018_Dezember_3726169291.docdoc 03a85e11c44190d01ca2a7123195e82cfd67353d0763218abb349bd7024b6509n/a Heodo
2018-12-202018_Dezember_0708603675.docdoc d64cae7e0840e557ce0d4bd8f0b043ac1831d4c963dbffb4dbb494874296b91aVirustotal results 26.67% Heodo
2018-12-2020_Dezember_2018_18_20_02_Uhr.docdoc 85386588dc3f29e5f3bbde3ab9fc6cba826c293bbfce11b6c3f1a4403f9e2ae8n/a Heodo
2018-12-19this-site-is-virus.docdoc c2e393ff568f4a87ce48011f10664138e569710f56ddc0462aa7f36bdad5ecadVirustotal results 0.00%
2018-12-192018_Dezember_16_06_53_Uhr.docdoc ac17f5bd46ca6bfa6459703b1cb3a425fffb75f70ad5ca614271e1324660a6ceVirustotal results 28.33% Heodo
2018-12-192018_Dezember_15_38_42_Uhr.docdoc 84aafbf9d47a7a0ae083e19095bd77adbe89cbac7654a1b2e06287149630017cn/a Heodo
2018-12-192018_Dezember_1129821197.docdoc 50632d251a7b1de4f23848e4d4acb8eb7c486bf1836f1b28bad17c39f5d00e61Virustotal results 26.67% Heodo
2018-12-1919_Dezember_2018_14_39_50_Uhr.docdoc 7f46994c46c6bb7e3fc1db32374ece7c4b995e862dc0c77519bb60f39892f71bn/a Heodo
2018-12-1919_Dezember_2018_5898568493.docdoc aceaca2a5b483f991c93162935025122fc98d3063e213cf95d8d218f4d8c273eVirustotal results 31.67% Heodo