URLhaus Database

You are currently viewing the URLhaus database entry for http://hitechlink.com.vn/tmp/yUdX-ooV1T_REegxoY-vkh/Inv/305874329/En_us/Past-Due-Invoice/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:103909
URL: http://hitechlink.com.vn/tmp/yUdX-ooV1T_REegxoY-vkh/Inv/305874329/En_us/Past-Due-Invoice/
URL Status:Offline
Host: hitechlink.com.vn
Date added:2019-01-16 05:13:20 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL :Not listed
SURBL :Not listed
Quad9 :Blocked
AdGuard :Not blocked
Reporter:@Cryptolaemus1
Abuse complaint sent (?): Yes (2019-01-16 05:14:01 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:1 day, 19 hours, 8 minutes Poor (down since 2019-01-18 00:22:39 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-01-17647521474025.docdoc a1100c2924068c7644213e18725dd9468555abd8c5d4102c4da3537d904a1d46Virustotal results 15.52%Heodo
2019-01-17PAY3392366788296972.docdoc e14235e1a65021134395b8177252844b1fbfadd5d7ff4ad4a0d3121dc840fac1n/aHeodo
2019-01-17PAY7114539459775.docdoc b596ba2574e7ffdeee42a68c5984dc026c5fe047ed5aaa6a05b55713b1240aa1Virustotal results 17.54%Heodo
2019-01-17ATT8013756687610.docdoc 520b6bf741311509081afcf4caa1cab120c6afb0dff6c9324ebe8be3d8b0dfa6Virustotal results 22.81%Heodo
2019-01-17PAY20064817749535615.docdoc 34db885f2f34af721ab4e883ed9a6e88189b826bcbdbfc33317047925bf837a5Virustotal results 25.00%Heodo
2019-01-17037268162923996.docdoc fa2a9972975eee1ac59eda3149892beeb2c51949ab3221cdeda6a51908878617Virustotal results 20.34%Heodo
2019-01-17PAY75093507981123669.docdoc 0bf5146bd9a780fb8b7d49e98a74264cddbd93fbd4987a78a7cd3f211e235dd6Virustotal results 21.05%Heodo
2019-01-17184743647.docdoc d22a0418df5b3f9426caa353e24c005d7746b4713ceee32cbbb886041a60d195Virustotal results 22.81%Heodo
2019-01-17ATT6348951466153258898.docdoc eb2c2c89f70674a29359fcdb8d584df533182663d1caa71a969aac20d5c9b99aVirustotal results 21.05%Heodo
2019-01-17PAY116403683448468.docdoc f206e303c4362a8c1323028dcec49e88e0ff0f92b1f55d5b426a62c1c0a137e0n/aHeodo
2019-01-17ATT256928888406948059.docdoc 03f6ba987a58600a1f10d901e9a05ddfabc99143408fdc50866caef741404648Virustotal results 17.86%Heodo
2019-01-17ATT30886729327.docdoc 705956af8decec2d5d00a608f47f8c0b465e3efb822ebf30506eaca3677c0583n/aHeodo
2019-01-1721414803202753960.docdoc 02b7b41ed6ac77f1c2738385bcb72c0ab6e4b1cd502575fea7fd753db725b065n/aHeodo
2019-01-1773633862752.docdoc 6fc278655d224e41eb0f40d5541490ba78f74c6397665bd024b2c6361f793090Virustotal results 21.43%Heodo
2019-01-17852782695.docdoc 4769752d4529fb52228b01b130d8f56e5f2cbd18db9b5a5e3d03856ff58bc3a5Virustotal results 26.67%Heodo
2019-01-174234256576582895941.docdoc 5aea4f670711c2c08df3cea6f7076d75eec7fb3c2c12a0e6e71e18e6ac21b042Virustotal results 25.42%Heodo
2019-01-17ATT864166556336.docdoc 08d2f41450b5c87d2194cf2f5e663de31020640b1903616fd9f23911c40e5872n/aHeodo
2019-01-17US0441986861687.docdoc 350d310084f14f6e88a8acb6adbcbd248b89e77c200a03b45db2276ae59fdebcn/aHeodo
2019-01-17ATT891508679704856.docdoc ebdf5f0225e32c80eb88cf53652a0d92fa855b612fa8044e586d304fc8010bc7Virustotal results 25.42%Heodo
2019-01-17ATT661583389131184.docdoc f703b68a03a30b32bff6dbef96665f960871d69ea6c0b9a9fc2f43dde061cbf7n/aHeodo
2019-01-1739624166189.docdoc ca805254ac49b9c4f36fd9c13ea6f053614c7f7c5227d40e2e7d5ca529873297n/aHeodo
2019-01-17PAY0023184397326151179.docdoc 9e029e7e84abd91bc4045b2e94be71a178b07a91a8ac0745f1b3d520816ca256Virustotal results 21.31%Heodo
2019-01-17US854232930789961.docdoc 141b85270a591157af1369b2729034eb5cec87445b3fb604ac5df6118ad77a2bVirustotal results 24.14%Heodo
2019-01-17PAY30156075228241.docdoc 5263d5b52ab1270adb432db5bdab2adf613c65c07adc8c71d505f737cd6d61e6Virustotal results 22.41%Heodo
2019-01-16ATT19656197297195807.docdoc 7af0310a3b108e72739535916ef251b916f3cdf56478e460d230f28f6edf59bdVirustotal results 22.03%Heodo
2019-01-16PAY4972574670.docdoc c36d7096ef6b23ad823450baf8544a5a1337363b370ca54c971ff69c2f0629c4Virustotal results 21.67%Heodo
2019-01-16ATT65138281407.docdoc 0be992cf0ec92ada0f3428723f9bf54697d9a70484f040a77eac7f4b692d2e9dVirustotal results 20.69%Heodo
2019-01-16US3591294826436.docdoc 2726b6cc1bc68f26375b54c619658e1f20accb8573d4952e878baeb05fd24d04Virustotal results 20.00%Heodo
2019-01-16ATT8410039834180.docdoc 326bf3bbc582b97e7beac70fac7ef9af383fb7c8f4c8bd4067ce4bc931f40dd6Virustotal results 18.64%Heodo
2019-01-16US80944734044.docdoc 33868d985d0751c5b2850beca90f23502600245203cb8ff210ea08b52dfa87e1Virustotal results 20.34%Heodo
2019-01-16PAY395938387396.docdoc fa59df0ed78b6bb35a62c62cf8a6b2047830349133f7c3feb2a359c7640d1b1fVirustotal results 20.34%Heodo
2019-01-16PAY108986942839129.docdoc aa45e32651af4fbe9065dc15e2567c44cc8f531270f8dcb201a5df7a4b21f03an/aHeodo
2019-01-16US43519178648232220.docdoc aa058e92abb942b1d8cb4cf0673e9f6cb944a2254869993409bdaecc08a085c8n/aHeodo
2019-01-16US25344859402.docdoc 144ed374a219a0aca02308a22b1e5a7deeb1b50b941f20f62df14a154c917339Virustotal results 27.12%Heodo
2019-01-165145497607.docdoc 0c77c98412d30765b2d8c8bdd38f503927770c0a08b45cbf812b1a2cc1240b28Virustotal results 23.73%Heodo
2019-01-169644470380160484557.docdoc ee5583eae1e0bd0df20ed0b53900bdb750e24e741b575e33593c94c311cab871Virustotal results 23.33%Heodo
2019-01-16PAY4860549298.docdoc dc36ba3238a3f4761e54cc6f9bc4b43420cdb2b00705574d61898b7c5acf003dVirustotal results 23.73%Heodo
2019-01-16PAY21186682458226261070.docdoc 8a3af6bff6a0a4ca4f906b3695e470fb18a0da7989a96c02204ba500c0c1a2c1n/aHeodo
2019-01-16US337452459876991.docdoc 3d43a8519da43cc84fae470dc9e90301b1aeb9acbca4a7390711c9ab4c5c5438Virustotal results 25.42%Heodo
2019-01-16PAY00614938418915679.docdoc 1b648318e9ce3b8d8cd0e334446100c5972f74af736d093f0fe3b62597708b5cVirustotal results 25.42%Heodo
2019-01-16PAY24042554364487994.docdoc e7c1d077cbd3dd185b7e7ecd6ed2f0195b2ea098e571c78ba60da5cff90c897bVirustotal results 21.31%
2019-01-16349008041420.docdoc 90113ff1e4b8bb81a5f9eab309f7fa4eb349ccf741a13ed040787e3399d6eec4Virustotal results 21.67%Heodo
2019-01-16246723680415824487.docdoc 8eae2ed2491c609398b61e288147d6071fd51ab08ab785c6fe770f83dc0152b4Virustotal results 21.67%Heodo
2019-01-16119905053206947.docdoc 74b9305b76f521916b8c989d7e650c8f5a5bd9bd93700ec6f8de7e3093e34b20Virustotal results 21.67%Heodo
2019-01-16US669139190849.docdoc d889f9026c11807d7c5eb44b27475d33b7960398bf2abf7acba35b381de99380Virustotal results 22.41%Heodo
2019-01-16US353946438.docdoc fc3047318d92da05133c410c2b7847da7e9beed33d7d294265d90f50eca8bc3fVirustotal results 19.67%Heodo
2019-01-16ATT6485557037.docdoc a54aee546321a9f8cce4b3f90fe12e293f606221472287b8939eaf74d18f2a9bVirustotal results 20.34%Heodo
2019-01-16US026865163091.docdoc ba42bd3156b959557c225c8b8eebcc02394c935b8178902835924d1a150325eaVirustotal results 18.33%Heodo
2019-01-16ATT70819564233.docdoc 64221fc97450e3aaead99f762fd84fbe1ac02be9f11ec22ad49eddde23eb034eVirustotal results 16.95%Heodo
2019-01-16US331888859.docdoc 4e956fadcd623971562214f47bfada881bb9a4e222d45a57c28c285dbb8f8369Virustotal results 17.86%Heodo
2019-01-16PAY80569723878763.docdoc ad19964733761607dfa3e86a27be17de79bf6580e62588cc90a2c1a9a9bc8f53Virustotal results 16.95%Heodo
2019-01-16US3267637835364341.docdoc 6c6cde186a8b11112384e7e53ecff759d36b1e28463cbc63b1822875ae5119a4Virustotal results 16.67%Heodo
2019-01-1690283054441198326428.docdoc bf34cdbfc143baf710e25dbbb29c52a557bbb0485e5325f085f926f32507ba63n/aHeodo
2019-01-16PAY48484361603803.docdoc 409a3d725202a5f66385fa3dec70b0311ded3871f8f0528c631cad1d2a3eca39n/aHeodo
2019-01-16027361228782679273.docdoc 9b8d80b18ce7849e7be22615a192ca30f4cd2bafee6adb7b26ffb78a6ae548f5n/aHeodo
2019-01-16US3262901327446258.docdoc 11d3a960368ceea3387f2b25f5c488f84835ea9d04c01a9e8fe043e49bd02496n/aHeodo
2019-01-16PAY25341773570035.docdoc b3531a06af9b2cd766b368fce3e06c5f95b24888651ccb41511bf6666a06cd61Virustotal results 16.95%Heodo
2019-01-16PAY8600112799.docdoc f6d3c9abc6ddb2a5b0b88f1b0737f4c2d25febbea2822c411ab8fdcda2e0734en/aHeodo
2019-01-1677296495495797.docdoc b10ed9a23031da797f62b59324bfe1b7a018452a219f38f64f757011891ad5ecVirustotal results 16.95%Heodo
2019-01-16US847529423924.docdoc 9b2a3d826b621706a832ca9b8c8cfecbcaa0f182565faf46b5fb6c137e223e01n/aHeodo
2019-01-16US2737791987.docdoc 88bd59d5cbdaa89a919961ef9c2af7cd643844100a4c36e0775e85286a1c4f71Virustotal results 21.67%Heodo
2019-01-16PAY9527140157258048517.docdoc 4a4f4e41bd279f91c55e3656b73065b93cfb48cda18309782731d942ef299f17Virustotal results 25.00%Heodo
2019-01-16ATT5295434371443838.docdoc 851f42b2bc5cd34e97fcd6f72e11a58b49cb66e3482ac0cd4faae086d530be5fVirustotal results 15.79%Heodo
2019-01-16ATT062644092274.docdoc 13f1cfc8b58ac4d9b8f02df492eaae39d09318798eda093ef6954bf2788c10feVirustotal results 21.67%Heodo
2019-01-16PAY21824369334007470.docdoc 3c0bb36132eed1bd610822e35d6e17ce064ab7d003e112beb0cf41a3da6acc4bVirustotal results 20.34%Heodo
2019-01-16US579946413.docdoc c62f02ac392d005e396bf0bdf4d7eed9c2ce49183d1fe4c694c13cbe7201eaa0n/aHeodo