URLhaus Database

You are currently viewing the URLhaus database entry for http://hyundailongbien.hanoi.vn/wp-includes/nachrichten/vertrauen/042019/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:177716
URL: http://hyundailongbien.hanoi.vn/wp-includes/nachrichten/vertrauen/042019/
URL Status:Offline
Host: hyundailongbien.hanoi.vn
Date added:2019-04-15 09:08:18 UTC
Last online:2019-04-16 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-04-15 09:10:04 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:1 day, 1 hours, 24 minutes Poor (down since 2019-04-16 10:34:58 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-1607015077638_R_20190416.docdoc 57e601ceb23ca1be8b2a1dd44fb719c6a43885e3035c14265b8770dc009820dbVirustotal results 28.07% Heodo
2019-04-156353313-DG-20190416.jsjs 7ea187cf42e39c534ce6babd79e121c1a6d78d6277c8894d3952e8e3a7beb6a5Virustotal results 5.56% 
2019-04-15618250753-0W-20190415.docdoc 3dda66237446ead975ce220d8b72afc246969d10f5954a9bcfb4eff63a1b759aVirustotal results 33.90% Heodo
2019-04-154473831079-WJ-20190415.docdoc 680255ed0b774e2a6fe53742da4c8ba7b86229cf14447ccc0a5fd6eb4abd02b6Virustotal results 35.00% Heodo
2019-04-156808200-9-20190415.docdoc 3ef852294b0581a38d126c48e8e271a2b66195240df3ab28a18418108598886cVirustotal results 31.58% Heodo
2019-04-157587256672-6-20190415.docdoc 2d946a1bb11de8784b1138b4db493f0645748046ebcb112590ad09734446d503Virustotal results 30.00% Heodo
2019-04-15101187037_0_20190415.docdoc 094524863ede16b648089ddb15ca6e0b999a4747da37e510e9d25460f1641cb7Virustotal results 23.73% Heodo
2019-04-1591555973-V-20190415.docdoc 8c06d1f22140f4a44e79af844bfee549b7c687e47670bfa96783e6e4fdc9e6fbn/a Heodo
2019-04-1548966290-4-20190415.docdoc 9e6b195dcf087529efe100af00b1a7d925fcd9c4017f4a97aab93ebb621d8d55Virustotal results 24.56% Heodo
2019-04-15689558681-5X-20190415.docdoc 92be61ef9274d494faa0b60417133e8d3695dfaf9cea2a4f451f1db5aff8be25n/a Heodo
2019-04-1520710288_ML_20190415.docdoc 017df44b9f144bc376dd4a35c11428f7f519c12575d6aa1ee763d63ed8dedf52n/a Heodo
2019-04-1574416059_X6_20190415.docdoc 2e8c30b3e764fe0a42828dc82b4a673e2a0f1fb75ef94304bd0bc064d3a3d24eVirustotal results 25.86% Heodo
2019-04-158031564678_H_20190415.docdoc 43f06a766fdbb8891fe8d599d923a469f9d03d0b75982672e302cb2a31c7ee86Virustotal results 26.32% Heodo
2019-04-15938809702-W-20190415.docdoc e023b805c729964d1f3c90b942f607a436523e4b1c864af70c19a93e1b1b62ddVirustotal results 27.87% Heodo
2019-04-155593702039_1K_20190415.docdoc 4f258fe2decec2b172ca99aa3106e87c96c07b6551328cfec95aa041a1514aa1n/a Heodo
2019-04-1582458045_M_20190415.docdoc d14e49fbf6714eee9e8428da9a163f3b4a22e8e35af04731b339c2da9b0cf5e8Virustotal results 26.32% Heodo
2019-04-151735279262_O_20190415.docdoc a357d7e3601df1d3747d02526880a9bca2125e57b9d23146961bb6fae7098d4cVirustotal results 28.33% Heodo
2019-04-150254096148_7_20190415.docdoc 86f9e11f83f5aec4187588d94bf55bf8ee74ff0f58f03ebc962e39f4f57e54d8Virustotal results 26.79% Heodo
2019-04-15045465303-T-20190415.docdoc 49044ec994af74d1cd5345feb72a855807c2837407822465fc583d1149d25db5Virustotal results 27.87% Heodo
2019-04-15293685628-O-20190415.docdoc 6054f543a65b5c85ae9a7647847b5a6659a101e3a9fe2bfd9291cc93aed2dc11n/a Heodo