URLhaus Database

You are currently viewing the URLhaus database entry for https://buygreen.vn/wp-content/ixldfx-okssnf-vaztm/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:178446
URL: https://buygreen.vn/wp-content/ixldfx-okssnf-vaztm/
URL Status:Offline
Host: buygreen.vn
Date added:2019-04-16 07:46:05 UTC
Last online:2019-04-18 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-04-16 07:48:02 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:2 days, 2 hours, 21 minutes Poor (down since 2019-04-18 10:09:49 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-18056201009879DE_April_18_2019.zipzip b4b68f9401a5671174ff868e678a85bf1733f005cb80c9b35e861ea887263364n/a 
2019-04-18653244110739DE_April_18_2019.zipzip c40bbcb70439a2f6c5f03b9b4435e685501c9e8265a8c6ac44a114e78d1888f2n/a 
2019-04-18120174823029DE_April_18_2019.zipzip a636ed453ee05cf00b00ba19462e5a8114ed742233063359786edc2a329a92can/a 
2019-04-189742635818DE_April_18_2019.zipzip 985743cd7536b64b8bbeb57c346a62b15e2aec87dcac8fe65a80df3cee8f85e9n/a 
2019-04-181295638978DE_April_18_2019.zipzip 676bb9517a06a12de7161b31e4e28cb2cead1f40bd983973ff0b83c36d86dd87n/a 
2019-04-1829589111167DE_April_18_2019.zipzip fb3f4e385f807433f3139ef2bb20e73a839beb278f66ead99a4bb1b41547e6d1n/a 
2019-04-18812457097284DE_April_18_2019.zipzip aacc7694f1a12c42ed111472e2e0610848a0723aea7b5ab1e138345e16a9529fn/a 
2019-04-18495305727214DE_April_18_2019.zipzip bd754d3d96d861cad2a9acaba566f9acc2593ce37492e3480a5c1fee9ea44693n/a 
2019-04-1820565917664DE_April_18_2019.zipzip e6aa26d25af06379dc789bdee1967f3463e4d8768e7f4af51193b1910c0ff987n/a 
2019-04-184101350179DE_April_18_2019.zipzip 363a96bf7140a83205320a20140e20dc25e06ec1362a0058fcbfc67fcc7d9429n/a 
2019-04-1882307241081DE_April_18_2019.zipzip e4ebe38b61bb579ffbc56580c876531eb21c0d5024bff0c5908b0849da59fc10n/a 
2019-04-1850648603435DE_April_18_2019.zipzip 590342ff588fa57c5573e0250e3023d194a1bc6f7710938254c48a2fd59b99a0n/a 
2019-04-174883945376DE_April_18_2019.zipzip 52c0d077072784067a547e9e6263ebb1675d9e0871ab72cc5eadc0d360976156n/a 
2019-04-1799889355177DE_April_18_2019.zipzip 2ee624ce6bdb4d41ef760db40a0aebba4973b193d2c94e6fc600f1adc24c4dc9n/a 
2019-04-171197437243DE_April_18_2019.zipzip 364c05c13cba7a2f23fd8fd37cd3b2ff713adb87af7ee88a39d368f80f4d7d27n/a 
2019-04-17228081384430DE_April_18_2019.zipzip 92c0555d4e3047225f3ab5549476a2655017c5aa9b030d1ce0072643a7d1f62bn/a 
2019-04-174062169089DE_April_17_2019.zipzip c1f35ab2d5dac9e9a03415d7d6b5fddb6f2a67af6fc07eef523782bc3aae3587n/a 
2019-04-175132319964DE_April_17_2019.zipzip ae29bd95d7fa42f8c42a191be925a613ca0ce3045684941c4d1fda8d9459798an/a 
2019-04-17913608400453DE_April_17_2019.zipzip 3974fdb89b00831d9961917bf1b111ea2ffde227745263eafd0b4c3a10fbea3bn/a 
2019-04-1778907096929DE_April_17_2019.zipzip 90b21d7b57c4a85c43e054df947c81702bb164d19673f39ee699a1e6da53ecc0n/a 
2019-04-171889047525DE_April_17_2019.zipzip 71c69f4c1586eea87babc5c61b9b6f8e95bba73c67e78f3d51a3298d452b2b65n/a 
2019-04-1776904277309DE_April_17_2019.zipzip 6380b26e807c449d000d487be91bcb6f0a0c84fa63c9bc09848769cdff984a59n/a 
2019-04-176644567222DE_April_17_2019.zipzip 8c9a6391e3c97623fdf3998f8ccf237196bb037f017f5aa9452e48ff6e37b234n/a 
2019-04-1752271831113DE_April_17_2019.zipzip 8563fbab3230ce754561e8b69f488f0f717d00104e6e5f9bbb0619bdbbfec7dfn/a 
2019-04-179210084383_DE_April_17_2019.docdoc 694b037147343d3a34387a156a549013867c1f5f92fc3b6376447e2c5ac0401aVirustotal results 20.97% Heodo
2019-04-17002043196893_DE_April_17_2019.docdoc 71da59481ca34680c6459f5947bd9e90fc7ecb570e040045c5d200bf313d5e12Virustotal results 22.03% Heodo
2019-04-174554355410_DE_April_17_2019.docdoc d2dee2a2478d2b039f9fc00f0d980f67a52f9ae8fe542e991d94f53a6f274473Virustotal results 22.41% Heodo
2019-04-1799487353668_DE_April_17_2019.docdoc 566c79acc5b6aca21ec8ad0859b2f53a1f0d4a00e793b4e6cba5fdb53cb2bafaVirustotal results 22.41% 
2019-04-1792574376630_DE_April_17_2019.docdoc dc80c7b6ddd24d941654891dfc10cfac301241ee4fc1fa452edba96cd3729045n/a Heodo
2019-04-178028015005_DE_April_17_2019.zipzip b463e315a39f028e16d05dd62520ad61ca5b0dd5a3026d2662d1c28249024393n/a 
2019-04-178188334194_DE_April_17_2019.zipzip 3d4ad76ac3d634e442443ebad319e192b5bcf658f6f10b784b4ff6e6947109e2n/a 
2019-04-1798117754079_DE_April_17_2019.zipzip 017ee2f078284eb1a3f6d217fd7d471d1ad9bd4b1c9d317536481a9e5d4d4d9en/a 
2019-04-1781362176104_DE_April_17_2019.zipzip f931b5c79948f986b0a4faf87b599da38b5a74b76f862bb4ba41ac665a7d65e4n/a 
2019-04-17213060355132_DE_April_17_2019.zipzip 7c02704d9020c2390bc06c2debf6dd55055dac9390288a45209912859f1abbfbn/a 
2019-04-17529388962169_DE_April_17_2019.zipzip 479187c1b2d68aa447622ec8d03e19fce29916734a4f4be84f69a5cb76dc0f8dn/a 
2019-04-179107874747_DE_April_17_2019.zipzip 7a652aa6b0d7b2f48cb25a0a070bc8fba96204d2b6241676070e7d4654cec4can/a 
2019-04-1763617555292_DE_April_17_2019.zipzip 4fd65fe8bd2d6ac6d496b2b5cd633145fe6508adef74e07259b264eb69cfeaecn/a 
2019-04-1720186891803_DE_April_17_2019.zipzip 8b1fb5412d8a40946191bc2f2b358cfe96573a819f92c888e867141144781f57n/a 
2019-04-17194247375685_DE_April_17_2019.zipzip ffb06dc499c8f769712b3c20852f0882d60a20d2795c392730f732b20edff6c8n/a 
2019-04-17691267369296_DE_April_17_2019.zipzip fb03c25af1235286149a83ac33360c3481b1d11fa6c5b397779139bac5d3aaf8n/a 
2019-04-17367943013425_DE_April_17_2019.zipzip 65862373c6ec62c2720864f4c387ce66a73a684fe4d9dc7980a2c49c36629173n/a 
2019-04-176783158953_DE_April_17_2019.zipzip 4511c313a3eb47e5b607f1cfccca0b2b75d9136d99d2ab2547aeb46070612c64n/a 
2019-04-1778318442508_DE_April_17_2019.zipzip 5e75a77fe9af84160f0ff2e7957a485d036ef8b5c284ae3e2205ff0d4bd16d16n/a 
2019-04-172193017520_DE_April_17_2019.zipzip e22a96a44017f78eb07305c9bedd554081d4ae1a537fa1e40b267fc0717962ban/a 
2019-04-1745114644065_DE_April_17_2019.zipzip 6b798530b3ea6256087a288a513b873673ecb03e8d185b6144fbfea814e615c9n/a 
2019-04-1613054723315_DE_April_17_2019.zipzip e19817a44f716837bafd88e67456845a366e2ef8c30e9c3b108f9619f1487c4bn/a 
2019-04-16160857724037_DE_April_17_2019.docdoc 3828b5d43c9a954b999a9aec7777e8a36b97d8a00de5ac023fbcd09b210cb543Virustotal results 25.42% Heodo
2019-04-16540994154513_DE_April_17_2019.docdoc f4057cf66759a43716d9fa6733db73448df6fc66303df5616dcce6496b83b167Virustotal results 25.42% Heodo
2019-04-16877113283654_DE_April_17_2019.docdoc 4b1ccb75644b61d0f3c1df18a238066171bf3f3b8ffbdce21a963a032676bb61Virustotal results 24.14% Heodo
2019-04-16496212773120_DE_April_16_2019.docdoc 3824b2db3b14d88a11d155d0894a6af22bedb3bc12a029f9563344208354aff6Virustotal results 35.09% Heodo
2019-04-16992691932076_DE_April_16_2019.docdoc 4f9800723d9da1abd4a9270d2ca1608a8540cbc15ddaa67f2b8a18aa2d75620aVirustotal results 31.03% Heodo
2019-04-1642410542228_DE_April_16_2019.docdoc 141e277b2165595334f404edd83397057b2a4ef8a52eb8edba79203f0aba44d9Virustotal results 30.51% Heodo
2019-04-16657572328167_DE_April_16_2019.docdoc 33eb8eed7c8660a54e9b99e8b8719fa1a83484d5ba41805f1767cd8605d28fa4Virustotal results 31.03% Heodo
2019-04-1670184838787_DE_April_16_2019.docdoc 033fa72fe48a853b99e41ed7467c1ccc488d5abe69dff887b8a6b7b2c5a5452fVirustotal results 31.03% Heodo
2019-04-166405441014_DE_April_16_2019.docdoc 7fae139edf9512b5788f271e05878e6d556721b4eddd8f556096824c3b9bec69Virustotal results 31.03% Heodo
2019-04-1610186079130_DE_April_16_2019.docdoc 0d6e79a1ce172fd964c9c98a3bc5a94cb5f901e7253f1c2ce14bf30c34747b2aVirustotal results 31.03% Heodo
2019-04-1627854386466_DE_April_16_2019.docdoc 020ed32f0c3de6a24817e3326fe676c4e07896c71f9474db5b9948847d8e2873Virustotal results 31.67% Heodo
2019-04-164238525712_DE_April_16_2019.docdoc ebbd8471022a4d525eb5bd3537e6a1688980bcd861300807f5c4a14ec7ea777fVirustotal results 30.51% Heodo
2019-04-16722572488990_DE_April_16_2019.docdoc aea48fc08e1c0ee59879373c140af99229887fd6cc38f32308b4ffa4fe8bb8a8Virustotal results 28.07% Heodo
2019-04-1612447341835_DE_April_16_2019.docdoc 50c3e055e1b4d6030661152172eaa343d011851f2063710c553d6e0cf0c3961an/a Heodo
2019-04-1664425349397_DE_April_16_2019.docdoc 05e9d6de0d75faf602a7666ff6287e1e9ee367d57d2abaeac780e14325833dcaVirustotal results 28.33% Heodo
2019-04-16632767965513_DE_April_16_2019.docdoc eaebef573b834cac77673e625c36f4e363a94a294e37a18e68547a3b19308fdbVirustotal results 27.12% Heodo
2019-04-1667299118119_DE_April_16_2019.docdoc 90c260b2469174d1c60fca12bc1a31728a1219a71c5f27a5b1cf21db2271f123Virustotal results 28.81% Heodo
2019-04-169736891512_DE_April_16_2019.docdoc de95a51d1056dab1f56d407447c1028fd989fd0aa4ff8aab109f93117bc7c258Virustotal results 28.33% Heodo
2019-04-1654368782524_DE_April_16_2019.docdoc 0c42ff307f9831e057e019051253081abc1001fd290feb13f5467ce2c4ad435aVirustotal results 26.32% Heodo
2019-04-162159497173_DE_April_16_2019.docdoc eb68fdf25e93c5d896e8b7f3d1216c20545cf2f3b3ecac3c850d4d48dcc853deVirustotal results 27.59% Heodo
2019-04-165911830823_DE_April_16_2019.docdoc cf34076fe15384682ff04d5a15a94d36af4ff3dee94d651c33c4b4c60731ed88Virustotal results 26.79% Heodo
2019-04-1642309442923_DE_April_16_2019.jsjs e328f1a48cce3e9220c38d847ccea9f81b6135d120bd76b224c4be21405f700eVirustotal results 10.34% Heodo