URLhaus Database

You are currently viewing the URLhaus database entry for http://tongdaigroup.com/bill/TRXZ-G0yMOIETH0t3NSS_OBoOmlIv-zs/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:183090
URL: http://tongdaigroup.com/bill/TRXZ-G0yMOIETH0t3NSS_OBoOmlIv-zs/
URL Status:Offline
Host: tongdaigroup.com
Date added:2019-04-23 16:13:07 UTC
Last online:2019-07-20 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-04-23 16:14:03 UTC to abuse{at}totisp[dot]net)
Takedown time:2 months, 27 days, 12 hours, 25 minutes Bad (down since 2019-07-20 04:39:55 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-25S_37570145_04252019.zipzip 3b2646325549cdf0dce47e71049bf649636b0a5a7aba53b22b284587395ca158n/a 
2019-04-25D_36436847_04252019.zipzip 3c27ad696aed4dbcd09e97ed68e8330c56327f7983145783d336d8cd90c4fb5bn/a 
2019-04-25YL_97593335_04252019.zipzip 62e1b1ad13f50c0693415e0d2bea08aeaceb356924356d80c68af5230a83968an/a 
2019-04-25X-64156327-04252019.zipzip b1bcccb11db8131d08358720599bb9e9ba7480b0adc470810b02db13cf128ed1n/a 
2019-04-25Z-210306927-04252019.zipzip 768ac44f6c51276fb9d2c0ad4113481516257a30f90258e383a72643405aefd6n/a 
2019-04-25Q_977459094_04252019.zipzip 70bb738d5c70997fce2f1da8c18204843fc8b2a46bf68779c7ffa3e7a136b8f7n/a 
2019-04-25Z-915649-04252019.zipzip 8c43caca089fdc56a2c8f76f9784bf17730d5f805c1d0c160d719cd48b737bf3n/a 
2019-04-25W-5012674-04252019.zipzip ece3c33ea130239836a05e9f7910f8d8776eafbd641152d1ceebe8bbd5bdaa6en/a 
2019-04-25Z_031333292_04252019.zipzip f3586ab0592547c8495d26441dfa09e7bf4683ac57a73062737cb262f6cd1b88n/a 
2019-04-25CN-1046036-04252019.zipzip dfb950f6cd4c3a407d19f318441ea3c3dc88fc85c3734bd6395e220e8eae87f1n/a 
2019-04-25IU-76254799-04252019.zipzip 5e1fd7090ab6674bf1e7712d5c5489e8cb9b92fdb2e847e2563dcad9b391a90en/a 
2019-04-25P-894413-04252019.zipzip 0e03db38ea220cb12c2b41ad85aec7dbd07294e5a0504a4b34b150d3c907a2a8n/a 
2019-04-25KI_8952049_04252019.zipzip fbf87a26a25af33c3d035551daf26fe09e0bab20afa529b64c1a0fce1067bbe5n/a 
2019-04-25C_841230657_04252019.zipzip 1f87dbfb8874799670d68c355e06ab59dce700f5849df8cc74822f59387b944dn/a 
2019-04-25UK_85971802_04252019.zipzip 640e08c4e49e8b6d1816f9d5c1d3c55275fbd2924851dfeed6a8b585720b510en/a 
2019-04-25Q-578061-04252019.zipzip c4a35f1fa052e0aa42cdd73e00b36eabd39333a2f84e18ff9f1edfcbb793d7bcn/a 
2019-04-25N-317316746-04252019.zipzip c831e537d07a5040e2619f2f0488f628d584b6a7d77e0501aea11634fe851273n/a 
2019-04-25MS-8737581-04252019.zipzip 98dce0f5cf4619efcc8a8926d58fa5e344628b20e3cf2cc12610eab50b0ac978n/a 
2019-04-25EM_13850151_04252019.zipzip eb856cff33270c75c2e665f994ec62125f6ed14fa56cad5228f6ad6b034ec26en/a 
2019-04-25U-54628361-04252019.zipzip d4ed85ef26d5262aeab3b1b8bfba5b7cc0b5dfbde7be9244e5da7cfa3c008793n/a 
2019-04-25WM_1981572_04252019.zipzip 727830ef62819951606d3929d1aefe3bfd0fc45e2de0d2fd8b043aa798bee132n/a 
2019-04-25A_540262762_04252019.zipzip 76855075dfd5bdcf6568eeee656557177309a6ebb43a9bab8ff5d9284a1d3410n/a 
2019-04-25G-90301762-04252019.zipzip 4ef9bd1c21e368530b67e90d8b22b20a727ef45f1cf2cc1e714ad06b6827c41bn/a 
2019-04-25LA-39563473-04252019.zipzip e8a2f0cd8f37d40b258d01114d099ff329294d43441646593b165e991c6b5dc4n/a 
2019-04-25CW_156894_04252019.zipzip df97a0237c3dca5438c606c25ee7e54954e0b1a41d3c8a2b43f48f6a682f8077n/a 
2019-04-24R_8204779_04252019.zipzip 2bb7813e84b23b1511ae2dc3972b08b2093cc05bd400b759dbae3861122742c6n/a 
2019-04-24V_27521047_04252019.zipzip 794d3ebfbb6618176c5b15e1555dc3abc601eb0f0ba56d129baea73ff5c91f8dn/a 
2019-04-24G_591244_04252019.zipzip d79e7ff9e994cd2953c9952ae23ea363c0f96ecea5d35e29dc211ef5bdca8e4en/a 
2019-04-24LC_5122939_04252019.zipzip 4ab373d3b124d92b0bf801383e7589648608eeb0e469ff375c311ac15a235c56n/a 
2019-04-24PO-81241656-04242019.zipzip e11d177616c98b1b68688f7aadd1f0871232bd1e280f53686b24a5fe25959171n/a 
2019-04-24S-32646823-04242019.zipzip 67fb162cff5631d3c0997bebafb83f93727bcfd8b17ba3aa7b78eed0eff52918n/a 
2019-04-24QB-998323129-04242019.zipzip 136e39e5baba36d10031f2331fbbfc1271338383159ab887af807c133bd14a73n/a 
2019-04-24P_2430570_04242019.zipzip 998be84cbfabdffacb4236a882c93999abf7d08eafc2cbc8c2760c575e58b05fn/a 
2019-04-24F-56584500-04242019.zipzip 7a1b11fb722c3b106fb2e95ab837940f6ed1825c5531ae8766de7a2b40d93061n/a 
2019-04-24B-76340004-04242019.zipzip 0428a8b23123b2a650d2ee18876ebe3db43c52880cc7a75925b4b65184bd8d37n/a 
2019-04-24GP-531807-04242019.zipzip 271b89849243853575a90a3c54308bff6832e9a528a658cda38d20f1a7c0a004n/a 
2019-04-24N-8404862-04242019.zipzip 2493491c60509d2e1a8ab5e372c54ef4c30db8a8308b59cec717db44f1648c44n/a 
2019-04-24C_86304921_04242019.zipzip 94ca38bf163b5ee9e5fad2cabd007898d9b1ae71211a23581884be460d94c751n/a 
2019-04-24J_50257625_04242019.jsjs f9a3d8d2568059bff0da6d27fe8d474fa8dc1c0f97c24433f2fd9caed3594b0fVirustotal results 10.71% Heodo
2019-04-24XI_7219281_04242019.jsjs da2d68c98cb3e9214a1e0bb58fc5fcd77c1435e63282c0602f085f56f6aa3e29Virustotal results 10.71% Heodo
2019-04-24NZ-9287504-04242019.docdoc 0450bfede94b319cea0c9c2f42fee0dd63677fc3b04491bf348bf14fd7df87abVirustotal results 24.14% Heodo
2019-04-24Y_562653_04242019.docdoc c89c4a93830f003dfc0192b8b45c334872b98ec57f081fcfed7976ca4fb344c1Virustotal results 24.56% Heodo
2019-04-24MZ-615964420-04242019.docdoc ce9a9f8bf2b7042befa0fca4a99e8ec872a93ff80f66c650292b8c8a867ee516n/a Heodo
2019-04-24CY_352948967_04242019.docdoc 8f2002168bbdff63ed1e3e257d470ac5f3579a68a2412543f937cbe0e3e7d43eVirustotal results 24.14% 
2019-04-23A_4813243_04232019.jsjs 8870927b7fcb804322779608fabf59e1c019245df08aaaf5f9202d131e92efdaVirustotal results 10.91% Heodo
2019-04-23VI_3988635_04232019.docdoc ac96c75c569e5c3b91a6b35c7515aa4aadc2dea24fc7b81db63e6584651ba0d6Virustotal results 31.58% Heodo