URLhaus Database

You are currently viewing the URLhaus database entry for http://openhouse.swu.ac.th/3y1eq/2aiWMcqAJYoWZd4pvL4Si/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1850444
URL: http://openhouse.swu.ac.th/3y1eq/2aiWMcqAJYoWZd4pvL4Si/
URL Status:Offline
Host: openhouse.swu.ac.th
Date added:2021-12-04 02:44:10 UTC
Last online:2021-12-24 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2021-12-24 12:13:49 UTC to helpdesk{at}apnic[dot]net)
Takedown time:25 days, 16 hours, 53 minutes Bad (down since 2021-12-29 19:40:25 UTC)
Tags:doc emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-29J7TBP8SSAS34VA.xlsmxlsm e0fdcaa8b598e4afc029d60a5e7f1d6153e4eb32e62138977931c44b9bd1b6b6n/a Heodo
2021-12-27J7TBP8SSAS34VA.xlsmxlsm 1c45b660e7b378de3938a2fd6fb5e383b39e7b0774287d2a46ed2e20a829da8bn/a Heodo
2021-12-24J7TBP8SSAS34VA.xlsmxlsm f2637fc8356dc21e61abbf1833c6ce39247e15d7181b65c38801b884b6cb5841n/a Heodo
2021-12-08J7TBP8SSAS34VA.xlsmxlsm 8d104ce9982bea23a51ea6b3919c79ed29dc39a05302c9560589444484f53091n/a 
2021-12-07J7TBP8SSAS34VA.xlsmxlsm 93df2d32d643cd1b56fa3734c4e6d10edf38c8c7a938fbecd794111a788db334n/a Heodo
2021-12-058KORPGPIBDL9Y352.xlsmxlsm 57d57779b27e02d04aa5d964a1d280a2349c11e65b7303b620e156e1d73f95f8n/a Heodo
2021-12-05KD82B0O.xlsmxlsm eea5192c7b77f42f0d9c1a52558b030dc15c42a2a45ecbacad9a6a7ee8989763n/a Heodo
2021-12-05KYK0F0E92WMVFDE.xlsmxlsm 2af1f398f0a7aaf416fb292fb0cfcca180712d1e07883b92723dbc83617bb05cn/a Heodo
2021-12-053SG682W4OQ.xlsmxlsm 2d0018fced4aca96cff73f6250736b02e91e58d1a1121eaf092929d9932ba5c5n/a Heodo
2021-12-056XMVN6J.xlsmxlsm 454ae58605e75dca661c45177bf382ee3ce312664fd74d7013d2f7018a29e941n/a Heodo
2021-12-05X34GWZ5NW.xlsmxlsm 475637ce6b05228085348feea4e8e3e783cfed63868411b286fc7e2ca69b4b5cn/a Heodo
2021-12-05905L7JEW6.xlsmxlsm 9560f92bb7ef2823689524aa0401589ca57aa011ff57cd70bd86c63b1a301415n/a Heodo
2021-12-05QMDRFSKZU5T.xlsmxlsm f60e5969e21db560b63a71a459b0c911322a2f28c22eccc0bd7d8edbd84894c5n/a Heodo
2021-12-05S242IUQRRIFYSGT.xlsmxlsm 418e52d0dabfb1c2710a62de25903740ff252f1cc62a9936d68b2d09f82b17d8n/a Heodo
2021-12-05UFGZXYXUZZQOZM.xlsmxlsm 625d89b2429c6f02bbae970bcbf96b2c0eafd999bf9ae2875a01447fa1984c11n/a Heodo
2021-12-05C8YKCHYHCMJH.xlsmxlsm 5da89afe32ec8ab6172b64c4b1e2ea760db8cd146dd5f5f032405f7b823beb02n/a Heodo
2021-12-0538IH9TFV4W.xlsmxlsm 8589726f519d9501940c503b567e65d7fc82f69452d1e59e66f915bccb05ee3cn/a Heodo
2021-12-05NM7DVGAXQ3D0FE.xlsmxlsm 18530aa91fa5cbc101c0e48351e12f77d10e3ffd0ae314f315e2f45be5158c34n/a Heodo
2021-12-05CDDNW31P.xlsmxlsm ccb3ab6c801f9c348bf13d959073fe5b02f2a0506181d9635bb19de0bed82cdbn/a Heodo
2021-12-052PUN7850SPQXX.xlsmxlsm 62027f1cf6a9ce64af3190f95d4f044bde1c0b0a85bb1498db64849be66e5eb0n/a Heodo
2021-12-05IOW63VND0.xlsmxlsm 33dc0546d60f496508e95293772364bf7e913d52ec3d606b326adff6cbfe7fd7Virustotal results 35.59% Heodo
2021-12-058JL2Z3EO2SYTGTTY.xlsmxlsm c12d3f32c804e7f3f48f36e0cb638123b1986e3d6d1be2c742f1355b5adc6c98n/a Heodo
2021-12-0550U4X9LAADPDYBZV.xlsmxlsm 9a8907d7347d641801a731a886c0ae4b98ea16bcf59cddd89c78b0973cd72c59n/a Heodo
2021-12-055G4DG8RAM.xlsmxlsm 9c5845715beb7e59c636b2f6334fee733da39eaf635bf7f44ff00f044a53509bn/a Heodo
2021-12-05KW0NEC3LMSWUY.xlsmxlsm 07de6d5b2af9a9d490d36eee97cbf89fd307ebb8943653ef6815272984a7186bn/a Heodo
2021-12-059JBRVD47D.xlsmxlsm 6be7115cd91f8c6f739410ce06ab8dd93b8e4daa7c64feffcec4579456d5751en/a Heodo
2021-12-05S6XZ42J3.xlsmxlsm d738769b3fce3b4c3f216fb9e3511e1d6b46ddd9dba9a1e59ff19da14b4dd44an/a Heodo
2021-12-05KKNBWZK4RXD78Q.xlsmxlsm 5790ff223fdb398b262e593d6a3918fe0b6dd6823486ec80fb48a29ad4f1c7b1n/a Heodo
2021-12-046OHEPAUIT4HY.xlsmxlsm 302ef213ab61b467abd082b4fc2aaab74092e468f3844ecb7804b8be88e01f75n/a Heodo
2021-12-04G3Z0BI4B8V17LJX.xlsmxlsm 3ff7f98d0a7d75765a01942ae1d5074dbddfeb2fd525902bf536c263d1bd6fe8n/a Heodo
2021-12-04DZ4U0K913.xlsmxlsm b30a3a75e9ad8b76d5f45439ec8c2837034d31564baecc71b76a2b1c57078066Virustotal results 30.00% Heodo
2021-12-04XZWAHBJLXGFRWQR.xlsmxlsm ac4625994264b4101e5196c791a447aeb5fca9f346573a810d83b0a96be22e9dn/a Heodo
2021-12-049B3MAG1KK0Y66.xlsmxlsm 2a4cfbb1a39aa8914a85820daee6bd82d454321ec7e54a1988d7cfc53deb136en/a Heodo
2021-12-04100WXNT.xlsmxlsm b69269bbb9c7048d3fa730d2600970a53a63fa860584261e294844270751801bn/a Heodo
2021-12-04O2NYKJKPCMKJLA.xlsmxlsm a19762f286bfb7a06ec4aec2c1c705dd761ae3585656f20551f47f85ac0c0560n/a Heodo
2021-12-04TOTCQWEU4REEY.xlsmxlsm 317bd44b3905ce97c648c728f06c8d8b57bd265c39bc97a5ca61aecc12952b92n/a Heodo
2021-12-04Q8XM3D6YH7Q.xlsmxlsm 2d6fa95bc6208322083bad83de84c33b99540c820c5bab641773d3c22bfd05bfn/a Heodo
2021-12-04SSH2IX2776P3AG.xlsmxlsm 0054db6e92637baba37080e0ccfd1893bd42bacd3afbe2a606a89a95cc6b06d3n/a Heodo
2021-12-04EQA7XNEC6.xlsmxlsm 0c92820b38ba2dd338e9358ce834883c0ac426e18b614592c70a6c20d737b2bcn/a Heodo
2021-12-04RS3AEODFCRPKB.xlsmxlsm 2facce4d039ebd8466d82c32c5a31edaad32dccf734edb371936273dab580425n/a Heodo
2021-12-04RS3AEODFCRPKB.xlsmxlsm f1c18b747b59e7d500a71e04d0aa988b50128ab2e3d9d009ef24fc313830fdf9n/a Heodo
2021-12-04MRURG3A.xlsmxlsm caff998cb1c01034f139c2b57f6e69c7b0c8338d2b25d2722a85ec807e20b248n/a Heodo
2021-12-0468IWWZHLSQP3.xlsmxlsm 493946cbdd63564ec16595af96ccad696123c5cd08d23dc5da3721b28feafd3en/a Heodo
2021-12-04J2RH9EZSFVCSXOH0.xlsmxlsm eda42816182306a1cf78a7c3f3f0dd5cf01814e245e9cde27a2f8a6ec3445448n/a Heodo
2021-12-049LEH61TFMXIT.xlsmxlsm a870a495bd65f773f81f61dfd6ee952e405f995bc8645011b846c861ae5dbdc4n/a Heodo
2021-12-04OJ04VABK7ED99.xlsmxlsm fd42b37fba9558e0017ad0591a7828d6ca247eda50d525616e0b0cf6379766d8n/a Heodo
2021-12-04LH7AOTOEF7YUS.xlsmxlsm 41bad0a2cf0f6d0a539fc6531171650327ba17f0bbcc58119ab0ff7736118896n/a Heodo
2021-12-04PUGRLEUBFCMM91.xlsmxlsm 70b641a971bd4b4fa3f158cf07c25139ad26f3574be98f8e90870654f54963abn/a Heodo
2021-12-04SEMLNFGZ6VAA.xlsmxlsm 98d237f1b5c33fdea39cbd4f2cfcf7bab472437f1293485415a27223fbdf676dn/a Heodo
2021-12-043ECZJDEML6.xlsmxlsm e1a6f47b1ecbf55e4afe332321ab9491aa25fb34eb5572900c93026eb49ae318n/a Heodo
2021-12-04YXLY52BL9Q6E9.xlsmxlsm 5add7bb4d33246473937b1037e4a5a2e6ee04aed0bbf43c4c2ffbbe099d794b9n/a Heodo
2021-12-04BHQ1JGTAJUAN.xlsmxlsm 8f210404a6cd830bec97832401b9049186183ddace345fabaf8310a07904ec7an/a Heodo
2021-12-040FCENC07PFJS.xlsmxlsm 30ef7c592bef90557962947a362a1942ccfb2a7f38794ca31607761924c91370n/a Heodo
2021-12-04GDVL3Y5.xlsmxlsm 4e954f2f70144153b842eb7cc68ec16e61d9a047c87c0580803a859a074440f2n/a Heodo
2021-12-04KV2DMDHKWT6J7U.xlsmxlsm 9aee051da57484669c96f4ef0f38baefedde32820448bae1553c8d7731e3e258n/a Heodo
2021-12-04RSHSXTIL4A2A3.xlsmxlsm a9e904283e1c3280a9c94df7de9526d45406f043bab61cfa89955ab26c9002e7n/a Heodo
2021-12-04WLTY7KAZ9N8.xlsmxlsm 09bb40aa8de1a6b5acd17d59d9fe334e2d2b9c72f7ef736ab4a7f5f04cc645fen/a Heodo
2021-12-04IY89W77R8.xlsmxlsm 28b509258cbc301a32a2d7623a9e3452cecd5b0446d8c3f8ee500f386b2d0b0en/a Heodo
2021-12-04OEZEG653FU0PDNT.xlsmxlsm 172e8a78726d8b62b7f8ca77e024e55f3df1fafeb21ddb22a804df109e477f84n/a Heodo
2021-12-042CAONGN6Y0V.xlsmxlsm 39575879cef671f75b0dff64ff1b7637153006aec9b5d8b474d8156ec7136cecVirustotal results 31.67% Heodo
2021-12-04JEIGBWZIQ4.xlsmxlsm 1a42644608f98d5d74478e0021460a016a3a0162071d6c6a15bcb3cea0bcda85n/a Heodo
2021-12-04PHDNWJMH9RQZZK.xlsmxlsm 836ecd93e4aeb5ecb8980e715a69a798cb4797e81ea9782e4f3963a39a081c88Virustotal results 27.42% Heodo
2021-12-04BCVEWAUG1.xlsmxlsm 0b326199fcfff5c386678dacc4a527c7c84b80727886d983225152ae395b9d53n/a Heodo
2021-12-04KADC1PBUM2JH3LH4.xlsmxlsm e5efab8162cc62849f574393540dbcb93581a620621d2a8ec85600ccd0658004n/a Heodo
2021-12-04FH5LW8P8.xlsmxlsm e78e352b87908c524f6261d32e3ca148abac422fb2f15905bcab42a801e2e524Virustotal results 30.00% Heodo
2021-12-04AV0YUUG.xlsmxlsm cc9518fa937adc3da149fc6257f6021f7e06510846d00c59a8fbf77901cf4a65n/a Heodo
2021-12-0487NCUP6O3X04O8A.xlsmxlsm 2e16f73fa92313ca662571bebd97fcfe0139374a3453af41c0a1128c1760e13eVirustotal results 26.23% Heodo
2021-12-048CPQWBUH45LJC.xlsmxlsm 79ab0dea6d58cec5ab1625e47eb26381478fe0401fda1a8cc3ac8323849d6aabVirustotal results 25.81% Heodo
2021-12-04I9VVTYKJRGZDQ.xlsmxlsm 578ece55282eb8f61aa9d634c5aa7fee1c72d820c7d5fb097421a2e4c2d571bfVirustotal results 26.23% Heodo
2021-12-04F362CWNKXS.xlsmxlsm 1b1ca3cafd5725b945af840dce49f4e76ee3bdb7ff9f623c2d272e5986bea1dfVirustotal results 20.00% Heodo
2021-12-04LBNGO4MA8T8ISXW.xlsmxlsm 84c99cccdcf273dc5ede31d6dff55ae16a0af5c15f96f56b18fa1ebc57b61209Virustotal results 27.12% Heodo
2021-12-04O4NVHHJW0.xlsmxlsm b9999e2908b845f22df7165e1ccb9fadee275bec39eda04960a29e2815f671a6n/a Heodo
2021-12-043WUI7YTU9.xlsmxlsm a428f81a832ce012d7950fbab55a8a105eb9c4e567b143be09766bd01e7e44d2n/a Heodo
2021-12-04T4YAGOY5MB49.xlsmxlsm 08049d7a7bf044cc00d2c0797d622a12da70451c5b7e5f0c8651f41902ef35c0n/a Heodo
2021-12-048B3GIZED.xlsmxlsm 6f954700d714590c222533517166d1c8a9b3bfff3ffc6d33beb44bccbd5912f2n/a Heodo
2021-12-04M4URZ0GK3J.xlsmxlsm 9db7c7e66ca40cd906169bc4391110c188925dd9a50800ffe95e707258d855f1n/a Heodo
2021-12-044BBUTSKK5ZVRP.xlsmxlsm fe6edb9fd62baef115f8bfa653e6e8d94aa4f2f6aa31da89708f064fd3c88d96n/a Heodo
2021-12-047RI4G4J.xlsmxlsm 0d9f8d5ca02d17df098cca4868091fe532e3080194f1820e76c19d99c935d616n/a Heodo
2021-12-042IF6AL1CU9.xlsmxlsm 7a4028719774f60a26304135c146be2c0aa097887e5e894634aeba41a911f693Virustotal results 21.67% Heodo
2021-12-04TUXQM5A2.xlsmxlsm 27398a3f2736fae1f040f051ab7ea4b36bf4a0949565531d64370f70558f1edan/a Heodo
2021-12-04U4161JB8RVO3JY.xlsmxlsm 9482e25f0e15d370493d1b0dbccef274bb8eef769bd89460559c7e58a7be2991n/a Heodo
2021-12-04PII59Y8QW.xlsmxlsm 50f44fa814a6c7b09ed4b7737d4d96d3795ed5c53d6f0769d2bbb8aa9c910210n/a Heodo
2021-12-04WM6YK6A.xlsmxlsm dfa8c65cd40039394538dda9d3f7bc71701cc7507b5dd1f7f8053a5fddd540edVirustotal results 24.14% Heodo
2021-12-04VNL1KJPK.xlsmxlsm f26a443ac89f9b418959ed6f59163358f57a469af9a4509ca82bfec3e6d092b0n/a Heodo
2021-12-041R1Y9Q9QPI3NI3T3.xlsmxlsm 5e343cbb5a5f244335b0f7db5f7f105c8e8194e6fff17c4d9d67a1db5d5d20fbVirustotal results 20.00% Heodo
2021-12-04484OODKC3B.xlsmxlsm e4794249145bbd54d312dc4f8a1327e51ec4321d58ffae657a8e37b1d4cdb8a5n/a Heodo
2021-12-04XF0462GONYRUV0.xlsmxlsm cad18f70b06e011a34b4ac694d6385fb3410f8de724da4b5edfac53791641d79Virustotal results 24.59% Heodo
2021-12-04GEE6M8HOR3MH2.xlsmxlsm f4d33e567cb1707d6546c579dd4291dbe2c6c77b5772fabcde07381cf53a5eacn/a Heodo
2021-12-04G74B4AP2Z5LLU6XE.xlsmxlsm 7266eebb30eaccc6220328cbee7e643b0b0cc3f026e7a58e7cf6db771c305efeVirustotal results 18.33% Heodo
2021-12-049ICYY19UFAP.xlsmxlsm 81b55c303cea92cfb2cef52cd7028d2b93bea856e4dbe5d3532f15dc9e9f16dan/a Heodo
2021-12-041B73RYGKM.xlsmxlsm 82625bb927f2a9f0bc7f7765ffd867116e0a1950f2582ecdf24c8833fb7747dcVirustotal results 21.67% Heodo
2021-12-04KJRGCDV7WRGTQATE.xlsmxlsm 652c1722795e5f1fb2dfef6c65bb377030b0a0a4a00b3aedeb1bd68ebeee6c5bVirustotal results 23.33% Heodo
2021-12-04X68LQ4Q3IVFKC.xlsmxlsm 4fa28e1d22d28b1cd95e382fdbdcccedd5491789252b3631440eab0fe9567cadVirustotal results 19.67% Heodo
2021-12-04UKPLVOCIM4.xlsmxlsm 3789930728f3ee42e973b242ef2d048b14ec2e73df9e6d653f48fe4414a7181bn/a Heodo
2021-12-04X7PGSN2BKK0JD89.xlsmxlsm 8adc6751f1b1a317ccccb210e02fbc5d1436c5e4d73005d4c95fbe0e13686286n/a Heodo
2021-12-04OEEVNKV6QZOJ0T.xlsmxlsm 3a0a22030acfd67b59f0c90741d3a63e786a9a9643878045ab9c22c368bf09b0n/a Heodo
2021-12-04I7PKPBXTXOSO18.xlsmxlsm 2c7d3257879a2e69e5c869ea9ce1dcabac9e27d92225b6ed4c6a9c214d2b4871n/a Heodo
2021-12-04QZHPEXO.xlsmxlsm 7eb5f1e0c302ea29c26d70bb868f373eaff06b7b82922a391a68b6e748437ccaVirustotal results 20.00% Heodo
2021-12-0442XG9ALS4D74.xlsmxlsm fedb63cc8f611d2b9254c5d0366337bdfbeb858225468097c4e52539c5fea3bfVirustotal results 16.95% Heodo
2021-12-0462A36E5GW3.xlsmxlsm a16a120b4347a2248ab6129a9e7f34359ffde8424f9c7a44fb3c0800c5a4cd19Virustotal results 16.67% Heodo
2021-12-048VKL4RL.xlsmxlsm 19940a1e1820b4aa1e0bc8ae018bd31dc2d870fd9970ffbb3a25a25676c60936n/a Heodo
2021-12-04DVKN7V57.xlsmxlsm 9e4011d4239e49cf4815b6c9e9e00dff0ae353ba4c2eb30a9e6a31ba4c2a1f68Virustotal results 18.33% Heodo
2021-12-04OWOT0GW07B.xlsmxlsm a54dc686ce0431d4898254afacb3ccae2297f3dd949811fd326444d8688ba15bn/a Heodo
2021-12-046OP3GXPFQY.xlsmxlsm 4cd06ae56d216f369c0fc1956d794e869e403b789872ac8ddee9cac00e9a653bn/a Heodo
2021-12-04X81LRC8JA27EV642.xlsmxlsm 3912164b44f081e1c54f2349f188eb8fc73b2ff594943b0c31f03d52f82525b3n/a Heodo
2021-12-04TYIO7NCDS8B.xlsmxlsm a778d86f9ea4be3e04e9c9b2653a0c273c229d3ebd1b98e2024b3eb15700f83fn/a Heodo
2021-12-04BDLTCC4H9.xlsmxlsm 3deca071fef4995683e7971915e8db86dee177c3332743c0b110abefdc49e909Virustotal results 18.33% Heodo
2021-12-0415ZTZZL.xlsmxlsm 362728960b32b0638692a8e4a2d5a1004e56f38bff3ef0d63e708a035d00a774Virustotal results 13.21% Heodo
2021-12-04Y0DUI7C8LPGNO.xlsmxlsm 3cc2e2a09778df58d5c2688dc3732abf599dcd5e33ec04753317b843db4f296en/a Heodo
2021-12-045EY69Y7AC.xlsmxlsm 640cb770dd4906e04ab1bf31b293f900e2dfcba94e6316378398136a7dd3e644n/a Heodo