URLhaus Database

You are currently viewing the URLhaus database entry for http://tys-yokohama.co.jp/FCKeditor/service/nachpr/2019-04/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:187278
URL: http://tys-yokohama.co.jp/FCKeditor/service/nachpr/2019-04/
URL Status:Offline
Host: tys-yokohama.co.jp
Date added:2019-04-29 16:20:17 UTC
Last online:2019-05-10 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-05-01 21:40:04 UTC to hostmaster{at}nic[dot]ad[dot]jp)
Takedown time:10 days, 20 hours, 47 minutes Bad (down since 2019-05-10 05:13:12 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-3030042019-43CMA223-670418L.zipzip fb48255e94e58795c508adbdf3f18ba09a1deececf14c3abe4a0829afc718d0dn/a 
2019-04-3030042019-1PTS1194-0528R.zipzip 566271cef33a1892453fd231f1f41c3bdfbb36275234d2ebfbd0903426a8f02fn/a 
2019-04-3030042019-50YI885-1640C.zipzip 9846133b06c06792999f7d3256451f54db0cf0c81806029ff58639d1bf7c79e7n/a 
2019-04-3030042019_188C633125_8953X.zipzip 60a0e393aed5724687e21b26e1ba1f68ed08ba6a00b0fe95866862e8ec9a8aa1n/a 
2019-04-3030042019-50CM384-02725X.zipzip ae63ada8e645f5c4544671f9b1a6dcabf3e7ad7a04aab6d9dcde054d5ea405ccn/a 
2019-04-3030042019_63CA460_03357U.zipzip 027cb0d0623fb581822bdcc78a83bd6fb681146604da97d2118cb3e1d447fbc0n/a 
2019-04-3030042019_4IO7502_13613G.zipzip f4169f66f2cbbbe95094673f41b19253b3a14380e6e490beef647219dae96f91n/a 
2019-04-3030042019-85UZ0664-38312W.zipzip 269175497cd7fbd49bf09d197351ba6ab462e653ac2dcf04abccc6148fc914cen/a 
2019-04-3030042019-696D69503-8763Y.zipzip c91b7627319ed13e366e814e7e304be538067f89bd326a77126632faaa2a600an/a 
2019-04-3030042019_35BRS902_95460N.zipzip fb25ffb6197adcead3accfc342f95709c360ead29f9cad5b92adc827a4f092ben/a 
2019-04-3030042019-63C611761-685032Z.zipzip 948237186f13b60ec73b52fd8a2afc86beaedfa2c9586465536bcaafde550033n/a 
2019-04-3030042019_9XOG75787_7974339Y.zipzip 75b0e764ed578bc53bbffd744001fbebfa70179acf999bfc4ff336c6330f6e04n/a 
2019-04-3030042019-2P4B6918-5809485E.zipzip 33f6ad7ba13b5438fa373f9eb1526929644723639be95e9a7447782d025f24ebn/a 
2019-04-2930042019-8XR91328-6619685O.zipzip a5af699d2af85d9fec0710f5e12050e96d7051751e971527be0715f829d5858en/a 
2019-04-2930042019_1F9S1940_1949418L.zipzip 88b531fa589ec8f51775e13ccfd9ff4e6b532bcfff3ed0c20c3152793c41364en/a 
2019-04-2930042019-8W2J31580-5056E.zipzip 972cbf4be74a7bde414de838e9cf217f02e1461d74f7fc27ee8d8259c8a4acf7n/a 
2019-04-2930042019_8GET51454_1682944U.docdoc ac63ed0168f8641ea6f1ca3660504bd478559e56f07fda391b119e9824395e59Virustotal results 39.34% Heodo
2019-04-2929042019_39UYA491_87375Y.docdoc c58e917d1033f776cca2749f5b7e4c3205f60f3ba543e276d56d7384c9c1ec4aVirustotal results 40.00% Heodo
2019-04-2929042019-16M0P890-9259H.docdoc 9bc87f50e56159bb005f2f77083a0c6eb99637f53dce626f9fe37e12da26576eVirustotal results 39.34% Heodo
2019-04-2929042019-154J110964-332848D.docdoc f4e46eadced7af3c4ef9b3a88bdca5fa879cad4660d207fe00cbd1a47c2faf02n/a Heodo
2019-04-2929042019_38IW217_7021E.docdoc 81fe1ebf4564b644223d77d496b02d18291b74a9c2577464d3a9e3882f4abc0aVirustotal results 38.33% Heodo
2019-04-2929042019-0SHD33747-00518U.docdoc 14246f67028f50ea0be58559e0b052435439bed51a2d621155974d7cdfc5de07Virustotal results 37.10% Heodo
2019-04-2929042019-338X4977-41271H.docdoc aa6e40de0f179b013aaa561114f772f4554c11acf54dc51790f26194feed222cVirustotal results 32.79% Heodo
2019-04-2929042019-5CUT39371-1327957O.docdoc 99554741739eee61bdeda5558c963602d1d3ab460d19d260e2615723ae42f749Virustotal results 31.67% Heodo
2019-04-2929042019_57TSW195_2237B.docdoc 837c6d55b457655e00f7018ceaef2036a780c09fd02afc262c9b497095a84f0dVirustotal results 32.79% Heodo
2019-04-2929042019-60M62735-07733L.docdoc ad775f1655f478423e17737051fd6be39c2ca157783b095390b6e5adcc965756Virustotal results 31.67% Heodo