URLhaus Database

You are currently viewing the URLhaus database entry for http://ashamedicalsystem.com/1dgdm/fh-03/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1987554
URL: http://ashamedicalsystem.com/1dgdm/fh-03/?i=1
URL Status:Offline
Host: ashamedicalsystem.com
Date added:2022-01-18 21:58:05 UTC
Last online:2022-01-20 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-18 21:59:07 UTC to google-cloud-compliance{at}google[dot]com)
Takedown time:1 day, 6 hours, 55 minutes Poor (down since 2022-01-20 04:54:51 UTC)
Tags:doc emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-19H-71634938.xlsmxlsm dd2013ad0148de7b9a7877b7b27f3372c04615fb214c98f8a96d3d5dc80b03f5n/a Heodo
2022-01-19984-369022.xlsmxlsm 1cfe5e523eb76253a7b3270d91f99f4998ab8ad60ec974444451ef69632a0d29Virustotal results 29.03% Heodo
2022-01-19xek-4685.xlsmxlsm c8b489b858ea1f5536525a2b538ee8d955f10b8f43b86e4eb06894d5c48e885fVirustotal results 28.57% Heodo
2022-01-195896026_0562133.xlsmxlsm 6c3a841145e2fedd8c5a7748d925cf469f8a3bf9f2cf457c216c18c5be51afafn/a Heodo
2022-01-1982344645_948804.xlsmxlsm 39d40e8b39b2ded1846a5ac1aa2441a8bc1e11f4edf26d60f60d49862a3435bbn/a Heodo
2022-01-19MB-019173.xlsmxlsm 17fec23004233b510f24a66fbfbff83304bf565e4138fa85b44c7b80d9dfcbafVirustotal results 26.98% Heodo
2022-01-19I1617.xlsmxlsm 2145d6f70e0006dd36ea7cf5aebfa8ced1aa682c2187bb301c9e4142ac1acba4n/a Heodo
2022-01-19249069_820701.xlsmxlsm 061f1cbf244c489c29d77924140bd6d380d4d09c0b1019aa2bd30751a08ed12dVirustotal results 23.81% Heodo
2022-01-19ONFS_4.xlsmxlsm d13c581258a7b7cea4c550025cf6e9a52d509d4759d34753a8386e339153ef11Virustotal results 29.51% Heodo
2022-01-192185.xlsmxlsm b58db86f3081864f0c0c9d89384b47eddd6bf313316fe20693600bcdb4b8af79n/a Heodo
2022-01-19iubk225.xlsmxlsm 26aa470c4f697dd7102f845f4a9588bdd6f76982a3f269646889b90ce6cbc706Virustotal results 28.57% Heodo
2022-01-19YPF-0297.xlsmxlsm e63a766205f2e9835456e0fc42e94d2509323589fb5b8be7f3727c3f1c2049b2n/a Heodo
2022-01-19VOLjL_92957.xlsmxlsm da2ca7e4cb0fabc7cd8e767f5da2f960ac3e970c17bb2431f15d66ea865c1b40Virustotal results 23.81% Heodo
2022-01-19ieQNx08.xlsmxlsm 8287032d6a1dce441f4a3a64690f9bde0dd5f87453e06758ac9a4c28810608dfVirustotal results 26.98% Heodo
2022-01-19qA13630719.xlsmxlsm a52dfa15b66d2ae29ccbc1bb6712cf0654c2c752ac5a63d4eb162d5dac5a731bn/a Heodo
2022-01-19qrkwvck-96766.xlsmxlsm 61951055cc0d0c6d0cb0676bf6d838590c069ade35a51f512216b4b066cc8bb4Virustotal results 30.16% Heodo
2022-01-19EZW_6831615.xlsmxlsm 2edd33f22f1cdfefd80fb2f74cf638dfac623d1f8bad012d0893149332c739f9Virustotal results 26.98% Heodo
2022-01-19XOBA_9026.xlsmxlsm de02ded5db971410ad7eea0fd4d54fdc32d3dc91a0c1cdcb4d5186cac18ce672n/a Heodo
2022-01-1907912EYDKEPHW_136.xlsmxlsm 0e93f184feed7051b8f692e2ee6c4c6f44faa941e4efe0b110ac8fb1047af057n/a Heodo
2022-01-191423_7613108.xlsmxlsm 66671730c5926c7cdb67988548c731b379e7437dba331f236f2209d92ed06da6Virustotal results 25.40% Heodo
2022-01-19Cnoej98.xlsmxlsm 9844ba0b5c96276df5d7c5f8857d3aeec368f716b39fa9f6be3e02d32aacce76Virustotal results 24.59% Heodo
2022-01-1957947.xlsmxlsm 5c57c1974bf29931f379b6b95707c210126c11efbcba4755aab7345074fbfbc5n/a Heodo
2022-01-195900370414.xlsmxlsm 72206de99ea932e8b27b263377db9549955b1fc26c367b1c2a34609120cbfe8fVirustotal results 27.42% Heodo
2022-01-19jaz9.xlsmxlsm fdfe3ef74670ee086ca8e664bf769f4caa6da95802cd84cbb71d329118d20b0bn/a Heodo
2022-01-19YA_7.xlsmxlsm 04cbc0b177c15fce9d0ab4d483fae95e6eee3979d6ef931066c569b1748c3908Virustotal results 25.81% Heodo
2022-01-19TZ_535.xlsmxlsm 80079af4efe5733cfe73c9bfed838688167bc5d6f1e0c5e1b28ace842559a4fbVirustotal results 26.98% Heodo
2022-01-1929735STTC-6423153.xlsmxlsm 8ca7a419419e924a7675290d45554c539b42e00a87b9e7621a0bd702e8ae9783n/a Heodo
2022-01-196867350_01966783.xlsmxlsm 71407e6c3854f830dcdf5ac3bd633139a9855893eb9f436c5b9330a14bfeb6f8n/a Heodo
2022-01-198011-7.xlsmxlsm 1f0a8991f81a6908a431cb2033fd21eeca4f120554a142a3a045f4ebef76fadcn/a Heodo
2022-01-19353_472.xlsmxlsm c60c7a2d441a234d4a0b6d06862aba1436360f8367423b0e7bcac6f052e1565fn/a Heodo
2022-01-1906228384674.xlsmxlsm 0416c35114bb1ae97acd2eab3d5c08ffd4372ed62cc3290c0249a8d61b3e3320Virustotal results 25.40% Heodo
2022-01-194060-35.xlsmxlsm c13305fdd9e7e4ce379937deb578ce2e788370bc2b547e027db59c59b722efd4Virustotal results 21.67% Heodo
2022-01-19OT_497059.xlsmxlsm 1fa60639ea962861142d2efeb77fd77c280fb3442d31d2db07918d54e6b5336cVirustotal results 28.33% Heodo
2022-01-19U60114863.xlsmxlsm 894a023ed44d99d8947ce2e484d9febd346dbfb7ea54d7f2506e257f641f292an/a Heodo
2022-01-190218_08.xlsmxlsm ceaa2e4a3e4521b680dbbb7645140a69929ac5ecb0d9342bd88ffe34e33bfcb6Virustotal results 25.81% Heodo
2022-01-18201669369-30538.xlsmxlsm b9b41dd1ed9fc80d53af9daa78ea014acbcd6780ef0d352cd32fd50a04ca0508Virustotal results 22.22% Heodo
2022-01-18SL-000487158.xlsmxlsm 6001966534b597395906f4462e7dcc3068171124579b7265e5e7be7e05e5c427Virustotal results 25.00% Heodo
2022-01-1828407_2508566.xlsmxlsm c903fb3b373c6c8d58084c907ac1629e16ed3f39d8407e4db2ed41c417f4131aVirustotal results 24.59% Heodo
2022-01-18HMWTB_772410.xlsmxlsm 96cbfe690490f4cfdbfdf395626f5f393deb559f0c078aecfa9facc6fdac9d54n/a Heodo
2022-01-1879836703_7661.xlsmxlsm 42fce6fdb4460cd9ed23a7e05582c8344c254ca42bf5a384ec854274e372b0ddn/a Heodo
2022-01-18evqc_27120.xlsmxlsm e866853bf48a43badc9eab45feb4d681cb79c02c7cc352ac594964d5f4b2798dVirustotal results 19.35% Heodo
2022-01-18zV_279755.xlsmxlsm c96f85662e9b91ef48116048a2b379783a961a851b6281497f1e93de0721ad15Virustotal results 25.42% Heodo
2022-01-1841111687297662772.xlsmxlsm dd6506cbce109e1f52ae43de8925cc5764239d9ad40ea61287efdc83ddd88be0Virustotal results 20.97% Heodo
2022-01-1838783-4584.xlsmxlsm a0cc02185b718d8a8caec87fdee0f6aae676b61e1c69915cbd8d8e2600263b12n/a Heodo