URLhaus Database

You are currently viewing the URLhaus database entry for http://vdhammen.com/cgi-bin/paclm/01lb1z2q2_imx3c-370788005621382/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:204256
URL: http://vdhammen.com/cgi-bin/paclm/01lb1z2q2_imx3c-370788005621382/
URL Status:Offline
Host: vdhammen.com
Date added:2019-05-30 19:58:03 UTC
Last online:2019-06-12 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-05-30 20:00:03 UTC to abuse{at}strato[dot]de)
Takedown time:12 days, 14 hours, 10 minutes Bad (down since 2019-06-12 10:10:27 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-06-01INC_8020821697US_Jun_01_2019.docdoc ef62880b29c9e9403633bfe2c0572d75e5d9ee3fa4fb698697dceb9efc99ec3dVirustotal results 49.18%Heodo
2019-06-01Document_643223317096US_Jun_01_2019.docdoc 570a32b3a97f12b17246e9940817c9c72ee63ac383f6983e342e09f79debb17eVirustotal results 49.18% Heodo
2019-06-01DOC_7952084955US_Jun_01_2019.docdoc bf032ea596d973c8333c4a7d4e7338cdb4276e3d2e8ae5046b8bfbac20941c92Virustotal results 50.00% Heodo
2019-06-01DOC_532239942042US_Jun_01_2019.docdoc be08e4e434bf6ffb686cc050d2d014fbc47fdfa0ba3abbd8f33b0aa11ab2d23dVirustotal results 44.44% Heodo
2019-06-01Document_856084361928US_Jun_01_2019.docdoc f5f4295f963a3f3ac6e0dc5f1b965821609ca045e1ee63c8687225310155887bVirustotal results 45.45% Heodo
2019-06-01SCAN_71092035516US_Jun_01_2019.docdoc e5cd9fb3599e112d7f690ec64cc87eaca100d75fc46123812fb4a690ad71be55Virustotal results 48.39% 
2019-06-01LLC_537836249474US_Jun_01_2019.docdoc 7f578e2f3e64e54a274202b301e3ca4070a1f4b5e869dab8065dd7d60864f0e4n/a 
2019-06-01DOC_302803544146US_Jun_01_2019.docdoc 1c2f25113cf027732770e9f16c727da8ed92c9503034e0c7642bf26d939a8c84n/a 
2019-06-01LLC_3467757327US_Jun_01_2019.docdoc 6db3364c302d5c19db16a08c2bc81b3d4c2950d667272c12dcbd6827654aeabfVirustotal results 48.39% Heodo
2019-06-01SCAN_996452139207US_Jun_01_2019.docdoc 11870a8a506caeaea612f915e9f28d865ffc5cd8ebe791584e00584b0a9016ean/a Heodo
2019-05-31LLC_950359629838US_Jun_01_2019.docdoc 49682d6275f2860d0b97b984d63ccecf1268c44ab9a147ddf95662472cd9a538n/a Heodo
2019-05-31SCAN_0736351097US_Jun_01_2019.docdoc f8e39ecf6d736e3e321da3e786e095c108564c0ada8a0916f70e04bc642e60d5n/a Heodo
2019-05-31DOC_166951859882US_Jun_01_2019.docdoc f2c59cc9eaffd0c7050123d864febc3e5380b439d1041aaeb45b04ae7c6e6bbaVirustotal results 48.28% Heodo
2019-05-31DOC_6261850538US_Jun_01_2019.docdoc e1e0d91e131669f5c88bd9a851b270f11c8eb364f13253c1adc7c965db858dcaVirustotal results 45.76% Heodo
2019-05-31LLC_026685889108US_Jun_01_2019.docdoc 7894381b0ab455b3f831f689607a32a015b1a244cb633a040c887eb3976258b8Virustotal results 46.55% 
2019-05-31INC_5421846913US_May_31_2019.docdoc aa42a5f10fc08dd7b5e163a4e84cdf5e7f8315f53b3cbd258003e4cda1859a56Virustotal results 39.34% Heodo
2019-05-31LLC_205304165562US_May_31_2019.docdoc a53484da9e213b8f9a1506bc4356647f57082f7eddc755737785e30ba2b09eacn/a Heodo
2019-05-31FILE_461465138072US_May_31_2019.docdoc f817c10ca6e8592457266f3f56840dd3971c2e42cc258907d0e2e545c618e2bcn/a Heodo
2019-05-31Document_685222712069US_May_31_2019.docdoc 2cb9621b46ff7d4f115a0e8ed5e6e5e8c1e8c5524721d603363ab85630b729b4Virustotal results 26.23% Heodo
2019-05-31DOC_2133301462US_May_31_2019.docdoc 003b9130a3631b38d8bf7eed6c2c9f12bb73de439faf75ad3e2098157427f003Virustotal results 27.12% Heodo
2019-05-31SCAN_111742804363US_May_31_2019.docdoc 0cf0654cb6fb80e2c39a28dea61555e1bb0f9bb00ce96ebdb4e7ccfbcb98d585n/a Heodo
2019-05-31Document_6824159983US_May_31_2019.docdoc 6a32e95f42d02af5eb94739c1e17710bb7f6ffa890efce01e12cbb50e201a906Virustotal results 24.14% 
2019-05-31LLC_466291686630US_May_31_2019.docdoc b1a76d5bd22e884a6992fed64848e840fe9603c35473ca3ba16a7ba71a2336a4Virustotal results 23.33% Heodo
2019-05-31Document_70593286046US_May_31_2019.docdoc e50892cdd3dbdff6f0516653e9f59ac44bb20a0f739a95b6e25d89cb7a2e196fVirustotal results 39.34% Heodo
2019-05-31FILE_4939607084US_May_31_2019.docdoc 7e8dd2fa267e6b9a56a7ae76e223e438d952c15f34fcc840616668bc6c34358cVirustotal results 36.67% Heodo
2019-05-31SCAN_9335649379US_May_31_2019.docdoc 761bdb8020c2aba616c10b0f578eb14ba3f4ea22af43f3eb9539709890c91f59Virustotal results 35.00% 
2019-05-31LLC_023173007590US_May_31_2019.docdoc e2094c0f0b7d10ed377b2e252d040469a94047f72c4fa87803f5366c99ff1324Virustotal results 33.33% 
2019-05-31SCAN_41922673297US_May_31_2019.docdoc ecb369f99bc5d7602d6d7a507d3bf18d60c5ccf52bb736f6938d27e01d81d013Virustotal results 36.07% Heodo
2019-05-31Document_93567455321US_May_31_2019.docdoc 0fd9cb8039b08e5ede24990d0789b476a5d9cc5d083ebc4b46e12f2c433bff6aVirustotal results 36.67% Heodo
2019-05-31LLC_299074174590US_May_31_2019.docdoc 58c47c1e48d2560fe96dc03eeaec4ef61cc4b057eabc323ff140d505ec9b2358Virustotal results 28.33% Heodo
2019-05-31INC_457780947982US_May_31_2019.docdoc b8ffba5933a7f1ab10640674515407df874291c9b965091706b22960b3dadaaeVirustotal results 36.21% Heodo
2019-05-31DOC_4762039208US_May_31_2019.docdoc 3b0a0fa5074ab28f2222e32f5a96724b10308a7184b6913aab5f7ed16a2a16e1Virustotal results 34.48% Heodo
2019-05-31INC_409569977571US_May_31_2019.docdoc 2b2ca9cfa5e7efb20e6ec52b7e5effbb02ac817544a2f77c69b13b1a46038506Virustotal results 34.43% Heodo
2019-05-31LLC_83883293862US_May_31_2019.docdoc 065c4bd9f352f3dde47629101839b08d1264027623d68fda03005789cab0861cVirustotal results 33.33% Heodo
2019-05-31LLC_9643368663US_May_31_2019.docdoc 38950a41bb0d5c61efcd0dab8ffae15d49454a792dd55507eb3fd2cc1d1a2a3eVirustotal results 27.59% Heodo
2019-05-31SCAN_989013239606US_May_31_2019.docdoc 841ea7eed1c264c08b46b6feed248dbe7bc255773c0b06a9bf565a43ff54e808Virustotal results 30.00% Heodo
2019-05-31SCAN_7134984345US_May_31_2019.docdoc 963cceba0759dd50fb2a087ce21e144c64e5973e78a397fd2bc7e30fc444db8dn/a Heodo
2019-05-30INC_87452048618US_May_31_2019.docdoc 7a973404b546486366191a83c0e04aaa83a732b2133883f1a9246c296318d79fn/a Heodo
2019-05-30SCAN_38954570375US_May_31_2019.docdoc 3b8afd70befb29f9b95436a16fa5dca6193af7788369d026e065f70872078604Virustotal results 30.00% Heodo
2019-05-30INC_811822904839US_May_31_2019.docdoc a46c2718370f531a3e6ec951ccb19c56159f26b77d6aa3bab0731ce2c794076bVirustotal results 25.42% Heodo
2019-05-30Document_701420686486US_May_31_2019.docdoc f4a07f1a4cd30e9347ee1ad7f30e1924786dadb1d6ed788fb2fe7348a928e623Virustotal results 30.00% 
2019-05-30SCAN_1087989044US_May_30_2019.docdoc 59c2d27bd9acdfa4f8097b8252e06faee7f0affcdafe972f7d0defbe57428fd7Virustotal results 28.33% Heodo
2019-05-30LLC_776643597241US_May_30_2019.docdoc 2a378777103ca9f6260ddf24452a45f249bdf207026d595f1cf47c1a85de1b61Virustotal results 29.31% Heodo
2019-05-30LLC_620318480855US_May_30_2019.docdoc 0cf70cd6e3ce218ca6e0fb3bb7a79d13b176b75c4e29a332fad0aaee559f6970Virustotal results 30.51% 
2019-05-30LLC_751171917022US_May_30_2019.docdoc a0d3dd45a0be8ee20a71761edb88f95567392034577c0de2a7b43c3977f1a1d7Virustotal results 25.42% Heodo
2019-05-30DOC_7178058711US_May_30_2019.docdoc fcd586466cd8551af44b6b406d478871054dd9c6a4cc4af9705402bf681e7982Virustotal results 29.31%