URLhaus Database

You are currently viewing the URLhaus database entry for https://newlandred.com/wp-snapshots/common-yfo-robnqmj4msln3bbx/individual-5w2gvu4eqx-8kgivkvhkv3wf/QLbEGu5UEkJ-yqwk1Gkbbbo22/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:270155
URL: https://newlandred.com/wp-snapshots/common-yfo-robnqmj4msln3bbx/individual-5w2gvu4eqx-8kgivkvhkv3wf/QLbEGu5UEkJ-yqwk1Gkbbbo22/
URL Status:Offline
Host: newlandred.com
Date added:2019-12-16 23:49:14 UTC
Last online:2019-12-17 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-12-16 23:50:06 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:11 hours, 38 minutes Good (down since 2019-12-17 11:28:33 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-12-17doc-745268_65489518041.docdoc dc645d73570d124291531b477cc761af3da86700da87327cafa0dfd4dc38fcb8n/a Heodo
2019-12-17PART-12172019.docdoc 0797e938e03e3507e5e9987aded4e21f3bc48ee76076f265697bb83cec877c3dVirustotal results 20.97% Heodo
2019-12-179359652.docdoc 32897cc3428f62a7fba5d46b5b108c8561e9995be232ce279b939207f7267d3fVirustotal results 20.69% Heodo
2019-12-17release_12172019.docdoc e9ac3b21ffda10636f5cdbd5385bdc156a169016c443ccaa3c0709d13e7aa044Virustotal results 29.03% Heodo
2019-12-17scan_PT2675265618614.docdoc c9e63f76ed3ad58b071fc36b0e55012348e40b5bb8d82a7ed71b3e77293c2f51Virustotal results 30.00% Heodo
2019-12-16STAT_12_17_2019_8A8248.docdoc 3d43c7d08fc3aba26f7b16ae9d2ea04d30795f9cdbe85fd440fcb5b44d41beeeVirustotal results 26.23%