URLhaus Database

You are currently viewing the URLhaus database entry for http://www.dienlanhducthang.com/bch/personal-disk/guarded-forum/2q4sgalc-x7726z3zz1ux/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:271270
URL: http://www.dienlanhducthang.com/bch/personal-disk/guarded-forum/2q4sgalc-x7726z3zz1ux/
URL Status:Offline
Host: www.dienlanhducthang.com
Date added:2019-12-18 04:21:31 UTC
Last online:2019-12-20 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-12-18 04:22:05 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:2 days, 3 hours, 46 minutes Poor (down since 2019-12-20 08:08:17 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-12-20final-release_12202019.docdoc 50ef9a5f6ef2cd9539a0b58a8f8af3fba684f119fe6ded32b0ec2867bf727498Virustotal results 32.79% Heodo
2019-12-20part 12_20_2019-4169034.docdoc 27b25b36f565ebe1b9fa0450584e3e8326ee1e48bb32bc9618e2f87dfbcc63b0Virustotal results 32.20% Heodo
2019-12-20statement_FK70798882191.docdoc 9c8a67a4cca28b33344ba9e2bfdf954e7b3de20c7e7df17d0bc9940c94a6a898Virustotal results 32.79% Heodo
2019-12-19rep-H9P209681768_866181.docdoc cef757a0fecedfc1da7d28817a7eb25a819eb04360938756ae7bdb3bd31e805cVirustotal results 32.79% Heodo
2019-12-19Greeting-Card-2019.docdoc c9830c742b6d63ed05a6a06724a96918b32f5bd2a3a7632ed6866508970b3510Virustotal results 33.90% Heodo
2019-12-19Christmaswishes.docdoc d394ed6a30ff8bd2c2812675561d9662c72ea9d8c987dd329046f0ecfdeb9177Virustotal results 32.76% Heodo
2019-12-19Christmas_Greeting_Card.docdoc 38228d35350b8cc46377671e6c82da104d71567808173fd99063d63b506488eaVirustotal results 30.51% Heodo
2019-12-19ChristmasCard.docdoc 1e1aca50c65bc43be764fd92ca9b520348c710fbf834ff62ab8d6d1198d3a1faVirustotal results 24.19% Heodo
2019-12-19Christmas_greeting_card.docdoc 77d6e16bfe0c08553094c4d421b8fbe2e19da685a837ec432e153c31376fc803Virustotal results 24.14% Heodo
2019-12-19REP_wn685p9quq.docdoc 27820b2e783ff5a9817650a7f8a04b23a41db0d06c86748ef6a1c4a1fdf9f43eVirustotal results 22.95% Heodo
2019-12-195nm8stnqs69.docdoc e75e3aebe863fbe42808fecadb2cefe8ef18d23891d13b6b970f21ef8489a238Virustotal results 19.67% Heodo
2019-12-19INFO_12192019.docdoc 61fe55be0a1c2a52426f90abfa9778eef565c849a24ae59e31c6c8ba403462e8Virustotal results 21.67% Heodo
2019-12-19list_12192019.docdoc a67088ef976b76ffe088c574069558a6da9e6d1232b0f1d031f8a92deca094a9Virustotal results 21.31% 
2019-12-19STAT 12_19_2019 G6105040190.docdoc e5874d28102cb0c9b354502a98d8b1c8d982346ad1b8463988833a104bca5b51Virustotal results 24.59% Heodo
2019-12-19release 12_19_2019-3E3630808.docdoc 5167cc18fa6f09d6f20b7eb6cdcf237800ed1e86862a053fe72b0a936ecbed8bVirustotal results 22.95% 
2019-12-19UNTITLED-12_19_2019_AG92869867346.docdoc f4f8b44946546436bc0416b3020ed6dc278c7dd8a18db0a8a9b904de6e2f6640Virustotal results 23.21% Heodo
2019-12-19Doc_JC578722906448.docdoc 139113f465022b7336c3cfa9e2ea54952d56825d295a0ff62dd3e8cc09483d24Virustotal results 21.31% 
2019-12-19UNTITLED G3399200 329440207033.docdoc cf080cecf871d837c84b70ce57518579cc126c06cbcc720771ec723aaf44813aVirustotal results 20.97% Heodo
2019-12-19N29059613.docdoc d9c0dd65766e2d2c84672023f2b4e3103ca5d7a686bc06c84488092de91ff1e3Virustotal results 30.65% Heodo
2019-12-19PART-KW89187773-2190387.docdoc efa5656199e7633e1cf7656adb85cad8e309a8c45bf8f8f1e01f4759224c798fVirustotal results 30.65% Heodo
2019-12-19rep Q627302598.docdoc 72ce3df7bd7da4208c97989fe0b93c23a8f3c4348ddd24adf59fa6539cd148ebVirustotal results 31.67% Heodo
2019-12-19VER_6246586.docdoc 572bc2b161d30a630cb05d333098de35fcf29bcf4744b6af84196990fdbeb3b0Virustotal results 24.59% Heodo
2019-12-19part_D99578256487_336472842687.docdoc 29b09a38dd8a80d4166fa0bd02fc00380f70cc097cffc0eeb9d33e8af35e8b62Virustotal results 24.19% Heodo
2019-12-18361997943869.docdoc 07ab35a0d78f11f8ea58be35156645e2e83acb0a13e1500f6928143220857c26Virustotal results 24.19% Heodo
2019-12-18INFO_12182019.docdoc ea94f3a10992fd81fb798921e2c9207f21f134cb7784f1f201d750587f25eebaVirustotal results 25.81% Heodo
2019-12-18release_12_18_2019_7FD33172975836.docdoc 3be9f66ef6e3feb291bca66c44fd8651d392ab19807b9bce1a7fad00d4a518a6Virustotal results 25.00% 
2019-12-18scan_UQ8012235.docdoc 6998c2f955541d5a517fd68d96604f2ea2efa83d0d1c0a04fa3d09c629bf3e18Virustotal results 24.59% Heodo
2019-12-18INFO-1Z93105754.docdoc 540a539653c7a75ee7d4574be240c9619d114d91e73a16c0eb7ff8044b46ca5dVirustotal results 20.97% Heodo
2019-12-18PART 1512697555088-9755939.docdoc 7d4dccc23bf9da5fbb6f74c516115a47ab6812b79175db351f6a331dee5c9691Virustotal results 24.59% Heodo
2019-12-18release P5J25364_6083405066.docdoc 854d5fd9c1117d7589ba87ffbe6e0016902612837bbd0975a230a5fbb65457f3Virustotal results 24.19% Heodo
2019-12-18Untitled-7m42m18u0o2o0l.docdoc a435b8c41e5a3d8b4fa32af0925ee6df051d375fc1b27a278d7c7b30d218fb82n/a 
2019-12-18info_12182019.docdoc a5c388ebbee623f26938d67427170bb063976b1dd0524f6ea18b402809afed4cVirustotal results 21.67% Heodo
2019-12-18DOC_q0ss6r16pt3l.docdoc a5e5e4716eda5cccc9d9b8a61517b4fe21e4fbfcc4ecabbd3d08fc89b0f33f29n/a Heodo
2019-12-18Untitled vwsw4731wtu.docdoc a9b41646ad51dd5bc762a07a0efce3c6f5d6f372281699b1ba4747ad29e74c9fn/a Heodo
2019-12-18copy_12182019.docdoc ca467a7e49a4441330189dc88336c3fb63f534ba412cd2aefb674c11a48dfd78n/a Heodo
2019-12-18VER-12182019.docdoc 9d7854178437a26f14d851e786d68dcdfa005d2010b175103ccf8e1eb106b141n/a Heodo