URLhaus Database

You are currently viewing the URLhaus database entry for http://trad-dev.dyntech.com.ar/wp-content/upgrade/es_AR-6whU3K/report/aj7hkgc04oov/tr35-8988800-8133974-us8h4k4t0sg-2irez1noydzv/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:288460
URL: http://trad-dev.dyntech.com.ar/wp-content/upgrade/es_AR-6whU3K/report/aj7hkgc04oov/tr35-8988800-8133974-us8h4k4t0sg-2irez1noydzv/
URL Status:Offline
Host: trad-dev.dyntech.com.ar
Date added:2020-01-14 19:31:12 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL :Not listed
SURBL :Not listed
Quad9 :Not blocked
AdGuard :Not blocked
Reporter:@Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-14 19:32:03 UTC to abuse{at}iplan[dot]com[dot]ar,abuse-iplan{at}iplan[dot]com[dot]ar)
Takedown time:2 days, 11 hours, 59 minutes Poor (down since 2020-01-17 07:31:25 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2020-01-16DOC_MWS_010120_QIK_011620.docdoc e7ad3e073f6635851ecbeff17a6c6a8a5f05d2cfc0754b69dfbe0a6551dc6303Virustotal results 36.07%Heodo
2020-01-1660229739.docdoc e314c8b472db81404961016b49758c54595600e83fa2801d5cba0089cb8b2223Virustotal results 32.79%Heodo
2020-01-16INV_HR1365072543IF.docdoc 67e4ad463f707098e9dd3aa9ef44543687de41237cb6bd15500e428aa17c34c7Virustotal results 31.15%Heodo
2020-01-16BAL_9512545047543262519322.docdoc d2ce1838da599f490397183272a746696999155f408cdd5da5d82c3ae1df24faVirustotal results 29.51%Heodo
2020-01-16REP_PO_01162020EX.docdoc 3c99ebde95d760948c4ff5db925c0272ec89b8409d698aab26e5785a42c88243Virustotal results 26.83%
2020-01-16U_PO_01162020EX.docdoc 9b114f67484468604da8e6d028500f9e0fb32be159dc5dba550cd295be425b1eVirustotal results 24.59%Heodo
2020-01-16SW_07900Z1.docdoc 0524eb39455f37b42182c06c755ef5bd2f83f28b3878fb53d663aba6a6a9f780Virustotal results 22.95%
2020-01-16REP_XAE_010120_LIC_011620.docdoc a8daa5abd8b28562b74c89b4eb926bba5e5bfddc7746e95a5d4055896680ea69Virustotal results 22.58%Heodo
2020-01-16FILE_MHJ_010120_BRD_011620.docdoc 34811f0fdf2229b5da68d8b86b89a4eff60d73cbaa50fb91799fd51adec800dbVirustotal results 42.62%Heodo
2020-01-16PO_01162020EX.docdoc b758015808994a07ab2679e890b5885dcd70e61dbc895b3dd9e7f1a76f94e7c4Virustotal results 42.37%Heodo
2020-01-16SW_IWK_010120_HNF_011620.docdoc 70ee982c6329ff7d11fa89375a100f4d2845d56be48ae8e61afe703324fd9950Virustotal results 40.32%
2020-01-16REP_SIG_010120_VJN_011620.docdoc 61dd0c8d9334a27a9b7f0a93c8c4f922a4f2b54a8678d15849759e3529794560Virustotal results 40.98%Heodo
2020-01-15PO_01162020EX.docdoc e763d67d538e1928f4e54ed83171e2b9495156d4c51598d1ef77162faecac2d8Virustotal results 40.98%Heodo
2020-01-1547382258408865015753.docdoc 3b91b18b63fda2d06afc7d6f8bb924da52b9cedb373615783fbe7ab73477ba15Virustotal results 35.00%Heodo
2020-01-15FILE_PO_01152020EX.docdoc 785feba560f2467465e64cec8a888b0ed5d477f94ce139eae8f6448508942595Virustotal results 33.87%Heodo
2020-01-15PAY_EH8842821052YU.docdoc 60d2c8f3e62e237ab3c9d9f1e822485b7cb0751b9c389cb2230222adfd189a97Virustotal results 32.79%Heodo
2020-01-15REP_22517536.docdoc d497afabc9f95e52de2b44e62a03de53764ad772a44b5435500de43e92434a9fVirustotal results 32.20%Heodo
2020-01-15PAY_69094944.docdoc 2004c6f1abd300fa135b56f65c133ebad43e42aafae2b9b9726e3dd274424ea0Virustotal results 32.79%Heodo
2020-01-15INV_72504974.docdoc 1ed83f7ed0265fbb7fa1006f405773d31c4b7069ebfbbb6086f0196160f3d143Virustotal results 27.87%Heodo
2020-01-15DOC_39014195828945518.docdoc 23f9f4c3fa726a9b81dc0c06b81c8e3424d251dc412c8ccd81a89c7aa269e4d6Virustotal results 26.23%Heodo
2020-01-15ST_97597912.docdoc 4f0095c259ca3e1e3f0cbbf9295f33bbeefdf8271b1f3d8b97ee9ba5626eb8e6Virustotal results 21.67%
2020-01-15SJR_010120_GKY_011520.docdoc 2d5822aff83315cc778085dcd69fd73f82a4cfe94592529b93dacb256fb97713Virustotal results 21.67%
2020-01-15ST_V6KRULXO1.docdoc 0e0a399c81d33e87b7aab322fbf562d8c4aae27cc067a553ee092f13bc71221dVirustotal results 24.19%Heodo
2020-01-15SW_33653776.docdoc 97ee91116b28701be2eca44f3ea3be63285ca51f80d61933aa0e092bc5c06e9dVirustotal results 23.73%Heodo
2020-01-15DOC_UZB_010120_EQW_011520.docdoc 9982b18660c6aa9b8419bd84843d2d578fd2afb2516782ac69f0e7f8eee4efb9Virustotal results 18.33%
2020-01-15PO_01152020EX.docdoc 4b2696917bed39a3d370d5d68af05205cf458ee164aeaf2829fab24d99db0484n/aHeodo
2020-01-15BAL_IC2939584627FT.docdoc d3edd09e8e4e9e89dbff176e69131f189175abf1a598c18593a3bb194fc45c2eVirustotal results 37.10%Heodo
2020-01-15ROO_010120_XRB_011520.docdoc a5ab4f49f85a942911907bda864337b1506a94af7fcf9b00838fca0315e0b7a6Virustotal results 32.26%Heodo
2020-01-15DOC_30846973.docdoc 53316d2f235578afb76c4e839aa953af8e9dfb9e6b17307c324a88e42d7e47f2Virustotal results 32.26%Heodo
2020-01-15INV_PO_01152020EX.docdoc 958b22bd337775f2226fecdcadf9125b8bbcad2518c23d026fd87b0714af1b63Virustotal results 31.67%
2020-01-15SW_QSS2KCWHUV5KH.docdoc 64a7bbb5697dab97fb723824a2f3456c67f88435cb51e3be9f99b0b9c6652186Virustotal results 31.15%Heodo
2020-01-14B_83158385.docdoc bbf79cb4aa35f097ee65fbf27c2808626e53c4460eeec58c2a828aa669b50b74Virustotal results 26.23%Heodo
2020-01-14SW_RDQ1ZB4G.docdoc 78b2e20e11987a0d4b5c0042d7e44f10a775813f48fc3d9fc40a6d710d2a3d2fn/aHeodo
2020-01-1476005552.docdoc d042491e801270e8069b8903e0fd55ee882bb557398ba91287c01b808633b453n/aHeodo
2020-01-14ST_GCZ_010120_DBO_011420.docdoc e3cd5ab045097c55bcb00a1cdc84e11c8d7214e15f536baffd899dfb8e0a3149n/aHeodo