URLhaus Database

You are currently viewing the URLhaus database entry for https://vietnamgolfholiday.net/Database/open_array/test_va87760qmemlkp_tz8jx4pv0/78154449_nepHBJe/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:288829
URL: https://vietnamgolfholiday.net/Database/open_array/test_va87760qmemlkp_tz8jx4pv0/78154449_nepHBJe/
URL Status:Offline
Host: vietnamgolfholiday.net
Date added:2020-01-15 06:36:10 UTC
Last online:2020-02-04 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-15 06:36:12 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:20 days, 9 hours, 27 minutes Bad (down since 2020-02-04 16:03:45 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-1731706883_545.docdoc 6d32e86fcbbae85b744c8882e200b3e0bc4c568c6c485cf579e77a912d5b2bb1Virustotal results 37.29% Heodo
2020-01-16972-1194494.docdoc d745ac31ffb2ab613d0ff90f9aae6bee492e6d2457e4460ede41711b9de6ab83Virustotal results 37.10% Heodo
2020-01-1648309289.docdoc 423dc90cfc54412bec01a810b9c3891a3013848255aab49b9fd3f04e0f8c91a0Virustotal results 37.10% Heodo
2020-01-16Untitled 9558203-805504.docdoc be98ec4857c822cf1b4c68ec98930701bb6c136ceece8bac8e6d5a1cd1a09d00Virustotal results 36.07% Heodo
2020-01-164734218-453183982.docdoc 7acf0416530d3d66ae6cde15921faf920b2143c3fe981f1f3823af0f3112310dVirustotal results 33.90% Heodo
2020-01-168670760_3884.docdoc 56503e659d69adad5ac525757b9150c95dd7a7f9a7eb202cc0adf485cb72646aVirustotal results 29.51% Heodo
2020-01-161279-0485210151.docdoc 78ea94758e918e4115144dad9c8eab354f1e228174b8a00d49596e0afb2796c7Virustotal results 27.87% Heodo
2020-01-16Attachments 1056665655_019.docdoc 5b2a0117af3d95245f6c43ef539fbd170c31ccea1fe3a02d55e87e7fc761e2e0Virustotal results 28.81% 
2020-01-16210456_136.docdoc d01121be7f7eb193a85d9ba14596730d3d33089f5c368501a15b89dd095b803bVirustotal results 24.59% Heodo
2020-01-16Untitled 0528842.docdoc 0a800415d19b0858e8ef535d2bd598acef98af4bc8f38fa79d1e7b95e03de232Virustotal results 25.81% Heodo
2020-01-169080192542_689032.docdoc 41a33df5428a9b69eb9ca7bbed3dd8d8776d2243cf92c3ca20d20ff0745831c2Virustotal results 24.59% Heodo
2020-01-16UNTITLED 472-1092727158.docdoc 058abfe0e47582efbe8082a02acb54eec587373096ba71b4f00150553e29a7faVirustotal results 24.59% Heodo
2020-01-16UNTITLED 0953672.docdoc 1ea26ae156e50ac1ddc42b7759789c5aa40697112afc006a4eec2131a9057186Virustotal results 22.95% Heodo
2020-01-16073977-7627305.docdoc d95a1d688d5d759173c24da6f564997fe018455adf6c6b6c7446edfbc86d921cVirustotal results 23.64% Heodo
2020-01-16Untitled 720651193_443660.docdoc 08258403e9f6dedf233554f21865bd22b4aa6941973c9268e933bb39a335d1f3Virustotal results 45.16% Heodo
2020-01-16813992.docdoc ced84ccc882a33b61611d227e8b21ca4b67d9970af737ed7f3a8c32e41ad835eVirustotal results 45.90% Heodo
2020-01-16Attachments 4025897586.docdoc 881b837b4f8b743627ade4703cf5e6fb97eeb788212f253c65db3ed2d097375fVirustotal results 47.46% Heodo
2020-01-16Attachments 301077881.docdoc df5ac7938838d52c0cae9fba928e85535e98dad36ef70be26a592926c7291c50Virustotal results 44.26% Heodo
2020-01-163753291_444.docdoc e2a9d9016c8575cc113654642aa970a6f3e13381a5d2f57aa4974f5009d51ba0Virustotal results 44.07% Heodo
2020-01-15Untitled 9567513.docdoc 0be4320540734a39e0818810123c7202ea89e28cd8bf0a28c984bf0e58ab9689Virustotal results 40.00% 
2020-01-15Untitled_file-2293699562.docdoc 0dce7996d8fb1617ac09efd1125611ee679f96a6b1089fa6e2696a2ae84a726fVirustotal results 33.87% Heodo
2020-01-15UNTITLED_408811_497783.docdoc 2a72d798a8c83d6eacf6b07c27ff4774da7d2b2a8b5e469cffaf22ac22a061a9Virustotal results 33.87% Heodo
2020-01-15attachment 1673256-5699.docdoc 2853b45864dd97b3be97f9acfcc6be83c6024d9b4e5b48d6b56a8c622e106b5eVirustotal results 32.26% Heodo
2020-01-15attachment 410 3216834547.docdoc 5a444bb7248957c2b190c22b974bb1d24c9d8c6b97f8467c1939c9addefaf35bVirustotal results 38.71% Heodo
2020-01-15Untitled_870446.docdoc 498ba73b01d20bf622b233b774f02d1f612e4ac63f2a7147e50219cd2ca14a12Virustotal results 35.48% Heodo
2020-01-15Attachments.docdoc 0c7825c80066650f70b7c1f56d287aae552fc2da9e2312e59df2543dbe55637an/a 
2020-01-15attachment-0329800265.docdoc 39bfeeabcf77b494d068ef3ac49576ebf99b16723fa1facf76e5b0b1752d99b4Virustotal results 30.65% Heodo
2020-01-15FILE_830.docdoc 2e08996c6b2e945284298d12fa32aa2f9095d766e0b2e67f6f3b8e07ee541810Virustotal results 25.00% Heodo
2020-01-15attachment-48424515.docdoc 09aaf59e8836f2b712c0394624b450ec5c3034c050c3c1aede62c93d43d4839en/a 
2020-01-15attachment.docdoc 789f9210cab6cd5d82f2eb8839d8f8681a18cd0e7cc05d4871ee30adf22833eaVirustotal results 22.95% Heodo
2020-01-15FILE-4992581.docdoc afa32e4cd609d7d131834df22d6cbe35b681f8e56c1cd25349904c2228e42739n/a Heodo
2020-01-15attachment 32100081-48752.docdoc 00a831a3efa7ab47538aeb202b447830601a5b6c7fbba887c74be2fae3ebd138n/a Heodo
2020-01-15Untitled 95503 803156467.docdoc c758eda50e69cf30766e229c8a0e31a6ffd61ce8c06ccce6be7448668b19b002n/a Heodo
2020-01-15FILE_9358-3547707.docdoc 92ecfae88524e76b1f970ecedbb2c278371d9b002dc40396bedbb90b9f92d27bn/a Heodo