URLhaus Database

You are currently viewing the URLhaus database entry for http://thedot.vn/wp-includes/common_95044151_IzQywb9L39YBO/12720918536_udzi4jy8A_cloud/71997109174807_mfZBCdx8YnvC/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:289097
URL: http://thedot.vn/wp-includes/common_95044151_IzQywb9L39YBO/12720918536_udzi4jy8A_cloud/71997109174807_mfZBCdx8YnvC/
URL Status:Offline
Host: thedot.vn
Date added:2020-01-15 14:22:09 UTC
Last online:2020-01-20 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-15 14:24:03 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:5 days, 0 hours, 33 minutes Bad (down since 2020-01-20 14:57:19 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-1792894-28292752.docdoc 3d0fd1948634807eb319bbe98d374fa7de6a90cdfc655b084f53e4e477ce77b5Virustotal results 19.35% Heodo
2020-01-179475961526_354305.docdoc ed3f5dfbda732c80c2f439ff47c8c6d45ce5215d5cca1ad8765c955395cc6881Virustotal results 23.73% 
2020-01-17Attachments 777.docdoc 864bcee1306de68b08f3c62b7d089cbab146fd47295aeefc4184bd1663c21a51Virustotal results 24.19% Heodo
2020-01-1705706560.docdoc 86d440f588fbc52744ee8fd2c30e73f615d1f27b75b8351ba1b5cf8689033ffaVirustotal results 19.67% Heodo
2020-01-176760230.docdoc f6a634c9998a0d1b36562b23d5956f5f3da1369c9827c9cb198856ef2197ea35Virustotal results 18.03% Heodo
2020-01-176391916.docdoc 2ad0521294bec243c52276586c33c9a742a4cc03f85eba377f60a18df2479f59Virustotal results 19.35% Heodo
2020-01-17Untitled 16611551.docdoc 5f95af6b200b61f199f217906b1f7cad5d158c25ab90a82db7ee18a4dcae1688Virustotal results 19.35% Heodo
2020-01-172775895_1952.docdoc 676ad368a24ce8ba50971a68d567f692e15459a9f6871b88383aa4c7c279b254Virustotal results 44.26% Heodo
2020-01-17Attachments 5204310_01732.docdoc 142c2efda50596eb5d5e050338142a7c86a5030a0c4bd1095bb30cbe0f722e1eVirustotal results 40.98% 
2020-01-1712623.docdoc baff02e524a1dc5e3aa3c7d79cd378bc8c858c899d1e25e75b0c13bfcbeb48feVirustotal results 40.98% Heodo
2020-01-17732884.docdoc de8f84ced2a3a6a85aeb9ff016c38d519a51898a16fb059a6555f9df453c4595Virustotal results 36.21% Heodo
2020-01-17UNTITLED 8867727522.docdoc de8bd947fc8203ef4899153c36ae350b2e4b4e69db34daee230ad89442f13951Virustotal results 36.67% Heodo
2020-01-16628-239974342.docdoc d745ac31ffb2ab613d0ff90f9aae6bee492e6d2457e4460ede41711b9de6ab83Virustotal results 37.10% Heodo
2020-01-16Untitled 3707.docdoc 5b5fc12126eed77880537114373507d05bd137495a2a431d504b63de952c5851Virustotal results 36.07% Heodo
2020-01-16503055.docdoc 367beb7944831570410dcff59d7e8b2d5cf1074dd1ca52dee29f0dfc9785bfddVirustotal results 35.59% Heodo
2020-01-16Untitled 168.docdoc 7acf0416530d3d66ae6cde15921faf920b2143c3fe981f1f3823af0f3112310dVirustotal results 33.90% Heodo
2020-01-1669704393.docdoc 889cf94d7f391e3a01900604efbf7e91709771a38594159de1dadc94553a5b26Virustotal results 32.26% Heodo
2020-01-161344235071_0895.docdoc 78ea94758e918e4115144dad9c8eab354f1e228174b8a00d49596e0afb2796c7Virustotal results 27.87% Heodo
2020-01-16UNTITLED 58299191.docdoc 9c5d3fc74963aaa5ad9aaf17c7bd3e892195ba6bd66658f26f35f6e47f95953fVirustotal results 28.33% Heodo
2020-01-167605162106.docdoc d01121be7f7eb193a85d9ba14596730d3d33089f5c368501a15b89dd095b803bVirustotal results 24.59% Heodo
2020-01-160368411487.docdoc 0971cc8674e5f9b1f2a3dc2647c42381380dae6cd097b96625012c379cf400b5Virustotal results 27.87% Heodo
2020-01-16Attachment 8339687052.docdoc 41a33df5428a9b69eb9ca7bbed3dd8d8776d2243cf92c3ca20d20ff0745831c2Virustotal results 24.59% Heodo
2020-01-16636.docdoc 058abfe0e47582efbe8082a02acb54eec587373096ba71b4f00150553e29a7faVirustotal results 24.59% Heodo
2020-01-161110827.docdoc 5c7211462187dbb4e5abf21ee9e5a05a3c25e6f516a271fa6cce643b806a5d4eVirustotal results 24.19% 
2020-01-16Untitled 6011973.docdoc fd10ac0355308d4f45fa5a35b0f6c729c5a507258de0a74653c9cfa3d6cec96bVirustotal results 21.67% Heodo
2020-01-16Untitled 41961800.docdoc 08258403e9f6dedf233554f21865bd22b4aa6941973c9268e933bb39a335d1f3Virustotal results 45.16% Heodo
2020-01-16Attachment 45575418_770519.docdoc ced84ccc882a33b61611d227e8b21ca4b67d9970af737ed7f3a8c32e41ad835eVirustotal results 45.90% Heodo
2020-01-16Untitled 76043332_03915.docdoc 881b837b4f8b743627ade4703cf5e6fb97eeb788212f253c65db3ed2d097375fVirustotal results 47.46% Heodo
2020-01-16Attachments 13926653_909430.docdoc df5ac7938838d52c0cae9fba928e85535e98dad36ef70be26a592926c7291c50Virustotal results 44.26% Heodo
2020-01-162735096_62054.docdoc e2a9d9016c8575cc113654642aa970a6f3e13381a5d2f57aa4974f5009d51ba0Virustotal results 44.07% Heodo
2020-01-15Untitled 3936008.docdoc 0be4320540734a39e0818810123c7202ea89e28cd8bf0a28c984bf0e58ab9689Virustotal results 40.00% 
2020-01-15Attachments 93215.docdoc 0dce7996d8fb1617ac09efd1125611ee679f96a6b1089fa6e2696a2ae84a726fVirustotal results 33.87% Heodo
2020-01-15Untitled_file-245761355.docdoc dba6e87c2a3ec66dcb501092196f225195379c1eb31cd986c01e0874f633966aVirustotal results 33.87% Heodo
2020-01-15attachments-74738-8858811.docdoc 7f65f1308b3b95febdbf94d1a72b3d6d4f155c391aac69222ebf649a48b0fda4Virustotal results 39.34% Heodo
2020-01-15UNTITLED_0363369.docdoc a6b95df0d3361c12b0d7136227185ae8eeb0e0a7e8e3d1f555c96ff750bc7d58n/a Heodo
2020-01-15attachments_286-3190191.docdoc 0c7825c80066650f70b7c1f56d287aae552fc2da9e2312e59df2543dbe55637an/a 
2020-01-15Attachment_2348.docdoc 2e08996c6b2e945284298d12fa32aa2f9095d766e0b2e67f6f3b8e07ee541810Virustotal results 25.00% Heodo
2020-01-15attachment-2340-985618240.docdoc 874a2092657b77033a7fb967761192055496157617b4db2272ca648fdeab1c06Virustotal results 23.64% Heodo