URLhaus Database

You are currently viewing the URLhaus database entry for http://simplycannabis207.me/tj0po/public/d5-720667724-4960737-9mv9-kusd13pj4/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:289405
URL: http://simplycannabis207.me/tj0po/public/d5-720667724-4960737-9mv9-kusd13pj4/
URL Status:Offline
Host: simplycannabis207.me
Date added:2020-01-15 21:30:06 UTC
Last online:2020-01-28 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU002248848 created on 2020-01-15 21:32:05 UTC)
Takedown time:12 days, 13 hours, 10 minutes Bad (down since 2020-01-28 10:42:53 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-17PAY_PO_01182020EX.docdoc 7e89360cca8f0234341841cbdf174fef602631feea9e9870c553d8dc29a7b0f0Virustotal results 18.33% Heodo
2020-01-17REP_KV6553158558ZT.docdoc 08c62dde319a9a2b8fbe1ad294f111f47fd3fc52f228644a80df4c15a21c4740Virustotal results 18.33% 
2020-01-17INV_3383445593922996734710.docdoc 481c039050574499f88bbeffb035a3181629c60553e1262ec0dc4c99fc2d978dVirustotal results 19.35% Heodo
2020-01-17RP_MZE_010120_REO_011720.docdoc 9a7bf11a3e0f0e77eaabf13ef727ee48ee121c03116dbd74e6a4551eaee2f8e6Virustotal results 22.95% 
2020-01-17ST_71881442.docdoc a15fc49e8cc5aa4591a364cb628abc498d133d2fc578877364b5d38ff38e8830Virustotal results 21.67% 
2020-01-17REP_09854939.docdoc 5adadeaaa1059838cc3e87dbe95d95cc37a4699a94fa1ebb2f4e85e67aae6d3fVirustotal results 20.97% Heodo
2020-01-17DOC_PO_01172020EX.docdoc 398c180bca3820858404f155f0050ec466519c6ad151414f5489e1e9f8395abbVirustotal results 22.95% Heodo
2020-01-17SW_KUOQ21KWFGSN64.docdoc 709515b23e5b747439017795a65815ee0b37983e8a39520cc541e85472a7095dVirustotal results 21.31% 
2020-01-17U_945598492.docdoc a38a56b908445cb030e706cc159cedb50ba50c85a9cc0987d49ce8e3c23342cbVirustotal results 21.31% Heodo
2020-01-17INV_KC5889026313QM.docdoc a13b037457db0cfd6982e62e3f76dd834a9ae2ab29af1bbd7b72023221c47e69Virustotal results 23.33% Heodo
2020-01-17INV_SN4249930285KS.docdoc b341338022811ab111de218e305ca99facf3a53ac083bc122255f0c2c9b8fd79Virustotal results 19.35% Heodo
2020-01-17RP_IGICM56FQZHIRY.docdoc 07eb461ea9aa9446ccfa96053f967790ce5075ef7b2190da2a04d08224f0e5d9Virustotal results 19.35% Heodo
2020-01-17BAL_CC9430067327EC.docdoc 38c7d4b6816ab5c1ab3e4102e12df1f28a9bc48378c7d707d733234746005b26Virustotal results 19.35% 
2020-01-17INV_NH1612088388RF.docdoc 7bb5fdc2f055e22227b6471aa23ea22c95fa0235bc96bb40893513d1fc6e6d76Virustotal results 18.03% Heodo
2020-01-17INV_DO7266516541ZC.docdoc b5b1a9c9342c9be2197fc3f9fc5c0a9138b052bfc06583f9719773397f567e34Virustotal results 43.55% Heodo
2020-01-17ST_778454775510534.docdoc 9db035bd19c8d9db27e5c352d8e713cfdd13b9a155772e9266b18ec30d67fba7Virustotal results 41.67% Heodo
2020-01-17YZ_OD4804544470NM.docdoc 534d37a11e695ad6fd5b23ac1a8cb87571a5865e5651f954e3fefbf355ac737aVirustotal results 40.32% Heodo
2020-01-17INV_D02TV4OHG9M.docdoc 92f80243e6766c07a9eb3c8ef28eff839d1f23a112c0387911cda51154751b9aVirustotal results 38.71% 
2020-01-1759927062274100375365439.docdoc c984833db58812ed08f1b0560576ec19bfec60b0a8103292c206042ef12007fcVirustotal results 36.07% Heodo
2020-01-16FW1919794999RR.docdoc 228da1e8833b2deb4570eb45b4cb5ceff4c62dd963e802c3a5b769ca9d28ff42Virustotal results 36.07% Heodo
2020-01-1632828226.docdoc be15c5dd69d542487117ad34caf1a12b6ceb4bd2ed1e02a3d6d39fb9a38f2f9dVirustotal results 37.10% Heodo
2020-01-16BAL_PO_01162020EX.docdoc 862b4995090776854a12fbf924213919016691e4c85ccfa384c7fa92e02e8591Virustotal results 36.07% Heodo
2020-01-16INV_QGCHPDBZORAA2AU.docdoc e314c8b472db81404961016b49758c54595600e83fa2801d5cba0089cb8b2223Virustotal results 32.79% Heodo
2020-01-16OMC_010120_ORD_011620.docdoc fa978cd717f47c1ee29bb715045047cfb33ac65fb951e80b7bd122d42879021bVirustotal results 31.15% Heodo
2020-01-16Y_6548569109040.docdoc bc85a963caeacf32943c486ace740c260a41b6f16d37de840fbd42f30c6e26f3Virustotal results 29.51% 
2020-01-16TKM_010120_BSR_011620.docdoc 8bf5586fdf5c09bd987b2246b8a60988842d2b3ca683a4fdd6f0a698d17909b0Virustotal results 26.67% Heodo
2020-01-16FILE_NY2730447346YC.docdoc dee80fcc93fdf28fb6d796015785e587e2fbc779c948f6ebc6f3a5628d54f905Virustotal results 26.23% Heodo
2020-01-16DOC_5HWQQX6NWH21.docdoc 1126c643bff1cbc4e48db0e96c1bb7522d89a64e31bccdf10629cc5402a5bdc6Virustotal results 26.23% Heodo
2020-01-16INV_9N1H05M98M1X6M4T.docdoc d8e78e236ed8030ea028ee13a3b779ce7f998a8c15e25e6e441b01544dec5666Virustotal results 25.81% 
2020-01-16X6OZMEGMC.docdoc fe6f474786ca7ae00ef0969337551f4f2b639e640014ba936d413e532bd994cbVirustotal results 24.19% Heodo
2020-01-16MI_PO_01162020EX.docdoc 2fab2f5e3f28d6a81ba72956df8ac00de3d7dbea09496ae791fd20a7954fe1ecn/a Heodo
2020-01-16M_PO_01162020EX.docdoc a7d3f5474bdca4af088225b9280da969e8678960b6768ab6944a72866252c9dcVirustotal results 25.42% Heodo
2020-01-16PAY_BL5166722102ZB.docdoc 791dc93ca83900c29d93fc3641d199b853413a23d3899b119ed619f9223cb20dVirustotal results 22.95% Heodo
2020-01-16AV_34109602.docdoc b56a6e25f16b75f974d90ac920bb38757ba86412909d0844c3195a7b0a04c757Virustotal results 43.55% 
2020-01-16PAY_77140307.docdoc fc68dd9971f85e873151fa2dae765c3406a74e35a608879a7b46cc250986b63dVirustotal results 43.33% 
2020-01-1693097842.docdoc 95b02c0e112270751b5fe7a49866ed9d31594f0b8d26e823e2242bcc3b902b26n/a Heodo
2020-01-16V_7129151616.docdoc 13aa89755abbea10d5958e7b1d6d8440f1b6cb0d866e6ae70de9a7513e80e409Virustotal results 40.98% Heodo
2020-01-16REP_OPZHIJBTKUK5.docdoc 01d706d0a5e27c62abe9a72200925c5e23ed3c309ea88354dfcb55b36437c3eaVirustotal results 40.98% Heodo
2020-01-15BAL_MC4H599LP2STOBA.docdoc e763d67d538e1928f4e54ed83171e2b9495156d4c51598d1ef77162faecac2d8Virustotal results 40.98% Heodo
2020-01-15OCP_OLH_010120_HMK_011620.docdoc 2c40438076c3f7beb36d70f56c99baf764aa9c3936060204d6fdba9f27e6c847Virustotal results 34.43% Heodo
2020-01-15INV_SYM_010120_BUY_011620.docdoc 66ccf94db1d659ba98efd3e1e54c19e1c54be89552ae659da945a33b74da0ad0Virustotal results 33.33% Heodo