URLhaus Database

You are currently viewing the URLhaus database entry for https://www.amplebc.com.tw/wp-content/obm9-13-5414/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:293473
URL: https://www.amplebc.com.tw/wp-content/obm9-13-5414/
URL Status:Offline
Host: www.amplebc.com.tw
Date added:2020-01-21 10:23:16 UTC
Last online:2020-01-29 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-21 10:24:05 UTC to hostmaster{at}twnic[dot]net[dot]tw)
Takedown time:8 days, 3 hours, 5 minutes Bad (down since 2020-01-29 13:29:50 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-24Inv-Z9774_251387770.docdoc 21e28ea9f6d254b7e3a2b5dfd8a941a486982e166f3ceeef2e4cf3bb4a6d4669Virustotal results 55.00% Heodo
2020-01-22INVOICE O324_04736966.docdoc 65cba6a906f2a7520df807c03184497be908c91ecb85d00b1caeea1513a948cfVirustotal results 28.57% Heodo
2020-01-22Inv_E0_43339731.docdoc d37bfb401b91e64fbb9c866fce48db34a5fd0232de56169ed8c0158599301449Virustotal results 29.03% Heodo
2020-01-22Inv-NU64_3699200.docdoc f9560dc519e813ec3b39ea3d9dd1d863c2187d14f983d291c801452aa7c43db1Virustotal results 30.65% Heodo
2020-01-22Invoice-BZFX5_49493223.docdoc 28dd5855d4a2794c748e05180897d51cec6ddce941374738098c85fa53caaf19Virustotal results 29.51% Heodo
2020-01-22Invoice-YHCV9_555762.docdoc 4a9cb1f8c8e74e302d7f141af65afaefe4f0d85c539a9cdc03380e6365f57044Virustotal results 29.51% Heodo
2020-01-22invoice-J0_13341856.docdoc 1bcbdde37aa474f7da9b6aa87a35050a574fde322383a5326ad3a2de336659a5Virustotal results 27.42% 
2020-01-22Inv-3_542129.docdoc a43dc802a0108342f8a4a1b4573770b5cbc35fca8be069827599a7708e2c16cbn/a Heodo
2020-01-22Inv_CVO7035_454139.docdoc 26b2d54e0e71e411e3fc463f2be3c5b55311233fb8fd722ce836127aa8c8dca8Virustotal results 27.87% Heodo
2020-01-22INVOICE_F7_177688.docdoc e3c19433848a0b0023963e05496e09744003119af344985daad6a614cebfb1b4Virustotal results 21.31% 
2020-01-22INVOICE HEUQ438_335313680.docdoc 34da60d6d12d3bd3694390b2028bade56e13034f9177829715c93065c1d3a0b6Virustotal results 21.31% Heodo
2020-01-21INVOICE_KWC3_204443922.docdoc 6e45a9ae91897bec6b4aaf8f30420016e4f6875e176f032b00102a67f94ed9a1Virustotal results 22.95% Heodo
2020-01-21Inv-Q2092_642898612.docdoc 3fb6dabd9e46b09e9906cad336321983eedb8601725e0cfd49c9e99ddefe09c1Virustotal results 22.58% Heodo
2020-01-21Inv-2_740366.docdoc 7501ac37ca9adce1a6c87e4cc6db66d985a25c0a47eab1ebb098d308f8b1a96fVirustotal results 22.95% Heodo
2020-01-21INVOICE-PLZV9223_500429.docdoc 618b6426dea6f5651c76ec1f5638ac2a20a6d8ae3b55b8ac20161a3bb349a6a9n/a Heodo
2020-01-21INVOICE-1_841305.docdoc 911c7302bba8ebf022f7b06d72b4ad2d70a53021ad08349b0b974a61177cd886n/a Heodo
2020-01-21Invoice-CG504_47020983.docdoc 7c138128d8dcfcef1f383d815bb70b4c4e33f6a88ca5996fff2f67bde4f4b26fVirustotal results 22.95% Heodo
2020-01-21INVOICE J906_77250860.docdoc 08a411548d58e3087177a29c74daa8e41a5fba66715c8017c29cadc0edd4bceaVirustotal results 22.58% 
2020-01-21INVOICE-XY5_2735092.docdoc b2bcec6fdfedf345d48f9ebbd3662ecf2e63e9a6f6d3fd1ca81e7c45655cac90Virustotal results 21.31% Heodo
2020-01-21Inv-RHP3868_907507.docdoc 4705380587208cd2801f67666683a7eab2f5fb310b0b6327b925b3087c8d0097Virustotal results 22.95% Heodo
2020-01-21invoice_PDGQ64_90529050.docdoc b771bd8355401ea565dec0a76276f979eaca401e72db5ed2c3e8abcf8edf2d20Virustotal results 24.59% 
2020-01-21Inv-ZFFM5_8845756.docdoc ad70e4802336c2ce78288c1968db545fee6329d050ff138a4c8d08208c275a07n/a 
2020-01-21INVOICE-TWKB6_587562997.docdoc 1789f3b99055acb8bd77232a22e1514cafdaa96c755e03a0402ff3f84a314fbfVirustotal results 25.81% Heodo