URLhaus Database

You are currently viewing the URLhaus database entry for http://imcvietnam.vn/cgi-bin/m3u1-v4y-50108/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:306738
URL: http://imcvietnam.vn/cgi-bin/m3u1-v4y-50108/
URL Status:Offline
Host: imcvietnam.vn
Date added:2020-02-03 12:18:36 UTC
Last online:2020-04-09 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-02-03 12:20:03 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:2 months, 5 days, 21 hours, 7 minutes Bad (down since 2020-04-09 09:27:43 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-02-05Inv ZBQ41_61663524.docdoc 3a724d2f7adb89c530b4bcad0bc535f2949c73e4fc8f98f29fa40d72509286c8Virustotal results 27.42% 
2020-02-05invoice EKDM3_3129062.docdoc 927609b9f9efb576a2233015595d50cfecd6d736c6fda23e8742330c6051e64cVirustotal results 25.81% Heodo
2020-02-05Invoice_HS693_822721808.docdoc a9a3a5e99c54a28944385b65f022799548c3958121c1e6b75e8a750dae91cf05Virustotal results 26.67% Heodo
2020-02-05Inv AFZO82_982173.docdoc ee932045a6cc0928256f9fd9792fb685acd23e47fc4147eb4795a6e009be1942Virustotal results 27.12% Heodo
2020-02-05Inv-VI2010_264420614.docdoc 6e4f1e55d03c7f87e1640ee1dba3bbbf7f3d01655098885ef1db6e84a5947292Virustotal results 27.12% Heodo
2020-02-05Invoice QFMN5586_3032876.docdoc 883ccb008ab99500f06083ce5fffa69c29db0131240c30e3c04a159a08d175c9Virustotal results 33.33% Heodo
2020-02-05Invoice-W9179_095312761.docdoc f0c8167a4da04cc86ed0d830f9a230b7ff2d87278d84986cb07aaf319a146fffVirustotal results 34.43% 
2020-02-05Invoice 209_11326844.docdoc b376816250d05683e509c36b70c10c82f78198b2daef4ff81ff5ff8515932429Virustotal results 33.33% Heodo
2020-02-05Inv_2152_43997255.docdoc b9d42e016bb94271c9d10c7c68d438ead1f0078d3b0fe039da3166ed9f29432eVirustotal results 41.27% Heodo
2020-02-05invoice 982_96018708.docdoc af3a14446b90c07b06fbb61dfc3b66a2f04b6fea766e07d7c36c3b3710e2ffebVirustotal results 34.92% Heodo
2020-02-05INVOICE_J460_195477104.docdoc fe95a5f68fe689f22c1ba6e479febd867fbb29760f0063700ad27d7d8b482d67Virustotal results 34.92% Heodo
2020-02-04INVOICE-F601_55044196.docdoc c01faf044c1df797bde7ae50e931236add55e532401115f33435ad6802eeb184Virustotal results 33.87% Heodo
2020-02-04Inv_PG50_0325858.docdoc 6e6b6b51d4a9dd7f74e82c53490f95ead4a4d2a9a4adb06f1cbd991bc2b225a7Virustotal results 33.33% Heodo
2020-02-04Inv-A176_107610.docdoc 1e4ffd4d7205f7d16d481d32a91e7d2fcffede84ef8a98c8011e49e396f4c134Virustotal results 33.33% 
2020-02-04INVOICE_DJJ5_275600.docdoc 9cf373c9a2dc126d14647d1c4f9bd6a554335f4f00f76b6ad0ce24dff7d1c054Virustotal results 33.87% Heodo
2020-02-04Inv-W41_402900294.docdoc 03657e4b0103d718978b4736846da1ebdd18f8ba892ff4709eabbae4d7f14c10Virustotal results 33.33% Heodo
2020-02-04INVOICE-NQD3079_5707039.docdoc 782ee01276002a63861c3f58a7b78787665649db336540048aabccb667e890dcVirustotal results 31.75% Heodo
2020-02-04INVOICE-EGO88_131188541.docdoc 40c57139f9fe475f5e06542c48aac3476cd943f3530f73ef44a60db380bf9e04Virustotal results 38.10% Heodo
2020-02-04Invoice_UJ7_9726233.docdoc 34ede36867199eb03393e2bbf070ef9ff5c3b82c0e47b2b3007d535b3561d1fdVirustotal results 38.10% Heodo
2020-02-04INVOICE-8_04760657.docdoc 1173cf1516a39c758a543aa77e5efb97ae7c0405e4d4921939f774fe9a48be41Virustotal results 38.71% Heodo
2020-02-04Inv-QCJF24_966660.docdoc 90c26b84456ef49591e93a848e25f662c833cfe38dd5576c91c6e1f1aa1518ebVirustotal results 38.10% Heodo
2020-02-04Invoice-QUT8_4209517.docdoc 98fcc319d662c3ec18dc590756571a8768ec29b241d14f9a7def036295cfb10cVirustotal results 37.70% Heodo
2020-02-04Invoice_HV87_57193531.docdoc 4a43eba382c637b47a46612a58b26dc621ac320d97a5ebaed2c9def69a4a34e3Virustotal results 37.10% Heodo
2020-02-04invoice-I4_2392078.docdoc 8e2050e086086c77b6f00187036ab0673a1e954b77835c411ce08c5769cca78cVirustotal results 35.48% Heodo
2020-02-04Invoice_N5818_6930288.docdoc 8261e381686ce6cd41929291365c2fd6a54b86a6cd10332945190e57e0e1c30dVirustotal results 34.38% Heodo
2020-02-04invoice-TZRB38_248025387.docdoc afe31791fd85a56e44bdc5261af1e3c237392614029d439e9421a09d348bc389Virustotal results 34.92% 
2020-02-04invoice-117_7539082.docdoc 1b8a59f4d318378567b315680008eef2c0d1b976713902b43d63404b39e5e22fVirustotal results 33.87% Heodo
2020-02-04invoice-CRAY60_728806514.docdoc 472a660ae1c53299c2fe2634dfaa5e98f8b58af486bb6268c53d5afa86ceb12dVirustotal results 34.92% Heodo
2020-02-03INVOICE LID7660_6626567.docdoc 0c5e2d4ac205cfbd715b436c95e6441c245602df0329b46b39cefc625778cb71Virustotal results 32.26% Heodo
2020-02-03Invoice-AOE13_732995.docdoc 2a391b243ca63866ab8f974ce19d37303cff84c760bf6f8981984b76db149f04Virustotal results 32.26% Heodo
2020-02-03Invoice 36_55810673.docdoc 3e1bc45c1cb3e07602bc2a3de82d76ac289a7ec6d4f0e2d32cbcc07ac56f5ea1Virustotal results 31.75% Heodo
2020-02-03Invoice_HOLG77_8031690.docdoc 644dc4ff7653d17ef947928689466bbed14e7baab90b94bfc61cab7a5a0a7c2eVirustotal results 32.26% Heodo
2020-02-03Invoice-90_7545879.docdoc cb45e5cf7a7ac1d2963255d83102716955dcf709619e37fd0526f235a313bfc6Virustotal results 31.25% Heodo
2020-02-03Invoice-3495_3436975.docdoc f596df2719af75a41f3fb9397de58c6a5e0d0d053de182517c44a792bab698e2n/a Heodo
2020-02-03invoice-PBFF247_611738.docdoc eb4c50c6b56cf35def16e4d6eed000f473102afb297ef8e4f5d0000a493dd0b7Virustotal results 31.75% Heodo
2020-02-03Invoice-K0_701059400.docdoc 05f763e23c37b03c54b50b075d2a78a675b0e8f1a001bb78601d8edc61033343Virustotal results 33.33% Heodo
2020-02-03Invoice-ETXJ277_3499898.docdoc a22e483f66848ec8f48253f404254819ffc132b43e82a5da302a6b32045cadb3Virustotal results 27.42% Heodo
2020-02-03invoice U0_355368.docdoc 4f9d0e3e6b138836f0a9a166f65ba3d279222da0fe4165b194629919e9d5d41cVirustotal results 30.16% Heodo
2020-02-03INVOICE K8_295252706.docdoc f21b54582cbdb048f738d93f3ab539cf5c46e9a9edefa28b580b7a2830a6dd51Virustotal results 30.16% 
2020-02-03invoice-MI14_763730.docdoc 8b62ec0651ac3a61434fa2195c54b3ff7bd2b58feb3180e4411dd4ca0a2b0cc1Virustotal results 28.57% Heodo