URLhaus Database

You are currently viewing the URLhaus database entry for http://secure.app-amazon.com.recovery-account.amazon.com.alphatravelmongolia.com/assets/esp/ujq5533535942qgcxakvkzo21408s/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:415235
URL: http://secure.app-amazon.com.recovery-account.amazon.com.alphatravelmongolia.com/assets/esp/ujq5533535942qgcxakvkzo21408s/
URL Status:Offline
Host: secure.app-amazon.com.recovery-account.amazon.com.alphatravelmongolia.com
Date added:2020-07-20 14:12:36 UTC
Last online:2020-07-22 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-20 14:14:04 UTC to admin{at}itools[dot]mn)
Takedown time:2 days, 3 hours, 42 minutes Poor (down since 2020-07-22 17:56:38 UTC)
Tags:doc emotet link epoch2 heodo link ZLoader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-22PO_07222020EX.docdoc 705b055121eb9b4694a147b5998b6b3702dcb080f4c98b4bfee9809be5ed62c1Virustotal results 40.00% Heodo
2020-07-22VXO_070120_XSP_072220.docdoc 89781678d6d163d911bb4191aef0633150643ec2950d40fb73be636fd5856511Virustotal results 39.34% Heodo
2020-07-22DOC_PO_07222020EX.docdoc 782736531e733d8dc455a8d1c25318d69d3bbe81a3d9ee2f8f26322d40d242a6Virustotal results 37.29% Heodo
2020-07-22BAL_25472475.docdoc e36be98a3e3d568430d52706ee06d935e126942b2a5c2453f5478d8c0d58acb7Virustotal results 40.98% Heodo
2020-07-22FILE_RW8523508410UF.docdoc 605e68db4024034f722b64cb62676029ba7c1ec38fe58ac535909068a5d53535Virustotal results 41.67% Heodo
2020-07-22X_13545018.docdoc bd4684d9d2da7fd065b6abb2d8a897e4ebd0e660eac75211c5ebd7c9b4e2fab1Virustotal results 39.34% Heodo
2020-07-2239820598535755.docdoc 8e5f7114948b2646cf3f0b08835e46456d2e64c17f8281857a7147557c8af935Virustotal results 40.68%Heodo
2020-07-22ZS7775662712TW.docdoc 546e81fba933f1ba7d5640199e94a39f58809e4379973c2565dd4f6ace29c810Virustotal results 41.67% Heodo
2020-07-22DOC_PO_07222020EX.docdoc ac9e72b5960c627b1bdb364919a29fd60b9b84c21d14033dd77772f3aca32ab3Virustotal results 40.00% Heodo
2020-07-22SPTTS947ODV.docdoc c9f585e76195bccbecfc06a49ff58041d156b95ab4e7e12c664332b57a86e2b5Virustotal results 40.00% Heodo
2020-07-2269341394.docdoc 68742e960aa88d7a38f1caf8c84a380e68ef6f351f7557c5710f76d8c191a719Virustotal results 40.00% Heodo
2020-07-22B84AGB3K9IT.docdoc 07243d1a35ece6dd49151d21dbaab43803a5bb37126873dc5b74bca18a81ccbbVirustotal results 38.33% Heodo
2020-07-2255065646.docdoc b62a1c960c1e1635a15bfc9d7f02f48844cc4e9d49355449bc23aa7d5572c292Virustotal results 36.07% 
2020-07-228PYRDS2WKQ53I.docdoc 8b59b33a1ec01323ebca9e8cf743ec1ee376df987fc56bc586efa601941289d2Virustotal results 34.43% Heodo
2020-07-22L_21241841.docdoc 4e65f0280b70f9a69450d3cea43cfe4f69e5240dfebd8e49edb70a98ef08e806Virustotal results 35.00% Heodo
2020-07-22G_88771213.docdoc f9fde773e761b000de4b1c9e37662b86f39a245ab16c9f164d19ed85aed3d48cVirustotal results 29.51% Heodo
2020-07-22INV_RKP_070120_RGV_072220.docdoc 4c0cc2081019e58018a52f5990e6b614bc3ba72898c51b3b2b6c936712cf1697Virustotal results 31.15% Heodo
2020-07-22BAL_MT3889585663IN.docdoc 15c078915b811f8f8fe55ffe072209f0b74b8ba3988940e179508e510a79cef2Virustotal results 30.00% Heodo
2020-07-22REP_EX2989413945DW.docdoc e9803e31e8dd4c70a9e476d9dd61e927988fcc98f5c901e18e0597c8dd765b60Virustotal results 27.87% Heodo
2020-07-22N_MNSLCYUL9U83.docdoc f9c93aa61dd4cb64cf59976fbb246f87744328a2a1fd1233945c84fbda2c0aaeVirustotal results 26.67% 
2020-07-22DOC_VIG_070120_ZDJ_072220.docdoc 6999be5570232cb11189a152478254ef33470426036d88fa74b45305031efb73Virustotal results 26.23% Heodo
2020-07-22FILE_20159594.docdoc ee36488e9d6d8ea09cff02367c7212d0503f376346c3b40aed03e01c1b1aa668Virustotal results 26.67% 
2020-07-22DOC_PO5336332973BH.docdoc e563992a8b913e222c4f08cd1cb89a4e4af61dc33d30f455e7e3f4fbd039666dVirustotal results 26.67% Heodo
2020-07-2223210312.docdoc adecd8241c21aa989810258e39d162aeb6ec0b86ca6a884fa3a542ad306a1c63Virustotal results 26.23% Heodo
2020-07-22B_BNU_070120_RYP_072220.docdoc a76feea95a298d6f94ca0a719376f30e4409a18555e10bdb1e90a24c7facf294Virustotal results 24.19% 
2020-07-22QZO_YE2773911514WR.docdoc c14ddeac4500ec2bb65828bcf770f5ce11a369ca829f2c68587632e1dccfd995Virustotal results 24.59% 
2020-07-22KTW_070120_VTZ_072220.docdoc 5f5a353ccf0dbcfaa0859d0a1db152f2d40735bce47864d7ef9c12ab93c8ca88Virustotal results 26.23% Heodo
2020-07-22PO_07222020EX.docdoc 593793a914684244b3c51333736fffc1cdc69c51759831c888b66e6a07ef8b72Virustotal results 24.59% 
2020-07-22FA7872493610JZ.docdoc 9dc3bf8aadd5819cf5be10ee9a0af6c94bc4b8a7a193cf539ef3ac9288ca9f15Virustotal results 25.00% 
2020-07-2221274712.docdoc e138da30fb56344429ee51040714270123930932db14186bb12630a53d904fdbVirustotal results 24.59% 
2020-07-2281453554.docdoc 10963f8cec95f3f18634db9382cd4403523a624d72a459c29c9c3baf27097509Virustotal results 24.59% 
2020-07-22Q_INR_070120_TFK_072220.docdoc c08ecd63b03921b3ff64e325150a22dc1c0fc533428b7ff5f01cc1f2b7bdef01Virustotal results 24.59%Heodo
2020-07-22FILE_556218816597131380494253.docdoc 73962239e4a48429f588ed5950e69d8ba450efa22a2265afe97bf689935caf47Virustotal results 25.00% Heodo
2020-07-21FILE_PO_07222020EX.docdoc c6ca23f36d524391de9970059d2e0faf54270286e320503e3eadf282ab5082a2Virustotal results 24.59% Heodo
2020-07-21MXK_PO_07222020EX.docdoc 9219b02f05ac45df25ea9a7cab876c9836470d4f1b13a2652d25169d50e2fa84Virustotal results 24.19% Heodo
2020-07-21MC_LM4706005357EG.docdoc 9f59209f542f739dd433026c1d8d27be15cd6a200911c01d5e075ef2350540c0Virustotal results 24.59% 
2020-07-21INV_PO_07222020EX.docdoc dcd97e231a7928660c49c35be9d5b8f839ccd3e2b8882ddd60c22b1bd012ac4cVirustotal results 25.81% 
2020-07-21REP_TR9015435679UD.docdoc 6dd13185eaff9d90b1cda716e8af9887e81fada08b31494b8f8a148122093d4fVirustotal results 26.23% 
2020-07-21INV_02763384.docdoc 1bbd415af19576e0283d80affc0740d7d0c324afca367e1113ad0404ceeed801Virustotal results 26.23% 
2020-07-21WF_TNWV6IF91V.docdoc de3f5b83090bebe5d5d03ac1a489b9a76fe17f5a6c1649f092778dc986ed4ed7Virustotal results 26.23% 
2020-07-21FILE_IRU0TXC17JZIH3Z.docdoc ef588b15ec68408283319fe4a31c163af29512203d6270f8a010d6065516d4ceVirustotal results 26.67% 
2020-07-21X_WZL_070120_PID_072220.docdoc 02cc40096e839991167c564f9400c8819c43bd631b93289839ca05cb5fc47ceaVirustotal results 26.23%Heodo
2020-07-21BAL_PO_07222020EX.docdoc 6f5f3c1f1e679725ef379a8fd3fc99404536a3ebecce5036a1dc5359dae68682Virustotal results 26.23% 
2020-07-21FILE_BPLCG1FLV60KS.docdoc df3b437a0a2555b3ae16c3634140dd1ff3832120d3376e4a11ec45a500250f4aVirustotal results 32.79% 
2020-07-21INV_23518933.docdoc dc9149fd6d462db7ca3f0ef1d4705abb0ff34fa3551bbaaeeecd597a01e445d0Virustotal results 32.79% Heodo
2020-07-21PE6JUVWPYEG.docdoc 4fef736949eab2f9ad2e19b472ca28945327a76babb1f6038f3b297652843fedVirustotal results 32.79% Heodo
2020-07-21F_PO_07212020EX.docdoc 6b606b07e4ddf623479f05fe2da2628bfb74b953116407b7e4ad3cd64421de36Virustotal results 32.79% Heodo
2020-07-21INV_QFE_070120_KXL_072120.docdoc 1a679a14ff7a7aa61c950c19d7b7e09071781624cda200ced51cf76b0717a2aeVirustotal results 30.65% Heodo
2020-07-2176553178.docdoc b2dcd1d5ee235a978ccd72a68fa2448f80577a051cf78c994fb62d41e7932e39Virustotal results 31.67% Heodo
2020-07-21INV_YAL7B3EC5R.docdoc 6acb37f46741819ca10ee4ccb7f88dc94b5dc36a3a1c5c366450d76db4b42a6cVirustotal results 30.65% 
2020-07-21FILE_YL8344812995XQ.docdoc bd6a09f3141166fa7bc1c7b79ffb618c31312131de5f1829c37ed66f6099b284Virustotal results 31.15% Heodo
2020-07-21FILE_PO_07212020EX.docdoc c3db961b04941123b6924d69f2c5b149df9b54835cffe9dc0f693fd0dfca31bcVirustotal results 31.67% 
2020-07-210490639796.docdoc 74db9fac3d9a684b81ce1975d06d184a85bc67d24466aed35ff6ee475e21d16dVirustotal results 31.67% Heodo
2020-07-21HB9399312875VA.docdoc 15ba2dc607a608b61e883029246434bc1dccbe316219fdb1b11775c3eed0df12Virustotal results 31.67% Heodo
2020-07-21OUHH_KRN_070120_VOH_072120.docdoc cead2b444fb70319f7ad607f10b254f3888d97ee61adb8a5be9492f259718ec9Virustotal results 31.67% Heodo
2020-07-21INV_PO_07212020EX.docdoc c50850a81ad3ce08fc961162e1082494177f8e501dab0e698bce46ffef854ef6Virustotal results 27.87% 
2020-07-21FILE_PO_07212020EX.docdoc 9730ab9a8c60bf06cd93ddc13f7a80f30ce61e20782b9ff1c85dbeff59e3062bn/a Heodo
2020-07-21REP_06049084.docdoc e59ab4e1a047866cf6ad7eea19330ef2c3ace4086662158f0e46d07333ea11ebVirustotal results 29.51% Heodo
2020-07-21PA2226976017PZ.docdoc b256eedac4c8041fbc722fd1b36b17e5fd7a9a5004f974cef3afca5b5ccadcd3Virustotal results 29.51% Heodo
2020-07-21DOC_GBJ_070120_THG_072120.docdoc f5049e4bf98c2e07d5ac970c729a93402c91bc9fbd1398bbe4b006f959c47a04n/a Heodo
2020-07-21NE_JSEH05S8WXMGPR.docdoc 7c0e49dcc082c8f4b4fac91339f378ea04ffb0ccbde5018346e4f95f30fcb05cn/a Heodo
2020-07-21BAL_Y6T0HMAB1QTMY36.docdoc 610576af7dfbd57bc54cede047748ec6355fd2122f6820ee76c1ec17967126fbVirustotal results 27.87% Heodo
2020-07-21INV_85927214.docdoc 7facd10d1c1f1285b971aec88e0d3d26a46ad7b005404f6676349d6e8cdc1e7aVirustotal results 28.33% Heodo
2020-07-21HXC_070120_EMS_072120.docdoc 6aae57a7a60c8c2529948a9290becdc90f10be950ad2133ef7cbb1c366693f4eVirustotal results 26.67% 
2020-07-21V_GHH_070120_IBN_072120.docdoc 9d29290a0e2c6f3801444df8141e4099b9d87d0d3d3ba984bbc9d9684fcb5511Virustotal results 24.59% Heodo
2020-07-21DOC_PO_07212020EX.docdoc 7fbb019b508430436462c071305287e546faf02887f93e65c0b88e3a12711024Virustotal results 23.73% Heodo
2020-07-21BAL_MES_070120_KBN_072120.docdoc fe7bb6362bb3a11a4579b9c0c36fb7d1df5b57d43ff14b8b4ada2254224180e2Virustotal results 25.00% 
2020-07-21REP_22046279.docdoc a77f0d09a07d8f85b737d25216501b343e22c4e04a6f88b16dc1ab9ea1b2a222Virustotal results 25.00% 
2020-07-21WCW_070120_TYR_072120.docdoc f8e5f86f1b89c307dd4db6da4cb80f561f8853f94889e3e3616a746a401cd894Virustotal results 24.59% Heodo
2020-07-21FILE_XMX_070120_OUI_072120.docdoc 3f65143957146edc136d123a62507f50497de812d31cf82785b88dc67c7f4792Virustotal results 22.95% Heodo
2020-07-21FJUU_PO_07212020EX.docdoc e7d91a79221691d21b81cdb85251c4bdb7e1193e43c89c94c10a3837f6ebac65Virustotal results 23.33% 
2020-07-21DOC_OT0108670419PN.docdoc 003110462b096556a9d96dca0472feaa2dee2edaf6d8d0e179dc08a8a8f2b775Virustotal results 23.73% Heodo
2020-07-21XMK_070120_TWH_072120.docdoc 7205124c976d15cd097c35d5c82d63d616b710da7b82ead06faecf91fd620405Virustotal results 22.95% Heodo
2020-07-21D4Z0L6XP17NQTLP.docdoc 283288b5bb193523ad2659b4cf322feea153048b6f27a8fa9673ca683bca177fVirustotal results 22.95%Heodo
2020-07-21BAL_59171375.docdoc f2e0593ca696ec36f6b813e857b8fe6741252d7b65df42e5e16bb3c80bc7a90dn/a Heodo
2020-07-21BAL_XVI_070120_YZE_072120.docdoc 72432a57b4ec374e93f321f61b241307b00095f52351381167040cc9463acb5bVirustotal results 22.95% 
2020-07-2168872116.docdoc 59e827ab690ebe0398ef2409db0e89fd63ebe9c9a198ed0cd9febc218813f6a1Virustotal results 22.03% Heodo
2020-07-21WG_KS4708343378FV.docdoc db38d38b8c391434f4ddb964a8737400a96eff22fa39ecfb74eabdc785bbfe30Virustotal results 22.03% Heodo
2020-07-21QB9925846760UY.docdoc 597286f6b0f26fcb3c8507833ab54e1ecd981baf7b290a4f741c6e92064d5feeVirustotal results 21.67% Heodo
2020-07-21INV_1589551395970911.docdoc f3df11436c76a5e557325a669bcbf8d06ad9d5218f6669aa3aa3abf31ac6bc94Virustotal results 22.58% 
2020-07-21PO_07212020EX.docdoc fc2bb7719f33ff249113e3c05c4b2b6fdbc99190e250b3073295e271c553f0d0Virustotal results 32.26%Heodo
2020-07-21REP_71546007.docdoc 13a49c9a8f94cead5192d45174a96f53b7b58869de5e1b7631c139cad37d9073Virustotal results 32.26% 
2020-07-21INV_493070155933838073587735.docdoc 53b9a409018adc25ac26a608d9fae417659211d8754dbf7f07c3e4710a026774Virustotal results 32.79% 
2020-07-21MY4635249793LY.docdoc 6c9bab65f28ed13d572adc91a1af99d0862edc49891f2ffa643423c75a0cc4c7Virustotal results 30.00% 
2020-07-21DOC_MR8802495123ZJ.docdoc 41239e9448583b6a09ec8574d34295b254dec60348e219d0a1355467c3ab37a4n/a Heodo
2020-07-21BAL_YI4295495747PX.docdoc a1c510b8b53d426c52e223302dea06c70941135a3f9ec9badcb7523592c60d63Virustotal results 31.15% Heodo
2020-07-21BAL_PO_07212020EX.docdoc 4889dc2e25eb4a39c1afed23f47c68f25441da2a8a16860479a9af42e6588696Virustotal results 31.67% 
2020-07-21FUL_ED0799196369YM.docdoc 798bef025be5953e7e96ca59398667ca056420d1bed67221390de9d122f40165Virustotal results 31.15% Heodo
2020-07-21REP_4NLA7VXY5KAGCHPL.docdoc 31753fd36a9782bc8df01e639556c0f7a72a7eecc326382a981a6c69edc8d318Virustotal results 31.67% 
2020-07-21FILE_76534021673790090513.docdoc 6d7c0327ef758d90e34d8e64f95ea11431fc630f904b95f33141ced30a743dc1Virustotal results 31.15% 
2020-07-21951358259890225148.docdoc 926e68ce8e0ae5b9d2e935c1fe517533b3dc8cb4aa2250b0fa6ec86af0d78220Virustotal results 27.42% 
2020-07-21Y_EL2630587494BO.docdoc a6c8655af8c96aef402f4853f9c71b907adc45a533de7e3f9a9517aee1b43c0bVirustotal results 27.42% Heodo
2020-07-21PO_07212020EX.docdoc 0d1316502220cb6dd888dfe5bf248b70b28dc8eb3518f1cf98737edd5b62aa74Virustotal results 28.33% Heodo
2020-07-21INV_QPXGS7ZGYCYKBR.docdoc 46e68edbdc3dd2b5e70179a93d4f788074fa29e649c64063f636ee4e37c42fbfVirustotal results 28.33% 
2020-07-21BAL_NB9947132676QL.docdoc 9f082f2eeb02660ab639991cade576f8a7f72990579ddb87315b51374e11fc18Virustotal results 27.87% Heodo
2020-07-21AF7197931918YJ.docdoc 2244d87c2c6131e7df121cd684003eafdf3dfb9e5770c802d5d999569ab9b47bVirustotal results 28.33% 
2020-07-2068526004771567940.docdoc 1d9333d44f7442890d84cbc3972b9d00c93bf1556042f7b58c1386365eae3c76n/a 
2020-07-20NDR_PMH_070120_ROV_072120.docdoc 49f90436f418a86b0f4e55e14bcf74793954cc90596ad08dfb6355a1e50a8f27n/a Heodo
2020-07-20DOC_E35A6H4E.docdoc 80b27b3a7242ea8cdfbcc0d266c4fe489cc0b035fb614b755e2546c80cdfbed5n/a Heodo
2020-07-20FILE_9433521018885.docdoc db25e5d9d7e9141385c443268866698c14432d243af5aee0906b93bf713ff820Virustotal results 29.03% Heodo
2020-07-20475241586135986931.docdoc fc5b7108a0eaca8bbecdbea0d3405756a6cdb3dc9911363730b275e1e29acc4fn/a Heodo
2020-07-207MH3WE1HDNV0.docdoc 4ec7f2a0359b740dbbc849705f2856818bccc8fafa5a2237fd79640e61423255Virustotal results 29.03% 
2020-07-20INV_38HNYKC5X2RNR60.docdoc 53dfc48b5b049b05895bc4e2e5fca037946e69d083cdac2e6c222b76c86f4763Virustotal results 29.51%Heodo
2020-07-20INV_IO8420487807FH.docdoc 148aa06dceabdc99c7588bd48277867f3d0528fcf04463562707fd66f953045dn/a ZLoader
2020-07-20FILE_90681243106.docdoc 7b6a3b4d5f51807fa19a536a4a2400dd3279b75a75ba37423ab27c6937aee30fVirustotal results 27.87% Heodo
2020-07-20K_02151538688419615361.docdoc 24801ffebf7c96489c02613a4cc1fe277a4b1aab78bf4034145167ab19ae657fVirustotal results 27.87% 
2020-07-20FILE_5217CNODJMM9CMF.docdoc 401dadd7c1211dae181b8767949d274790aa4fb72e78a3d57ae92ac2cf925da8Virustotal results 27.87% 
2020-07-20REP_PO_07212020EX.docdoc 8163146178e6d55057843fa5f0da1b851d049bf802aea69b44aaec7352be33d4n/a Heodo
2020-07-20JR5009648677ET.docdoc e14b6fe3fd9316a62b7a645ffec63912c50fd312a1bec4536a5abc69d6b33ee7Virustotal results 27.42% Heodo
2020-07-20DOC_604278150131.docdoc 4fdba539896383e37ec2383fb569df4f17395dd40115ba8caba62127b7ebe949Virustotal results 28.33% Heodo
2020-07-20OT_45964066.docdoc a00bd0c41a60173a7d02bec198e21b3be8ce018289a2120a48b3cea32160de78Virustotal results 27.42% Heodo
2020-07-20Z_PNVIS23.docdoc 265c8a20b2d97de3e6464bbc718b00cb55562ca2512c7ca4f8fd6034613fff53Virustotal results 24.19% 
2020-07-2077475522.docdoc 021aa9ae780b058779de8a93eb224c78e1d856ebd0bf6a3de8810e1b20e88f7fVirustotal results 26.23% Heodo
2020-07-20PO_07202020EX.docdoc 8895dd40aa0da4cf1f3087db7cb003067025c7baba71478699d849d2f419d172Virustotal results 27.12% 
2020-07-20L_ZJGQ9KKQOW78.docdoc 69167697c3c077b3ca6449ae55750d1712c20bc33196537fdbbe05e463aab195Virustotal results 27.42% 
2020-07-20REP_77002552.docdoc 1e146c18d65265b27e23f9ee84a8f1d20c046aa76c30ed386710a10cb0da2960Virustotal results 27.87% 
2020-07-20FILE_PO_07202020EX.docdoc 183ca0c02e57c4d05e65f107ecf5b4e92475bcd2a513fbac2e8631591ec7eee1Virustotal results 27.12% Heodo
2020-07-20VCP_070120_FPM_072020.docdoc ad9dca4af2d2d6f62c8b873811f39187935fc52ac33c53abf4fc5a0d618dd659Virustotal results 26.67% Heodo
2020-07-20LV8686593914YK.docdoc 16a986a19d026da35781703a1baa7901b7c796b6a56c4cb47d21b741c9b47291Virustotal results 25.81% Heodo
2020-07-20INV_68250689.docdoc dfd60a37d9d7dc24e9302548219fc2547abf5a5cf7a6f4df5812bd4c737c7f69Virustotal results 25.81% Heodo
2020-07-20REP_PO_07202020EX.docdoc de77fe86034d9281adb201f8d4d906343d622467a133d5ef3d0e8cfe50dd4061Virustotal results 25.81% Heodo
2020-07-20REP_57645792110081602.docdoc eafa339fdc6f2ab44710eaeda684261c9a3caa9f5ff37a5004186616a6a5b0b0Virustotal results 25.81% Heodo
2020-07-20A_GVT_070120_YYH_072020.docdoc f49f50e867c62fbba39a590c6fd467d0a6ae957409da5832c798cf31558296c3Virustotal results 24.59% Heodo
2020-07-20FILE_DJW_070120_DKH_072020.docdoc 15fe975d4b69b43d4f2a72a301e2eb1beb12fb709d0cf36259e10950b30d0fa6Virustotal results 25.00% 
2020-07-20A_PO_07202020EX.docdoc 1e7876167b890b5fef7dd8cb965be95ef2adaab8a7c06bdb8b1fee0b34d90534Virustotal results 24.59% Heodo
2020-07-20BAL_2177701026751329.docdoc 9916b4a492b19650f59d73747d3b28cd2e996ea9e6ea86675534a17b52c01bb9Virustotal results 26.79% 
2020-07-20DOC_3999234182651387723.docdoc ef39614f2391d08b6dfe4efa2bd46dd5a5c843086d6a7d6e117f66e55eb960a1Virustotal results 24.59% Heodo
2020-07-20FILE_V1GIJECRCP2.docdoc e66fa55feba8f02e97d8f28518887bc1bd17bce816a52c88ffa8725ec26530edVirustotal results 24.59% Heodo
2020-07-20REP_82754480.docdoc 0240efc4f77a2ebd611f16a03d02f4baf6c79b6f2e56399013bf55c577c8592bVirustotal results 24.19% Heodo
2020-07-20REP_PO_07202020EX.docdoc b50a72aa0436e28994f0f37fe7ccc4b9b1346b57fde425fdbba7d253df11d5f7Virustotal results 24.59% Heodo
2020-07-2062153780.docdoc b1117dc0028ac754790e7b23a96c3bf2666f38c9096bc7e111c92a379c8408f3Virustotal results 24.59% Heodo
2020-07-20PO_07202020EX.docdoc 78b522f88005e96bdfd89250e19f663f77d4cebd983c5471a52c36bfb74adeb9n/a Heodo
2020-07-20INV_98461890711873008153604.docdoc 1807efa6e7807d974fd07df813967bb465ab7f5db4fe504ca21f1d9b00324been/aHeodo