URLhaus Database

You are currently viewing the URLhaus database entry for http://vivoworld.co.za/blog/available-disk/open-5caoh9dp-2qqr1q32o7xujr/iabfoy1y1-10941y5t/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:415380
URL: http://vivoworld.co.za/blog/available-disk/open-5caoh9dp-2qqr1q32o7xujr/iabfoy1y1-10941y5t/
URL Status:Offline
Host: vivoworld.co.za
Date added:2020-07-20 16:59:39 UTC
Last online:2020-07-21 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-20 17:00:04 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:1 day, 4 hours, 25 minutes Poor (down since 2020-07-21 21:25:08 UTC)
Tags:doc emotet link epoch1 heodo link ZLoader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-21rep_N28906.rtfdoc bcc1834e956cf9ee218e2956ae6511170e810ad54d6738ed11f98620609a3e30Virustotal results 26.67% 
2020-07-21FILE_T832.docdoc a498a07bd860a86bd937ea230aea64bdbc55c3040d90c13e57a2670608c1af3fVirustotal results 31.15% 
2020-07-21ARC-2324726.rtfdoc 2748fddcf19685fe54157b965c7332d3abe89dee666467ba9655e4ffb6d805e3Virustotal results 32.79% Heodo
2020-07-21REP 440.docdoc 94afe20839c1b4794b268af701170510a03aca8ba4c42d4f37056f048b4f4312Virustotal results 31.15% Heodo
2020-07-21arc_2020_07_21_6049024.rtfdoc 50d5051a82f97571415ca2550517c6872eca80692c7d6db605082a0b9876d34dVirustotal results 31.67% 
2020-07-21MES 2020_07_21 022.docmdoc d678baaadbc56de5d5136a2bae9b233710d4016b9d09094c907e6a1442f7fca7Virustotal results 31.15% 
2020-07-21Arc-20200721-G8155.docmdoc b94adce77ef4687f4a2308618ad9109110ccca6b7a12618f12c334a61ffa712eVirustotal results 29.51% 
2020-07-21List_T0647.docmdoc 0dbbb6599f01fe8f1817f54193e2969d69f49e504430db1e659cbc26706cfa2aVirustotal results 31.67% Heodo
2020-07-21dat-2020_07_21-A207.docmdoc 7203fa5731e4f60d782eb7248af9620384981a39282d70094f40946b1b7a60c8Virustotal results 30.65% 
2020-07-21inf 2020_07_21 15373.docdoc 3d808e9e116ecad94d0839d1a951f8aa24c96f6dfaaa774a889edbb38c857b56Virustotal results 31.67% 
2020-07-21Arc 2020_07_21 VNP68674.docmdoc ee05671d7f2cdb36ca511567ee135c6c7a0452be6d23aef5b91d9b4adec0253eVirustotal results 31.15% 
2020-07-21FILE 2020_07_21 O337215.docdoc b245eea1d0569a4ba8e24c96f41af5fa75efa79b0308c9fc56adb52d053ea467Virustotal results 31.67% 
2020-07-21Inf-20200721-C139812.docdoc ade92c771f3d31b85f839181d2c222569b9271fef181b82414798016840e0b37Virustotal results 29.51%Heodo
2020-07-21REP_2020_07_21_Q1382.docmdoc cdf84f1d0e4e87f30d1129360af2269ef500d32d12f3d57694090fe15ba0ce01Virustotal results 29.03% 
2020-07-21INF-20200721-32725.docdoc 620ec5ba9b3488d2f0df3f27c7efbd786e501f76dc0cd1e11e70e9783968374eVirustotal results 30.00% 
2020-07-21ARC-2020_07_21-WG5139.docdoc 608a39d31a2ab34bf79ebd042bf10028b9bc7ed087dbb810306956dd1ba45567Virustotal results 28.81% 
2020-07-21Mes_2020_07_21_ODV2430.docmdoc 76b3bec66b692ad45b4c647003c0e5e5b5a3d416c87a613b7094960050adad61Virustotal results 29.51% 
2020-07-21file 2020_07_21 3952973.docdoc cb0734252b9b348cf76a68b0be66b4f8d0b55eb1cde79ef55690241f2e3b6017Virustotal results 27.87% 
2020-07-21REP 969.docdoc d1f13cff50c5950b6842f81fb632405df63e1d6a953d4d912b3f5ecfb1afa55dVirustotal results 26.67% Heodo
2020-07-21mes_2020_07_21_G167.rtfdoc 15617b37ed587c9af7ec3de8d4aabd3de95ded6604f652abea14822da2c94ce0Virustotal results 28.33% 
2020-07-21DAT_2020_07_21_215.rtfdoc 3b2f5f46ff691d1339cd98d00d79cfc31b0a7c7820a17c45c7be9197a392f2f6Virustotal results 26.67% Heodo
2020-07-21MES_2020_07_21_439764.docmdoc e6e56699f2eee72f34f915a3535b5cc541d94ff1733222954c162b2f34a063a4Virustotal results 25.00% 
2020-07-21arc 20200721 FHQ54988.rtfdoc f71d024b4271aa2cce102ca4d7736cfd3a80503b28146ea2afd7ca8233164f88n/a 
2020-07-21Mes_20200721.docmdoc 472c2ac90c92513e937b9396ae2d84359993dc64ba3e3f130191b0a9976f0262Virustotal results 25.00% 
2020-07-21doc_20200721_HE6215.docmdoc 55a103c16b3c4d8958091e55cfb62091fd2d209e07ffba0a5c88252946b8ae39Virustotal results 25.42% 
2020-07-21LIST 20200721 345.rtfdoc 31eca40e53bfafd9aba582a36d6acbd218f5c25002e67cb4d0bebddca0b73ce8Virustotal results 24.59%Heodo
2020-07-21Mes-GZA4452.rtfdoc ad614712ee0ad71a7408a527a3a2051489b0ff4f08038b7a676ad967ea160fb7Virustotal results 25.42% 
2020-07-21List-94712.rtfdoc 64eee4aab6935f2d3d11646b1c38bdd7519aef0367f417afc89d07c5b15b8eaaVirustotal results 25.00% Heodo
2020-07-21Inf 20200721 065.docdoc 38a052e49569227f531849f52c6e801e5abb2c68a7dd2c5a9fca8e92ec6b0211Virustotal results 24.19% 
2020-07-21Mes 2750.docmdoc deb29a892e444cde34fe7642bacbee1bf74d35fcff478966636eec77c5e28646Virustotal results 25.00% 
2020-07-21list 2020_07_21 LF05831.docmdoc 9e501526cd1120438e501f104b58148cdcc62bfd5bdf617d87542dafe9240303Virustotal results 24.59% Heodo
2020-07-21Inf 20200721 3636.rtfdoc 7701cb5a8f75904004c1438e6e79eaac41be47f7d454a35f7ab373b2ef1aa392Virustotal results 24.19% 
2020-07-21INF 7015435.rtfdoc 477bc137f269ae86b7049d592f7588c5f063e569db20bd09ff2bea3a04aeba06n/a 
2020-07-21LIST_20200721.docmdoc 77381e8fde74067c151274bc344395ef59df227e209ec80c0d7879aacbd5d654n/a 
2020-07-21LIST.rtfdoc eec0262941bfb2dcb8d29f6ef1ccc699726ac66beb04d7d34e8da3281cf19c38Virustotal results 25.00% Heodo
2020-07-21INF_6080.rtfdoc cf3b2f4e9f81af42df9884f8f3042a4a704fe949060f1997368c664d6db623ecVirustotal results 23.73% Heodo
2020-07-21FILE-20200721-BG745745.docdoc 636d88ba99693495dfafdbd6f67413c9cfaa91a424a1091bd31ca2fd34c77c64Virustotal results 25.00% 
2020-07-21Arc_20200721_PH39205.docmdoc 09d5cad4c8b70edf0e4e47c1abcbbdec9872ca65c129f100c3eaa76ff6197497n/a 
2020-07-21File_20200721_994.rtfdoc a8d9eceee2cd3735b96abf3528e7ec3e8e2d8ceb8991c00c7ff479e9034655f5Virustotal results 34.43% Heodo
2020-07-21FILE_2020_07_21_YG08081.rtfdoc cd7e26bbcc41d0820e6e2e0e42e56bef410264d6bcf74033fd1fe26d52b389eaVirustotal results 33.87%Heodo
2020-07-21File-20200721-QWA78360.docdoc f78e874b4d5c5dedede72b85b571f2b04d8edba617b6634d95c2af181e6e4dd7Virustotal results 34.43% Heodo
2020-07-21INF-20200721-589412.docmdoc 793132996a7b6875055c2bdbde2173f37e68ce5f04ab651acad13f84ab89cb82Virustotal results 34.43% 
2020-07-21REP 72925.rtfdoc 276568f9c3bb230aabe183dbfd02ad1c36b7aa141d382d34a839a611a422c07fVirustotal results 33.87% Heodo
2020-07-21list_2020_07_21_207748.docmdoc 754a0bebe018b079d9d9260256ea2106b4b5ad9a654c8b8a1989bf6e3f4568f7Virustotal results 34.43% 
2020-07-21File R483959.docdoc 5816bc271d88617e627d64210b8ac9df417f8072b362af861ade766137eb1564Virustotal results 34.43% Heodo
2020-07-21LIST AP85640.docdoc ace014e43d78870f28d2a732d72b60fe0c602b71dcc8771989e5cfc0bb1e0befVirustotal results 33.87% 
2020-07-21Inf-20200721.docdoc cace589fbea03e0098cd73ad40875dfbe1af727e4b82a5944b6e2111009af7a4Virustotal results 32.79% Heodo
2020-07-21Rep_20200721_PD05866.docdoc 86615d32b685ca8d74d59c1c848216fac1eb779d126a183795f316a6ff0014b6Virustotal results 33.33% Heodo
2020-07-21doc_20200721_7351841.rtfdoc e2a49ec64650e56e967e8b0c31b7e21ad3f1ab14516c6dc02605aaeb90f7b87cVirustotal results 32.79% Heodo
2020-07-21list FS92321.rtfdoc 41718a7885dc57496b953e118a0e425ba2af1e37a2a3a868cf05ac83e3db792fVirustotal results 32.79% Heodo
2020-07-21Mes_JMG1371.docdoc 276dfa20b9cffd3ac104aeafed599b2f70a9fd0e8d4faf1d86ffd46e8354a416Virustotal results 32.79% Heodo
2020-07-21FILE-20200721-7676.docmdoc cd605825d74d60677fec41c84dc39462658ebbd5edd8e29cfe9610a29291b3e9Virustotal results 32.79% Heodo
2020-07-21mes 2020_07_21 N869593.rtfdoc 6c7da386cdaa6398c065aafedeb01b31ec959ecf615e9601a81a2c86488c4c86Virustotal results 32.26% 
2020-07-21File-20200721-7673.docdoc 1236dd4116a2c4ba4427175d0a3e88c848f70dc6219f6b22f1997ae3ba80ba14Virustotal results 31.67% 
2020-07-21doc_TLN33309.docmdoc ead83fc91ca4d61d49957be440350122ea7f083e14b61eef430b9d7c5eb3f9a2Virustotal results 31.15% Heodo
2020-07-21File 20200721 J290291.docmdoc 49b857e2068f710d1facd444264c6d8804ecc9e2ba9660953b24bbf213cc66baVirustotal results 29.03% Heodo
2020-07-21ARC-2020_07_21-0798.docdoc 33e64096db5340fb26c5b5d6f9b1dd89674d3a77a96a25fafcb878d9929fc9daVirustotal results 31.15% Heodo
2020-07-21Dat.rtfdoc 99c6c8f02c2fef792bc8a5a6406b0baa294156cb38b8df191f98cfb5a90547f5Virustotal results 30.51% 
2020-07-20list WY314.docmdoc 211aa330e781af24810676e704804e6f939793cf7572674e42de54a4f7513735Virustotal results 29.03% 
2020-07-20List 20200721 GM6541.docmdoc f83e32a15080c0f31451809377046083d52daef3354edecea6db6ccf4158a43aVirustotal results 30.00% Heodo
2020-07-20list-2020_07_21-45797.docdoc 107cf68ace70917126432b415c7a9b4a18e3f87c304c1ea780b1fe0950167c29Virustotal results 29.51% 
2020-07-20inf_WVU02970.docdoc a6ca24bb5b1de30cd63ecceac1727ca4102ed289d65fa05c550c4485e6ca372bVirustotal results 29.03% 
2020-07-20DAT-20200721.docdoc c0696d196c346305861f4e358f48f216dcdde4251309abed3547504007cb858cVirustotal results 29.51% 
2020-07-20Doc_341.rtfdoc 616dde6dc6e22e28f4149e26996578dde114b40f896cee3cb36165d52ff70857Virustotal results 27.42% 
2020-07-20mes-774339.docmdoc 1269bdbbc40be92cc1f13918a692b34fdfeec466bd7d872863ecc405ff38f77fVirustotal results 27.42% ZLoader
2020-07-20INF-2020_07_21.rtfdoc 4d5d4a16ec11a850141a0a77026153d2a409bb4602e624623ee007e79dfd9639Virustotal results 27.42% 
2020-07-20inf-2020_07_21-73085.rtfdoc c5dc7db865c477ba217342107932a67cab54659a8a870fa16a9d2f21ec3aade2Virustotal results 27.87% 
2020-07-20DAT U719.docdoc ec87e9999c894cdef59c964d06c6de6c7a7134d373b4e754180d90dd5fb23f64Virustotal results 27.87% 
2020-07-20list-016.rtfdoc 8d861becdf66c056d51b6b585d1d2c98ec75e77bc3af28d354edb72f3ebb65adVirustotal results 27.87% ZLoader
2020-07-20LIST-20200721-UD74820.docmdoc d6da6435e94d2fbb2a3847c934bf0b6d41c613337ac951b10fd5851eb98a9bf3Virustotal results 27.87% 
2020-07-20Rep-570699.docmdoc 6b5e8002c323071f83df953f977caf3a477d1a0c7178e0795674d263bc2dab15Virustotal results 27.87% 
2020-07-20ARC-2020_07_21.rtfdoc 3aedca3992d77371154f015834399c14aab576050a53efa01fb5714e01beb841Virustotal results 27.42% Heodo
2020-07-20List-2020_07_20-Q4801.rtfdoc 08f5ec28ca3c972a6d03a47225475ddf5930decbb10ca8de63dfe0544581ce14Virustotal results 27.42% ZLoader
2020-07-20arc_GQZ687.docmdoc ba9dea8d19d91af5e263e8bb98b6ef25c7f8d994944b6d6a0ecae3fae653199aVirustotal results 27.42% 
2020-07-20ARC_BF133.rtfdoc 97e66ad16955f21f83dae53917dbdefba08fc07108392a96327eeef55698a04cVirustotal results 27.42% 
2020-07-20REP-20200720-KI9339.docdoc eb193bc39825dc7e1397022e2a0a3a3e304be6b65d8128280fa02d2ebd1099c6Virustotal results 27.42% 
2020-07-20Inf-20200720-6332.docmdoc cbe8fa6812edba1a4e2b1fe7c30f6cbf05f21e5935e95ecbdda6d3f5d3b6de9eVirustotal results 27.42% 
2020-07-20file 2020_07_20 FRS015213.rtfdoc 36a8c92bf1e17c731797dffede2d91ede145d83d3328bac42e2b046f296abf77n/a 
2020-07-20INF_155.docmdoc d5131493ad164aa948303d5cc898261385724bb0e816b1f3583e77326458a9b2Virustotal results 26.23% ZLoader
2020-07-20MES_CV237870.docdoc 0cd73a229418caf24e599b0db39e5ff3ae2903ffb83340c026c0ffa0f7e9f86bVirustotal results 25.81% Heodo
2020-07-20REP-20200720.rtfdoc 2ed0a17884d80b91110cc117b3963361ae603c91ce2cd60de6131972d6a047b1n/a Heodo
2020-07-20Inf-133.docmdoc 4fe945b83567f1855dbc8ea4f8e0e0e2258117238ca2184dd10ba6cf797377a7Virustotal results 25.81% 
2020-07-20FILE 2020_07_20.docdoc c7a3062c51b5ae769e1da9813548bc4528d606568c5fdeb0a36b9da55bf64249Virustotal results 27.42% Heodo
2020-07-20List 20200720.rtfdoc a8b114a82f64917ed11c8e081de40eb7121b26ae5e8c8aae05d858ec88c370a1Virustotal results 26.23% Heodo
2020-07-20LIST 20200720 W804.docdoc c687ab0370adc689fd9c868ca8ac6d5cada52c52dbccd3eab0746ad0d89ef34dn/a Heodo