URLhaus Database

You are currently viewing the URLhaus database entry for http://yaalaa.cn/wp-admin/swift/k5j8h6/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:415502
URL: http://yaalaa.cn/wp-admin/swift/k5j8h6/
URL Status:Offline
Host: yaalaa.cn
Date added:2020-07-20 20:14:07 UTC
Last online:2020-07-23 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-07-20 20:16:02 UTC to anti-spam{at}ns[dot]chinanet[dot]cn[dot]net)
Takedown time:2 days, 15 hours, 3 minutes Poor (down since 2020-07-23 11:19:30 UTC)
Tags:doc emotet link epoch2 heodo link ZLoader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-22TV2123124669UZ.docdoc 23ea239a016f2ff1b2fe38ee5f5277f167ba1ab85a3d9cfee6c389b219d2f5a6Virustotal results 36.67%Heodo
2020-07-22DOC_YGP260A59696XL.docdoc 1cd9889ad43cd422276df08ecb1c646d283f3c9eef9fd2729d119a76939698a6Virustotal results 37.50% 
2020-07-22REP_WI2533506065FG.docdoc 0bd41c31d1af2a85a0761c4b3a4afb986cde439e17ad9c73cc093ef9c0188820Virustotal results 39.34% 
2020-07-22REP_8372724146168391031.docdoc e3b40abe8849ea4e531f61c3887d9c21d56c811f948ac36abb97499389ffd435Virustotal results 39.34% 
2020-07-22J_QZW_070120_RYO_072220.docdoc f3cd7d293b6a08ec3f1d12bc68ce35f3d95a50722ae7229ff57afec38b803cc4Virustotal results 39.34% 
2020-07-2210085321.docdoc c3d6f7e8a9dbb2ec09cb6152ac193f18c3a4e742fae9ba6cb35d7fb6622b9648Virustotal results 38.33% 
2020-07-22BAL_XL2537891180ST.docdoc 1695789d253d8e54ff6f46a72c16b4b63aa03ebdc251b65333073a9d70811ef2Virustotal results 38.98% 
2020-07-22PO_07222020EX.docdoc a82109f8fbf62524daee674feca6fa72a4c3641450c09a4b381995bf61dda662Virustotal results 37.70% 
2020-07-22PO_07222020EX.docdoc 45cbb72e4a00c0dd4509a419da9894bb87c5752a206a7d71a77ce1f3560e4d16Virustotal results 37.70% 
2020-07-22PO_07222020EX.docdoc 6ee52218b54636db8edf7833738f921c320966b59f82e84047628cd124d5bb62Virustotal results 37.10% Heodo
2020-07-2273913915.docdoc 218a9eeb52984bfb956e887df5190845197214a6819f3d2c448ca8e6fba15bf0Virustotal results 38.33% 
2020-07-224041227088.docdoc 8aaac75598925bf1f4f8681fe90a8201fd71dfcfeb9e74f5e5ce871eb75dd4f5Virustotal results 38.33% Heodo
2020-07-22REP_MN9YNMLJBCSXCP.docdoc 4ab1de02515cdfd8f8ad61a1b7b8d15bc2be0d3e840dd8cf578fdebef9732955Virustotal results 38.98% Heodo
2020-07-22BAL_PO_07222020EX.docdoc be41f8f67be88df96854f035974969bba7d370919a5e149563aeb7e227950bc6Virustotal results 45.76% 
2020-07-22INV_PO_07222020EX.docdoc 258d0930ba07c1741ae1b56500a1379899a3b6670738668ae68888e1cd0594b1Virustotal results 45.90% Heodo
2020-07-2201019221695527939266.docdoc 7e7aa30ca5690996f1a10f67cfb4dc964e5abc8b9ebb860ae6c3c770ff551894n/a Heodo
2020-07-22DOC_57144741.docdoc 73b03b0c4c42b5252564628ad2d76850e68302897786aa96dbe3a4503c26183aVirustotal results 44.26% Heodo
2020-07-22DOC_PO_07222020EX.docdoc 0903878bcc1c642efdacd0a38728427d7694d63ee079ad0c29a6dc86640c7a07Virustotal results 42.62% Heodo
2020-07-22BAL_CX34KYSPV.docdoc 5cbd34babe0ec377534dd02560a79250776943095dad7b6d53f17cbfebfe738eVirustotal results 42.62% Heodo
2020-07-22DOC_PO_07222020EX.docdoc 7301394356de0237cd27b967d4a2cfb13d5c2d4e5ddbd98a0488d26800d28849Virustotal results 43.33% Heodo
2020-07-22DOC_331027703461636242246.docdoc 516b990afeea66dde2feaf3c08cc03d53b102010a7563f735bcd2a9298a4978eVirustotal results 44.26% Heodo
2020-07-22REP_GFW77Y7H5ND.docdoc b1715682c97f45a67eefba82b2f98e6e7f62d7d2c8b30c942fc9d763aa531223Virustotal results 43.33% Heodo
2020-07-22542931976.docdoc 5ff647337b27c218d68269d29c1c176dfa7b66d41cd0f8dca64353823b5331b7Virustotal results 43.55% Heodo
2020-07-22Q_HSLF18RUHEUABOH.docdoc 9aa88e0b920319854af15ecf938c37ed20ef8922b14d3aef3c431e7244816a70Virustotal results 44.26% 
2020-07-22D_QS8476616331NQ.docdoc 1bd519d5cc1c15caa5852330cf48e62d99f39986966dab882ab7befff8962afbVirustotal results 40.98% 
2020-07-22PO_07222020EX.docdoc 89781678d6d163d911bb4191aef0633150643ec2950d40fb73be636fd5856511Virustotal results 39.34% Heodo
2020-07-22YTK_070120_MHT_072220.docdoc 782736531e733d8dc455a8d1c25318d69d3bbe81a3d9ee2f8f26322d40d242a6Virustotal results 37.29% Heodo
2020-07-22DOC_15363012.docdoc e36be98a3e3d568430d52706ee06d935e126942b2a5c2453f5478d8c0d58acb7Virustotal results 40.98% Heodo
2020-07-22YKQ_070120_QPE_072220.docdoc 605e68db4024034f722b64cb62676029ba7c1ec38fe58ac535909068a5d53535Virustotal results 41.67% Heodo
2020-07-22FILE_XL5349024347NG.docdoc b88e74aa0926fc194b5436b4202c1e7ec8b5f7ba028c951871c7be94feeed8bdVirustotal results 40.98% Heodo
2020-07-22445414219413640.docdoc fd2c6130cd3a5d6056aebf171e64dd498f02a42d48ac937ffe344d43318776cfVirustotal results 40.98% Heodo
2020-07-22DOC_FOU_070120_UWK_072220.docdoc 2cb329a543eb632f90ccbd51baf27bf97f5ab49bf7b638d2df2ecdbe93a97907Virustotal results 40.00% Heodo
2020-07-2224146316310655836880687.docdoc ae07f8caf7ac7bab4a92d8e3801c7cfc077a3de990f0c607c611ba7c3af9e10dVirustotal results 39.34% 
2020-07-2220763211.docdoc 1553b84424e37a674a207e800743ff2d1d135d34695a7759b332366843027d70Virustotal results 40.00% Heodo
2020-07-22INV_26415340864359.docdoc 09ff59e3aa0a87e0028a01ccc11acdf7bb537cda761ef20a6d6528aa762a6aeaVirustotal results 40.00% Heodo
2020-07-22BAL_BH7H49OVPA.docdoc 68742e960aa88d7a38f1caf8c84a380e68ef6f351f7557c5710f76d8c191a719Virustotal results 40.00% Heodo
2020-07-22497955105728.docdoc 3989307ebddd245bda87431ce5df1c47f236f62ffddbd75ea3d36a68ab9fc77aVirustotal results 38.33% Heodo
2020-07-22REP_7978147646878610438900.docdoc b62a1c960c1e1635a15bfc9d7f02f48844cc4e9d49355449bc23aa7d5572c292Virustotal results 36.67% 
2020-07-22INV_DDE_070120_FDQ_072220.docdoc 02688396874aabe3c8706c443c1e19466a2d0a2b36ce2bcf5407d5db72dba36cVirustotal results 37.70% Heodo
2020-07-22FILE_PD9373754530UQ.docdoc 4e65f0280b70f9a69450d3cea43cfe4f69e5240dfebd8e49edb70a98ef08e806Virustotal results 35.00% Heodo
2020-07-22REP_PO_07222020EX.docdoc 120f732aba4b64d3432a7909b4ef59ce8ce605c0c202211713040e457d3bd341Virustotal results 31.15% 
2020-07-22INV_703616553522292272294.docdoc 4c0cc2081019e58018a52f5990e6b614bc3ba72898c51b3b2b6c936712cf1697Virustotal results 31.15% Heodo
2020-07-22REP_DM9972231121KT.docdoc 3e6ecc9f761d45f01cdacb922d75715c71de8971735e6dc692ee6735bfb93d23Virustotal results 30.65% Heodo
2020-07-22FILE_88125501.docdoc ba4417524d4ec820b4eb5bc47ce13c88930355211107e1866f24d0888f36186aVirustotal results 26.67% 
2020-07-22N1SSAQ0S0MJP.docdoc f9c93aa61dd4cb64cf59976fbb246f87744328a2a1fd1233945c84fbda2c0aaeVirustotal results 26.67% 
2020-07-22CWK_070120_GQY_072220.docdoc 6999be5570232cb11189a152478254ef33470426036d88fa74b45305031efb73Virustotal results 26.23% Heodo
2020-07-22FILE_PO_07222020EX.docdoc ee36488e9d6d8ea09cff02367c7212d0503f376346c3b40aed03e01c1b1aa668Virustotal results 26.67% 
2020-07-22REP_CC1207447515OJ.docdoc e563992a8b913e222c4f08cd1cb89a4e4af61dc33d30f455e7e3f4fbd039666dVirustotal results 26.67% Heodo
2020-07-22V_98857455.docdoc adecd8241c21aa989810258e39d162aeb6ec0b86ca6a884fa3a542ad306a1c63Virustotal results 26.23% Heodo
2020-07-22BAL_23759263.docdoc a76feea95a298d6f94ca0a719376f30e4409a18555e10bdb1e90a24c7facf294Virustotal results 24.19% 
2020-07-22DOC_72627855.docdoc 61b94e8bbe7564405293dadbf39ad662250c4327556639f79c09ee9e56cf909en/a 
2020-07-22RVZ_070120_VIR_072220.docdoc 584fbf65a3d7eff0ed9282b47d237781da7f7aeb0092ecd034d3edb66adbc6dfVirustotal results 24.59% Heodo
2020-07-22INV_85522883.docdoc f9b9806f9c7c88864e0ff685eaab801a085f8c567b7d6993101bafa58c4833b8n/a Heodo
2020-07-22RS9NL34V7QEY3ZU9.docdoc 0b88f7457627bb2ae6f62990289a2e3f1a378c01892e3715bec08b94d13206f1Virustotal results 24.59% 
2020-07-22PO_07222020EX.docdoc f4ca24a43791c023e2992042afaa7e31c98e1352f74e1b4366f6b52627a51510Virustotal results 24.19% 
2020-07-22DOC_97471725213186763.docdoc b45b106204a66b5d0111681b932137b590dae6124c7176abee5740917c77e871Virustotal results 24.59% Heodo
2020-07-22BAL_FFKO29ZCGT62Z.docdoc e138da30fb56344429ee51040714270123930932db14186bb12630a53d904fdbVirustotal results 24.59% 
2020-07-22INV_OLI_070120_FRX_072220.docdoc 10963f8cec95f3f18634db9382cd4403523a624d72a459c29c9c3baf27097509Virustotal results 24.59% 
2020-07-22J_3528027623714135.docdoc afb0e524b7db64a122b728e245c9696835a816e3cf272da3b39ac35bba514abdn/a Heodo
2020-07-21DOC_BU6185374936EL.docdoc 620ed9cdd6372b6bd9572a507c6c349ec07cd10cb45cb36216f21e2e6b025d2cVirustotal results 24.59% 
2020-07-21INV_SW7073106457VL.docdoc 036ad59b6976510e9ff4cf18b0c06525921206e2fb2d09135c41308923ff5d80n/a 
2020-07-2141286570847892.docdoc 9219b02f05ac45df25ea9a7cab876c9836470d4f1b13a2652d25169d50e2fa84Virustotal results 24.19% Heodo
2020-07-21FILE_3215582977410.docdoc 9f59209f542f739dd433026c1d8d27be15cd6a200911c01d5e075ef2350540c0Virustotal results 24.59% 
2020-07-21DOC_SJG_070120_JBK_072220.docdoc a6f854e3c35ea6d6a5cc1ae65197f94c8274c5e72b7641cd8ab8f0537a05c9f4Virustotal results 24.59% Heodo
2020-07-21BAL_PO_07222020EX.docdoc 46ae24609f881a2a8e58a79014bc0f644673c954619610d6086f92289b7e5b8dVirustotal results 26.23% 
2020-07-21BAL_EB9273659483FJ.docdoc c95057fce46c3c402c202fb3ac124dde463a8e1de0c26047fd254ffd11084f36Virustotal results 25.81% 
2020-07-21BAL_83476440.docdoc eb1f5512e10d3a5224fa2b7a8d42a8b6fdb1b4fa705c24514c2b04fa6fa3bda1Virustotal results 26.67% 
2020-07-21SCU_070120_CBS_072220.docdoc d8f6127bedd179ef5edf45af00d0b8df5f155b3809547852712c6d1db6774609Virustotal results 26.23% 
2020-07-2108141568.docdoc eb3009e003594f7c6d5a2c373db44fe65d9acc0be9c31c317bf9ebfad08e633eVirustotal results 25.81% Heodo
2020-07-21FILE_VWT_070120_LJK_072220.docdoc ef588b15ec68408283319fe4a31c163af29512203d6270f8a010d6065516d4ceVirustotal results 26.67% 
2020-07-21INV_607566353086461124705457.docdoc cd6f41e3821d55917fa4a0cdbe223abdb97ed8da6f7870d449d8e81ed6f9ec69Virustotal results 26.23% Heodo
2020-07-21INV_PO_07222020EX.docdoc 6616cbabce1dd4cb3515191b2ed913e01a7ffc8b1cff8ec410600930bbdf7f3fVirustotal results 26.23% Heodo
2020-07-21REP_248334847984815356393.docdoc 5966dbc11d924231b5d148a1a821154f88e469adcb6e884d4dd5102c9e598e9fVirustotal results 24.59% 
2020-07-21UR3839240315IL.docdoc df3b437a0a2555b3ae16c3634140dd1ff3832120d3376e4a11ec45a500250f4aVirustotal results 32.79% 
2020-07-21X72ID3R6DAVKG.docdoc ed1fa22cd74f33f9e0a5d4191f4b7304925eae53db04e752d2095134b6f0100fVirustotal results 32.26% Heodo
2020-07-2197573984.docdoc 6b606b07e4ddf623479f05fe2da2628bfb74b953116407b7e4ad3cd64421de36Virustotal results 32.79% Heodo
2020-07-21FILE_MXL_070120_PUP_072120.docdoc 1eb40695aac83a3f528f16af863be6327354d555eadf1695c53904c523ac9a86Virustotal results 31.15% Heodo
2020-07-21REP_YZU_070120_FQP_072120.docdoc b2dcd1d5ee235a978ccd72a68fa2448f80577a051cf78c994fb62d41e7932e39Virustotal results 31.67% Heodo
2020-07-21BAL_MXC_070120_CEE_072120.docdoc 6acb37f46741819ca10ee4ccb7f88dc94b5dc36a3a1c5c366450d76db4b42a6cVirustotal results 30.65% 
2020-07-21REP_BKTG8UKJXN.docdoc fdd63d0b6f6654abf830b1328dc6c506ae2d56e0a36a2ab27fe004a14e2a2bd5n/a Heodo
2020-07-2151551019286344384.docdoc 4bfbfb5923eb71f021f091cbf5ee00a93a33fa778ffc90650b2245de3ace463cVirustotal results 30.65% 
2020-07-21W_PHN_070120_BQS_072120.docdoc 74db9fac3d9a684b81ce1975d06d184a85bc67d24466aed35ff6ee475e21d16dVirustotal results 31.67% Heodo
2020-07-21BAL_ES3816191570DJ.docdoc a543b622ebcc58314854fa85473ce89753b8c30877e2562d607aa9483023d16fVirustotal results 31.67% Heodo
2020-07-21INV_CIZ_070120_UYE_072120.docdoc cd09464801afed0ba0ee3b0c56d9bf551f6f14f54705fbaa575e689c3fa2ad2cVirustotal results 30.00% 
2020-07-21NKN_070120_LDR_072120.docdoc 11268d39e74f42ce15b955dac4cffb525807bf4737c9b958b00ca1e648481704Virustotal results 30.51% 
2020-07-2125566000.docdoc 454c1cc1f9583beec51230534131bba60e6483bb9363ead5a4b7b33f54e30a51Virustotal results 30.00% Heodo
2020-07-21BXID9IGT85.docdoc e8eff9852fefe1a01b140600735f3b9abecfd2f1bb93929c8955778bb11d0681n/a 
2020-07-21IIG_070120_VYC_072120.docdoc 7c0e49dcc082c8f4b4fac91339f378ea04ffb0ccbde5018346e4f95f30fcb05cn/a Heodo
2020-07-21INV_PO_07212020EX.docdoc 610576af7dfbd57bc54cede047748ec6355fd2122f6820ee76c1ec17967126fbVirustotal results 27.87% Heodo
2020-07-21REP_2PDMONK4ARMJ.docdoc 7facd10d1c1f1285b971aec88e0d3d26a46ad7b005404f6676349d6e8cdc1e7aVirustotal results 28.33% Heodo
2020-07-218540835690443336.docdoc 9053508e8b2272bfa74c8eadba7ecd45a1db50cfb3aa841015dc626c3e13e85aVirustotal results 26.23% Heodo
2020-07-21TCSK_82278263.docdoc 5f79033b6a54db8f8075b5fa3c0629142bb73e654e4aabb10f5e905942a4871dVirustotal results 24.59% Heodo
2020-07-21J_PO_07212020EX.docdoc ab0c125341cfc43f2b78b409b59b4defac478f57c6989d3197f29790d5cba907n/a Heodo
2020-07-21781777705434021627.docdoc fe7bb6362bb3a11a4579b9c0c36fb7d1df5b57d43ff14b8b4ada2254224180e2Virustotal results 25.00% 
2020-07-21FILE_55077255.docdoc 4501457e1fae31cb83a1d2818d169525f75627a017efc573932fd412e6e2c406Virustotal results 24.59% Heodo
2020-07-21RGQ_K67UC1A0.docdoc b1a935c9a64f8a2191e613e696c6df7a5892c608ec14c6f72c3459c4a62f2865Virustotal results 25.42% Heodo
2020-07-21DOC_ABGVW79P29NQ0NX0.docdoc c1d1210982635dadb2f24475c235301c47a2929b5b3caa913ebdad6df34a0c71n/a 
2020-07-21DOC_PO_07212020EX.docdoc 43ddb05fe283f59c3fcfed250878e359d7bc9cd080c4c79bdca25bb12515df02Virustotal results 31.67% Heodo
2020-07-210247077703172357.docdoc 41239e9448583b6a09ec8574d34295b254dec60348e219d0a1355467c3ab37a4n/a Heodo
2020-07-21E_388161069318206.docdoc a1c510b8b53d426c52e223302dea06c70941135a3f9ec9badcb7523592c60d63Virustotal results 31.15% Heodo
2020-07-21PO_07212020EX.docdoc c9d9cfb4d6f95d66b6480f5dfb60edf7b0c4581895b68dbf25a830f9006b2d3bVirustotal results 31.67% 
2020-07-21BAL_85474267.docdoc 98f9e3f351ef4ad0fa44e42564bff893ca18599495d514658ebc5bcc78534dd6Virustotal results 30.65% Heodo
2020-07-21BAL_61133131714228475930.docdoc d6c5ff0dea2cbabf074ec5c1f7ca759925d9f469a37d4265919edf2414c60d5bn/a 
2020-07-21QKLT_PL3895904687KZ.docdoc 4730939d31f08ebfd93ea7fc4230820f63862d8b509b000d67f995f57f9ec305Virustotal results 31.15% Heodo
2020-07-21REP_RNCOPE1K.docdoc 296943dcba8c391e81d42bf4b7887bd2929bfa9cb511d3e1a9056ca64013f00fn/a 
2020-07-21Y6OOKMK5SIADT4N.docdoc 74fdca7126b9d049956422f500ca2a0257fb7956f385a45c6b5c36230fd3a2a5Virustotal results 28.33% 
2020-07-21LHQ8VAXU.docdoc a6c8655af8c96aef402f4853f9c71b907adc45a533de7e3f9a9517aee1b43c0bn/a Heodo
2020-07-21DOC_XVC_070120_QBL_072120.docdoc 46e68edbdc3dd2b5e70179a93d4f788074fa29e649c64063f636ee4e37c42fbfVirustotal results 28.33% 
2020-07-21DOC_QPV_070120_LJJ_072120.docdoc 4b2d95bf5b48a826bdf6468d206dea367ada7fdee2c90c62dce50a599ddfef9dn/a Heodo
2020-07-20203479126038015.docdoc cff09d732ea9fe1f128dc29bff9f5d5d8ff78ea22eadb52fa4b5b8d7c056928bVirustotal results 27.42% 
2020-07-20INV_KB3464350055FA.docdoc 5ef34d47ef171a2b5cab01782a4a45d9a12f01d70dde381936b6975ca93dfad7Virustotal results 29.03% Heodo
2020-07-20T_NYJ_070120_SEG_072120.docdoc f532fcd4387475d48960a5f0863e003f7eba0281354728bf832162a0ca5673fbn/a Heodo
2020-07-20DHS_070120_XQU_072120.docdoc 49f90436f418a86b0f4e55e14bcf74793954cc90596ad08dfb6355a1e50a8f27n/a Heodo
2020-07-20REP_PO_07212020EX.docdoc 80b27b3a7242ea8cdfbcc0d266c4fe489cc0b035fb614b755e2546c80cdfbed5n/a Heodo
2020-07-20REP_PO_07212020EX.docdoc 86dc2706e8cf0a78688e5a503d6e8db55275a7ec3de655ec33a9db2f6ffeef57Virustotal results 29.51% Heodo
2020-07-20BAL_92537459.docdoc f073a991092d0dc2ca2d7308e64b58992ce0cb00fe5da928b65b58530c10e7a9n/a Heodo
2020-07-20BAL_PO_07212020EX.docdoc 4ec7f2a0359b740dbbc849705f2856818bccc8fafa5a2237fd79640e61423255Virustotal results 27.42% 
2020-07-2041675884.docdoc a6ce3b9c522d36ac4e91cf8e2cf1581bc9d7e6548f1e66ff998e11662f6894cbn/aHeodo
2020-07-20BAL_EVD_070120_HPL_072120.docdoc 148aa06dceabdc99c7588bd48277867f3d0528fcf04463562707fd66f953045dVirustotal results 27.42% ZLoader
2020-07-20FFICHPX2XS.docdoc d076c294bf588b7c9f8db6b5f35a63758c5710feb5920c263ceb77a501bb9133Virustotal results 27.87% Heodo
2020-07-20ZHT_070120_FPM_072120.docdoc 7b6a3b4d5f51807fa19a536a4a2400dd3279b75a75ba37423ab27c6937aee30fn/a Heodo
2020-07-20INV_PO_07212020EX.docdoc 401dadd7c1211dae181b8767949d274790aa4fb72e78a3d57ae92ac2cf925da8Virustotal results 27.87% 
2020-07-20INV_PO_07212020EX.docdoc 8163146178e6d55057843fa5f0da1b851d049bf802aea69b44aaec7352be33d4n/a Heodo
2020-07-2010155343.docdoc 33c897cc3c1d11687231644af13032e24358c594f4b484a7040a3eeecfae7145Virustotal results 27.87% 
2020-07-20FILE_VU8467636756RA.docdoc 4fdba539896383e37ec2383fb569df4f17395dd40115ba8caba62127b7ebe949Virustotal results 28.33% Heodo
2020-07-20PO_07202020EX.docdoc 70fd23e6a829661f7fe775e5b73c20b09a4dbeb5b97648d0851dde0591a3b304Virustotal results 27.87% Heodo
2020-07-20Y_WCU_070120_JMD_072020.docdoc 265c8a20b2d97de3e6464bbc718b00cb55562ca2512c7ca4f8fd6034613fff53Virustotal results 24.19% 
2020-07-2029073520818622379296922.docdoc 8811f4498f1b1d8729556a61a5683ce20c4270a64ee5ad0223185110adac5f2cn/a Heodo
2020-07-20BAL_YG9755469783VC.docdoc f479686dfc59c7e2cf8607ef958b067288d47d2de6a92db1b0c1268b9862f42bn/a