URLhaus Database

You are currently viewing the URLhaus database entry for https://chiphamspa.com/wp-admin/yc411120434504gv7hb3rsgp/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:415551
URL: https://chiphamspa.com/wp-admin/yc411120434504gv7hb3rsgp/
URL Status:Offline
Host: chiphamspa.com
Date added:2020-07-20 21:21:10 UTC
Last online:2020-07-24 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-07-20 21:22:02 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:3 days, 16 hours, 4 minutes Bad (down since 2020-07-24 13:26:17 UTC)
Tags:doc emotet link epoch2 heodo link ZLoader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-22BAL_KEMKPRPG.docdoc 918c4de750f45bf110d850e4b64a174f67aeee896ce60cff7ddec0b720cd3b57Virustotal results 37.70%Heodo
2020-07-22INV_HJJOSHH4.docdoc a914487475ef707218bacbce31e5c3a0d485b9945956c0caf374ab9a445fe52cVirustotal results 37.29% Heodo
2020-07-22OTM_8624861747.docdoc 1cd9889ad43cd422276df08ecb1c646d283f3c9eef9fd2729d119a76939698a6Virustotal results 37.70% 
2020-07-2267JPK6RIBSYNT.docdoc e3b40abe8849ea4e531f61c3887d9c21d56c811f948ac36abb97499389ffd435Virustotal results 39.34% 
2020-07-2254129368717775.docdoc 68f9b64e9a653222987af70ced81ea905fa8528e05629ee6b26c3e801ac8afa8Virustotal results 39.34% 
2020-07-22AJM_070120_CJV_072220.docdoc c3d6f7e8a9dbb2ec09cb6152ac193f18c3a4e742fae9ba6cb35d7fb6622b9648Virustotal results 38.33% 
2020-07-22DOC_T0LBFAJRZ7W7U.docdoc d31470f4945bae2c0094e021e39d1d2c14a0dcf8ff69fc89eaa5816a628a8119Virustotal results 38.33% 
2020-07-22DOC_288729849.docdoc 6832132a30fdd94a35af4a2a1a0adc2f864f9410f6266a79f461f2c2727ee923Virustotal results 37.70% 
2020-07-2273222991.docdoc 03a610074d1885c1951064a015d34eb0d884e43968a15ffaf1967f16df31da31Virustotal results 37.70%Heodo
2020-07-22REP_PO_07222020EX.docdoc 45cbb72e4a00c0dd4509a419da9894bb87c5752a206a7d71a77ce1f3560e4d16Virustotal results 37.70% 
2020-07-22HIW_070120_MSX_072220.docdoc 6ee52218b54636db8edf7833738f921c320966b59f82e84047628cd124d5bb62Virustotal results 37.10% Heodo
2020-07-22REP_96391380702816857325.docdoc 218a9eeb52984bfb956e887df5190845197214a6819f3d2c448ca8e6fba15bf0Virustotal results 38.33% 
2020-07-22I3JRMX2IGW3B.docdoc 8aaac75598925bf1f4f8681fe90a8201fd71dfcfeb9e74f5e5ce871eb75dd4f5Virustotal results 38.33% Heodo
2020-07-22DOC_IBE_070120_TNH_072220.docdoc 4ab1de02515cdfd8f8ad61a1b7b8d15bc2be0d3e840dd8cf578fdebef9732955n/a Heodo
2020-07-2257388785.docdoc cf5b94299cda52fc6fa271c4cf4183ef33604d6742b21753aedb88391aa45082Virustotal results 44.07% Heodo
2020-07-22REP_SF0031776225YV.docdoc 85b502308eea0d4c0b742ca6b6b9ccc6cd628d2d3d937d52d3cd912d55a6501fVirustotal results 42.37% Heodo
2020-07-22FILE_73036873948467318739.docdoc f02c595fc24ef64a62c2bbdcb917425dc39fad28b7bb9ebd3dadac195a98f273Virustotal results 43.33%Heodo
2020-07-22VQ07ILPLWN.docdoc 0903878bcc1c642efdacd0a38728427d7694d63ee079ad0c29a6dc86640c7a07Virustotal results 42.62% Heodo
2020-07-2227015351739881525089817.docdoc 5cbd34babe0ec377534dd02560a79250776943095dad7b6d53f17cbfebfe738eVirustotal results 42.62% Heodo
2020-07-22S_0EVDL6HM.docdoc 717d843ec0f588601f8e53158a3cf6c88ca8f514c3f32cbaa004b9d6cb8fe6d0n/aHeodo
2020-07-227123542380.docdoc bf4fffe027c8d6b7f301f79506892c1666c59fbb0e01ee66e6326eae28c6c66dn/aHeodo
2020-07-22REP_30506701.docdoc 4a9d26b321d5a445a605753d2d0572005b9b9b84a415cd4b915644cede606e5cVirustotal results 42.62% 
2020-07-22FILE_EW2528203160WY.docdoc 1173bdedb43ef07a3717e4779d911525bfe933b315c02c692dec3cd7b8b686f7Virustotal results 43.33% Heodo
2020-07-22REP_645883392624546436.docdoc 63666d696e9930db1844872e6f7abc9a9209f2f30caa7a749d80b776de29333fVirustotal results 41.67% Heodo
2020-07-22REP_66903103298473325.docdoc 1bd519d5cc1c15caa5852330cf48e62d99f39986966dab882ab7befff8962afbVirustotal results 40.98% 
2020-07-22TIE_070120_TCS_072220.docdoc 9da867b47cb1f85364e0ea24a033e9d0fd9f79e6fd1f3ab4879547f87d8e4ca8Virustotal results 41.67% Heodo
2020-07-22INV_77880251.docdoc eeb34b3c0ef4cb471fafd81004175b7b5282eaec5250c2afc33abf548f65edabVirustotal results 36.07% Heodo
2020-07-22DOC_14123560.docdoc e36be98a3e3d568430d52706ee06d935e126942b2a5c2453f5478d8c0d58acb7Virustotal results 40.98% Heodo
2020-07-22DOC_33617275.docdoc b88e74aa0926fc194b5436b4202c1e7ec8b5f7ba028c951871c7be94feeed8bdVirustotal results 40.98% Heodo
2020-07-221SZ3OPZ9.docdoc fd2c6130cd3a5d6056aebf171e64dd498f02a42d48ac937ffe344d43318776cfVirustotal results 40.98% Heodo
2020-07-2201934990.docdoc 2cb329a543eb632f90ccbd51baf27bf97f5ab49bf7b638d2df2ecdbe93a97907Virustotal results 40.00% Heodo
2020-07-22PO_07222020EX.docdoc 5f39d8815063cb87105760179dfccceb319602876bb38756f0763b3ac6d448c9Virustotal results 40.68% Heodo
2020-07-22REP_PO_07222020EX.docdoc 742c6e5a8797aa8a27986e85dfd002c56e8d5dfe20a5f5e67bc65e5fb4e1e94eVirustotal results 40.00% Heodo
2020-07-22F_54231277.docdoc 0857814f3cbcc8df6a43272007e719bba14facd9a864545e13f58ba9bf6e1773Virustotal results 38.98% Heodo
2020-07-22BAL_26973536.docdoc 382c3e95cc13f711cd343ed378dc4865b2e3f7b6fe31bdf6c7329624566f72f7Virustotal results 40.00% 
2020-07-22BAL_33889732740180696259481.docdoc f7f27a3ee79d21573753f3396406b68389ebaf2be1a2ac471782f685ff8c4c19Virustotal results 38.33% Heodo
2020-07-2218528276579378567390516.docdoc 19012c1ba3beaee4ce4f34cb5510b9d9486626ce2f1391e4f12cc733d5357e01Virustotal results 36.67% Heodo
2020-07-22REP_PO_07222020EX.docdoc 8b59b33a1ec01323ebca9e8cf743ec1ee376df987fc56bc586efa601941289d2Virustotal results 34.43% Heodo
2020-07-22REP_08094458052291047757.docdoc b9a786c5bd509b880daa53213b076a49136b9780980b48615ff84dca4ce505e1Virustotal results 33.90% Heodo
2020-07-22GCK_71756650.docdoc 5094c26c5d8795c7cfb7d55342ba1b11cd3d4407b6a42681793e6ecc8f9c5a52Virustotal results 31.15%Heodo
2020-07-22T_PO_07222020EX.docdoc f9fde773e761b000de4b1c9e37662b86f39a245ab16c9f164d19ed85aed3d48cVirustotal results 29.51% Heodo
2020-07-22FILE_RE4779161716QT.docdoc 55e84398cd55149723b8680739ed42c4a5b52da9a84aae98b979409d9dd11cd5Virustotal results 31.15% Heodo
2020-07-22INV_PO_07222020EX.docdoc ba4417524d4ec820b4eb5bc47ce13c88930355211107e1866f24d0888f36186aVirustotal results 26.67% 
2020-07-22INV_XMKAV1Z.docdoc f9c93aa61dd4cb64cf59976fbb246f87744328a2a1fd1233945c84fbda2c0aaeVirustotal results 26.67% 
2020-07-22FILE_57598373.docdoc 5c1251139b141b728d3489236c0c8cbd8762fc941f5aa0476d86b6adf4a90c0cVirustotal results 26.67% Heodo
2020-07-22E_50913359.docdoc d243463bd64bb0b8edb242be0ba86c3983e5752422c0e1d07a45027ae1a806f8Virustotal results 26.67% 
2020-07-22REP_73289386.docdoc e563992a8b913e222c4f08cd1cb89a4e4af61dc33d30f455e7e3f4fbd039666dVirustotal results 26.67% Heodo
2020-07-22DOC_1763461557521.docdoc 44649b15c8270438769bec658bd63477e64a1164f0e721c002eedaffd43b5256Virustotal results 26.23% 
2020-07-22DOC_PO_07222020EX.docdoc a76feea95a298d6f94ca0a719376f30e4409a18555e10bdb1e90a24c7facf294Virustotal results 24.19% 
2020-07-22REP_ME9604847955PN.docdoc c14ddeac4500ec2bb65828bcf770f5ce11a369ca829f2c68587632e1dccfd995Virustotal results 24.59% 
2020-07-226054477173158629763387.docdoc 5f5a353ccf0dbcfaa0859d0a1db152f2d40735bce47864d7ef9c12ab93c8ca88Virustotal results 26.23% Heodo
2020-07-22DOC_RT5403844273BC.docdoc f9b9806f9c7c88864e0ff685eaab801a085f8c567b7d6993101bafa58c4833b8Virustotal results 24.19% Heodo
2020-07-22BAL_09988828397280709.docdoc 593793a914684244b3c51333736fffc1cdc69c51759831c888b66e6a07ef8b72Virustotal results 24.59% 
2020-07-22BRX_070120_RPT_072220.docdoc 9dc3bf8aadd5819cf5be10ee9a0af6c94bc4b8a7a193cf539ef3ac9288ca9f15Virustotal results 25.00% 
2020-07-22DOC_MMB_070120_GSE_072220.docdoc 1ff7a8450997cc013c4527af47bac34423607b8fcda043bca82df0e6b3e823e4Virustotal results 25.00% Heodo
2020-07-22ZLS2BNE82GKC0RU.docdoc ed1a41469969a80fefc58566124f44e0846bff21d8e51d897da0d10b2386174bVirustotal results 24.19% Heodo
2020-07-22UYSR_681274015.docdoc 10963f8cec95f3f18634db9382cd4403523a624d72a459c29c9c3baf27097509Virustotal results 24.59% 
2020-07-22DOC_WD8387337821ND.docdoc afb0e524b7db64a122b728e245c9696835a816e3cf272da3b39ac35bba514abdn/a Heodo
2020-07-21PO_07222020EX.docdoc 620ed9cdd6372b6bd9572a507c6c349ec07cd10cb45cb36216f21e2e6b025d2cVirustotal results 24.59% 
2020-07-21M_08863362251677489478746.docdoc c6ca23f36d524391de9970059d2e0faf54270286e320503e3eadf282ab5082a2Virustotal results 24.59% Heodo
2020-07-21BAL_18502587.docdoc 737dad0010dfc90068d5db4073a76c04f2e9aa7549373686028374e3bbbdb652Virustotal results 24.19% 
2020-07-21HRJQ_PO_07222020EX.docdoc 5c3d472318679572aeebf4c76cf7f2ead0f39f72e9d9d3e26604c88f35364b4dVirustotal results 24.19% Heodo
2020-07-21YRG_66306125.docdoc dcd97e231a7928660c49c35be9d5b8f839ccd3e2b8882ddd60c22b1bd012ac4cVirustotal results 25.81% 
2020-07-21JU9338453873ZN.docdoc bc7398dd8ac94a9ff8ca7a93f0755681ec84ca7fd05058ddc053cd16e1b3f4e3Virustotal results 25.81% Heodo
2020-07-21INV_2771615993080544.docdoc c0af5b3ed8e1c92c57aa0e1b6f60d24b4ddc6a95ae92906d793d88413fa9904dVirustotal results 24.59% 
2020-07-21UTFL_50035529.docdoc c95057fce46c3c402c202fb3ac124dde463a8e1de0c26047fd254ffd11084f36Virustotal results 26.23% 
2020-07-21FILE_74888559.docdoc d8f6127bedd179ef5edf45af00d0b8df5f155b3809547852712c6d1db6774609Virustotal results 26.23% 
2020-07-21BAL_55458734.docdoc eb3009e003594f7c6d5a2c373db44fe65d9acc0be9c31c317bf9ebfad08e633en/a Heodo
2020-07-21FILE_36672495.docdoc ed83c94a771e57b78025258c6f5247debaee74c1bfed17a2cee430f31ff91f08Virustotal results 25.81% 
2020-07-21BAL_PO_07222020EX.docdoc 4a6f267daadb0dd612dfec5f99bfda7da3e527108b3105e2ad116bb9ccc92c51Virustotal results 26.67% Heodo
2020-07-2184014112839829967.docdoc cd6f41e3821d55917fa4a0cdbe223abdb97ed8da6f7870d449d8e81ed6f9ec69Virustotal results 26.67% Heodo
2020-07-21BAL_KUI_070120_WGN_072220.docdoc 6616cbabce1dd4cb3515191b2ed913e01a7ffc8b1cff8ec410600930bbdf7f3fVirustotal results 26.23% Heodo
2020-07-21M_WG6882709411TZ.docdoc 5966dbc11d924231b5d148a1a821154f88e469adcb6e884d4dd5102c9e598e9fVirustotal results 24.59% 
2020-07-2183655582829844962046997.docdoc dc9149fd6d462db7ca3f0ef1d4705abb0ff34fa3551bbaaeeecd597a01e445d0Virustotal results 32.79% Heodo
2020-07-21INV_PO_07212020EX.docdoc ca998a06b2f978858777abb0bfef0579f36d736ea30cbc48b1c1468509a10e4dVirustotal results 32.26% Heodo
2020-07-2171318218.docdoc 6c7f4d1d0a33793b058d45416bb3b5f59335d5785f80855611d2c428a98069daVirustotal results 33.33% Heodo
2020-07-21KSQ7WHR.docdoc c10a582916f0da5e84bc38c9cbfbd8bc5b42f1626d9ccebffda99a7a48b90fc9Virustotal results 29.51% Heodo
2020-07-21DOC_2021753002035550844688144.docdoc c22e26dfab6e9d1a9b274c81e01683828409ad629bf7883a0d58600c1f8db403Virustotal results 31.15% 
2020-07-2113129697638866445683691.docdoc 6acb37f46741819ca10ee4ccb7f88dc94b5dc36a3a1c5c366450d76db4b42a6cVirustotal results 30.65% 
2020-07-21REP_XA2166783932GG.docdoc bd6a09f3141166fa7bc1c7b79ffb618c31312131de5f1829c37ed66f6099b284Virustotal results 31.15% Heodo
2020-07-21DOC_8GHG9OC5.docdoc 4bfbfb5923eb71f021f091cbf5ee00a93a33fa778ffc90650b2245de3ace463cVirustotal results 30.65% 
2020-07-21ZZN_070120_JYG_072120.docdoc 15416a6fc11e7393653dbfbadaf3a03a0948ecfa7aef70fa367412c3b68d5eden/a Heodo
2020-07-21FILE_25FE5J7RX.docdoc d159652e82699b29e122292ae41629d7c880e1f62e23842f6977cb04533365f9Virustotal results 31.67% 
2020-07-21K_OMY_070120_FKY_072120.docdoc ad09bb5a5aba85dbd01596a1cdd77d12eca89c079abac382e0894e000a9a50b8Virustotal results 32.20% 
2020-07-21BAL_00446592533317687499759.docdoc 5c56000b7e9d8c48861c7efcd1c571d46422515ea68d7df4aa94ca04235595b6Virustotal results 27.87% Heodo
2020-07-217904700017253.docdoc 9730ab9a8c60bf06cd93ddc13f7a80f30ce61e20782b9ff1c85dbeff59e3062bn/a Heodo
2020-07-21DOC_BV5546272697TZ.docdoc 26d6a947ace5dc20b8511699014a7230d627b181f37246807ea85cdeadea61fen/a Heodo
2020-07-21Q_DVP8Y5H7UKF92WW.docdoc b256eedac4c8041fbc722fd1b36b17e5fd7a9a5004f974cef3afca5b5ccadcd3Virustotal results 29.51% Heodo
2020-07-2120402534.docdoc f5049e4bf98c2e07d5ac970c729a93402c91bc9fbd1398bbe4b006f959c47a04n/a Heodo
2020-07-21FILE_PO_07212020EX.docdoc 7c0e49dcc082c8f4b4fac91339f378ea04ffb0ccbde5018346e4f95f30fcb05cn/a Heodo
2020-07-21DOC_04895684.docdoc 8d53a88575b2b26b3fe78df74205c739baf12ccbe1d51e27853d2ec4ed6aea5bVirustotal results 27.87% 
2020-07-21REP_RIF_070120_EQO_072120.docdoc ced32d6bf400cc3bb59aa1929efa4c17228064153ca0615288fc1fefde35f11bVirustotal results 27.87% 
2020-07-21SW4771534779KR.docdoc 28c3869c9796a32f17c0d9c08a13fa07d07c03b13420f83f05b27dfddf2c87caVirustotal results 26.23% 
2020-07-21DOC_MF2491242807LC.docdoc 974a9bde6fa374685e63b50d21dd8254256dd8f6418d9d65e208a465a0141f73Virustotal results 24.59% 
2020-07-21BAL_YA1229546129LI.docdoc b4f865e3011a63a5b8a0da14876282d97d5144e153f8316025555d276602d335n/a Heodo
2020-07-21YQ1466953252OD.docdoc fe7bb6362bb3a11a4579b9c0c36fb7d1df5b57d43ff14b8b4ada2254224180e2Virustotal results 25.00% 
2020-07-21BAL_97258282.docdoc a876f1e20601ca05e5190dea3fa7c385fd223d79ecbee5c2c70f75bdf506009bn/a Heodo
2020-07-21SB9626792463NW.docdoc b1a935c9a64f8a2191e613e696c6df7a5892c608ec14c6f72c3459c4a62f2865Virustotal results 25.42% Heodo
2020-07-21PO_07212020EX.docdoc d40a13f38676eec40c7fc38f03d55507495374f948219045d50e6ae6af725275Virustotal results 23.64% Heodo
2020-07-2162131398.docdoc 2cccb5979a562d00936dba58168f63f56806a4013284bab9f2a8e84be5eee72eVirustotal results 24.56% 
2020-07-21GKR_070120_XHR_072120.docdoc 8969bcaa62533ea3d1c200c02009112d2d21e5b51ec3500698935d4689d46265Virustotal results 22.58% 
2020-07-21OEPJ_UK3048984522VV.docdoc 76135328ce70dd5755fa54408d962b10954d6bb5c47f883a7c2bdd1defbebb9cVirustotal results 22.95% Heodo
2020-07-21DOC_PO_07212020EX.docdoc 7205124c976d15cd097c35d5c82d63d616b710da7b82ead06faecf91fd620405n/a Heodo
2020-07-21DOC_LBK_070120_FDK_072120.docdoc f2e0593ca696ec36f6b813e857b8fe6741252d7b65df42e5e16bb3c80bc7a90dn/a Heodo
2020-07-21G_PO_07212020EX.docdoc 49e7f3d18db1b3402794fa15a11d36c41d2857d4a668834b6178d0c739e2f821Virustotal results 22.58% 
2020-07-21FILE_PO_07212020EX.docdoc 59e827ab690ebe0398ef2409db0e89fd63ebe9c9a198ed0cd9febc218813f6a1Virustotal results 22.03% Heodo
2020-07-21851387825786088.docdoc 2786a95d643bf9b6c90e2940c4387436c45e5bcd4f88746449713a6abdfb5c51n/a 
2020-07-2146160953.docdoc 8b448dc2b315f49801c7b4d4b20a2d3163f9c9376a3c36dc4dc7a52513a101f0Virustotal results 22.95% 
2020-07-212C773KQ7SI8C.docdoc 660ff4d3124a99db58894556a3461eda17393ca94c27e075185e72536eb6735en/a Heodo
2020-07-21DOC_T8FUWWIF8XV8.docdoc fc2bb7719f33ff249113e3c05c4b2b6fdbc99190e250b3073295e271c553f0d0Virustotal results 32.26%Heodo
2020-07-21W_JK6596801424FW.docdoc c5862b85395572c8c73f166d1a10c2c92a01f07540ac888627c50ebc89097e02n/a 
2020-07-212MQ7C4DSBS1CKYJY.docdoc 53b9a409018adc25ac26a608d9fae417659211d8754dbf7f07c3e4710a026774Virustotal results 32.79% 
2020-07-21BAL_72626047.docdoc f23c88283a5b29e45eb6658afb904be03923f73895e4f6b232f3e04e288bb715n/a 
2020-07-21PVI_070120_KGK_072120.docdoc 9312e2d0d00f48b53f5ce88ad3c874968ebb3c219e93cf1c5848021de545956aVirustotal results 31.67% 
2020-07-21DOC_PO_07212020EX.docdoc 9e8362c34f689302d747bee833e604d4d7e10c7d519b401e9c9fe257bc241197Virustotal results 32.20% Heodo
2020-07-21INV_876287442871349.docdoc c9d9cfb4d6f95d66b6480f5dfb60edf7b0c4581895b68dbf25a830f9006b2d3bVirustotal results 31.67% 
2020-07-21R_PO_07212020EX.docdoc 798bef025be5953e7e96ca59398667ca056420d1bed67221390de9d122f40165Virustotal results 31.15% Heodo
2020-07-21REP_PO_07212020EX.docdoc d6c5ff0dea2cbabf074ec5c1f7ca759925d9f469a37d4265919edf2414c60d5bn/a 
2020-07-21DOC_83374891215418081.docdoc 9953004cdba2aa71a7552b41ec9b4718f1fcf03abe1589629ce524746cece259Virustotal results 30.65% 
2020-07-21INV_PO_07212020EX.docdoc 296943dcba8c391e81d42bf4b7887bd2929bfa9cb511d3e1a9056ca64013f00fn/a 
2020-07-21DS6941429831ZB.docdoc 6d41d1aae6fa70ae47a5f974e21ff291dd1cdcc4b921dc0d1393c73384169674n/a Heodo
2020-07-21NJR_070120_YUZ_072120.docdoc e341cca78e446c93ee00c387cee3517341c104ac0587512879a602ff58871c64Virustotal results 27.87% Heodo
2020-07-21DOC_OFM_070120_DNP_072120.docdoc b3776395df29c29381192faa2789b2fe5e4500af63b9afb6a7462384e7112397n/a Heodo
2020-07-21INV_MUAMCXP678.docdoc 229710df49bb17b78fae2414fe4ff138609fdbbe410dc297f49d8b7bf10ad109n/a 
2020-07-21REP_018156637751848747741.docdoc cff09d732ea9fe1f128dc29bff9f5d5d8ff78ea22eadb52fa4b5b8d7c056928bVirustotal results 27.42% 
2020-07-20REP_35127569.docdoc 5ef34d47ef171a2b5cab01782a4a45d9a12f01d70dde381936b6975ca93dfad7Virustotal results 29.03% Heodo
2020-07-20BAL_ZP7157601765PS.docdoc f532fcd4387475d48960a5f0863e003f7eba0281354728bf832162a0ca5673fbn/a Heodo
2020-07-20YJ0564308963CB.docdoc 49f90436f418a86b0f4e55e14bcf74793954cc90596ad08dfb6355a1e50a8f27n/a Heodo
2020-07-20FILE_WM4DX8QTX8.docdoc 80b27b3a7242ea8cdfbcc0d266c4fe489cc0b035fb614b755e2546c80cdfbed5n/a Heodo
2020-07-20DOC_4J3C1PNYQ6P74.docdoc db25e5d9d7e9141385c443268866698c14432d243af5aee0906b93bf713ff820Virustotal results 29.03% Heodo
2020-07-20DOC_2525885115237.docdoc f073a991092d0dc2ca2d7308e64b58992ce0cb00fe5da928b65b58530c10e7a9n/a Heodo
2020-07-20JZ_PO_07212020EX.docdoc 4ec7f2a0359b740dbbc849705f2856818bccc8fafa5a2237fd79640e61423255Virustotal results 29.03% 
2020-07-20REP_RLQ_070120_LBS_072120.docdoc a6ce3b9c522d36ac4e91cf8e2cf1581bc9d7e6548f1e66ff998e11662f6894cbn/aHeodo
2020-07-2088193498.docdoc 148aa06dceabdc99c7588bd48277867f3d0528fcf04463562707fd66f953045dVirustotal results 27.42% ZLoader
2020-07-20WRO_070120_KLE_072120.docdoc 3886724a53ad93931a6339f285e19c703a1bb1dadd7e348ca8dfca75ad42aef3n/a Heodo
2020-07-20BAL_QB3599278244UM.docdoc cfb6588d9181a97aa1f93b2b9f8af82134836e916938a80a217cd03fe4294811n/a Heodo
2020-07-20INV_MSZ_070120_ION_072120.docdoc 401dadd7c1211dae181b8767949d274790aa4fb72e78a3d57ae92ac2cf925da8Virustotal results 27.87% 
2020-07-20FILE_079Q6MSN4P0SPY.docdoc 69167697c3c077b3ca6449ae55750d1712c20bc33196537fdbbe05e463aab195Virustotal results 27.42% 
2020-07-20PO_07212020EX.docdoc c028e2c1213a4c43078359cb154f286208df885c287a011ff2a2f1f4e2115265n/a