URLhaus Database

You are currently viewing the URLhaus database entry for https://medicon.vn/ads/11x5vva-3a7-8884/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:415713
URL: https://medicon.vn/ads/11x5vva-3a7-8884/
URL Status:Offline
Host: medicon.vn
Date added:2020-07-21 04:53:37 UTC
Last online:2020-07-22 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: TrappmanRhett
Abuse complaint sent (?): Yes (2020-07-21 04:54:02 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:1 day, 17 hours, 21 minutes Poor (down since 2020-07-22 22:15:32 UTC)
Tags:doc emotet link epoch3 heodo link ZLoader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-22INVOICE-J855_272044.docdoc ce8355518702698894b952a051ef82f8b545e9732be13fb29032f7b5662ad1edVirustotal results 37.10%Heodo
2020-07-22Inv MYLE47_830483.docdoc a09aab2acea55dc5a41e050de922953dedd0f8177ddf8c60a56af74d25daf577Virustotal results 40.32% Heodo
2020-07-22Invoice_VJH5172_253627.docdoc 16c6a9dd4a72829040a232b03b8dec183f1b62ba3a8fa829760e83ce534755aaVirustotal results 39.34%Heodo
2020-07-22INVOICE-DVOC332_2201081.docdoc d8604cc57ed2635d1426b6baf81d79cd5b5a14e28bdb492c2349fe6652d74acbVirustotal results 39.34%Heodo
2020-07-22Invoice-W8_78514255.docdoc 8d5403870d67fd083d92f1d72328054f16e6dc6d0bb546e03cbd7ae747b219e1Virustotal results 37.10% Heodo
2020-07-22invoice-ETB09_768916.docdoc f5edd4853a9bee8bfe075dfc71946ad2c183ebf260cb065f843190c91e30a913Virustotal results 40.68% 
2020-07-22Invoice-7_1555857.docdoc 8dfca61cebea589f6fb698dc042cc4e98c14f5aeebc8ab10c8a8ae02882073a0Virustotal results 37.10% 
2020-07-22INVOICE 5434_014037.docdoc cd51ca27f85c3b99bce83221b135a984e5dc890b9f3080b11e8add5bdb4456f9Virustotal results 37.70% Heodo
2020-07-22Inv NP45_76869364.docdoc 502e60db49d073ac974289badb5c93a067667aedba768f5ad734a28f0bfce643n/a Heodo
2020-07-22INVOICE X3924_799393757.docdoc 563ac96605238befb0600be0cab8eeb129c10f801a2f85cbdc868ce1ab487462Virustotal results 36.07% 
2020-07-22invoice-PKC895_527232687.docdoc dd78f1cb130d5925aeb8807db5ab75a25c6da9a6a549faad6a777bf8123fdf2eVirustotal results 36.07% 
2020-07-22Inv-KSZU4294_04074294.docdoc a5fb8475fd26e5f4bfc52a2d8cee048ee2e810a374067df326520c3a31eced4dVirustotal results 45.90% Heodo
2020-07-22Inv-UIBP88_27096194.docdoc 26f3e277ea85db3dec692fde12c546a1d30d7a4e69ea6058d44afd3d5007af5fVirustotal results 47.46% 
2020-07-22Invoice-X71_239156.docdoc 8f693cea85026bd7f34d4c5d2684885ec3c54c17bdf61287ee946216b42d6d5dn/a Heodo
2020-07-22INVOICE_WV2736_150809211.docdoc 9b8dc501b406401274f8cba9add694dbc728a2d170abfa181a86851ad8392bean/a 
2020-07-22Invoice RIEW360_403748604.docdoc 24304c4c69d49a1abbdaf4a07d9608111ae8486bd48eee061e6bb29f4943f543Virustotal results 45.00% 
2020-07-22Inv-MYH926_415748992.docdoc 49d6ae813b058b68b4990fa96999b95c9bac06686eab7358e4d16c9bafc1d601Virustotal results 45.00% Heodo
2020-07-22Inv-PAQ963_327438.docdoc f7f4e28f2fe978fa38da4ea0b8619d0930d59ceac2156a78b8d45936eee6f898Virustotal results 45.00% 
2020-07-22invoice-728_467732.docdoc e2a7873214d08e1d6414b3d9a1d91a95e42608246369d6c0064dea2b2e377e25Virustotal results 45.00% 
2020-07-22Inv-T8_10113145.docdoc fc1debcb793c565585455c8097ba1c4bf4974b0397e75f35b01b560453c2905bVirustotal results 45.00% Heodo
2020-07-22INVOICE_IM7093_357234145.docdoc 70c88e074aef925dd90c000e760c886df1a836abdc0d56d52407d98229f6fa43Virustotal results 45.61% 
2020-07-22Invoice_UUYH5_310942957.docdoc 62ad8ba146bad8695793483ab3a14ff790cd87f9a35e5657f0ff7d124acfc3fdVirustotal results 45.16% 
2020-07-22INVOICE-ZXS1486_949144769.docdoc b3b7d644815924ef208f9bd364eb844ee364aaa8aa48703582656bada8474585n/a 
2020-07-22INVOICE-WW248_9109862.docdoc c89b170fea78126847d599a493f18d47d967ca36d121d9e9ed71fb87e37172e2Virustotal results 44.26% Heodo
2020-07-22INVOICE FB7076_27580678.docdoc 0a359651e943b30173415d91a0886f3c0bcbb1acded5dd7ab4333651f3c99687Virustotal results 37.70% Heodo
2020-07-22INVOICE-1871_596042.docdoc 22e7ebd85759dfeb93f2368769a68205d61b272401227655676fcf4bb46f0been/a Heodo
2020-07-22Invoice-EDDF027_51684745.docdoc 393ac27aa81e021260be2c3de9507d953b3d57f2dfd0ebee96d4a18af210b982Virustotal results 28.33%Heodo
2020-07-22Inv-KZY7271_491846.docdoc ff44b1d144fb3343d7d7580652077fadeb72bcac55733df8fad986203c3e15a4Virustotal results 35.00% 
2020-07-22Invoice VC01_184961.docdoc 4362e6ba330f2fd89b96c0a2bd7407ca83f5c6678f765731244788aa490160cdVirustotal results 32.79% 
2020-07-22Inv_SQG046_611408.docdoc ac88ce74a14a0b5a78e6bdf86ffa9bd0f2770cd7255210ffed47affc2f220dc7Virustotal results 30.00% 
2020-07-22Invoice_15_2652419.docdoc 9c36f76e927ccde32781becbf6a3a8ee5d2b843d19172105b9b9610680e3d82dVirustotal results 30.51% 
2020-07-22Inv-CMRH5521_358027.docdoc 18fe339a03b33e6b2fbe0b44287c1a8869d8b21af3ce76b437a1243ab5601102Virustotal results 28.33% 
2020-07-22INVOICE_W34_925923751.docdoc 6734a3ae13c38e8fd44de930f8cf0da0bda0a3afec46ea9a8899e61b8762ecaaVirustotal results 27.87% Heodo
2020-07-22INVOICE-KCSW7_956474.docdoc 861b65f983134a2bfdd08f1d9ab5e3d5be1767ec36bda8445d5f663ba79c82edVirustotal results 28.33% Heodo
2020-07-22invoice_JVTX130_2551642.docdoc bc1674694af57a7a421c131be6eb3403a2d2392a862aaff679ac7d2087690953Virustotal results 28.33% Heodo
2020-07-22Inv_F973_63499734.docdoc 02c7fd8ed2ff395eb8c7eb3caca1e0cec299f4db7480e6d19829069ce541bc7dVirustotal results 27.42%ZLoader
2020-07-22Invoice_TYQ25_983236248.docdoc 9e889fb1f4e3b755148c32f532856747ab46e9648986f6ccca4f12bd8ff24a52Virustotal results 27.42% 
2020-07-22INVOICE-D76_899028.docdoc 4832f93778c37574a58c2119d6f0df1c00221503b83f91db3a165d2195eeb1acVirustotal results 25.81% ZLoader
2020-07-22INVOICE-DA492_516561274.docdoc 982b974a8a615a1e12c407d581f14151a8e9ba50cff41bd400e8be525e66b506Virustotal results 26.67% 
2020-07-22Invoice 02_895577.docdoc 134fcf928417712824838f1dbfb546e7735361bf131324ddffe62aedbcd5f679Virustotal results 26.23% 
2020-07-22INVOICE_3_127513.docdoc 64904286f139771314584f5ebf505208623b941f9fbc7c36e5039edcf595d9e8n/a 
2020-07-22Invoice-W1297_285895821.docdoc e7af4a6f667a4edbd224f0b3c1358fcc307b4f67688529201e0c1c9a91560f64n/a ZLoader
2020-07-22Inv-50_430714.docdoc 59ea049ff3ab24d93029a5395073975931ffb768537ca09e45fa6bf34af34accVirustotal results 26.67% 
2020-07-22Inv 5530_759755.docdoc 40b8fbc9e4135de9d65f33366f01bddb05cfca61799ce403b30c092fcb421725Virustotal results 26.67% 
2020-07-22Invoice_Y1233_58151228.docdoc 6475e70afc346103957694beb826b2eefdb2850c9939c91d6b514ce9e1cd32a4Virustotal results 26.67% Heodo
2020-07-22invoice-BMTS9_180885.docdoc 85f96e5cf282786ef803c7c7886284d3225a9daeecc04ce3b8e5bbd143a3e0abVirustotal results 25.81% 
2020-07-22Invoice-N4968_976207215.docdoc 7476dba24b28d2a074d7e75aea79591f98fbb95b065c91870b5a8198ab615f19Virustotal results 26.23% 
2020-07-22Invoice_AWJ712_26821974.docdoc f615f977969d02231be115ed31cc86bd74d0348b382f6da944231f573468b960Virustotal results 26.67% 
2020-07-21invoice 3_429924242.docdoc 062c45cd22faf032486fa920e68f639cfd2a7b640c0d36d297e6490118729c69Virustotal results 26.23% 
2020-07-21Inv_8433_157686353.docdoc 599ef65639238b841a852f756d71b9d44c5e02b6d151b6941b95c94b5e8eaf64Virustotal results 26.67% ZLoader
2020-07-21invoice-5_5234859.docdoc 112aa4be04d85780875343365b40f2fe9351e69dd4756d26a01f923251e17a49Virustotal results 25.81% 
2020-07-21invoice 2_47271732.docdoc d9238e5af649fe7ea0572f9699144985895a4c4576ebb77e0e198ea5120f4c20Virustotal results 26.67% 
2020-07-21Invoice-YV1_287068.docdoc 88b555290b53e0369600411c472821ad9907eb147dc87e60164918aa85adc3c3Virustotal results 27.12% 
2020-07-21invoice-QZ479_980855.docdoc 9e2fa2ec0c3818292f9a10539ef4bdcda848df84a8e0223cae2f28f82360a11fVirustotal results 25.81% ZLoader
2020-07-21INVOICE_PNV6_302880247.docdoc b4e3c557317004de4b83d941a7dbd81648b8383245a1b95806b736eda61b53baVirustotal results 25.81% ZLoader
2020-07-21INVOICE_E26_755971212.docdoc 9f9d6e57c9e3398ca955952e4fcf58321a7f235e18eaafe6aab3b3ddd4e88c7cVirustotal results 26.23% ZLoader
2020-07-21invoice_UT68_0333405.docdoc 72a76d3c5a30ccf7584528d7bd29ac47062d468d56a417063c19573496089d56Virustotal results 25.86% ZLoader
2020-07-21INVOICE ZSH6_391921884.docdoc eac069c2098e2a08afb43c1f5aae5878d557e5cef94096cefa93bbe0d04c236bVirustotal results 25.00% 
2020-07-21Invoice SHYM48_2983551.docdoc 3363f1375d1705778c34f83818742724c75fa3c3b13bc2fc131fd95b2d03c8c8Virustotal results 25.81% 
2020-07-21Inv_ZGRX6656_253181.docdoc 56508ca86a568105ecfe6df473dd0a40bbb40f66270edb514d83e99e1e6ef0d3Virustotal results 26.23% ZLoader
2020-07-21invoice_XEIP87_200644942.docdoc 69f98944d3760e294ea601defa72bf8b0ac0c8105267a560426f3c2f3888aff3Virustotal results 24.59%ZLoader
2020-07-21Inv_A7_676986411.docdoc ebf8a9a8c38f94a2fbf651cb07ad59f7f6be921f637492b72d966c0ba1b359a8Virustotal results 25.81% ZLoader
2020-07-21Inv-AH1_641989.docdoc fcb7d57d53fe5854649e2b62386272c124701478061110c83cb947a4fc0dd3c4Virustotal results 30.65% Heodo
2020-07-21Invoice-JMD7_29535820.docdoc ae3410797611b4709d86d449bed8b8ff6b7c4b1db45f0de8cd9874e160616e52Virustotal results 31.15% 
2020-07-21Invoice_UXQY10_982046.docdoc a96e572969f83e205956bc1076df5193a717705c9123bd19bae210f34502c309Virustotal results 31.15% 
2020-07-21invoice-ARI73_60213136.docdoc 33c53ca7807a817b61ed5b3a0a7e0ffe44059f5aac7475b14df784384aba5308Virustotal results 29.03% Heodo
2020-07-21Invoice-42_62404749.docdoc 5aa42a51f985e6af1419f2043fb37f51a7a1189fda28293d47fed2abb130c86bVirustotal results 30.00% 
2020-07-21INVOICE-RC536_921202.docdoc fbe574d0ec900ab75186ccf3c428c88e23c8fbcab1f479239fc690e327a127c5Virustotal results 29.03% Heodo
2020-07-21invoice_KVU20_589032.docdoc 11d9013218c3cfdd117b399765af57f2714a07774b29ab7a0a2b54c48284cbc2Virustotal results 27.87% 
2020-07-21Invoice Q7318_0012810.docdoc a61871e76461292b6923cf001c886dc23104ef7295f6fd608c7b444e577398e6Virustotal results 27.87% 
2020-07-21Invoice-NADS2285_075736.docdoc 5ddb6b1bf21e4b873293346c3383ce3ff112b9271388b039ed95d38bbed45c5en/a 
2020-07-21Inv_RV3357_80364581.docdoc 1e574fc4ba69742cc714c4f704166cb427d2bb27aa53005da2f65b9bdc73769an/aHeodo
2020-07-21Invoice-RP9_352849240.docdoc 029bef505d5de699740a1814cba0b6abb685f46d053dea79fd95ba6769e40a6fVirustotal results 27.87% Heodo
2020-07-21Inv_NW31_8335161.docdoc 369c8a3d8a6c68c6b0521061d8b81bdd6a24e898ebef804e811359220d51c31aVirustotal results 25.00% 
2020-07-21invoice_XOZB54_2335440.docdoc 2a76ed46e142b56dacc929cf3fabf2287c2023d0e06e9f5842b23102f584c373Virustotal results 25.81%Heodo
2020-07-21Inv-2605_8535713.docdoc ee50b9e1ff6d4b77d99dded74e7e4383725809ffbc7f72c7071ef29911e69e0eVirustotal results 27.12%Heodo
2020-07-21invoice-XFCI235_3569395.docdoc bcc004820abd0f210285b3aa58c625f0a00187f4f545313a553b4a40ec68b6ban/a 
2020-07-21INVOICE_XB34_664019.docdoc a6676abd7576b5182d997fc919b7a7d2d42d6ae8c7e7ae41b804df93d6b49e48n/a 
2020-07-21Inv IHXQ845_36195012.docdoc 4504a75a3b9c58a27fae7939e1fa1ddff84f70af61cdcbd3614a693d236eb599n/a 
2020-07-21Invoice VEZ424_6659124.docdoc 9c397f65525f4e2cd5230ca2562a27b668f9827097c9f9c407e1a6de7cb94aa6Virustotal results 26.67% 
2020-07-21Inv APZD0027_39534448.docdoc 969b9fcc13e520a48a60d7e65714c495c99ac1a90075aef31a7486070b8bb171Virustotal results 26.23% Heodo
2020-07-21Inv-IWJI7438_90877151.docdoc 85eb4f995c6972a6e9cf041dda832b20a4b6125403e01e978390d32863a4967dVirustotal results 24.59% Heodo
2020-07-21Inv-IPJQ859_404393.docdoc 2c45f3ecfe38e8675ea0ae2db824e82e654e82aaac7dcb957df5b0b95034730fn/a Heodo
2020-07-21invoice_093_0705951.docdoc f37d602c2d14ef7dade7cd13740d744939c846704065c8d20367a677ce0ad095Virustotal results 22.95% 
2020-07-21INVOICE-YJS1_680355.docdoc b7c0c24f3f9f552c499937cca5dcb7a8fbb7bbf600dc1ad43256647401ca3d04Virustotal results 22.95% Heodo
2020-07-21invoice-T5987_5860859.docdoc 7f53ea4c64012caad27163ff00c2aefd9e2dff6a4c5fe488955be018c8af4362Virustotal results 22.58%Heodo
2020-07-21Inv_9_564543.docdoc 3f7a1b33f7dcc1b83d5f92638f49684c3669a37cb4aadc5ca4aca17036fbe4b1Virustotal results 22.95% Heodo
2020-07-21INVOICE-WSCZ54_9828232.docdoc bf8bb162498a1b769691daad0ae9d8efae07943941749a5c2bf607aab85e59e8n/a 
2020-07-21invoice-PAX1_247224.docdoc f0fecf9d52e4dda54f5bbc27ff57ec831654d0b9e3a12f4c46a497ab7f653a3dn/a Heodo
2020-07-21Inv_RIQZ8939_2812674.docdoc 9880e4daf09068bccb16b2baae14ff902fa9d6f841f48ebb26bdd1944e41045bn/a 
2020-07-21Inv MZJT96_0476410.docdoc 391cf59d4b78c8ae4b705489a8806b14bd1e0e78a977ff7be86e69b6d7b76fbdVirustotal results 23.33% Heodo
2020-07-21INVOICE-XH6197_009046.docdoc 20e4dc6141f8e92848a4f49ae43ac4dfddc7b2f54ac7b257f20539afd9438539n/a Heodo
2020-07-21Inv-OU929_177743.docdoc 4903f451f19bc16aaefc695c70d0fb223e73d48958a54a4381cf8f776bc4e8f2Virustotal results 22.03% Heodo
2020-07-21INVOICE ZVWZ8_204163.docdoc 7c96c1803f8860f0ecafb733376ee2fd8fffdb3313a7b4dfeab712ff27242d1bVirustotal results 22.95% Heodo
2020-07-21invoice-0551_11589132.docdoc 9b139e8d9d4ee3eed55ec22fd477e7114550b8efa884f1f2e8c0fca6d3df53f7n/aHeodo
2020-07-21Inv-FIUV373_166185721.docdoc d279829ce22ee6a6b6a7c259b4c7be73b7cad4a3ba3771caf3255dc6c4024f3eVirustotal results 32.79% 
2020-07-21Inv-PJX0_7193215.docdoc 42dfaf38d76b820e0fc08cd9f255e0753717bbc652535ac71420633a72236529n/a 
2020-07-21invoice_TS0769_2523170.docdoc 73bd6ade970c2bbc4673ec305b0fadf679730dff603533238a06c1d8d1d54a7fn/a 
2020-07-21invoice_0228_208420528.docdoc c8b378b56c943ef48599ab9f3eac4de26ced0acd9c5db6d952aac355b1ba581fn/a 
2020-07-21INVOICE-VYZ8341_1723937.docdoc 38f0850e9bbc46f419acd8e723015f8a5c90bc3643e680ffac42cb2b88179c77Virustotal results 33.90% Heodo
2020-07-21Inv S3_620868.docdoc 295dab6cbdbbcb48ed5d8b1623aeec9031d7a1c617436d3805f32e3da8267efdVirustotal results 32.79% Heodo
2020-07-21invoice_EDJ37_381295834.docdoc 9ac4e472b511c0b96a51fbe283a6c3866653e85769c59e6361242e240efcace8Virustotal results 32.79% Heodo
2020-07-21INVOICE-67_659022345.docdoc 33a93dab74ebd140d4d77872dc8c32cc0a9f876e750bfe15994bc2884d42a458Virustotal results 31.67% Heodo
2020-07-21Invoice-U76_619659273.docdoc 543ce71bd2deaa4b6c6994a72f3641b50eff2be1f90beca627322bae86b4f7e1Virustotal results 33.90% Heodo
2020-07-21invoice H52_169857178.docdoc 0d5a0d05a166e3741c404315a2a0204ccbde21c0c7651a68b727a261973e5905Virustotal results 33.33% Heodo
2020-07-21Inv JRVT8_719547.docdoc bcbd3e8aab56417bcded9dbddfa8631d609998e5cdbe1e9dad903c4b5c96c156n/a Heodo
2020-07-21invoice-VZAV243_429320592.docdoc d8c5f529c0cf82794d77beba3b49c00c66f725b4da0bd5f7811a277afada113bn/a Heodo
2020-07-21invoice-MGZF8_66201255.docdoc 2aafa91f9bf7bb0ba237bd6180ec6279528f3936609ddbb3138e151094fbb45en/a