URLhaus Database

You are currently viewing the URLhaus database entry for https://www.xtecsoft.com/login/Document/jdkx5op35688369fx8mqpa1k6/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:416123
URL: https://www.xtecsoft.com/login/Document/jdkx5op35688369fx8mqpa1k6/
URL Status:Offline
Host: www.xtecsoft.com
Date added:2020-07-21 17:04:09 UTC
Last online:2020-08-04 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-21 17:06:02 UTC to abuse{at}microsoft[dot]com)
Takedown time:13 days, 16 hours, 24 minutes Bad (down since 2020-08-04 09:30:02 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-23BAL_IMF_070120_NSN_072320.docdoc 5de801d1734e78ebab4e8a80a424bb6f06e1e7c72938e6d7922073bc7a0370d7Virustotal results 41.67%Heodo
2020-07-23VW7323162803OA.docdoc b60d6ce4f8a065f651452dedc9f4108941e5141d8e9cb38dcbb350e9fe7cc1fbVirustotal results 40.00% Heodo
2020-07-23PO_07232020EX.docdoc 7ae0262abfeb81f5186b2d2a3228db31f1e8c2e76f64307cb4bcda3f113c5e43Virustotal results 42.62% Heodo
2020-07-23DOC_PO_07232020EX.docdoc a6d53ac3f7ddf730b2265f40cc8621657d2533c9b9068b969f9b644f72825a37Virustotal results 41.67% Heodo
2020-07-23YTM_070120_BXK_072320.docdoc 7a2e0ea120b8b9fde053fe8a63306dfb51c89f0744a52e0ba82b1646ad234528Virustotal results 41.94%Heodo
2020-07-23INV_WQQ27ZL7JI5J3ZP.docdoc 29e6dc4e9c118ba98db7b5aab063c19788100ccf19ff84d03d8412ffa61765b8Virustotal results 43.33% Heodo
2020-07-2356529330913883123424066.docdoc 6e9efc2f4e7954913c26e29d8883f05fc837f93cbc11ed6aa1f59e1306bccf97Virustotal results 42.62% Heodo
2020-07-23DOC_PO_07232020EX.docdoc dc7fcde663a9d815ecd5773ded15b90adcb4da90b556db8ce5474fd8b0526419Virustotal results 43.33% Heodo
2020-07-23YX7912881346FM.docdoc fb4e11b91993d00ee53d54b80a44cd235c151005999e3308a58c58f979a3e47cVirustotal results 45.61% Heodo
2020-07-23LPX_070120_SJD_072320.docdoc 46f276ea771efe79258f6a6682609a682fc9fc03bc266902d526660e2d50a2d9Virustotal results 42.62%Heodo
2020-07-23INV_AVM_070120_BDZ_072320.docdoc 5a8d4e08be59caa5eec7779e9cc51d5e333cf692dfaffd35a637e072b27e2090Virustotal results 43.33% Heodo
2020-07-23FILE_4012864678520.docdoc 5c3ece93e2a6644d09daac8a92d6d624794c5e88db7781c77eb5ffd03d2ff8ffVirustotal results 43.33%Heodo
2020-07-23BAL_81847191.docdoc 9d24cd113094edffa574173b3ce1295006fd5e243bc82578b6fb81a7d28e95f5Virustotal results 43.33% Heodo
2020-07-23DOC_GKW_070120_IXO_072320.docdoc 4c99123bb97ae169e6ab05660104745891d0ae7823f8594f8de82a833dc13d15Virustotal results 42.62%Heodo
2020-07-23INV_25903634.docdoc d204d9a16bd7b8412ab3ea6b430424ed732cd685e4b7b8e08b2f10a7151503c4n/a 
2020-07-23F_07086258.docdoc 2c4488a6f51c9e243a1723fe43f3b1b4c6feb9e8e1b5611edf1494b0495423efn/aHeodo
2020-07-23DOC_LE1297702119ZH.docdoc 5f2520828449385a186054f9fd1888a69f6d808ee764bb50c387821529d0fdc0Virustotal results 43.33%Heodo
2020-07-23REP_1PRUBWZVD1ANF4.docdoc ecfcada8131c01436ccd879656898e0c54347fc88b8e4c523fcfe2faa885cea5Virustotal results 43.33%Heodo
2020-07-23GR_PO_07232020EX.docdoc 201e65180b4832e4846c2b92accd04338090231dff03fcd300543968d409f828Virustotal results 43.33% Heodo
2020-07-23PO_07232020EX.docdoc 0d4d84b4ed0c4a8e8c9f84e6e3867fac00ea5484f6892545456598a190dd99c7Virustotal results 42.62% Heodo
2020-07-23C_6370425755493950066.docdoc d131c618751641683f75fc2471996ffce57977de598654efa46d29ad1bdbb6deVirustotal results 40.68% 
2020-07-23TXC_PO_07232020EX.docdoc 2403eb46760fc42de500a11f1ef2ed9193bbcf6869d68343f1c9ca5cd754621aVirustotal results 43.33% Heodo
2020-07-2383717935.docdoc 7470d42e27dcc8eb13d9c5a4834ea53e27ab889b433b3798d7dba2475ec5ad6eVirustotal results 42.62% 
2020-07-23REP_PO_07232020EX.docdoc b1faff2a3245f53424d1c8e07e7e714c967e3fc7ea5e802738adc8c1cf3bfe23Virustotal results 42.62% Heodo
2020-07-23REP_06939410.docdoc 4147ac151094f7d1637500ef0d64f2ead081ce607a749fbe3530f425f0b5f69eVirustotal results 42.62% Heodo
2020-07-23G_3YI9ELSYU4.docdoc c5c9c970acaf30542790ee70291a0b584c620094f594b42102ac49c3ceb65a4bVirustotal results 43.33% Heodo
2020-07-23N_PO_07232020EX.docdoc 90fcbf490c8b5c82b4a621d2eda95d5a174ec25e79494532d86b437fd4752977Virustotal results 42.62% Heodo
2020-07-23XIZ_PO_07232020EX.docdoc 693c1df0735815f2364a37d694cb61cfed0564dc929aa6e8e2f2fb7c2f82267eVirustotal results 41.94% 
2020-07-23WR_RD7561897684XQ.docdoc c3959ea8f24121577d9921bd69d95b3a680fea6a6d86ae9e4687d9f05ae6610fn/a 
2020-07-23INV_MREHT6TC1.docdoc c307436eafab96d2c26a88ce87ccc4a9513e92bb62f67a1259b985f9bbc7b1dcVirustotal results 43.33% 
2020-07-2336638559.docdoc 80bbf221e69094da5ed6b1941d04222edd58b107f427f64ef6af24d99d6c0044Virustotal results 41.38% Heodo
2020-07-23REP_GF0481425377ZL.docdoc e887884ab75f057789b77715e51767f86bd1f2c5857c595af609fee2f045ef87Virustotal results 41.67% Heodo
2020-07-23BAL_OZU_070120_GNP_072320.docdoc f696c100ad68214e4689b5dd0ee16a0d47eb16a2e018c02396c3c4632a71c3dcVirustotal results 41.67% Heodo
2020-07-23DOC_PO_07232020EX.docdoc b87ae14c7da7b5b214dcce0176340b0d35ec9d7fa048cb23241db07f35d56e87Virustotal results 41.67% Heodo
2020-07-23BAL_PO_07232020EX.docdoc 61077d5fd0bb05fdfde47490320fccf5db5b458c1d2144bec7ee9c48e15a506cVirustotal results 40.98% 
2020-07-23INV_QRHOHFK8B6XRV.docdoc cebc54a58a021a0d955723c260148d0d20cbb7c7ef59586a5dc6370bd7fc03ddVirustotal results 40.98% Heodo
2020-07-23FILE_PO_07232020EX.docdoc c0f7c736eb0dece796e74848ce229d17113f5a1e94570952391fecb6ef362433Virustotal results 40.32% Heodo
2020-07-235Y8Q7CUFPA.docdoc 059b15d40d3bdd5846f97c7de1ec2d26e171d6a585a9d7604c0bb41740219be3Virustotal results 41.67% Heodo
2020-07-23M1PF3UEQE0.docdoc a0fe687640b5e1dd66f75770b5f81570eee2dfdeea5955882f12b6e6be05e498Virustotal results 41.67% Heodo
2020-07-23BAL_D1EYQ3D3DKWU8WGS.docdoc 8c457c505817b87c7b59486ef32e36330f01767f01b97e67493bf65df9f19c7fn/a 
2020-07-23B3Z45XI711HHZDH4.docdoc 1aa324aa103a6acec054d97dadf915026fe9bcb397743c11cc15f90ba2f14e90Virustotal results 40.00% Heodo
2020-07-23BAL_AH8444615541XM.docdoc 60bd24426f0d271756f6d5071da1534deb37c8398e7e1ed66357b9104111d54bVirustotal results 39.34% 
2020-07-23DOC_PO_07232020EX.docdoc daa624b964e78d640d7be3b509121048114a186d6e9982ef7a9498d81373f90dVirustotal results 38.71% Heodo
2020-07-22INV_AM1615988817WD.docdoc 8d8a0dbf9e0c219b594762d88e79b8502dc3ef9699906a21ae3be4224fca3659Virustotal results 39.34% 
2020-07-2232775696.docdoc d50d98dcc8b7043cb5c38c3de36a2ad62b293704e3cf23b0cd7450174df53feeVirustotal results 40.68% Heodo
2020-07-22REP_PO_07232020EX.docdoc dc64f5fcc0fc06d6a8295b3ea6e102f8dd0162749a7d2c1b46e43da7861b8e2aVirustotal results 37.10% 
2020-07-22DOC_28305360.docdoc 694e3d8db738e2dc0c126f0e8eade84677bf290041e4aff16d4b82301a59f8daVirustotal results 38.33% Heodo
2020-07-22REP_B0NCIRA.docdoc f1ebb4160dba56424b98b04a121a56dbe21ad5e7a2c4bb3816f2dc0eaf0e3afdVirustotal results 37.70% Heodo
2020-07-22R_013209041210.docdoc 52d614878963e173c2d71c4a5acb9362518cda99df23bd2d1525f50f93eccc0eVirustotal results 36.07%Heodo
2020-07-22FILE_GET3IRGU6AUJ.docdoc 1f9fe9272f9a02385853893d5a56741717648a3d4eb03893bbd1159a1b674f09Virustotal results 36.07% Heodo
2020-07-22REP_SQ4890922170XX.docunknown 3ec076dc54b88e008f76cea601c0947396b8cb3c3c4448457209f2f1a83f4c4bVirustotal results 39.34% Heodo
2020-07-22MR_AM7VXPW.docdoc e4318624a64a3ae6339fb9f313b16d683af5a4407afa1aadc2d50d7fe53d9a62Virustotal results 35.48% Heodo
2020-07-22JPBA_PO_07232020EX.docdoc cba77c21112d6316eb5eab671dd2463f2586a647f85134cb322b440c631a2b15Virustotal results 36.07% Heodo
2020-07-22DOC_14100581.docdoc a914487475ef707218bacbce31e5c3a0d485b9945956c0caf374ab9a445fe52cVirustotal results 37.29% Heodo
2020-07-22FILE_CI1401792673ZG.docdoc a55fc6835fd7688e8c1525b6b557dc4c04f7a3500683bc2e271bee96215904b9Virustotal results 37.70% 
2020-07-22W_PO_07222020EX.docdoc e3b40abe8849ea4e531f61c3887d9c21d56c811f948ac36abb97499389ffd435Virustotal results 39.34% 
2020-07-22REP_36147313.docdoc f3cd7d293b6a08ec3f1d12bc68ce35f3d95a50722ae7229ff57afec38b803cc4Virustotal results 39.34% 
2020-07-228244937478634857648385.docdoc c3d6f7e8a9dbb2ec09cb6152ac193f18c3a4e742fae9ba6cb35d7fb6622b9648Virustotal results 38.33% 
2020-07-22BAL_4687995836326743429.docdoc 93bd09eaea0c98b747d9e5bd9b315824286a6e43cb42832b7cb1ccaa3d2e8c6cVirustotal results 37.70% 
2020-07-22D4887LMURQSNYIH1.docdoc d31470f4945bae2c0094e021e39d1d2c14a0dcf8ff69fc89eaa5816a628a8119Virustotal results 38.33% 
2020-07-2233147621.docdoc 6832132a30fdd94a35af4a2a1a0adc2f864f9410f6266a79f461f2c2727ee923Virustotal results 37.70% 
2020-07-22R_NTKS4BX68.docdoc a82109f8fbf62524daee674feca6fa72a4c3641450c09a4b381995bf61dda662Virustotal results 37.70% 
2020-07-22IWY_44487956.docdoc 03a610074d1885c1951064a015d34eb0d884e43968a15ffaf1967f16df31da31Virustotal results 36.21%Heodo
2020-07-22INV_5575257153471.docdoc 6ee52218b54636db8edf7833738f921c320966b59f82e84047628cd124d5bb62Virustotal results 37.10% Heodo
2020-07-22UWFG_JFB1ZVZF9CUNE1F9.docdoc 326facf92de34b3afaf3e5108f1e6b9e12bf603ee176f9e869e2227743bda061Virustotal results 38.33%Heodo
2020-07-22GWO_070120_MCY_072220.docdoc ea07e6910173653aec1132cbc38a8c6ce4ef990a002cfff8cadc502ad5b22d9eVirustotal results 38.33% 
2020-07-22XUY_070120_PBE_072220.docdoc 8aaac75598925bf1f4f8681fe90a8201fd71dfcfeb9e74f5e5ce871eb75dd4f5n/a Heodo
2020-07-22S_70754972.docdoc 527f1d378d5c6addc8574d362df991207e3530f13a9705b667ea7d28b708112bVirustotal results 44.26% 
2020-07-22C_DJW_070120_XGP_072220.docdoc 5a48b5b0a9e9f5d700e0c140eed2bc976da9c99332c10a6d0da54719eb68f991n/a 
2020-07-228695726049767729594846.docdoc 85b502308eea0d4c0b742ca6b6b9ccc6cd628d2d3d937d52d3cd912d55a6501fVirustotal results 42.37% Heodo
2020-07-22761023107722975884510872.docdoc 9250d08026b599f3db61fd76dbc27e4679aa734e469a9706c50d280c1d86913en/a Heodo
2020-07-22FILE_48OLHWKAKGLWJ5Q8.docdoc 73b03b0c4c42b5252564628ad2d76850e68302897786aa96dbe3a4503c26183an/a Heodo
2020-07-22FILE_WX3296962862BD.docdoc 5cbd34babe0ec377534dd02560a79250776943095dad7b6d53f17cbfebfe738eVirustotal results 42.62% Heodo
2020-07-2201786194.docdoc 717d843ec0f588601f8e53158a3cf6c88ca8f514c3f32cbaa004b9d6cb8fe6d0n/aHeodo
2020-07-22ZF3170014944NT.docdoc 516b990afeea66dde2feaf3c08cc03d53b102010a7563f735bcd2a9298a4978eVirustotal results 44.26% Heodo
2020-07-22REP_NYF_070120_OEZ_072220.docdoc c3e199b25039291a3cd52f41fc4e65f928c6cb79ad1617ad1bfbdbbb3b2bb396n/a Heodo
2020-07-22OFI_69479050.docdoc bcee8585b63be179a43c5afae53fdd8be7dcea3a28d4cc94d9ea9f4ae58aaa34n/a 
2020-07-22INV_9616685778321280737665440.docdoc 9aa88e0b920319854af15ecf938c37ed20ef8922b14d3aef3c431e7244816a70Virustotal results 43.33% 
2020-07-22INV_6571250409261163887966.docdoc 1bd519d5cc1c15caa5852330cf48e62d99f39986966dab882ab7befff8962afbVirustotal results 40.98% 
2020-07-22PO_07222020EX.docdoc 9da867b47cb1f85364e0ea24a033e9d0fd9f79e6fd1f3ab4879547f87d8e4ca8Virustotal results 41.67% Heodo
2020-07-22DOC_VAOZMVL6HWVI7H.docdoc 6926e9ca66bb3358bc37fd3518064ce47beafef2445ba28b64cf343c9f3fa6cdn/a Heodo
2020-07-22BAL_IKA_070120_OTG_072220.docdoc f1b7132df8ec796787268640384eeb445a1ffc5c0ad9f2c780ad7383f2b9e185Virustotal results 36.07% Heodo
2020-07-2241696441165.docdoc e36be98a3e3d568430d52706ee06d935e126942b2a5c2453f5478d8c0d58acb7Virustotal results 40.98% Heodo
2020-07-22S_PO_07222020EX.docdoc 1c5a6201f9ef900b5ccdcbea0c35b6c1ab1b6e2ceca9bf0afdb75f9697696f28Virustotal results 42.37% Heodo
2020-07-22REP_14263977195651704477.docdoc b88e74aa0926fc194b5436b4202c1e7ec8b5f7ba028c951871c7be94feeed8bdn/a Heodo
2020-07-22FRP_070120_TNN_072220.docdoc ddfd2815579d78019f547e67967ebf09f66637599ec83bd07c812c413efada59Virustotal results 38.98%Heodo
2020-07-22INV_24146219772179.docdoc 91420939d17611e6b1215827089e2e118b07eaeb3034e72059b79148104ae337Virustotal results 40.32%Heodo
2020-07-22DOC_93911216.docdoc 432d6d6881a6d2006ee6d849c32688e7243f4b6f06e42ebeaab0665807c3140eVirustotal results 40.00% 
2020-07-22FILE_0L1BNKXOZF.docdoc eb4051dc4e8ab1d0de977358994f5e9fe2b9028525fbcf19e270142a0ea54957n/a Heodo
2020-07-22O_CI494WYY2L0U.docdoc 382c3e95cc13f711cd343ed378dc4865b2e3f7b6fe31bdf6c7329624566f72f7Virustotal results 40.00% 
2020-07-22789257102974402714626.docdoc 3989307ebddd245bda87431ce5df1c47f236f62ffddbd75ea3d36a68ab9fc77aVirustotal results 38.33% Heodo
2020-07-22BAL_CIV_070120_RVV_072220.docdoc da3c16bd0fbf30d288d1ccc9b9e457ccd8148d1b8c60077077ecfc60ecb665c1Virustotal results 38.33% Heodo
2020-07-22REP_30125334.docdoc bff462e527dc2bbfbc6af92e64f4d57c7587401687561163e0a6a3ec37414d68n/a Heodo
2020-07-22BAL_46774327.docdoc 02688396874aabe3c8706c443c1e19466a2d0a2b36ce2bcf5407d5db72dba36cVirustotal results 37.70% Heodo
2020-07-22DOC_JNV_070120_XTQ_072220.docdoc 75976bde3b02341d4f05b9672041e7cecdc933663249a73fc38982cd66982d47Virustotal results 31.67% 
2020-07-22WO2140898904DH.docdoc 120f732aba4b64d3432a7909b4ef59ce8ce605c0c202211713040e457d3bd341Virustotal results 31.15% 
2020-07-22PO_07222020EX.docdoc 4c0cc2081019e58018a52f5990e6b614bc3ba72898c51b3b2b6c936712cf1697Virustotal results 31.15% Heodo
2020-07-22INV_89765588.docdoc 1e3af37e16412c773f67b690a273c0c17a35d7ff6ad70b411cfc8b8c9a269e14Virustotal results 31.03% Heodo
2020-07-22NZ652577HORWYJU.docdoc ba4417524d4ec820b4eb5bc47ce13c88930355211107e1866f24d0888f36186aVirustotal results 26.67% 
2020-07-22IF58O7Q.docdoc 99e4ace02c6584969197f86d1122c6dab6d35545343a0138df9821a3a71ddef3Virustotal results 26.67% Heodo
2020-07-22INV_PO_07222020EX.docdoc 6999be5570232cb11189a152478254ef33470426036d88fa74b45305031efb73Virustotal results 26.23% Heodo
2020-07-22BAL_98316480666300699.docdoc ee36488e9d6d8ea09cff02367c7212d0503f376346c3b40aed03e01c1b1aa668Virustotal results 26.23% 
2020-07-22INV_PO_07222020EX.docdoc e563992a8b913e222c4f08cd1cb89a4e4af61dc33d30f455e7e3f4fbd039666dVirustotal results 26.67% Heodo
2020-07-22BAL_MN5XDVH9KFWA.docdoc 44649b15c8270438769bec658bd63477e64a1164f0e721c002eedaffd43b5256Virustotal results 26.23% 
2020-07-22BR0898413680FO.docdoc a76feea95a298d6f94ca0a719376f30e4409a18555e10bdb1e90a24c7facf294Virustotal results 24.19% 
2020-07-22QGK_070120_OMP_072220.docdoc 61b94e8bbe7564405293dadbf39ad662250c4327556639f79c09ee9e56cf909eVirustotal results 25.00% 
2020-07-22FILE_C5TH7WZAMUT197.docdoc 5f5a353ccf0dbcfaa0859d0a1db152f2d40735bce47864d7ef9c12ab93c8ca88Virustotal results 24.59% Heodo
2020-07-22REP_PO_07222020EX.docdoc 584fbf65a3d7eff0ed9282b47d237781da7f7aeb0092ecd034d3edb66adbc6dfn/a Heodo
2020-07-22T_61458388974741638.docdoc 0b88f7457627bb2ae6f62990289a2e3f1a378c01892e3715bec08b94d13206f1n/a 
2020-07-22REP_DC9111987919QX.docdoc 593793a914684244b3c51333736fffc1cdc69c51759831c888b66e6a07ef8b72Virustotal results 24.59% 
2020-07-22BAL_54123432933983669200970.docdoc 756efc8d3530d9e9b4141763d1a89a2092a54347108a59790356c0c3506082ben/a 
2020-07-22INV_08512219247665776.docdoc 1ff7a8450997cc013c4527af47bac34423607b8fcda043bca82df0e6b3e823e4Virustotal results 25.00% Heodo
2020-07-22P_CW1974346001QE.docdoc ed1a41469969a80fefc58566124f44e0846bff21d8e51d897da0d10b2386174bVirustotal results 24.19% Heodo
2020-07-22DOC_ARJ_070120_QEH_072220.docdoc 10963f8cec95f3f18634db9382cd4403523a624d72a459c29c9c3baf27097509Virustotal results 24.59% 
2020-07-21C_PO_07222020EX.docdoc 62f04c722299e8d193bfbe9dcde36cba23bf403f4476d6755bca71d6d49987bdn/a Heodo
2020-07-21NK4440747686YP.docdoc c6ca23f36d524391de9970059d2e0faf54270286e320503e3eadf282ab5082a2Virustotal results 24.59% Heodo
2020-07-21AAYIVD9MZRXH4CY5.docdoc 737dad0010dfc90068d5db4073a76c04f2e9aa7549373686028374e3bbbdb652Virustotal results 24.19% 
2020-07-21DOC_ITZ_070120_RUR_072220.docdoc 5c3d472318679572aeebf4c76cf7f2ead0f39f72e9d9d3e26604c88f35364b4dn/a Heodo
2020-07-21REP_OU5804546980DW.docdoc 9f59209f542f739dd433026c1d8d27be15cd6a200911c01d5e075ef2350540c0Virustotal results 24.19% 
2020-07-21FILE_JYI_070120_DSL_072220.docdoc 7e47c58806cf3cae28917cfb1b478bbbaaeea2623cd694c12056b2f2aafc7d48Virustotal results 25.81% 
2020-07-21674146858122637765.docdoc b7dea776f9d38a8a290e2686dd008bf00d1ee54958d38c1a4961c7f3aaa653faVirustotal results 26.23% Heodo
2020-07-21BAL_3C1H46RMOTT1O2GP.docdoc d8f6127bedd179ef5edf45af00d0b8df5f155b3809547852712c6d1db6774609Virustotal results 26.23% 
2020-07-21DOC_PA5156896722BG.docdoc a687cedab74fe24b95545319ea7ef7ea0afb3d56feeee11e42021892ecb50da2n/a 
2020-07-21H_PO_07222020EX.docdoc ed83c94a771e57b78025258c6f5247debaee74c1bfed17a2cee430f31ff91f08Virustotal results 25.81% 
2020-07-21Z_40541951.docdoc 0c69f537211ca18ffdcd88151cd0e09636aec3e5708e6fde3df55bea4884ba5dVirustotal results 26.23% 
2020-07-2115169274.docdoc 0e0dd25cf77e553864313736b0920a661812e68334e93090f51845a1c6fdeca5Virustotal results 26.23% Heodo
2020-07-21RQE_070120_EBZ_072120.docdoc e7f052e442f5e516656d26a0496f9a4c3871faa6eaa01d7fb35f26db0075aa9cVirustotal results 25.81% 
2020-07-21FILE_53391905.docdoc a501ba4d5001cfc0fdb0e8b95b1dd154dc0c9c3d3e0ffdce873526f1855bc618Virustotal results 32.26% Heodo
2020-07-21REP_VW4366155799NE.docdoc ca998a06b2f978858777abb0bfef0579f36d736ea30cbc48b1c1468509a10e4dVirustotal results 32.26% Heodo
2020-07-21BAL_72751952.docdoc 25d8674a9a9f8dc39e05c8625561abfa731d499fa4fcf8ef72bb9dadb1d4c156Virustotal results 32.26% Heodo
2020-07-21FILE_K4GX9HG.docdoc 1eb40695aac83a3f528f16af863be6327354d555eadf1695c53904c523ac9a86Virustotal results 31.15% Heodo
2020-07-21X_PO_07212020EX.docdoc 6279c838295cd951f8ee54e9204fd14739a28e955a7f6cec0d5a4d7a42c398f4n/a Heodo
2020-07-21O_99733146.docdoc b2dcd1d5ee235a978ccd72a68fa2448f80577a051cf78c994fb62d41e7932e39Virustotal results 31.15% Heodo
2020-07-21ZJS_070120_PRF_072120.docdoc d5d3845f7ac2c48853a2875dfcfd036f82983a6318546346d14d8e35d6c63177Virustotal results 30.65% 
2020-07-21DOC_RW9850814659RU.docdoc 085fc029c8a50931856c8f6f08069c3175212c7ca563911408b2cba997c956b3n/a Heodo