URLhaus Database

You are currently viewing the URLhaus database entry for http://h-h-h.jp/newfolde_r/sites/US/OVERDUE-ACCOUNT/Invoice-2481857/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:41654
URL: http://h-h-h.jp/newfolde_r/sites/US/OVERDUE-ACCOUNT/Invoice-2481857/
URL Status:Offline
Host: h-h-h.jp
Date added:2018-08-13 14:15:14 UTC
Last online:2019-03-04 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2018-08-13 14:17:34 UTC to hostmaster{at}nic[dot]ad[dot]jp)
Tags:doc heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-08-15Invoice Confirmation VD475434.docdoc 78c8459629d6d186b8e344e1361540ea66dca3285057643cbfb8fe77a3440fbdVirustotal results 33.33% Heodo
2018-08-15Latest invoice - 251483.docdoc c9f4fdf390dfac51bd78635013c2129bf6edc1e81624a763dee822fb6ce92352n/a Heodo
2018-08-14Statement as at 15.08.2018.docdoc 6c46e7e208b58ab8e3a2f519e571a96a77a64f934bd2609bbdd09755f868a48dn/a Heodo
2018-08-14Invoice.docdoc 2aad74f3ececfe2e9f030eaa5daa7d149cd42c9d4ab6d817eb9b6354303dbb73Virustotal results 26.67% Heodo
2018-08-14Billing Invoice - Job # 3124121.docdoc 5c6d9f00e6fcf35631b4b45573b5ef3523be605ddb1d3e34213838821686ff2dVirustotal results 26.67% Heodo
2018-08-14Outstanding invoice.docdoc ccf4685af9a1660c3cc2f737bac301404326c541e305af0fcf11ec9ae0f6ecd8n/a Heodo
2018-08-14Final notice.docdoc 1009267875e09afb173ffcd89a86f43bba4c9ac298ff6fb609dcb0844196920aVirustotal results 28.33% Heodo
2018-08-14Invoice.docdoc 0cac37127b1e7c37b8bf7890b5e7b30d2d4254e3b34ebe9c55bc702373104f3bn/a Heodo
2018-08-14Final notice.docdoc a4b0568b2294ef9d027c5e126914544224e7621b54ad2c61ec925a1c424f8e90Virustotal results 28.81% Heodo
2018-08-14Invoice # 1QO507535.docdoc 200f9ce2b352f4cadc07b595bfd5687cd67a942892ea333eec4cf3fe2636874bn/a Heodo
2018-08-14Inv. no. 76MG2568.docdoc cdc86d9833b498b8b5b1675f86a064cefe95973b766e264cdb892275a2b2efb6Virustotal results 29.31% Heodo
2018-08-14Statement as at 14.08.2018.docdoc ea7afa2aa0c51a63faa1ae05169bd56d9df87ae9178181246bcccb2f16f941b0Virustotal results 32.76% Heodo
2018-08-14Invoice Confirmation WS2493.docdoc a23c7eef482794cc3bdada733cc9634ea6e0feb34b7e8671fd67dbfd9499f4dcVirustotal results 30.00% Heodo
2018-08-14Invoice as at 14/08/2018.docdoc 8dae0ea86493a1b55714c972305ff83e0e4bfdd100473b0e081d982d96d87490n/a Heodo
2018-08-14Final notice.docdoc 22a04c30ef04aa94d29bc57ff29860d14e4dd33c2a432b552bb7aa801ef5dedcn/a Heodo
2018-08-14Billing Invoice - Job # 0477138.docdoc b3384dc3062d258c6c865a507ce9ff98005319b3ebe1fc7f6a28807b284b3cddn/a Heodo
2018-08-14Accounts - Invoice.docdoc 131dc89104afa262b7b2476df2a04ffb6085442115e61dda3ff669b6b3168af4Virustotal results 25.00% Heodo
2018-08-13Final notice.docdoc e01fb884cf5d4fa0f64138f558b5ac6d8bd6cb2a3c616023428576f74a1dda67n/a Heodo
2018-08-13Final notice.docdoc 6f9fe7e3182d0d2891729f5279b457fa81686452c5b0464c4c19ffc5013df431Virustotal results 26.67% Heodo
2018-08-13Invoice.docdoc 262f362e36276789609ffff90c496997372888b0048edb3cd16f14e161fc55a8Virustotal results 26.67% Heodo
2018-08-13Invoice.docdoc 351afc8cd4a99e2f8ab047c9c83a1ff6b7e0cf6266ad259213dd29dea3d050f9Virustotal results 26.67% Heodo
2018-08-13Inv. no. 63I3K231108.docdoc f4e9c877c898636eb9c4ab242a9a86d0cc6e85b1cae4c13569bc95b0a751469eVirustotal results 28.33% Heodo
2018-08-13Month notice.docdoc ac5453baf18fd4d8a5f0642c1970154540ca0970b98102c5f72786ec414eb0afVirustotal results 28.81% Heodo
2018-08-13Statement as at 13.08.2018.docdoc bf6873af05ad8fbb02b9ff4353d789aef2966528c298339031f78290ae998396Virustotal results 28.33% Heodo