URLhaus Database

You are currently viewing the URLhaus database entry for http://envirohealth.org/files/abierto/L7hJ9qd-cjiQ0c23u-caja/3521086-6o98hC7/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:419834
URL: http://envirohealth.org/files/abierto/L7hJ9qd-cjiQ0c23u-caja/3521086-6o98hC7/
URL Status:Offline
Host: envirohealth.org
Date added:2020-07-27 12:15:09 UTC
Last online:2020-08-17 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-07-27 12:16:02 UTC to abuse{at}affinity[dot]com,abuse{at}hostway[dot]com)
Takedown time:21 days, 10 hours, 22 minutes Bad (down since 2020-08-17 22:38:02 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-29info-2020-6440105.docdoc 294e4c6d2ac96b2986d057b9ee05c7b66aa25da4bed42a37800f4eed50e467f6Virustotal results 28.33% Heodo
2020-07-29254673.docdoc 8bb634c8040c0dbdc8103c0bf90ca21e4ff6d65b9f63ed5a317b6e676ed0c7c5n/a Heodo
2020-07-29GC72757-072020.docdoc 201d5cf6e6de292a7fa7914d5471ec348f2b134b2e961d666cf19b262570e100Virustotal results 27.27% Heodo
2020-07-29Datos_2020_828_255787.docdoc c2e47faf5a472c7ba02cc29a36639663e9c4f7c1dc0b73da066050da0fc0c17cVirustotal results 27.12% Heodo
2020-07-29713022-072020.docdoc 4cad41a2c94580e73badd4c35c2282597f7708204d5214f88c3f9972e3d99bbdn/a Heodo
2020-07-29FILE 2020.docdoc eeb47806c7d6c1359a856ad4ce35e3a9838326cf7024325e39b48e902db69824Virustotal results 25.86% Heodo
2020-07-29ARCH-072020-698-79151.docdoc 2376e8d554f014b53f97ab04db0649032b1f9cc4a949c2a37e4c5c7ce04b576dn/a Heodo
2020-07-2965.docdoc 6a8bb6e77fb312e9755b5119e1f2d52a58b9f11f1ffdd96eb7c937a0307cc6a7n/a Heodo
2020-07-296447 496/31043.docdoc 2358e95d172df16e4ee84738952acac2857dd1c6ca1fd8d4f5a1cd6d3dec5b74Virustotal results 45.00% Heodo
2020-07-2962058 4/09677.docdoc 75054d37db4cec9d1e647c93b7d5eba72b29c8e8f3664263ebb4f48775c07710Virustotal results 45.00% Heodo
2020-07-29Info-9116666.docdoc 4b508c6d30fa76b1274e65fe98fd3cf85ac60efa92bb9bcd97aa745fa20ca465Virustotal results 45.00% Heodo
2020-07-29MENSAJE.docdoc 3178a60156b44854f733f1807d6006d8fb5b9f79bcf3b06f84e70fd6e6be1635Virustotal results 45.00% Heodo
2020-07-293386-072020-K/5153.docdoc f89b0ab3a3817bdaaca98ca6ebdd47fea5c4ee59872c90a4fccc23463d192e52Virustotal results 45.00% Heodo
2020-07-29KY3892 2907.docdoc 2d0a50c2b71293e0d232856f5b99127f9a871bb9e7e2a731280462f0f48ad966Virustotal results 44.26% Heodo
2020-07-29A0940 2020 252-8761793.docdoc 31a705c847b5a8e8e18857c0a1b1fd7ab4f65ad44d4d860c12c2001c25c67fd7Virustotal results 43.55% Heodo
2020-07-29255-2020.docdoc dc9ed541230e97a30f45695e066b67e80728f6963ada93b7fb8d9617a653857dVirustotal results 43.55% Heodo
2020-07-29WKX519293 2907.docdoc 69d9c2636b810aad6ced6aafe53a2425b05e93f1a62ddbbf9d09b352cec0271aVirustotal results 44.26% Heodo
2020-07-29Informacion_2020_5/9476.docdoc 915ae2165210e21055c3ce6e6c455943b75d0ab07c690a48d810bcf2ab79d0f3Virustotal results 45.76% Heodo
2020-07-2947885_2907.docdoc f108b93f8a51197e20952752105e589dac418d57b106df142a474ed7f8627354n/a Heodo
2020-07-29DAT_2020.docdoc 4939104d6ac747a434d08a86353fdba0f99fab4fdfc1fe2791945d8bcb3f8482Virustotal results 44.26% Heodo
2020-07-29MENSAJE_29.docdoc b1694404ff4e0dae6ea880bf9200e1c9df0ff1818d7e3d5aa816aebe7aa4a8f5Virustotal results 43.55% Heodo
2020-07-29DAT-29-072020.docdoc 53f3da92ee3ce408ff2015548c4b05bdfd2bde5a32397c042bcf1dacd802fab8Virustotal results 41.67% Heodo
2020-07-29Q26493 2020 OR_307394.docdoc 87f39e22654ef1ce46b3b78df7085ad350cee20210b2d1aa473fd2991126eb43Virustotal results 40.98% Heodo
2020-07-28Archivo-072020-1301501.docdoc 94ddcb3d527aa945321d1e706a0d7cdebe9b0380b2ac33918e02ae142da93a34Virustotal results 42.62% Heodo
2020-07-28FILE-072020-FJ-301191.docdoc 560f5cc2d9a6a987bec2c57b8cacda03229c7f0fcd7542b764adc99d5f7e2f2aVirustotal results 40.98% Heodo
2020-07-28Archivo FMC-22465903.docdoc c8ada972b3fdd490d032ec05fa07067848d049d418cb998ec26c55fb881520f2Virustotal results 40.32% Heodo
2020-07-28Adjunto 29 43840352.docdoc b08aee092cb3defc671949d65b32da80150ad60e64554f24eb25bea83ade4708Virustotal results 40.32% Heodo
2020-07-28Informacion-2907-072020-39_23622925.docdoc bd5cbc8583305658dc0266f8fbfced9e57e41d459fb3120bff3df95fcacccba9Virustotal results 41.67% Heodo
2020-07-28Informacion-2907-072020-39_23622925.docdoc bd5cbc8583305658dc0266f8fbfced9e57e41d459fb3120bff3df95fcacccba9Virustotal results 41.67% Heodo
2020-07-28Informacion.docdoc f37ae711b262ab3caff91d44e0ef517c066e9eafcff80cef84ac904d8efad0aeVirustotal results 40.32% Heodo
2020-07-282567642-2907-2020-HX/1214737.docdoc b6277264511a02af2111a576b9bb860665865b9fbdf30b99add2b0f5aec1f307Virustotal results 40.98% Heodo
2020-07-2824498 29 2020.docdoc e57fb1f02363f851607b32a8ce3fb93bf2a12acbecc0c649d9ee5b83fabd3d97Virustotal results 40.98% Heodo
2020-07-28Documento 11406482.docdoc fea74ef73aeff3c000de4d0fb83881380d352b00842be1eb8bd91a4e991e7705Virustotal results 40.32% Heodo
2020-07-28154628_28_072020_C_32685.docdoc 539ff641f2ad4aeff90b35b5fd17121ac44fcc6081483bc9d1903c33c99b8d46Virustotal results 40.32% Heodo
2020-07-28Adjunto_2020.docdoc 927c20d4aa8c4f43904aa5c1d46d59975fc45637a61d38884e5e2d94e32780f4Virustotal results 40.00% Heodo
2020-07-28INFO_2807.docdoc 512e1272b8fecfa6ed817f3034429a7d7bf2057092dc4d58d78adebc2e4ea13cVirustotal results 42.62% Heodo
2020-07-28ARCH 2807 270-89293547.docdoc 7dfe8c017d0ab4f45bff8329eac5216dd63d5f32323126740cafcfcab0444082n/a Heodo
2020-07-28Adjunto_2020.docdoc b2660bfdc637dd30977a0d2353b9c9dd6d75cb409d1385a65d6f0ab621d18e63Virustotal results 42.62% Heodo
2020-07-28Mensaje 2020 AS/6170605.docdoc 687cf32a1f55ee68a9a7bdf43a0e0598aa7275cb6d10eb00d88d226f4e8b36daVirustotal results 41.94% Heodo
2020-07-28Documento_1954083.docdoc 2c08dd8d76220e75360438dfc6211357fe013525c32c839df3070b40d0f211f6Virustotal results 45.61% Heodo
2020-07-28ARCH 2807 072020 EJH_84199587.docdoc 0081319dd28e168071c4515c299698a8bd64da6089ba663e300aa782d4195f88Virustotal results 41.94% Heodo
2020-07-28Documento 072020 Z/63223323.docdoc a785e89b0383e1503dbb4e3705ea8f23a377fa2613444a79f1b4360f34ec3d1dVirustotal results 43.33% Heodo
2020-07-28Adjunto.docdoc 1151e7ac96e0e3b70a1ffaee5c9b97aa4aed6e2140e17ec6799b568a578c2870Virustotal results 41.94% Heodo
2020-07-28ARCHIVOFile-2807-44/53370868.docdoc 683a2ea0b3953d097f3252a5334c7651d31c5fbe2264867e637cd30cc20140b0n/a Heodo
2020-07-28Archivo_28.docdoc 7062f6009b062252fc3dd1ea29d46265a166398e42cd997b8a8f72b1bb231350Virustotal results 41.94% Heodo
2020-07-28Documento-2807-2020-5/17063522.docdoc 45261cdb48919132b134b190e6bf3a8d25027a224985b567f0a97ec33a4641bbVirustotal results 41.67% Heodo
2020-07-28mensaje.docdoc 3e6bedc906a69aff43fab9f79f7e1eaa50c23b8fcf6b3cff3238c7560a3e25efn/a Heodo
2020-07-28Info-889-7246987.docdoc 4e002c98acad5356bcbe4c771a68f3e3e04aa91c9027a664dac74191c361fbc0Virustotal results 39.34% Heodo
2020-07-2831-3-637755.docdoc 1b02232f395b97397de48fdb5b000365622b6fc633f0171bb9e8434fff99faf7Virustotal results 39.34% Heodo
2020-07-28Archivo.docdoc f1d57605a40b68b680448c915d43de5ee6a2d1b3622a56112eefa6cbca8e28f1Virustotal results 39.34% Heodo
2020-07-28Archivo_28_2950.docdoc c8892e7948064da3a177d91a7d657f17747d2b8ebaa0da44eb2ae0940ce5c2afn/a Heodo
2020-07-28Archivo-28.docdoc 4545350210bf1fd8b012fbac3ea72c145dc9d12457597946a9e2b1c167659bfan/a Heodo
2020-07-28ARCH.docdoc a37dc4182d7ffca273b56acbe0cdddcfec2f23b05fc1cb5fe0a551f58f7ecc7fn/a Heodo
2020-07-28Info-U/75964010.docdoc 7c76382a386308e490c7bede412bce41103071c93c2908cb1ab8489eb302b31fVirustotal results 40.00% Heodo
2020-07-28INFO_66235.docdoc 49a829db25a031f897c810bec82adf3f2af0166b1d5043dcec07db0ba72546b0Virustotal results 38.71% Heodo
2020-07-28ARCH_2807_2020_ZPC_26535.docdoc 0086265c2f4da7654f02494ee0cbf199fc621cd86d4d0b7ed80b5af62252209en/a Heodo
2020-07-28611-2020-A/7796455.docdoc d50606e53c27b5e7138d2be53d6a9a60ff578c5435394e7abd8692d19a31f013Virustotal results 39.34% Heodo
2020-07-28218 GUQ_65117664.docdoc acec963e779118129ab1450f03547773c0d1cda2ab9743f070195752d1c74ae6n/a Heodo
2020-07-28Mensaje-2020.docdoc 9b99486eed10794305fde884a8485b04d32bbf215cc45559bcd7e74ff2a753d6Virustotal results 39.34% Heodo
2020-07-28info_072020_4/2482.docdoc cf18e1a6342f94e888186b84b0c81c120ab3cfcb3023234fc4ae013dfafe734fVirustotal results 38.33% Heodo
2020-07-28Archivo 16/66773356.docdoc 1c648236392b6af46a065a1053a547456076ac083b0ebe9c699d8511ccc2af69Virustotal results 37.29% Heodo
2020-07-28info-28-072020.docdoc 98512d3cdde2d7ee7c25a7498e0b82cfe878002aeeb60bc8d9c1c77aa8230541Virustotal results 36.67% Heodo
2020-07-28Adjunto.docdoc e4f202476429f6ff5d69372983be2a0efe9e6ee8dfe8f2f466d235974421b2ebVirustotal results 36.07% Heodo
2020-07-280861.docdoc 9a607d7180b06b7e61ac102458c6319f79e974e4bad33d27ee757a66c18f7f11Virustotal results 36.67% Heodo
2020-07-28Documento.docdoc c777c2cbf20f13d04f0e4c21bd8ba2bc44cea5e4b2992ae58a6d6dfe6fb53465Virustotal results 43.55% Heodo
2020-07-28info.docdoc 6387bc4484750efab15cb9bc530a51f91ce86e20e43c10d496b70b4e3afd99bcVirustotal results 44.26% Heodo
2020-07-28Arch 072020 32-869531.docdoc dae4e93ae3617109edbfdb2c05221f3dd5f725cf6e19d8e85881a5bd4afadfc0Virustotal results 45.00% Heodo
2020-07-28Datos.docdoc f17c0f459fab0492c863e99c1a5792ad48d11acddb5e049a6b4c39f99ce8b344Virustotal results 43.55% Heodo
2020-07-28444-28-2020-FMI/42004655.docdoc 36a2dcdbe270ab3526bdea28407cfdec949c82215605a7d871c95f6803ef2eb0n/a Heodo
2020-07-28MENSAJE 1_84899423.docdoc c2c286c513606c5ebbc5bad98047dc2c6887966b0a3e972c7fc53bc25e1584beVirustotal results 43.55% Heodo
2020-07-28Documento 072020.docdoc 4ca4d1e4470fc34af7ba6930b887d43ae19fcd3a58253e8e08dfca1543e49c7aVirustotal results 44.26% Heodo
2020-07-28Mensaje-H_9188.docdoc 21dce6efb379371051277359737d8c090f5bd3feb2322f04fadc8c1da068432dVirustotal results 44.26% Heodo
2020-07-28INFO.docdoc 1285ab067041ccc47554c1b6a78dd2ab191d2426e7242817235a92f1f674307cVirustotal results 44.26% Heodo
2020-07-28Arch 2020.docdoc 3117731e93abddbeef527b2dd61a88aef23e0ff72b289b0b92e56432b31f3b3cVirustotal results 44.26% Heodo
2020-07-28Archivo UR_0550.docdoc ff97460ec476ba0b1dc6bf5044dc590c950725e79412fb75bcb38f37bf94e227Virustotal results 43.55% Heodo
2020-07-28736 2807 4262243.docdoc c8f7207b776cd41fd7bbd4a9c1bba2c4c1161dc9a1e132d8754d87743107e43dVirustotal results 43.55% Heodo
2020-07-28Archivo MH-40322.docdoc d579e990b4b7d3f7232f569d7bcb7f6f783d8019f52490d87a83c675e80570dbVirustotal results 45.00% Heodo
2020-07-28Informacion 2020 LK/525489.docdoc ae7f037dd7436f637bbb6f62f4a44f2dcf5ddbe56fa25edd87e054d203e34d27Virustotal results 44.26% Heodo
2020-07-28INFO-072020-J/51107.docdoc 9d32f23c8c61faa7b6ae9f24670750fe5414927f4755d59c5bb178b8bb4e0deaVirustotal results 44.26% Heodo
2020-07-28Documento 072020 730/974170.docdoc ed42839bc1ce973dc9b130fc3bf6f29300210d2351b6caae9b715bbaa5a50e8eVirustotal results 44.26% Heodo
2020-07-28FILE 2807.docdoc 8a738f0c09ef1ecffd48c04ce0e800a62aec2caaf3744b21f3a90bc56487e8dfVirustotal results 44.26% Heodo
2020-07-27Mensaje_072020_784779.docdoc 80c2733aec99f5aab73c4555949f84ae4ebf7369955d07fa9a0c4a8d06265fe3Virustotal results 44.26% Heodo
2020-07-27ZTT66008 072020 793_9417460.docdoc 89c0676d70b229ef63b2b04b4a00aec67e5b583e4d8ca3eb06434f7fffae1dbbVirustotal results 44.26% Heodo
2020-07-27Arch-28.docdoc 9b9fc48b3a867f41ceafcad4eb30f015f67a30ad192aae45018b530c6f4bffaan/a 
2020-07-27Documento 2020.docdoc a286e9a82e74a59c3b03dfefaf39ed3c8b2f2554210ce258c56e08cd486f603fVirustotal results 44.26% Heodo
2020-07-2722381.docdoc d5c02f77a90c627c04faa9dabbeb7271d11a7df0749d07af987994c830ea0657Virustotal results 45.00% Heodo
2020-07-27file-2807.docdoc 1a96354d5160003954ee2b2cda62e5aeb5d637ff5783111aa169ec5c84b4a422Virustotal results 43.55% Heodo
2020-07-27file 072020 N_300754.docdoc 1ab7b70f4feb30e25e1119bec4d481459f094ed3803c6b24e7556afb571523b7Virustotal results 43.55% Heodo
2020-07-27Documento.docdoc c5bbf4092543589c22f0825343fa7ce06916a0f4a79eead16b2319086e03753eVirustotal results 41.94% Heodo
2020-07-27ARCHIVOFile-072020-LMA_4432136.docdoc 8bcb81a90d9831d9b0ffd723b83b907cbf0011de32de2cb18c01cbd66b11d47eVirustotal results 41.94% Heodo
2020-07-27Adjunto 072020.docdoc f931ecdd63fddb3597805575a952305d5133e29719432007fbf0bf2d37e0ceceVirustotal results 41.94% Heodo
2020-07-27FILE_2707_2020_2420714.docdoc e9ef5c401b58fc9ea7f505e34f8ce812c324732ada0d7b7780bf19f93b360af6Virustotal results 37.70% Heodo
2020-07-27ARCH.docdoc c2c34b25ee57862cfaad4f1eee4460977129f70b097055b16335b6b811b9e2c8n/a Heodo
2020-07-27Adjunto.docdoc c95c6090d09b2bf633a11416fcf5b7793e2e36ff56f7324d043fa17731018f8eVirustotal results 37.10% Heodo
2020-07-27Info 2020.docdoc 7f76a60eab9cb36327a411c4cd41688749f91d4dc5d2a96d67dd0f5014c7fcd5n/a Heodo
2020-07-27Mensaje.docdoc 8fa61c14b58506dfe1b7a3c3c12fd9c1f2f04a9bd6dcaa601e0abbad0fd5407eVirustotal results 36.07% Heodo
2020-07-27Archivo_072020_3520.docdoc 2724e74f2e646517bae6fd23be4ef265cbd04e28b2a8238f81ee1d0ce0ebe8b7Virustotal results 36.07% Heodo
2020-07-27Archivo-4_08537.docdoc 12640f681aae67bb84177408d00d8b24b3427fb85efa12d176c943942b07e992Virustotal results 35.48% Heodo
2020-07-27file-2707-072020-OSJ/739303.docdoc 9dd13bb601afbcbe03fed0a99989e254717b41c6b831355db9de12ef0e4d938fVirustotal results 36.07% Heodo
2020-07-27ARCHIVOFile-2707.docdoc 025a673c09000f02defa8330ee5c1d430075f2918fdbd1ecdea827f0e8aa5626Virustotal results 35.48% Heodo
2020-07-27Arch_2707_2020.docdoc de789cbfc5169d49474acaac683d4bf3b7449dff7bf55258fbda7eb007368ef6Virustotal results 36.67% Heodo
2020-07-275859 2020 200-7083.docdoc 931d7f09beded99051b237bf32b08398ac9552e6671b26f125a076fde828f0a6Virustotal results 34.43% Heodo
2020-07-27Arch.docdoc 97d97623838ca0309b52374cbde712237cf5dbc88231ca253ec423645d49dd88n/a Heodo
2020-07-27DAT 072020.docdoc 98c11a216bdc4d5e83ebf6c0d5302d5947a9e15469c2f1cce3f772cb6a7e6f10Virustotal results 34.43% Heodo
2020-07-27INFO.docdoc e39269785585767c883341b5d3baebb1e7914575427027e4a1ab6e14982cc43fVirustotal results 34.43% Heodo
2020-07-27497.docdoc 3460f0592a41ef9b4590e874f0ccd62c553c91b4db676ba2adee16775379457en/a Heodo
2020-07-27FILE-89149.docdoc 29e44bfb19aab7ad4512bd7070682c8de6f6336b3edde32f2d853c0cc20d6fddVirustotal results 34.43%Heodo
2020-07-27MENSAJE 2020 M/30806.docdoc c8ddfe93a33470e36d777cd8154d546ceac1f2b81b436b0b14c6d47cf8587db0Virustotal results 34.43% Heodo
2020-07-27Arch_2020.docdoc aa628e05da1639757d952f9a82d683e9a332abbb4ab0ac4e4a6a4dfaa0436d88n/a Heodo
2020-07-27Documento 27 072020 9274.docdoc fce859c0f2c79954f706155931274a2b1f459b799c17ef48e6d83435c572a8cdVirustotal results 34.48% Heodo
2020-07-27file_072020.docdoc 7e367005096c8b3f267835a07445ee2da42934f0c812f5f04450433cbb749431Virustotal results 36.67% 
2020-07-2751777 072020.docdoc ae476dc84226859dea039560cb04e51ea1496660c3cf736699149189bf329ccfVirustotal results 37.93% Heodo
2020-07-27INFO.docdoc 4fd040f4ab1cfc69e33f019052d8b28fc9742162acae3d7159a3f258aa7cde6aVirustotal results 36.67% Heodo
2020-07-273743.docdoc e4430c0b297f9d07be6b990bc2819c5bd5f7f0ea4f7d232254a55ebb4f932ee5Virustotal results 36.67% Heodo