URLhaus Database

You are currently viewing the URLhaus database entry for http://vtff.ca/wp-includes/au6ihkf-3vq8cvi4zo-box/corporate-forum/LSePIa5vo1Z9-xklmoucx4peuy/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:420221
URL: http://vtff.ca/wp-includes/au6ihkf-3vq8cvi4zo-box/corporate-forum/LSePIa5vo1Z9-xklmoucx4peuy/
URL Status:Offline
Host: vtff.ca
Date added:2020-07-27 22:48:06 UTC
Last online:2020-08-24 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-27 22:50:03 UTC to abuse{at}liquidweb[dot]com)
Takedown time:27 days, 21 hours, 47 minutes Bad (down since 2020-08-24 20:37:03 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-29LIST 20200730.docdoc 1f2871b335efe5ee06248b343b34f9232cbdabce731ec603b9cf362d0b912fe4Virustotal results 43.55%Heodo
2020-07-29REP 20200730 312.docdoc dcb0d5886c4e43d1e46789d4fa9213efb3917724caac5574b7b3e508bfbb99a6n/a Heodo
2020-07-29ARC_SYB165184.docdoc 542a74294e9671fe5cfe6d1391707d43cbf80e8a06788fba55eaa6aaf6a7e0f2n/a Heodo
2020-07-29INF_2397.docdoc 7894435f0911559a26dff508b47295b2bb762b9812e13c08ea44ff6dffdbaf83Virustotal results 36.07% Heodo
2020-07-29MES_2020_07_29_F96874.docdoc 7d5c1b7ed02d907f282dc39417e607956d98cee471c6078c82ee8e32bade2310Virustotal results 36.07% Heodo
2020-07-29MES 20200729 P9154.docdoc 08ee7d8db7afb04c7aeb9d27e135aab610653bfa632d97a30ab85d68842bc099Virustotal results 36.07% Heodo
2020-07-29Rep 20200729 DWX6122.docdoc 9dbce8fd3bc06c6f6965bdb0d32cd55ae1f196bc57dc5c0622a0dee787ec66caVirustotal results 35.48%Heodo
2020-07-29Mes_2020_07_29_7539.docdoc 931a3d5bfb1c29aa10a516f09810d05a55e656cd3b05cce6eea7eabea9917453n/a Heodo
2020-07-29Inf_20200729.docdoc ac12bfd17290d68dd86ea22a43bf4f6f0ade51e8a38d377c20050add454536ecVirustotal results 35.48%Heodo
2020-07-29dat_20200729_TS483239.docdoc d009612760ad9dba467fc8f4cf70df7525b45c528a2e14a49cedbccd0203cffbVirustotal results 36.07%Heodo
2020-07-29Dat.docdoc 03995f7538079d2cf9ed7fc15f78b792be7d168150464fad150be2b2febbd2ccVirustotal results 36.07% Heodo
2020-07-29arc-152974.docdoc 5fd8faf6d8d21431151692ddeb69538dbde838d89d4bbd693e53867975550834n/a Heodo
2020-07-29MES 20200729.docdoc 22432edf35d5245c7e5b9613890819c87862cfee69167a8741e4fb2e3867479aVirustotal results 36.67%Heodo
2020-07-29Inf 862074.docdoc 4ab0e9516d22c69e933385ce50d6c53ff93fc423f33b0682afa52f1844271cf1Virustotal results 37.93% Heodo
2020-07-29list_2020_07_29_RQ336.docdoc 4174168df0202ec0fc0570fc65b4fe9fff2699fd99649dfd8cddb823e8efec6dVirustotal results 34.43% Heodo
2020-07-29List.docdoc ba70e5201cfbce20c6c71c9b53e47e758e4f13da5db46260d3feae0824f1e749n/a Heodo
2020-07-29List 6407.docdoc d076cf496cceee93a7feff09cde2c3debeca7167b511425696cb3a76f3ffc843Virustotal results 35.00% Heodo
2020-07-29Doc_20200729_M228378.docdoc 47482467cc04e69d03d51061b35e629ea671fcfdef9cd16b6beba53c363753a6Virustotal results 33.87%Heodo
2020-07-29MES_20200729_XIX585352.docdoc ffcdf6865a74947c31474d3e634fd2644a1775ab9917348a7be9d93bc333b691n/a Heodo
2020-07-29REP-2020_07_29-82647.docdoc 7cbce31cb7b0adf214bfd948d03f36d891140eff92af8f6ba70ef036800a2f7eVirustotal results 34.43% Heodo
2020-07-29MES-2020_07_29-001.docdoc 7002ed23f624161aa746fbf3cf95f9d95f8575af9b016ed41d3b8323f042b112n/a Heodo
2020-07-29Mes_2020_07_29_WH940629.docdoc cd987bab9d46a89430fb908a81bbdea51ef80e20f184c2e01e32d1bf2ebeee2an/a Heodo
2020-07-29inf 2020_07_29 EE5333.docdoc 84286b6fcd1ad93cf269c8291b8a71f65e5d71ad1194e5da2839aa19c6c72a9an/a Heodo
2020-07-29mes-20200729-BZ5502.docdoc d329eb19da1d2deda09dd814c9eb6a929f3c93df8cc530c9f2007d31b2c3bd99n/a Heodo
2020-07-29inf_UDA49430.docdoc 424bb85c7aeb485a5d5c0a1b73c7fbb050fb9d4c165c7306f43e89b19013c385Virustotal results 34.43% Heodo
2020-07-29Doc-219153.docdoc 3f629a6878b4ff4383a80723718f32ed1ab5e210433db014412cc12d5d1cdf3dn/a Heodo
2020-07-29rep-20200729-K46074.docdoc 646437eb438966cf74da4846b38ca3b6bd6378d4ddb17be5e6d525b91b498b1cVirustotal results 30.00% Heodo
2020-07-29Arc_401.docdoc cf46b40e6aad6e5bf2eb169493207fd6167e250228bd8c4ed5fed1ea600fc209n/a Heodo
2020-07-29arc 2020_07_29 Y20021.docdoc 9a4098702f77f9c17710381c6420db214a9ddd6bed24413d5e4e316176b2b756n/a Heodo
2020-07-29INF-20200729-OH55756.docdoc b06acafc9440a1f2036e66f3df5827f31e50da3ce6dc66114ea7a224c1b5fc9dn/aHeodo
2020-07-29LIST 7732.docdoc 8fe804416a77bba32e0c65d0aa4b17b862bbe3da25f5e27c7ff8e1685ac961c2n/aHeodo
2020-07-29List 20200729 873.docdoc 1d0bb5c581a0f8a3dc4f7ab5877b022219815e0e329934b45f2cac61d31cfe6dVirustotal results 27.42% Heodo
2020-07-29Doc-2020_07_29-3717125.docdoc fe2947d15986710cbddbb2552a05de1d18f25e9dd8bc62b3fa9ac26b14b1cb25Virustotal results 27.87%Heodo
2020-07-29INF-9807.docdoc 042cde9d3c9ac4c96b983c03041a6e00692b89b18888c3602b5d4ccba5f88670n/a Heodo
2020-07-29Mes 2020_07_29 836606.docdoc 86faea602286868ec996cf729e4ccae016707f4589c35ca444ad8e2f82c48071Virustotal results 28.33% Heodo
2020-07-29LIST 2020_07_29 12919.docdoc d80d4a17577b544fa7da9fb2fef8c39d77ebaf839456255a0fb4994148b0f00bVirustotal results 27.87% Heodo
2020-07-29DAT_20200729_02326.docdoc 4b66bb4e22f421f21ae63f70aa2f43f7952f0ff42459c7f15215a3c8615e032fn/a Heodo
2020-07-29Mes_2020_07_29_C985945.docdoc 9fe355810178fe930723ac4fef37d67ef5750d3ddb01e805896743dd09591345Virustotal results 27.87% Heodo
2020-07-29List-775126.docdoc 4cad41a2c94580e73badd4c35c2282597f7708204d5214f88c3f9972e3d99bbdn/a Heodo
2020-07-29Arc-2020_07_29-032.docdoc 4a491a72d63e81fa9c3c75f9a748ed7e305415689cd5dd082c6a41e6dbc78039Virustotal results 26.67% Heodo
2020-07-29arc-2020_07_29-T16867.docdoc 1d08f0b597c36bdbeff2046fbc31263ea2c4044af0e4040aae479badb1a900b2n/a Heodo
2020-07-29rep 20200729 6631224.docdoc a71a811fc1e212cf3595d9d66d1e1e6291221fc9a5520eeef7aeabd5bacc683an/a Heodo
2020-07-29Mes.docdoc 6a8bb6e77fb312e9755b5119e1f2d52a58b9f11f1ffdd96eb7c937a0307cc6a7n/a Heodo
2020-07-29Arc_20200729_14531.docdoc 2358e95d172df16e4ee84738952acac2857dd1c6ca1fd8d4f5a1cd6d3dec5b74Virustotal results 45.00% Heodo
2020-07-29file_80716.docdoc 18eb3a42e22bad4739e7e30656ea54d812b781b53f4bdfb702acc5e440a0b6dcVirustotal results 43.55% Heodo
2020-07-29FILE-Q9368.docdoc 820134a5637582882bafcc6aaee3741fded6acffba0751a562ebff93370f7a64Virustotal results 45.76% Heodo
2020-07-29FILE_20200729_CP0318.docdoc 581b3d0fa7b6ae23cef3a8e882801014964734eb92d18b457027199033b4690aVirustotal results 44.26% Heodo
2020-07-29Mes.docdoc f89b0ab3a3817bdaaca98ca6ebdd47fea5c4ee59872c90a4fccc23463d192e52Virustotal results 45.00% Heodo
2020-07-29mes.docdoc 2d0a50c2b71293e0d232856f5b99127f9a871bb9e7e2a731280462f0f48ad966Virustotal results 44.26% Heodo
2020-07-29dat_2020_07_29_836.docdoc 31a705c847b5a8e8e18857c0a1b1fd7ab4f65ad44d4d860c12c2001c25c67fd7Virustotal results 43.55% Heodo
2020-07-29File_2020_07_29.docdoc dc9ed541230e97a30f45695e066b67e80728f6963ada93b7fb8d9617a653857dVirustotal results 43.55% Heodo
2020-07-29Inf_20200729_5594933.docdoc ae55f67659dd8f44ccb77fc51e56174eadb421dab3bed4f02afb2dff2c783934Virustotal results 44.26% Heodo
2020-07-29file-20200729-LON683272.docdoc 915ae2165210e21055c3ce6e6c455943b75d0ab07c690a48d810bcf2ab79d0f3n/a Heodo
2020-07-29DAT-20200729-299.docdoc f108b93f8a51197e20952752105e589dac418d57b106df142a474ed7f8627354n/a Heodo
2020-07-29inf_2020_07_29_4136.docdoc 4939104d6ac747a434d08a86353fdba0f99fab4fdfc1fe2791945d8bcb3f8482Virustotal results 44.26% Heodo
2020-07-29inf-20200729-S5953.docdoc c5fe30ccdc224f47c8059f8abf775b896101e8e9d007aa2f41a9071562390b1eVirustotal results 43.55% Heodo
2020-07-29Arc 20200729.docdoc eeeffe5ba0fcb1fd64fc11747b2b463cb84f1acd64201609163da191e142aa36n/a Heodo
2020-07-29REP.docdoc 0a3991096a1362548e6de042c3174a436135be87ffc6fae6a721103ec9642105Virustotal results 40.98% Heodo
2020-07-28FILE-20200729-1125.docdoc 94ddcb3d527aa945321d1e706a0d7cdebe9b0380b2ac33918e02ae142da93a34Virustotal results 42.62% Heodo
2020-07-28inf-20200729.docdoc 560f5cc2d9a6a987bec2c57b8cacda03229c7f0fcd7542b764adc99d5f7e2f2aVirustotal results 40.98% Heodo
2020-07-28FILE 20200729 534.docdoc 54a962d82de3bdeb06f38850bc6cb537b3d35c6d95c97b7b1ccbc4948e0fb3e6Virustotal results 40.98% Heodo
2020-07-28mes_932.docdoc b08aee092cb3defc671949d65b32da80150ad60e64554f24eb25bea83ade4708Virustotal results 40.32% Heodo
2020-07-28File MLY9331.docdoc 63e8efafd895a3c81e6b57f8df7af0d841c821d7e99b7dc74c82906d3291365bVirustotal results 40.32% Heodo
2020-07-28list 20200729 30720.docdoc f37ae711b262ab3caff91d44e0ef517c066e9eafcff80cef84ac904d8efad0aeVirustotal results 40.32% Heodo
2020-07-28FILE-76276.docdoc 605bf230fa718f2bc3c8c995f36a5ab96b8459a24eb76edc6deb9ef97d9f9a0cn/a Heodo
2020-07-28MES-20200729-912792.docdoc eedf4533a63bc5838e513e7b015e80ab717a608090e7b3715c06a4e349cdbbf2n/a Heodo
2020-07-28file 20200728.docdoc d92a10a91fc1b1b8ac3bda947f552a110b71c174f5b3ab1db2aa711a7efa7eb2Virustotal results 40.32% Heodo
2020-07-28Mes_2020_07_28_HF9939.docdoc 14485797cc257a6a0ded3acbbe9cbdb0cfc7ca43ea9c23c35019ac229f70b098n/a Heodo
2020-07-28dat 20200728 869851.docdoc cac82767427ea3ebfc0e8f64c5f3d58bfb5a97ba333bf935631b378ac7e0378eVirustotal results 41.67% Heodo
2020-07-28MES 20200728 7427.docdoc c43a63602cb0b1dad2eaf7f04a744d632f94f40f19a5ee48afbe46d6898b573dn/a Heodo
2020-07-28rep_2020_07_28_JZV645988.docdoc 7dfe8c017d0ab4f45bff8329eac5216dd63d5f32323126740cafcfcab0444082n/a Heodo
2020-07-28Dat 2020_07_28 967.docdoc 8d20ef33d66a7420d531e21e7af2b64a56301b1569de8ff307b6326f38b73f69Virustotal results 41.94% Heodo
2020-07-28LIST_20200728_997.docdoc 7c91ca6956e0430bc2d4abb390650f3b92961c93f12f0d1da0410d68da768d81n/a Heodo
2020-07-28Arc_KO302482.docdoc 75d8adb84b4f6e8554293102bde287c1e4ebc2bc7baa0d8452ee8b75e14344acVirustotal results 43.33% Heodo
2020-07-28rep_20200728_BIR9334.docdoc d1b7f51229d1e6bec56c0b426de2ff60b9ba60b02fc5ab8cf28d9bee1dff2812Virustotal results 41.94% Heodo
2020-07-28Dat-20200728-ZP11701.docdoc 951647176f6bd4cc42c106ebe9e5a386a6a5213ba218d29c5e0b8b7c7ecac82fn/a Heodo
2020-07-28Arc-20200728-POP505797.docdoc 9a25233d8195a5b81c448574c1f555009c14b4e5e4291da25f9ab354b999a8bfVirustotal results 42.62% Heodo
2020-07-28List_20200728.docdoc c3fce198287aeca9baa15e4f439610e6592daeaf991b9d79ae1b83fcba18da89n/a Heodo
2020-07-28DAT I364873.docdoc 7062f6009b062252fc3dd1ea29d46265a166398e42cd997b8a8f72b1bb231350Virustotal results 41.94% Heodo
2020-07-28ARC_9429.docdoc f831057ed2e448c723eaa816ab8f6c90edeec0429c085392504a49779d7eb425n/a Heodo
2020-07-28rep_2020_07_28.docdoc 158fdf3094384b4ecf3ee77431720a6bb83c64ec46654f962933020abcbcf008n/a Heodo
2020-07-28mes_20200728_5734502.docdoc 3e6bedc906a69aff43fab9f79f7e1eaa50c23b8fcf6b3cff3238c7560a3e25efn/a Heodo
2020-07-28FILE_2020_07_28_OX375665.docdoc 807b670fda7efd99d81102cecf7b0dc2c45e05f674d17cda9002e6547ba288fcn/a Heodo
2020-07-28LIST-ZF45870.docdoc f898c2ac5936c81024e1c459a3c1ce7be3c0542d5449dab89009de372f814beeVirustotal results 40.00% Heodo
2020-07-28file_2020_07_28_4960554.docdoc 692e22a30f0b10567e27ca14e5502f9ea96a69e9a58c179252f8e174c0f263d0n/a Heodo
2020-07-28INF-ATI337603.docdoc bc8ed220d589f5b992b17855748e438261a53484daa608dddf8def5be64e0804n/a Heodo
2020-07-28ARC_2020_07_28_872.docdoc 96b92a507285aec2864fccdab3cd183d2a4fda565c812dc189511a085c96f0bcVirustotal results 40.00% Heodo
2020-07-28LIST-2020_07_28-BLA4555.docdoc c8892e7948064da3a177d91a7d657f17747d2b8ebaa0da44eb2ae0940ce5c2afn/a Heodo
2020-07-28Inf-2020_07_28-PVU308.docdoc 4545350210bf1fd8b012fbac3ea72c145dc9d12457597946a9e2b1c167659bfan/a Heodo
2020-07-28Inf 20200728 F457677.docdoc a37dc4182d7ffca273b56acbe0cdddcfec2f23b05fc1cb5fe0a551f58f7ecc7fn/a Heodo
2020-07-28INF-2020_07_28-U966335.docdoc 7c76382a386308e490c7bede412bce41103071c93c2908cb1ab8489eb302b31fVirustotal results 40.00% Heodo
2020-07-28Inf-20200728-916326.docdoc 49a829db25a031f897c810bec82adf3f2af0166b1d5043dcec07db0ba72546b0Virustotal results 38.71% Heodo
2020-07-28doc 20200728 HCE024.docdoc 0086265c2f4da7654f02494ee0cbf199fc621cd86d4d0b7ed80b5af62252209en/a Heodo
2020-07-28inf 4689988.docdoc 32d3420a3ec44a7ebe9c55ebcd1070229fcf426944443ded5b601f73462a73a7n/a Heodo
2020-07-28list 2020_07_28 85117.docdoc 504fa30fd0f82b9b4ca1ebd125ab22a5aaa20e50c9b2082e7a9c0b0eca53473eVirustotal results 36.07% Heodo
2020-07-28list_R567078.docdoc 7f901905cee7f7176e3a6118e01efc82181b58cada7801cc121f2d440c3781cfn/a Heodo
2020-07-28Mes-2020_07_28-LV8938.docdoc b870b219259344bb72c4bdd32ba533c06e9291028d123990fd46ebf4bed139b3n/a Heodo
2020-07-28doc 280.docdoc 8ad5258045f9c1ec73dd06d74b5b6157a12c15166fa0c8e2fc8106e78227af6dn/a Heodo
2020-07-28MES 2020_07_28 V10119.docdoc 98512d3cdde2d7ee7c25a7498e0b82cfe878002aeeb60bc8d9c1c77aa8230541Virustotal results 36.67% Heodo
2020-07-28mes 2020_07_28 76028.docdoc 2550a5c3df58e8632ee9c585e783c4e58113931859c01984fb707b11b1627bd8Virustotal results 38.98% Heodo
2020-07-28LIST-IF00361.docdoc 330726fccc1b858ccb1e4a089c3e56c7fb91905f08ac6da536160d625ba3531an/a Heodo
2020-07-28FILE 20200728 ATN35410.docdoc c777c2cbf20f13d04f0e4c21bd8ba2bc44cea5e4b2992ae58a6d6dfe6fb53465Virustotal results 43.55% Heodo
2020-07-28Inf_MHV29524.docdoc 6387bc4484750efab15cb9bc530a51f91ce86e20e43c10d496b70b4e3afd99bcVirustotal results 44.26% Heodo
2020-07-28Inf-2020_07_28-565.docdoc ef6ef0f8ef438897b207562f0d8b11883e9f757636f1a59848d19d93549a1eeeVirustotal results 45.00% Heodo
2020-07-28File-2020_07_28-X268.docdoc f17c0f459fab0492c863e99c1a5792ad48d11acddb5e049a6b4c39f99ce8b344Virustotal results 43.55% Heodo
2020-07-28MES-20200728-UK6604.docdoc 36a2dcdbe270ab3526bdea28407cfdec949c82215605a7d871c95f6803ef2eb0n/a Heodo
2020-07-28FILE_2020_07_28_DLM766.docdoc 9daf8a671b527a71c8a7a17a95ee2828e782aeb81f3e718acb747945a617bb2cVirustotal results 43.55% Heodo
2020-07-28arc_20200728_44917.docdoc c2c286c513606c5ebbc5bad98047dc2c6887966b0a3e972c7fc53bc25e1584beVirustotal results 43.55% Heodo
2020-07-28Arc-KM584.docdoc 4ca4d1e4470fc34af7ba6930b887d43ae19fcd3a58253e8e08dfca1543e49c7aVirustotal results 44.26% Heodo
2020-07-28file VS939731.docdoc 6f752dcbe61a11bdfe7b1b0d52104ba5efec6539f9588696876a091ae7feba58Virustotal results 45.00% Heodo
2020-07-28LIST 20200728 VZJ0075.docdoc 21dce6efb379371051277359737d8c090f5bd3feb2322f04fadc8c1da068432dn/a Heodo
2020-07-28FILE-2020_07_28.docdoc 1285ab067041ccc47554c1b6a78dd2ab191d2426e7242817235a92f1f674307cVirustotal results 44.26% Heodo
2020-07-28FILE_20200728.docdoc 88f424caef167c363184d8497774224063f29ad00f73366ac8d1cfe921b19741Virustotal results 44.26% Heodo
2020-07-28doc_2020_07_28_752246.docdoc ff97460ec476ba0b1dc6bf5044dc590c950725e79412fb75bcb38f37bf94e227Virustotal results 43.55% Heodo
2020-07-28File.docdoc c8f7207b776cd41fd7bbd4a9c1bba2c4c1161dc9a1e132d8754d87743107e43dVirustotal results 43.55% Heodo
2020-07-28doc LQ64749.docdoc 0eac07138b228f378cdcf932ae99d43434a3a644db3255f402e18a63335e9ff4n/a Heodo
2020-07-28DAT_2020_07_28.docdoc ae7f037dd7436f637bbb6f62f4a44f2dcf5ddbe56fa25edd87e054d203e34d27Virustotal results 44.26% Heodo
2020-07-28inf 2020_07_28 WC426834.docdoc a07b7087aa9e62580d3df6662c97f7827de42955fe766f0969af529daaee016bn/a Heodo
2020-07-28Mes_20200728_06313.docdoc ed42839bc1ce973dc9b130fc3bf6f29300210d2351b6caae9b715bbaa5a50e8eVirustotal results 44.26% Heodo
2020-07-28doc 20200728 14070.docdoc 65750bf28b7d4acf01b9eb045e261c88920a881299f29c97aff7ff4d42be2104Virustotal results 43.55% Heodo
2020-07-27Dat 20200728 RTN33858.docdoc 80c2733aec99f5aab73c4555949f84ae4ebf7369955d07fa9a0c4a8d06265fe3Virustotal results 44.26% Heodo