URLhaus Database

You are currently viewing the URLhaus database entry for https://healinghandsonthemove.com/wp-content/2rugff7-99v83-292980/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:420529
URL: https://healinghandsonthemove.com/wp-content/2rugff7-99v83-292980/
URL Status:Offline
Host: healinghandsonthemove.com
Date added:2020-07-28 08:12:06 UTC
Last online:2020-07-31 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-28 08:14:02 UTC to abuse{at}online[dot]net)
Takedown time:3 days, 1 hours, 53 minutes Bad (down since 2020-07-31 10:07:23 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-30invoice-4423-21664324.docdoc 84f1793acc6d7c229aed03c0334fcb223eb89415c1d96b08822e988c1a5652afVirustotal results 45.90%Heodo
2020-07-30Inv F5-2089256.docdoc 12d1ea6204e341522115a4cd2fe28cfe7bdef98bfdc7acd4be32e011346efc60Virustotal results 45.16% Heodo
2020-07-30INVOICE-BQ5-270844040.docdoc f4d52208d0fd2707e843bf4a52e06c7fde9a9f0d8098e5915ad4ab18a7234e01Virustotal results 45.16% Heodo
2020-07-30INVOICE-LQR6061 921375909.docdoc fd4e7761b18405677fc5c8737a34ace11283a0c1503a19a20120c9f36af7c004Virustotal results 45.90% Heodo
2020-07-30invoice_Z33_46179258.docdoc 808e181bc8367c61fbab3edac1b3594b5832baaa5f8a4a6778ea65a11d3738a9Virustotal results 45.16% Heodo
2020-07-30Invoice UX0-82817356.docdoc ecf4ab854d4a1e6a7ba13db64e46d84063213d4f414e2306bcf480eeac13ad5dVirustotal results 45.16% Heodo
2020-07-30Inv-USJF756-4309851.docdoc 410fc3586735016b4a85f730247561c37c51d8887f07200730fe831c5fd58324Virustotal results 46.67% Heodo
2020-07-30INVOICEUDTF9452-0831922.docdoc 1a9250e336b85ed5971242f5611efb67fa4554cc3354854fea2052257bbcec08Virustotal results 45.16%Heodo
2020-07-30Invoice_D859{:REGEX:.docdoc 1212a1ce970bdd52e4385228d90f2db5a5a3a3958bec83f80593a344b1ac9c96Virustotal results 47.46% Heodo
2020-07-30Inv-JQ3 7506940.docdoc 1a36bd245a9053a5742fb8aca3169f91382921c429bc62eaef3471cb4bfc743eVirustotal results 46.67% Heodo
2020-07-30Inv-JQ3 7506940.docdoc 1a36bd245a9053a5742fb8aca3169f91382921c429bc62eaef3471cb4bfc743eVirustotal results 46.67% Heodo
2020-07-30Inv_DI14 58589964.docdoc c9014beaea9142158349ccc46c86a73d289d55d17cfa3c02669b26b00aa9faa3n/a Heodo
2020-07-30Invoice_440{:REGEX:.docdoc c444016d70224a2cb4808352f39232719d705243dbaf2321c3aed6cee511890fVirustotal results 47.46% Heodo
2020-07-30Inv-013{:REGEX:.docdoc 4ff286a06a66c0c8d7c44bbb7c1be4363222a33701847a86402bce22e085889dn/a Heodo
2020-07-30invoice 492-298284.docdoc 981ce108681f9a7d192ab87f86b3442976f338e3118d533037a965c0cf00e601Virustotal results 45.16% Heodo
2020-07-30Inv_NMM9-20103569.docdoc 47c3d5ad152badf3a17ebce781f3d060a059bdb107a1b8c7726469a95025e911Virustotal results 45.90% Heodo
2020-07-30Inv ECIQ05_562221.docdoc 0daff577173686557b6c179acf668ffbbc64cfecd2545ded9102108e81b557e3Virustotal results 44.26% Heodo
2020-07-30INVOICE 1255_769728161.docdoc cf7363d569abe51412e602a505dbb2d3604aaf97ee7c71db42e66b09224dce54Virustotal results 44.26%Heodo
2020-07-30invoice YXHY7141-54512018.docdoc 72244c8748d1f0b37e10ef8b0f5be0624ea7ac975aa1214281b4f326e6b2f4b2n/a Heodo
2020-07-30invoice_GAT7 293111.docdoc 9682cb3fed20b168899452201908168de9b2c2d82530d7227a4474b8b2587eb8Virustotal results 43.55%Heodo
2020-07-29INVOICE_KYD5583-554515549.docdoc 51077cb5f430fd81fc483c397d7619718e338949394dabaa9ca2f95283c1e1ban/a Heodo
2020-07-29Invoice-72{:REGEX:.docdoc bab5c1d78dc95301e33f2feeb7364a84411aed85ded73a18e6c108ee554ffda8Virustotal results 44.26% Heodo
2020-07-29invoiceDPXY58 8478119.docdoc b6eb1c7760e06c0bf914bc6f8d26d4aa98a1d859d71fed9d6712db95af81f5f0Virustotal results 44.26% Heodo
2020-07-29Invoice-TI095-9079995.docdoc 1bf7b884965fe118224269d25022bb33f7a4cd50fee399994fe4c1e7058ade39Virustotal results 35.48% Heodo
2020-07-29Invoice_3586{:REGEX:.docdoc 4e5402409bed2c6052e6cfb0cd998f3b88be85d561edff6ee16212a4df9d844aVirustotal results 34.92% Heodo
2020-07-29Invoice-XE738-71750358.docdoc 0538723c17579616d35fe643f326b6b5b81319f1e5081079bef5cfc6cc2eefc3Virustotal results 36.07% Heodo
2020-07-29INVOICE-NJE6297{:REGEX:.docdoc 9a2096146b8ace7eb4e64e5a25cf48da7bfe891b37e48e83edd349cce12d5628Virustotal results 37.29% Heodo
2020-07-29Invoice 931-1695118.docdoc 99a504a30bece5a880e6faf4431f7bd547a33701313aa16a4a822fc0e33ce09bVirustotal results 36.07% Heodo
2020-07-29INVOICE FGM9626-89813992.docdoc 2a178649b3301b5f81622dac20cf41286c1a23d07f45e13eb923d9463304b9deVirustotal results 35.48% Heodo
2020-07-29INVOICE 905-775648325.docdoc c9908873e05408d13895e8545fd5b9e3eb95032f5e363086b19e6a14a8ed7075Virustotal results 35.48% Heodo
2020-07-29Invoice-SJW93-396777481.docdoc eedf761aed061fa63744aa541d5ddef3b7d53978fd00882cbf9fb0f88bd82550Virustotal results 36.07% Heodo
2020-07-29Invoice-YB01 785996.docdoc e71897829455d67c03b3f1a81795720974786866c4cbcdc3b93be5cd01c9071fVirustotal results 34.43% Heodo
2020-07-29INVOICE-MA88-947712365.docdoc 38e80b0ed74809100ac711b189643d3ac91d40765de74775422214356f3aaa49Virustotal results 35.59% Heodo
2020-07-29INVOICE_B4-79871234.docdoc 46b27d851f8ea31388578137b73c02cc59fbcec6f937c4a0689021ea674d3b1cn/a Heodo
2020-07-29Inv_8 89780489.docdoc b5e65f690a51a97610634680214f404d66b45404cc14e197c1293762ad27d24aVirustotal results 34.43% Heodo
2020-07-29INVOICE-K0566_030988316.docdoc e9c41a03b0a30df94da213516e68cb7f81634c2d04fde2f5fd4f4b72d0e58b79Virustotal results 34.43% Heodo
2020-07-28invoiceNTMJ81-291038.docdoc f283cb738942ac85f6e135b28670c73f03c5f977378e3851ff382a2306cbd798Virustotal results 40.32% Heodo
2020-07-28invoice3_236553.docdoc 2af62c922c82f736f1dfcf0bc6799c7025a2aea2d89f7223d5796490b0273e1aVirustotal results 39.34% Heodo
2020-07-28INVOICE-6425-092937467.docdoc d8bcb4165e814fef616f6c705444927efbe205f881fd57a1b90d81ac8d47d3b4Virustotal results 40.32% Heodo
2020-07-28Invoice-32 789729.docdoc bb09803b91bd4527446eafd35c66e11a9092b12056ace9299977808db3784509Virustotal results 38.71% Heodo
2020-07-28INVOICEZQAQ009_19689875.docdoc 9c73043d5af8f9d48462a721f5c67faf796c7fd976d11908067c5b044f46b3daVirustotal results 38.71% Heodo
2020-07-28INVOICEQH484 09925379.docdoc 9f93a52e0305156143b2994eebbb6bb1298eab091d7dc6f48d4b9a5cb3a13ae9Virustotal results 39.34% Heodo
2020-07-28INVOICE-SR14-125981454.docdoc b2a50e342d521e424f1a64b354514cc9fb86aa58abbc79ce09bcea7addeb914eVirustotal results 39.34% Heodo
2020-07-28INVOICE-NI5-75546839.docdoc ae871d6657f4d4ad85285e195272671aa0b1a7d90298dc3cc8b51776bc3b89b7n/a Heodo
2020-07-28invoice-2-5814706.docdoc 54171a3ad4b125dc2795767c4e783e474bddf5f973b21bfaad94b3d15057b763Virustotal results 41.67% Heodo
2020-07-28Invoice-MFBY950{:REGEX:.docdoc 6d999dfe69d783e6e9b8a6eeee51c63a506eaae2282b2abecffc44e7d10d8e7cVirustotal results 40.98% Heodo
2020-07-28invoice_G3325-16959748.docdoc d5a55752f9452d65fb1bcc70ff301223ffd27da8c8f4f18fa39ff339e7d135f9n/a Heodo
2020-07-28Invoice-HPV96_774069216.docdoc 88a7197906a0c91198d4bc95fea5b61dcadf27876ad28df79fcf62a901d552b5n/a Heodo
2020-07-28Invoice-HPV96_774069216.docdoc 88a7197906a0c91198d4bc95fea5b61dcadf27876ad28df79fcf62a901d552b5n/a Heodo
2020-07-28Inv-Q32-314011.docdoc a28309546b80d9907ee46705e00deb3d85098104e09a67a53bc44b570e78b49aVirustotal results 38.33% Heodo
2020-07-28invoice 2002_966909.docdoc 729edb668aad1ca07a75fa35640403504dcbb3ede22a3bd35e152450356cac17Virustotal results 40.00% Heodo
2020-07-28Invoice-NLF4267-432240.docdoc e52ae273e17e7cd26ef810a7f38abc407a466715862507a2dcf2aad4f5c97197n/aHeodo
2020-07-28Inv_Y4851_03834212.docdoc 3a9e317df6bca0078b72df4c0e292f1c7f502a636e0f55362d422ab1ef9696e3Virustotal results 40.00%Heodo
2020-07-28invoice_ZS39 305733.docdoc 791f6f499c5e72ab19adbf2bd1ba058a77b2ecb290b28905f894eae542f349a7Virustotal results 38.71% Heodo
2020-07-28invoice-R3{:REGEX:.docdoc b123754cb0c0b2c313cfcfce43b1bde259d43634597cf929a3d16b85a296bd65n/a Heodo
2020-07-28invoice D7115_993088.docdoc 9253f237b8347b94a59e6134ef2e9808358c0e51d421d0e78790199fa5b2f4efVirustotal results 38.98% Heodo