URLhaus Database

You are currently viewing the URLhaus database entry for http://bdub.net/security/attachments/cu4693452x0njwrf3ifxn/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:420581
URL: http://bdub.net/security/attachments/cu4693452x0njwrf3ifxn/
URL Status:Offline
Host: bdub.net
Date added:2020-07-28 10:18:35 UTC
Last online:2020-08-10 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-28 10:20:03 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:13 days, 5 hours, 44 minutes Bad (down since 2020-08-10 16:04:40 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-30REP_97531023239.docdoc c2353149e8b42357aa7f59fd18f92733852fd69dd14214d0841ba424ab241625Virustotal results 41.67%Heodo
2020-07-30BAL_WR3Q4X0YQRTYIO.docdoc c339ede6e08cef35a2de6c05bc44080a8944c3c0e50339ae6d2b06ff62228271Virustotal results 40.68%Heodo
2020-07-30FILE_NR6168721162TI.docdoc 07e19f3c256981e488d086f48552ee93a5b7d9148744edc670f477090ecfd5fcn/aHeodo
2020-07-30DOC_GQ0442420643LK.docdoc abf3f0d0c8e25c43257652ed660b34809810897f93877efc7f042e1c5053afb1n/a Heodo
2020-07-30REP_SD7110569256ZT.docdoc ede4d3f3f62948285291afc16d31abd1c17c5f9db3ceb0e376151913977749cen/aHeodo
2020-07-30KLP_3577CBR0R.docdoc 2fa814dd0c5fd6baf41a1dff861eee948734721c6155c4812ca40945d7432a07Virustotal results 40.98%Heodo
2020-07-30REP_PCV_070120_LOR_073020.docdoc fd2c870bab01edcb6af885cc070a9ededf595bb1b3613b83fb9313a3caf5e014Virustotal results 40.98% Heodo
2020-07-30ILK6T41MZ.docdoc fd052d7b77fd112247dd93e3ff96b40e88c95d0cdc0adb5b81a49e91d5fd754dVirustotal results 46.67% Heodo
2020-07-30INV_09426565.docdoc 84390b0c62fe199c631eafe739946719ae42dbac314d5e64d66023449ef31d56Virustotal results 45.90% Heodo
2020-07-30DOC_PO_07302020EX.docdoc 681cb1e7ae8b40c7324d2bbba75e03f1163ac50a9f758c51dfe08baeb73aa815Virustotal results 46.67% Heodo
2020-07-30VR6QG4C4UQS.docdoc 9e9555715dda88c203569f25907a61d8bcea375ee2236a6906bd606f33762d12Virustotal results 46.67% Heodo
2020-07-30RU2006719293GC.docdoc 5cce66eb35c678e6e308f4710a3504c100f81bf8744939f8ba6021f4ecf69c71Virustotal results 46.67% Heodo
2020-07-3047776479.docdoc cb444ef66aef4efe1813b7eef8e709ae166850ac751cb4128bdb9755369e6a41n/a Heodo
2020-07-30FILE_2661957003.docdoc 0479ae83eb218bd31e04e86eceee6d8e844e3a5875204a95943197b2fe0cadban/a Heodo
2020-07-30YHP_1528017173.docdoc 470ba1b6d2583b2e72b253d2ea565669b79b44cbb0461c99d65f5df9f8028336Virustotal results 44.26% Heodo
2020-07-30L_MFU_070120_FIR_073020.docdoc babf9bbe00be892ecb7b1d8774cc33a3bae77c5b3d414f640c3f136365acea11Virustotal results 44.26% Heodo
2020-07-3041979404.docdoc bc06aea71e46ed5e64ca7cf24f3b794f46b9371d1df13696a3dfe4096a3bb6acn/a Heodo
2020-07-3016686846.docdoc 13e73da4adc126fa03c4f6e776fd1e257e0f3a50809ad6b9402d9498da8a5ad1Virustotal results 45.00% Heodo
2020-07-30FILE_56X21KUXE5D8QM.docdoc d3925d4dce34de594b7873b36880de7be2b8cf95a583665c91ab3c660f18d292n/a Heodo
2020-07-30WYC_070120_VTT_073020.docdoc 876916b9592c5282a236605b7027f048d30f6b75e47dc12e7d5687f27a3e58e7n/a Heodo
2020-07-29BAL_60101640.docdoc ef354afa479fb3c2a19622cee6c8b67e9b54ff16871ace2f97bf8cf992883da6Virustotal results 43.55% Heodo
2020-07-29BAL_876087299258204399.docdoc 0bb41da3d7f6f972f06276bd500f8c8c520928871f48a3751835a23497658939Virustotal results 44.26% Heodo
2020-07-29DOC_75PK38GOJ.docdoc 247650d657b93cdc868b938cf09c549175ede9f04050b49bf731bf4187040030Virustotal results 44.26% Heodo
2020-07-29FILE_PO_07302020EX.docdoc ea1d07ae55467195b610358c91f9d4cb4f280d055e9a86158339ca3bdba8ca15Virustotal results 38.71%Heodo
2020-07-29UDG_070120_HGM_073020.docdoc c8587832af2d0ae412cb347a9a17c03c7e9c13139b338cf3091ea4fbc376d320n/a Heodo
2020-07-29YEI_070120_MSO_072920.docdoc 85586aed0ec99352b1a7641827523f66047222df673d56eaef2318e8cfe5d325Virustotal results 36.07%Heodo
2020-07-29VBOY_PO_07292020EX.docdoc 9699d65df4c2fe82af8b8dbfe2a0b1165432346f1be0417429b127a7d7346558Virustotal results 36.67% Heodo
2020-07-29QQC_PO_07292020EX.docdoc 16f48852b646cab90797038aae4ecb796a246b881639100a6535548ab71c5923n/a Heodo
2020-07-290PO640D4R.docdoc 98016cf022e59afad56592856dcbfc43fcd0070623f7a73f9af38229216dae64Virustotal results 35.48% Heodo
2020-07-29PO_07292020EX.docdoc bf3fd8c2ed0676122a6ef0ba1e01f28237e3b6f574b59b11d03a75cc5c683248Virustotal results 36.07% Heodo
2020-07-29REP_PO_07292020EX.docdoc 018beffb57923eb38dac054bea5fce0c4e9aca87f1971e226c7a7bacad5606b7Virustotal results 36.67% Heodo
2020-07-29REP_PO_07292020EX.docdoc e4618abf1620fcddaecb726dd2a7f7a095ca8fd8c270dfe8effd35c7f00f60d4Virustotal results 35.48% Heodo
2020-07-2945476927912227319154.docdoc f1175d64cfa9bd48060ca1c9a55ffbc0ea4e9c9f11f776735540a5df0cbf998eVirustotal results 35.48% Heodo
2020-07-29PO_07292020EX.docdoc 14c5e97b0dfebb4cad2ac17dc5fbaf4165d5fd95426afd142200c7ebf7d2909cn/a Heodo
2020-07-29C_07551405.docdoc 70772d8a081a64b2b2b197a5420031c3da09118a6906def96284253a85deb963n/a Heodo
2020-07-29FILE_BJ4442139217TP.docdoc eab8382b9becd262d347b0fac413cb0096a14d277206285af5e5ddfb459cec40n/a Heodo
2020-07-29S_VLS_070120_HDI_072920.docdoc 5913cb2a13acc0ebd04f43f136ca3952f406663bbd982b2a5931991565aeef5cn/a Heodo
2020-07-29FILE_9DVEDML2IW2O0.docdoc 3c7d9c79df98350453b9af83b1cb8a10f106701f13470785a485ac4d9a1744c5n/aHeodo
2020-07-29FILE_9DVEDML2IW2O0.docdoc 3c7d9c79df98350453b9af83b1cb8a10f106701f13470785a485ac4d9a1744c5n/aHeodo
2020-07-29L_ZHI_070120_YFH_072920.docdoc 2726f3839cf1006321efbabff9c5f63a660e6a9f854a27a0d4ac5d505aae31fcn/aHeodo
2020-07-29BAL_ZNXDGDYYVK.docdoc 75706826f0770002fd4702dc49371a0bc2164857deb80a9059cc97a65cc1e9den/aHeodo
2020-07-29BAL_BMV_070120_DPH_072920.docdoc 6fbae9bccf7687065cab8a4f08d6b3698f4d8224cf72ca4eb10032c0178766adn/a Heodo
2020-07-29FILE_ISR_070120_USX_072920.docdoc 2b446f962d60ae78cb353c325d1371e6526cb8315092524b2709b9c2eeae6753n/a Heodo
2020-07-29S_PO_07292020EX.docdoc 4a406747cc4af71f72229df7ddbd5c6858984101d67e93ab864273cdff151823n/a Heodo
2020-07-29VMIT3DJLNPCNPUY3.docdoc c2ac2bba78f3f27d36a97f527237ad4454b85b03bd0d8a1bd3c47c161c99aa5fn/a Heodo
2020-07-29FILE_JG7603226631UL.docdoc 0cbadb841dc2c7d6152c653d711cd5ac8ca759142231e728789ff256b2d9a7e4n/aHeodo
2020-07-29FILE_615170481365421.docdoc d74557f76299fc8edbb589b834ce1ee44477f4d4f1160a7b1e368648779aebdaVirustotal results 33.33%Heodo
2020-07-29FILE_PO_07292020EX.docdoc d32b9efd8f82427e98069b5a06bcde907a9f906406d27e85ff7741cc7d338febn/a Heodo
2020-07-29SG_PO_07292020EX.docdoc 3681daa87fcd7273080d8c9943be0e8f549075f23e2ceef7e89875649ad5a0efVirustotal results 27.87%Heodo
2020-07-29UTZD_QSNJGOS119I5.docdoc ea0c4bf37a77d48ec55e6fd331d26c6efd0c643194ff2c6919b8f975f0562e7dn/a Heodo
2020-07-29B_CO3182006571GH.docdoc e5f86234f39d86f44946089d600b3d4244a9e7f9700d6d0e167c8b8821b22e05n/a Heodo
2020-07-29PO_07292020EX.docdoc d760a46487725541e8c44463c4330d83efb97f55a550e307000db217380797e3Virustotal results 27.87%Heodo
2020-07-29806505381965376.docdoc 255028b13e1798a9210c65582ec63fe7da4f42e7a9cb9f68ebd049b60ebc6219n/a Heodo
2020-07-2972333791.docdoc 9be11fb35c708221d0f4907f606c0ac7320ceeba311812a57038841301e80a63Virustotal results 28.33% Heodo
2020-07-29REP_AZ1180623468AG.docdoc 88f400fbb72c120c9fa8173bc5f047a5e904164c21372b4164f9149f554d4891n/a Heodo
2020-07-29O_PO_07292020EX.docdoc 1257945161cce1eb5a26d2ae6cd6d914e96eb7e505d3f37a281f2d091e2a7a32Virustotal results 28.33% Heodo
2020-07-29REP_96124005.docdoc e8f499a49f0182ca1b86f7b7795f561d6739caf6baf7f884357657be05fc68bbVirustotal results 27.87%Heodo
2020-07-29RHL_74799861.docdoc 8ae3245b9d11f03d3275763f2cb4bcd2f27af42a9b03eafa5829b0dfdf47003cn/a Heodo
2020-07-29PO_07292020EX.docdoc c973cb08af272436c10c7665181ab3cb5ca566f5ddb70644ca92882b87d2b29bn/a Heodo
2020-07-2976865528098872.docdoc d303d07324f08db643e402e98153df70e6eac7c42905dd67d233231438bbe25fVirustotal results 26.67% Heodo
2020-07-29BAL_C7O6D8VQCHLO6.docdoc 9ab92090f841355a66c7a8807dd706180f5326f0ac8711a80b36953821641740Virustotal results 26.23% Heodo
2020-07-29DOC_PO_07292020EX.docdoc 9ee009dea50f0125325d62473cfe14613ca3098555ff14345600be9cb1add50bVirustotal results 27.87% Heodo
2020-07-2955709008.docdoc b3a825ec435cb3188c7e312d426ebb88fc14bf826a552888d2b27110ec074175n/a Heodo
2020-07-29REP_TIV_070120_YEG_072920.docdoc a1774a6485655119ea70b0979992d361b648420fb0b003439e52adff57c241baVirustotal results 48.33% Heodo
2020-07-298256487793364.docdoc 63b027fb3e70f8211fd1d27de7a473d4a8e4d4f7e19774275ac6a60f8b6e5fcbVirustotal results 50.00% Heodo
2020-07-29S2D3GESC2.docdoc 9e3690a0a71dc239833dddc5b2aa94983eec61d88a636aa96f12bcfac9898592Virustotal results 41.94% Heodo
2020-07-29PO_07292020EX.docdoc 841b0573eb354c63162df292f3292c397e7c3af636b97aff937cc635ca32524bVirustotal results 42.62% Heodo
2020-07-29REP_PO_07292020EX.docdoc f01b3323117582e282add297541e14c3b0d359ab03af884367f2d4c562750425Virustotal results 42.62% Heodo
2020-07-29FILE_AG8187420255CJ.docdoc 3de845b9dc4ad5aa22fd3587bf71351eda91ae61c1003f4df40c75bf422f548cn/a Heodo
2020-07-29REP_BI6401248596YG.docdoc 980577e89c6be7da4e2ef646205cb1338c565c48bd8d70aa2aecee178aa59e7eVirustotal results 42.62% Heodo
2020-07-29KQ5688557347FY.docdoc 6370801cfa9c5207d9891ac6bce41478e5f4d52c83922ec87b94af39195aaf65n/a Heodo
2020-07-29MT3578093506ZE.docdoc 1f19f1cc91f28959e4f1a099b4f6d11a2dfd3b5d5ecf73f596b764dfdc356b57Virustotal results 42.37% Heodo
2020-07-288943653761797467.docdoc 9e2785a9cb319ef1e1ae50d46ca804ae72583b7910a6c8fcd6bdafc8fd8ce956Virustotal results 40.32% Heodo
2020-07-28BAL_WFM_070120_JDK_072920.docdoc 26c4e8ead2701556bd3d09795db4bb4cd554b40cf9f30b9e76b7434c0e6e96fbVirustotal results 40.32% Heodo
2020-07-28FILE_26526235.docdoc 99b2b5aaa43315869607123def2b0263ccfea7ff610adf6c2ea919663ea4303fVirustotal results 40.98% Heodo
2020-07-28FILE_FGI_070120_CIQ_072920.docdoc 50563ca2e8c59a4a909655f6fc73f1b3700042972dba5cf08ccd036321098da5Virustotal results 41.67% Heodo
2020-07-28FILE_2BTY64YVZ9UUYCLL.docdoc c90b4d39e32acc86e0a7e4a43e30283550d82b6d61d3565135fb62a930bc3654n/a Heodo
2020-07-28INV_75319451755.docdoc 942f521ccdd9490b25a14dfdb03ff9e8ff7bce4d9d0ad9c5a5fe684216b81579Virustotal results 43.33% Heodo
2020-07-28R8V5OCN3UQ4RF.docdoc 462d953bcff28b211276e898a81f38ce8cce30d3643e78580610b85d2be8daf8Virustotal results 40.98% Heodo
2020-07-28DOC_095331596142425308115719.docdoc 040eb6591f2ab93e8868b61948d73fe36651ee8af6e4f2ee985708a9ec43126an/a Heodo
2020-07-28FILE_2441309246340738104.docdoc 3b37651a73e7c5c4c966ac34a4b38a9e69d7eed9f17e276b8f84f43749cfc70fVirustotal results 40.32% Heodo
2020-07-28INV_VMA_070120_CFF_072820.docdoc 9ba684d3bb94c46b9c7476bf8ea2ecba98cc9e6975bb465242081e17e69ff0b1Virustotal results 40.32% Heodo
2020-07-28VVGJ_8422170489859.docdoc 87135faebfc31f34c94e02ffd43281b0e6cc7055ec6ef5eb5d60b29df1009c22n/a Heodo
2020-07-28CPX_070120_PTN_072820.docdoc 9bf049c3356bbba6bc9e82bd698a785902daf6069e90ac638d402f83c4cd9d59Virustotal results 43.10% Heodo
2020-07-28F_JE3MP337.docdoc a103dc583f29fa071262c2feb288b6b97f617c75199c576f034a0502c31c6491Virustotal results 38.71% Heodo
2020-07-28BAL_87391560.docdoc 4f68ec384213f86c31e2e7fa948ef7e0d8c37374f78669ea5830a7e037e9645bVirustotal results 38.71% Heodo
2020-07-28DOC_VGZ_070120_BMO_072820.docdoc eada2a0c60cce5cde99882949dd1809c88378de39baea3b532635411598c1f9cVirustotal results 38.71% Heodo
2020-07-28BAL_PO_07282020EX.docdoc 3615380736188fe0625c45df6c98b644a1958e722b1ba3baf0ef861c09ae4efbn/a Heodo
2020-07-28REP_18866804.docdoc c0abfc654f0e7e781bed0aaae89924773004af65aa46af36b80189f7368edb64n/a Heodo
2020-07-28FILE_7075744230546373082139.docdoc a6858e9165456c23bb7896862f4d3ec153bee00b02c3b2598e0f8f1cd3cb1b39n/a Heodo
2020-07-28REP_PO_07282020EX.docdoc aee8c34f1c430fedfc697089732e0d51939863f4253fb7455be1773ffea8de0bVirustotal results 42.62% Heodo
2020-07-2871DC3F3HW5M6H.docdoc a44f6b82eb6565507c10805b73d3bee4da269d02c659532abe1f4a278c9446a4Virustotal results 42.62% Heodo
2020-07-28FILE_PO_07282020EX.docdoc e0c8706f01f812beb106bfb124ddad3456dd4e33159910d1c9588ac63e00c2abVirustotal results 42.62% Heodo
2020-07-28INV_78908640901.docdoc 181a733145822f0c1256bd24fd8e19ff7f1217f6166e56dafb7075bf6fc54a06Virustotal results 42.62% Heodo
2020-07-28N_IT5554269619WT.docdoc cfe67567737aa3c2dcdec28c0d6873e5e340c8ad049faa917c527f54e1c1875dn/a Heodo
2020-07-28REP_NXQ_070120_XSM_072820.docdoc e85502045fec3d9af13567ce4608221f4b92f8b0262e4bae4dd305385079e63bn/a Heodo
2020-07-288484542696443.docdoc da3bcdea8cc3b33756792fdfa11bdef92dd36e4620ada8b660fc12cc211b4281n/a Heodo
2020-07-28L_28154634200.docdoc 3ede822580b26357e4126b461a884666c12bb750fc30415502dfc452f5b04c30n/a Heodo
2020-07-28L_49335678.docdoc ed68893c9c4a4e3abfcfa85ca077b8d013605d2994fdd6c42b2858cdc2bd30d8n/a Heodo
2020-07-28BAL_PO_07282020EX.docdoc d9e1b8b8313a688c0096c914d0cc62aed82170a3e85263d69ef058de2d978b15n/a Heodo
2020-07-28H_55341832042328794394294.docdoc 2099d5d04c39f86f1da8058861951deb8c6ef875e5a77272709f711e80a3d998n/a Heodo
2020-07-28BAL_MEJ_070120_YKT_072820.docdoc aa5f1c9ba21577549daac728f105950663fa787b94f266a50602a7ba43772e99n/a Heodo
2020-07-28BAL_MEJ_070120_YKT_072820.docdoc aa5f1c9ba21577549daac728f105950663fa787b94f266a50602a7ba43772e99n/a Heodo
2020-07-28U_AVC_070120_PTW_072820.docdoc 4fdb97a98c47101b9d2c0308f3c3a9d4fd53c97fd7a0d7937ee3f292c51f8757n/a Heodo
2020-07-28Z_20247947.docdoc d831fb7e6ca7099b615f50a60fca9d58ca6307bb95d592dfdd1c793b267f7f86Virustotal results 39.34%Heodo
2020-07-28IMQ_070120_TDS_072820.docdoc 0908f65f4fc6bbc55135748a1dc9f8120e504195f01caefafb80e6d7639f32c8Virustotal results 39.34%Heodo
2020-07-28SJ_LQY_070120_RMO_072820.docdoc 8a02a02bf39b80d809da634fe105c29a2b012acfa59c4eaedd94360fb5fbd2e3n/aHeodo