URLhaus Database

You are currently viewing the URLhaus database entry for http://uniteddatabase.net/wp-content/hmy-a6-390220/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:421769
URL: http://uniteddatabase.net/wp-content/hmy-a6-390220/
URL Status:Offline
Host: uniteddatabase.net
Date added:2020-07-30 02:59:12 UTC
Last online:2020-07-30 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-30 03:00:05 UTC to abuse{at}hostlabs[dot]com,netops{at}hostlabs[dot]com)
Takedown time:14 hours, 29 minutes Good (down since 2020-07-30 17:29:10 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-30INVOICE1487-495753.docdoc 89e20dbcc8e8d14df0055e98cfd6bf380fa8cde12d9cbc1045ed4a521c08496bVirustotal results 42.37% Heodo
2020-07-30invoice_702-655805.docdoc ab10cbb6f714528b4ad15065cea6a610a87ca305ec3ae010d56adfce1402e1e8Virustotal results 42.62% Heodo
2020-07-30InvYNX9337 952744228.docdoc b2b5bb52775d354ca1f715aea58d03f84ed213c90247c3ad861790ac7483b976Virustotal results 45.76% Heodo
2020-07-30Inv-4{:REGEX:.docdoc 46d310c17da858517554fcf0b0167e0a7f33f71e6bb42873207343ee1ba29b09Virustotal results 45.00%Heodo
2020-07-30invoice-UY0_291169411.docdoc 57cd3c6667afd66293fe85bc6632764caa8217677ecf64f34c72677367fd9472Virustotal results 46.67%Heodo
2020-07-30Invoice-HO9-31444066.docdoc 31e02df81ef4d7cd44122b4d0d8b07c239132dfdc5dbaed717a55ebb94882921Virustotal results 41.67% Heodo
2020-07-30invoice-Q2047-27527148.docdoc 8d9bb420fd3f8a710096cf3e67e7694308cf65921bc6f9ed1870825d2e1c0d02Virustotal results 42.62% Heodo
2020-07-30invoice_92-0230703.docdoc 0d0820ed1377acb49371be2490c66337dbe5378e85d7a51ed6aa145a685809f0Virustotal results 38.98% Heodo
2020-07-30invoice MYL504-0072302.docdoc 1a4043602dcd5e5f442a5d9e911aed05f79b21aef9caa80b4b147d9c6f937e28Virustotal results 41.67% Heodo
2020-07-30Inv_DD4443-57499883.docdoc 21a222d08e717f2970e877f333986711cd59ef25eae1bc0baf053d003df59f25n/a Heodo
2020-07-30invoice-OKBC61-18721852.docdoc 8e78935c6ae4c5164c54350ae754eee471aee652bbc37521c1fe2706c62303e3Virustotal results 40.98% Heodo
2020-07-30invoice-JZI8_950730276.docdoc 5217ac4d4844f46408d93f03a543551534ccfe73887beacbaea3ee0c0c2eeecbn/a Heodo
2020-07-30Invoice JLF812_38435746.docdoc 4fc258e1d97be191b9316641ade4df2be7dc40501cbdb9e2d495abfdad6f8426Virustotal results 40.32% Heodo
2020-07-30Invoice-WU797 4925271.docdoc c171e3eb929b57d92d6a1a2e4e81a36dc1233be6abf5dce5e51dac677ec50017Virustotal results 40.68% Heodo
2020-07-30INVOICE_HO97-05537797.docdoc eff2527b0d1491dcfc46be3cf12fb6a749988c8c869f06e9adadc236474b60adVirustotal results 40.00% Heodo
2020-07-30Invoice_LF0-40835335.docdoc 917e50fdd6263927050a585d76924748310f1cb1fb4e7612e7c5a385f0c373d0Virustotal results 41.67% Heodo
2020-07-30Inv-EE4-956881157.docdoc 84f1793acc6d7c229aed03c0334fcb223eb89415c1d96b08822e988c1a5652afVirustotal results 45.90%Heodo
2020-07-30Invoice WQG5 802670.docdoc e66e3c05c9813a7da90cb5090c3b35bd492b557b83580d7f5f7592f0dee64d90n/a Heodo
2020-07-30invoiceJE9{:REGEX:.docdoc fd4e7761b18405677fc5c8737a34ace11283a0c1503a19a20120c9f36af7c004n/a Heodo
2020-07-30invoice-0 034797520.docdoc aa6bbf739a15097060f35839f8bedf662f371e5d1f27dfacd0bd8863b46ab1dbVirustotal results 46.67% Heodo
2020-07-30invoice_P22_477261.docdoc d7f5fca8f5de440dff815ea87b1b67a6d1a22028f8b39363240ebdb3cc43479eVirustotal results 45.90%Heodo
2020-07-30INVOICE-BMJW146-44205777.docdoc 7579d4a1d6d4da73019950ba9cd7de417560465889ccbc12fffbebff6b87ca3cVirustotal results 45.16% Heodo
2020-07-30Invoice-949_9708632.docdoc fcc525f6dd0c743849afb4e000a0829d47f24999eea8c8689721e2afd70df51bVirustotal results 44.07% Heodo
2020-07-30INVOICEV1{:REGEX:.docdoc 35dfa0b9a11dcd3a2920e7da86c66da6b2b94ab67c9aac6e3743e53bd3346f80Virustotal results 46.67% Heodo
2020-07-30invoice_BEW4-191362.docdoc 1a36bd245a9053a5742fb8aca3169f91382921c429bc62eaef3471cb4bfc743eVirustotal results 46.67% Heodo
2020-07-30Invoice07_74733024.docdoc df1063c155004f08777c7bf91d18f44c2529b0736a80bee492c957f99efb23bdVirustotal results 46.67% Heodo
2020-07-30InvoiceISSN8906_48335573.docdoc c444016d70224a2cb4808352f39232719d705243dbaf2321c3aed6cee511890fn/a Heodo
2020-07-30InvN25_42725340.docdoc 9a8f438d67fc21b41ed272e536678baf70653b5c7c55986ca9d59569ee046e49Virustotal results 47.46%Heodo