URLhaus Database

You are currently viewing the URLhaus database entry for http://hertronic.com/modules/report/dumhok/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:422364
URL: http://hertronic.com/modules/report/dumhok/
URL Status:Offline
Host: hertronic.com
Date added:2020-07-30 20:19:04 UTC
Last online:2020-08-03 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-30 20:20:03 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:3 days, 18 hours, 48 minutes Bad (down since 2020-08-03 15:08:21 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-0121769241.docdoc ef94f112784b83596fcc0ff3821d586cbc216cc3c4c8fbca25ada751d52531ceVirustotal results 48.28%Heodo
2020-08-0151354460.docdoc 94740399d4f82347d284463c29d6bd05a288b65a122efd5f8d8b379ab5979a80Virustotal results 47.54%Heodo
2020-08-016643931600006805.docdoc 7b6a76a3a932265f067c2751c8bd6647327d0ec5bd95563dc3dc38d797a1469eVirustotal results 54.10%Heodo
2020-07-319D5J8E852QK8JK.docdoc 3d313d6dc6fa20a7e7637af1c94de520d97a71eb8fb1e68a5f6f69054d801469Virustotal results 48.39% Heodo
2020-07-3167481177.docdoc 9456039c364736bdf22944149b090434a866653ea7d35b78376b4b84c9150cc2Virustotal results 47.54%Heodo
2020-07-31INV_PO_08012020EX.docdoc 4834d43a503e5a10693dcc514692016c26b9084f17b258a3505a4e44ac893db7Virustotal results 47.54% Heodo
2020-07-31P_NH8806537415UT.docdoc ad5d63edee98350ce19edb0c144dd79079865cf72f2e092b91678a77835f10c8n/a Heodo
2020-07-31ZO_GSN_080120_OZG_080120.docdoc 1e4b706d611f935dd5aaac2b97e921c9c1df152d9dcf98127840b7c0e60348eeVirustotal results 47.54% Heodo
2020-07-31INV_94251514.docdoc a3667171b7c4b632d7241b65287398007d28c018697677f2bac729d91af17b06n/a Heodo
2020-07-31YQC_PO_08012020EX.docdoc 7ba9d770d237bd49b68182d551c5f73e2f7c00bbcaa22bf9c1107ca4dfd2038bVirustotal results 48.33% Heodo
2020-07-31BAL_49011356.docdoc ef664c354f361e0467d36c08c3bb3563f1408bd30c865fc1efd73237b7a26e6cn/a Heodo
2020-07-31HMSM4Q3PEXMTFQY4.docdoc b8bfd8aeeecb2b89d552fc7eff04fdab32f7e6675220e7aa1a769b9b3e2be01aVirustotal results 47.54% Heodo
2020-07-31DOC_88194531104.docdoc 3947bd34b6f2fec52a9609289b39a5cc036db860016d3553cf90ca47e3e2c89dn/a Heodo
2020-07-31INV_GRV_070120_PST_073120.docdoc 7f9ca2eed49a599b0f3f58c4641986960b01e2ca4fbd9212625d076abd9a665cn/aHeodo
2020-07-3174258302.docdoc 1c7fb0365b6f9cd1e00b0dccb2e645c1fb14d01de04be70f4206067f1b11fa36n/a Heodo
2020-07-31PO_07312020EX.docdoc 70924fc6c621c4d89c01cf966e0759c7efafb358fdfb087b76ac091cc5cef356n/a Heodo
2020-07-31TY5889104244KO.docdoc b7164e5314e8030a20bba3ddacb9030ec7e6b8459ce2a1643f6181eefacacfc1Virustotal results 47.54% Heodo
2020-07-31DWV_070120_JPH_073120.docdoc 5f3764a42ab9cc52fdd195dbb18957316d72bf382a89b998df3186f4635aa55cVirustotal results 46.77% Heodo
2020-07-31DWV_070120_JPH_073120.docdoc 5f3764a42ab9cc52fdd195dbb18957316d72bf382a89b998df3186f4635aa55cVirustotal results 46.77% Heodo
2020-07-31BAL_QNLO17T.docdoc 53b0406efd3043bb9a82034aad1061ca92952b9d1a9111ba31afbc95d47076c6n/a Heodo
2020-07-31BPQU_BECT5FVWKM9ISEK.docdoc dceb5b8b6fd90ba513228d28e9974822554f82b68f9a64f54354d5b7160509b7Virustotal results 46.67%Heodo
2020-07-31REP_MR8833812583RP.docdoc 55da5c5eb03990c56ace11826deedcc82fe9d5f1a0fa6055575be6d9830f85e2Virustotal results 46.67% Heodo
2020-07-31E_JA6543391979LK.docdoc f80a9bd6824051ce31bca33d780bad5432bc302d34f4c115ba09c170953aef77Virustotal results 45.76% Heodo
2020-07-3126835706.docdoc 912cfde07319c14a61233144c7f079d0aedc495c068e5927e1cde8edec091442n/a Heodo
2020-07-31BAL_BA8903076840US.docdoc 9a9cd71793b09f981ba4404a0281b4443309cb521fe6096f5df138502daa01a9n/aHeodo
2020-07-31FILE_PO_07312020EX.docdoc 504834100a9af027c208a0a9b1f6b09b526c4e6d4925f4bc15e4c30a6c6edcc0Virustotal results 43.33% Heodo
2020-07-31INV_54729986.docdoc 127fa40b14c81fef6ed0e72adc7cf5737e043fddc7e3a9d7904c91737b2c21bbVirustotal results 41.38% Heodo
2020-07-31REP_PO_07312020EX.docdoc 74c79e2ddbba251595996dc010becfe64bde18250a2996d4930d60b6dc688f79Virustotal results 43.33%Heodo
2020-07-31WT9MTBKR2N08.docdoc 79c176bbb127e50221aff1d14c8b4f8536dfe567f477e4608a526858824fcd26n/a Heodo
2020-07-31C_9005991038589450708306.docdoc 6f6bff6803088908604240b57a6b45d3730b455d22f9db54d6c134d22a71a91eVirustotal results 41.38% Heodo
2020-07-31FILE_0S94IXN8.docdoc 64d6f521fc12cc1f01f8f262ebdaf96b0cdc5c44bd653d024d9027ae2da63469Virustotal results 42.37% Heodo
2020-07-31BRD_070120_RNJ_073120.docdoc 9c184a50a28234ea058519a136d7e474a3e8fa0d75828d3b5167ff02cbf87b8fVirustotal results 40.68% Heodo
2020-07-31BAL_77038790.docdoc 728a0a1d8f9a71bd86dce389f0dd100a5abd819ea428304f97e35104903c0a28n/a Heodo
2020-07-31GQ9620735983ZT.docdoc 98c69796d0d4c669225ea7ee1ba6fab9cd3b038014bfcdb4e95b82a7ef96d4ebn/a Heodo
2020-07-31FDC_070120_HHP_073120.docdoc 8afe98872ea0efe6299cbf4f831ad02539622489b559304862d2a460cfadaa48Virustotal results 41.67%Heodo
2020-07-31DOC_RE9746277717SR.docdoc 7689cf53f260808946f1b53dd444210423a975b7fc7754c1fe6b04960286f9a3Virustotal results 48.33%Heodo
2020-07-31ZX9JZKYPO84.docdoc 95aeab47936417c0415cd1475e2f07a1ba3d6db6766c6707533a1decf5c54fdcVirustotal results 49.18% Heodo
2020-07-31GHA_070120_WVI_073120.docdoc 582a1cef0fa903d6e306172892c6ec7fc72bed9ac3fa49364da864273c260db1n/a Heodo
2020-07-30JQF_33758307.docdoc 29bb463a499d45a2b27d4f278b883361ed66aacd2f6184c93f79f9ba5df2fc53Virustotal results 50.00%Heodo
2020-07-30JJX_624356819.docdoc 85f494fa86a08be62ef3a3125d90b8136fcfb6ca193d7b41dd7702badb99875aVirustotal results 50.00% Heodo
2020-07-30PO_07312020EX.docdoc fa9ebbddf93bf0bde73a7e62692c9a2ba07478ad334b60810862fe795384032en/aHeodo
2020-07-30N_KPMF6J84EAPT.docdoc 2f335817434e148eb3306ec99d29a3947f89ff9e3aee56f76f227d5894334abdn/a Heodo
2020-07-30BAL_RYP_070120_GIC_073120.docdoc b920bae96043cfc55017d7a67bb6c5caac098cfce2620c6348e63cf4f7842378Virustotal results 50.00%Heodo
2020-07-30DOC_EB1LX2MQ.docdoc c825b34c0cc6205d4e26df6d6050329a5480af4a3b38296b9760489a51b3de64n/aHeodo