URLhaus Database

You are currently viewing the URLhaus database entry for http://odytravelgear.com/tsaapprovedluggagelocks/sU/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:429988
URL: http://odytravelgear.com/tsaapprovedluggagelocks/sU/
URL Status:Offline
Host: odytravelgear.com
Date added:2020-08-12 06:47:34 UTC
Last online:2020-08-14 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-12 06:48:12 UTC to abuse{at}liquidweb[dot]com)
Takedown time:2 days, 15 hours, 0 minutes Poor (down since 2020-08-14 21:48:48 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-14Inv_M5256_621230103.docdoc f740ad05fe75e146443ce0776602fc5828a534f28e1e2f34a1d785083de85bd1Virustotal results 38.60%Heodo
2020-08-14InvoiceES44638698316.docdoc ebfd94ac1cb7510d9b3fe2de38c88bb88d64956d0c6eb93aceebee8ea83ac763Virustotal results 37.93%Heodo
2020-08-14Invoice PCZK8 5641555.docdoc b912946f86e61acf37130b179be53f6dfa2fdd31fa0e158dd2fd19f557aaf059Virustotal results 36.67%Heodo
2020-08-14INVOICE SDZM3 41677768.docdoc 4398bc31070f761b318b30f297d363b006ed9e84c6af0aa45ad140f57e7c1529Virustotal results 37.29%Heodo
2020-08-14InvoiceKY74074949.docdoc e8516c23d1aec8faadd52ae68fd240339940d05f4a1db7c56afdbec1eb5de0f6Virustotal results 37.70%Heodo
2020-08-13Inv-IJA1150-38800356.docdoc 2f955001e3dac3ecffeb44a715528d697945545d1093516a8b07523859e79d82Virustotal results 36.67%Heodo
2020-08-13Invoice T7092 74200731.docdoc 5f082300c48965f84f8c991027f6081c4397825021b74021b253c7fc7e9dd5b3Virustotal results 35.00%Heodo
2020-08-13INVOICE_7_5404629.docdoc 4121659e82eadcc9063dbad5e46d42ef2d1b91e429f0c0e38fb203a6a0fec99bVirustotal results 33.90%Heodo
2020-08-13INVOICE CQZ03 80817681.docdoc e1ac6201887f008a8beef8eca74076739b93dacf2d0d366f3329ca55dbc3c827Virustotal results 36.07%Heodo
2020-08-13Invoice W9 436171.docdoc ab444b6b4e01751a504bcbe5bfafccb6c73c5a8f0a83102badfdfa7f0d061be7Virustotal results 35.00%Heodo
2020-08-13invoice-EJCQ2-4399334.docdoc ad919d299d8151242bb880dfd8e4f379ee644eb8a6eb799f7dd9608fdbaa84d2Virustotal results 37.93%Heodo
2020-08-13Invoice-K677-7639525.docdoc 5068ac1fc3ea1af3eb637bed169df3a72f14ab7db56ff2996f718fbe8c05642eVirustotal results 36.67%Heodo
2020-08-13INVOICE282788050.docdoc 576c0497e26b93869620e9bd122a6836001c6ab4128462dccaceed7c2eb22dedVirustotal results 36.67%Heodo
2020-08-13Invoice_RNWF3659_681818875.docdoc bb480394e0201866ae43a5b60c1ec371e3dd37a01e922a8dd5ff68d8cb325f3eVirustotal results 40.00%Heodo
2020-08-13invoice AAG047 3561493.docdoc bae089e182eb3266f7febf0ef17ca827f4c0c1712466e787e3c7d187e433645dn/aHeodo
2020-08-13invoice G449 7411368.docdoc 11e8ab46d1461ffeb1dd3170793e65edbfa4d18b9bc6157855fb32956c221dcaVirustotal results 34.48%Heodo
2020-08-13InvWJX631753676.docdoc b133317c26c5f7804469fdb2d3cfe7bff2c09e8009f94b7e2e89120b95b6a996Virustotal results 32.20%Heodo
2020-08-13Invoice 058 86628092.docdoc 1344d4ea858a94b81b25c9c85ca54dabf55f7ac242bd4e4a9eaeb991ba75fc4dVirustotal results 31.67%Heodo
2020-08-13Invoice_GXF306_71233843.docdoc 7abb5b30def6039173391b3e77f2a498a9ac16f3e7fa6312e9991d2d8c4e39e4Virustotal results 30.65%Heodo
2020-08-13INVOICE36062533.docdoc 286f7949f545a67074545aa0830816a560a993143774c4468d041d5e656d2897Virustotal results 28.33%Heodo
2020-08-13invoice_WJLC78_37033901.docdoc 56301f606789e94e8da7b88c171cb8e282a451a8c3c719ddd073a2840c9f3976Virustotal results 28.81%Heodo
2020-08-13Inv-RDMB77-760327.docdoc 592c4295c63e8c69b37668969da2d1a8514b387ad715eac7fcf7307b51a50a9bVirustotal results 27.12%Heodo
2020-08-13InvoiceMPCU7081465752362.docdoc 52c981dcee0a9c0bc80ec192b453e8af6b01ced6cb3187645687ad0fd1b13221Virustotal results 27.87%Heodo
2020-08-13invoiceR4016816336.docdoc e9bc4332a3fd2de13d8f4d58aaf749131a93e652fd663f83005b1437936a715eVirustotal results 28.33%Heodo
2020-08-13Invoice DN13 90422567.docdoc 7689a27b894cae744cbcc6233ee883c95f92853ce314becca2b0eb1428689c49Virustotal results 27.12%Heodo
2020-08-13Inv 4727 2195940.docdoc 3a957d2e54e658d116c346dcaf0dab5ecaec5e60bf7125b32087746f27cbe35fVirustotal results 26.67%Heodo
2020-08-13Invoice-21-1756221.docdoc 267245def36dc107de0213044013ec67b837c68ed109267f13728319263b5664Virustotal results 25.00%Heodo
2020-08-13Invoice_VZQ61_1070929.docdoc ff88b58cda20861bb4defc057fd5c5b094705648918b08fcb53f7433a53ff7e2Virustotal results 24.59%Heodo
2020-08-13Inv-SYS82-82023561.docdoc 776396c0aa0fac10eb849a713ca7927a00cd7aa654be032e870fa7cbe3076078Virustotal results 26.67%Heodo
2020-08-13Invoice OJRC3 12495015.docdoc 225e48d5a2210f48804a4463a7c970cb9d79f88b8ca085b379ec5bf95f671b01Virustotal results 25.00%Heodo
2020-08-13Invoice OP1687 1168718.docdoc 6470a38736f61fd9858f811fe8ec7e2ea6d075e3d4bacc287ed9b0a746ddb5dcVirustotal results 26.67%Heodo
2020-08-13INVOICE-FQG2667-3502335.docdoc a9db211b5c0ed36501a165bda0a9c6a4f673bcb350aa5f5b7bfb4a9910f883c0Virustotal results 25.00%Heodo
2020-08-13Invoice_37_6018157.docdoc 147ff91d2f978f8abd623f6a25e0599903cb53c9a890255e3fcede1cb0fbc8daVirustotal results 25.42%Heodo
2020-08-13invoice-QGPM138-462579.docdoc ef4bd4002ad40e14d4be0e1b65b772318b986c643bf1704805b738350cdf8747Virustotal results 25.00%Heodo
2020-08-13Invoice-HUEY0-58314633.docdoc 7b6f86d6898258e9a8a5a572e055f9efc0d045b78fc6eb88c0d2f61f064629f2Virustotal results 25.00%Heodo
2020-08-13Invoice ZM74 884398.docdoc b6e322f9859749fc8f883d8e46bd164f9b3b406ab9978f5c1daa1ad43325d492Virustotal results 27.12%Heodo
2020-08-13INVOICE-MVB69-281226479.docdoc e1b7a11726c385bcad71dfe791b165802cc625ceaf2f1550a5a10f5f222ea90dVirustotal results 51.67%Heodo
2020-08-13INVOICE TI5448 47234699.docdoc 04f398e872a21555e613068343a42ae713930a96f16f079aba07a4434b800180Virustotal results 54.24%Heodo
2020-08-13Invoice_CRN3_750480.docdoc cd0aaf460944efd580dcc39bc1dd0460f88f2c3c17e303694ffa1eae5020eab2Virustotal results 53.33%Heodo
2020-08-13Inv_372_1820733.docdoc fddf4cab73e6e2ff5c40c7fee09d52d5eb903e6bd17ad77aa292c6ded707f394Virustotal results 55.00%Heodo
2020-08-13invoiceNT590692343.docdoc bd379f0e0dcc9c8c75d70a99df9f95dc56d70fd92cbf446a21dcb7b22ded59f9Virustotal results 54.39%Heodo
2020-08-13invoiceNT590692343.docdoc bd379f0e0dcc9c8c75d70a99df9f95dc56d70fd92cbf446a21dcb7b22ded59f9Virustotal results 53.33%Heodo
2020-08-13Inv 9176 438873.docdoc 97e52709f1f9169fb2a3d0cfc7852f811d067999ed1bdc700c6b66bc7dc23765Virustotal results 52.54%Heodo
2020-08-13Invoice X838 37804432.docdoc e26bbe184e43c8251aee307aa6d392971f7facdda4ce50f9733a966dc7905ff2n/aHeodo
2020-08-12InvC34820182801.docdoc 5fd1794cc1e685dfa2a1e2594b10d690a59a070a9b8bc9c6c12743efb989137bn/aHeodo
2020-08-12invoice-Q667-521863.docdoc e412c6a1097b6fdf1492ad40805d0bbb1df005f870085f3fcb57d30552974cdbVirustotal results 48.33%Heodo
2020-08-12invoice 6051 175788.docdoc fb474008a44d536948b71f933bfc0289e7779352c43c4d62f0b3dff8f0ae478dVirustotal results 49.15%Heodo
2020-08-12invoice-9-12309789.docdoc d60d130c4369c7d41edf041927897b2ceb6b845a66b97bfeb0cf7d60575fe399n/aHeodo
2020-08-12invoice-6637-854488.docdoc da25968d18d6c8ddfd6ffa940b4e0bc6809a5b1a224602f196ce7eb107578f88n/aHeodo
2020-08-12INVOICE026737373.docdoc d9ec148861bca868b82455ef1a50c34c46fd0e3ad7f337803a67c5eb67fd8469Virustotal results 49.18%Heodo
2020-08-12INVOICE_EVIG97_9973475.docdoc ff563f0125c05e1a24c111ca5306fc7394a4a705167d272704bb0c2067a96b4fn/aHeodo
2020-08-12Invoice-QKLN753-186948049.docdoc 87a59fdf7ab0abb1c6263fc0c53650659aa5c3d50d09d38c6696819017787e38Virustotal results 48.33%Heodo
2020-08-12INVOICE_417_1947607.docdoc bbf084bcd83d08a6693798f851e3af34cc7c303afb235c8c25fe237ec00315cbVirustotal results 48.33%Heodo
2020-08-12INVOICE-HO8-314017633.docdoc 7cb03d988c912a877410fe03d55bdc4a5379a95e91ff6497875a139105f2cfdan/aHeodo
2020-08-12Invoice-EFK74-6180908.docdoc cd110e81c2ab80786c6b50fa2f567bd93e1471529d849677f100974715c14621n/aHeodo
2020-08-12Inv7978334875.docdoc 37a1c85950d3e91662ed4137488030ffcec13adad6f9b2f3eea1de01a756b260Virustotal results 41.67%Heodo
2020-08-12invoice1407293.docdoc ae4e6ac684f5b88e2165adea2e0df977852b853b20d129fae3d53600eebeca8cVirustotal results 39.34%Heodo
2020-08-12Inv17525619778.docdoc b2699f3cd54b6953a3eb9e1812890cf40563699a96776cfacd8f81288e962e11Virustotal results 31.67%Heodo
2020-08-12Invoice 3328 842596.docdoc d38dd6d1f7f64159fb3a29df7e5c78123b2cae316e479623072837fd852874d8n/aHeodo
2020-08-12INVOICE-267-1936440.docdoc 5acefebbcc9a92b556c6f81e212c7db449fe2692e8877039dd7b6a920f8e5172Virustotal results 31.67%Heodo
2020-08-12invoice 4 72755119.docdoc a4b8da2397aa872bf9a58f4ccc3aac1d9048af566659687b5cd8cc7c1c72b7f5Virustotal results 30.00%Heodo
2020-08-12invoice_N7_643267.docdoc 4b643a7d7cf8515411aea4ce9d9a11893c50ef4b9cf3978396183d562ec90c14Virustotal results 30.51%Heodo
2020-08-12InvZOAG328350753.docdoc abf3c79157fd476523d528ab58b49382769b7b8b4e4f4fea54da0a1b59acae9bVirustotal results 30.51%Heodo
2020-08-12InvoiceIIH36409688.docdoc 6610beb62b2916d0194d87458804ec7ae2e18e6efd800866b9d65db7a6e6b361Virustotal results 30.00%Heodo
2020-08-12invoice-CHWH8255-983002.docdoc c0e57e90696fc7fc36202118e5d6bae3f85e480418d0f675369f61cd46850d5en/aHeodo
2020-08-12Invoice_TLHX834_940171012.docdoc 5c7a94ddcac5463f2e4ac7a23c60db15d0e5afb75700a346058936c24b461ac2Virustotal results 30.00%Heodo
2020-08-12Inv_5_135860.docdoc 42355a35a2bf3d690fed99b24a34a5e6cd67fa3c21c20e7747d01a1f71d998ecVirustotal results 27.12%Heodo
2020-08-12invoice_GOD597_776682731.docdoc 92891d0665902ca174cc6ebf4cca8fec9d9486730b7796e2c4c63b5a2f29ab8aVirustotal results 26.67%Heodo
2020-08-12Invoice_XM85_788793.docdoc aa93187017f9056d5cdc98302b5c41c322d54bdf3ce694c30d598140c4ab8ed6Virustotal results 29.31%Heodo
2020-08-12Inv-1453-661823.docdoc 0e8a907717e28fa7dd8fd51ac5cce01762d73113c64dcc2c713e65de4e2787ccn/aHeodo
2020-08-12invoiceWX3381472.docdoc 663b1204334b2b1ac60e67c2d63281e3b0add6c72589beb51c0801934d1bb0e4Virustotal results 27.59%Heodo
2020-08-12Invoice RTGI7735 172430.docdoc 3878a507270346a9cb72ef10f715fea30a403ceb12326e565fcf4e03abb874edVirustotal results 27.12%Heodo
2020-08-12INVOICE-JMR1629-3285481.docdoc 7dd439987c7b56a1968a7037a72c4d2474cb03e2dda132f07275fba3ca216685Virustotal results 26.67%Heodo