URLhaus Database

You are currently viewing the URLhaus database entry for https://honestycc.com.hk/v05/available-disk/guarded-127785835-8ECcjQaww1CX/ajoqpm5f7ukx-zy1142zxtxz9/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:436000
URL: https://honestycc.com.hk/v05/available-disk/guarded-127785835-8ECcjQaww1CX/ajoqpm5f7ukx-zy1142zxtxz9/
URL Status:Offline
Host: honestycc.com.hk
Date added:2020-08-18 18:32:07 UTC
Last online:2020-08-18 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-18 18:34:03 UTC to CloudFlare Anti-Abuse API)
Takedown time:1 hour, 9 minutes Good (down since 2020-08-18 19:43:08 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-18arc_NPD0650.docdoc 2df5b20d8f749d1edb14c16c6c1c1ce78165354f3d038a23ac8d4d99188391bfVirustotal results 44.26%Heodo
2020-08-18REP-20200818-165728.docdoc 8eff0446f444542435bf1ea66d34ac5b2339a87d7702ba744f403dc5ec5d4795Virustotal results 44.07%Heodo
2020-08-18Dat_A636.docdoc 2665e27cc12b9a111b35b73a7afd85da8a5d1877d6270f6d8ea48edd2acc0718Virustotal results 42.62%Heodo
2020-08-18File-NV28666.docdoc 52386a3f4ed721abc491a22e4d08ba4497e8392249b04e5fbcdcff39502cb314n/aHeodo
2020-08-18dat-575908.docdoc f78aad7f5679645766e7c2d8ca39b6cd8ed663b2f8d0b9de53096c8b55c80978Virustotal results 40.98%Heodo