URLhaus Database

You are currently viewing the URLhaus database entry for http://99tv.in/js/Document/3lvi5bfuqd/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:437738
URL: http://99tv.in/js/Document/3lvi5bfuqd/
URL Status:Offline
Host: 99tv.in
Date added:2020-08-20 23:32:06 UTC
Last online:2020-08-21 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?):mail Yes (Ticket DCU002878724 created on 2020-08-20 23:34:07 UTC)
Takedown time:18 hours, 20 minutes Good (down since 2020-08-21 17:54:44 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-21PO_08212020EX.docdoc fbd63265ff2f62db6c66adcef3562a678b0243b77f9be2a726d4bcf87f68a9c8n/aHeodo
2020-08-2102196610.docdoc a7da93abb18c18072efe59aaa0c6479e8c85e09c61336c1684a118219facfafdVirustotal results 28.07%Heodo
2020-08-21REP_WG5198927480EG.docdoc 77460cc133315ccdfbdaf1546ce45acc79abed14bb832947ca2dd33c1425dd49Virustotal results 27.59%Heodo
2020-08-21XZGA_HYB_080120_KXF_082120.docdoc c8ec1a9b7d385d96166c22f142d0437768d0db460b1cbfcc53cd796bb0662569n/aHeodo
2020-08-21DOC_EI8677358838OH.docdoc cd582a8f6da0324022baa471fcbc16a2445360a8341dc7bd1d5f90d12e576d32n/aHeodo
2020-08-21FILE_LTI_080120_MSB_082120.docdoc 52f93265171c4daa8a38ef46773660e8b83d21d2a1bd660a0e52efb67cde6ebeVirustotal results 22.41%Heodo
2020-08-21IIZCDK01.docdoc 01298d83e8f16304e95326dc2aaeba75fb90913b8e359ba16ffa314513f6ef63n/aHeodo
2020-08-21JH5755386175NZ.docdoc a13897aff5bbdee2bf78782be00ac516731e334463b3846c57df74c6167e97c8Virustotal results 21.05%Heodo
2020-08-21MR_WCM_080120_RXV_082120.docdoc 92ce63816306ff769b615c927a2677d7a4d1eecdbe7e6bc825ce4a446df1bc7eVirustotal results 22.03%Heodo
2020-08-2131530647.docdoc 6eb69e6bf953f664d116b1f723231c894c54ff4b2482e3f9d1120b10fc541bd5n/aHeodo
2020-08-21FILE_94381668.docdoc d88027c8f802a9c670d326835d3153aadf2dd191cf9bf60148bc6532b6614402Virustotal results 21.05%Heodo
2020-08-21IOAM_PO_08212020EX.docdoc b326935dc2c2961ba03dbcb71953cb015dc694fdd25510aaea3efd5f86ac04c1Virustotal results 21.43%Heodo
2020-08-21I_ZCIJXQ2Y7W.docdoc 5f663d1e8899dd1bf8794a251e7acd014dbe349b71e9d4cbb592a9ad3d4d155an/aHeodo
2020-08-21PO_08212020EX.docdoc 83912e356ffc063006637864e3ceed204efd7141ac92b7ff91fc4e3372c2552cn/aHeodo
2020-08-21L_4905226999773768.docdoc e0edc38058ce9b689134aaa2fde3ffec05c36a32a51eb58932d313160434ec50n/aHeodo
2020-08-21PO_08212020EX.docdoc eea83be73bb6b63138b070ecbc75bc0af0a8f6540fb9125735eda75701adc2b5Virustotal results 20.69%Heodo
2020-08-21BAL_PO_08212020EX.docdoc d3e288e78e76e10c2214ea9589c989760fc693bb097650669c7f37b9332698c5Virustotal results 20.34%Heodo
2020-08-21FILE_QOW_080120_TVQ_082120.docdoc a99bc78979b657a1d16c9c3cb64ddfbd2d0317097210ad0dd85088b7a6c1b3ceVirustotal results 31.03%Heodo
2020-08-21YJ7150109363SQ.docdoc dfa53b1ba591b08dacd3b798dedee90d559b092102517b46cd1a04bccf51e386n/aHeodo
2020-08-21DOC_SIM_080120_SWP_082120.docdoc f4cf506743474d0a3cd6642db40bb54301ec4a84e38d41782b1199600b16df5dVirustotal results 30.00%Heodo
2020-08-2158556968.docdoc c6fbe26a69de6c684e24b5438000839980b291ba697b3749c226ee5871517433n/aHeodo
2020-08-21QCSSSTS7.docdoc fd2732589c07dc97af78689360772ace939ebdbf5c47132f7df607d9e24a267dVirustotal results 29.31%Heodo
2020-08-21DOC_32577948.docdoc 0566ee320bea900383d9ca704bf88d12efbcb69e6eed4b55d1e904ced4c6af2an/aHeodo
2020-08-21DOC_IPX_080120_PJF_082120.docdoc af3988b7856704b5467030ee792d90beff86f1f453c3280c8d0f822b2dc9898fn/aHeodo
2020-08-21PH193BS14D7.docdoc 29489d8ec25a46a76a0bb977cba3d4260eef3e2520e1b060a323df2c5f8cd8fbn/aHeodo
2020-08-21FILE_TXP_080120_VCI_082120.docdoc c719c39bec31a7fc11b2a63c4bd6a95554e3b627f299792a9dc9b38e412670fcn/aHeodo
2020-08-21REP_QY8OGCECUK.docdoc b067f851af29843c48232b84fd2062937192d864d7f69979bc590786f4f4d4d7n/aHeodo
2020-08-21NT9435543935PT.docdoc b008c2a5a3f325892c0b9e4b83ede888637a59c8b5e320968165589ba583af7eVirustotal results 28.81%Heodo
2020-08-21885023345738415718671056.docdoc 913271f10fdbf26cf67c0c6b3b0f0f501848bf25f539c04feb5553f95307bd95n/aHeodo
2020-08-2127219182.docdoc c87f02029dfc7cc838cdbd76fe5640ab9778826bebdd965fd772f7b853d4178cn/aHeodo
2020-08-21RR_OYN_080120_WSZ_082120.docdoc 32473b384e1e07f387b80575017b09c425d1bee0904b9d96319e3bb72e7d6ecfn/aHeodo
2020-08-21INV_TYU_080120_KJL_082120.docdoc 4ab707775fa2390fd9243175abdd54e81f7bf91607d4d7fc5c97be1d43f8606bVirustotal results 31.03%Heodo
2020-08-21DOC_MV5733808135LF.docdoc 24fd38bc7a9fc81d9db5634f8d3c76f68707dd688bd30ade28d86def52b8aa8bn/aHeodo
2020-08-21K_YR0442062305SG.docdoc bae16ea340cc512d6e1934d205bb3f0e34da81c10bbdf1a411b338c91f415c03n/aHeodo
2020-08-21C_WT0901593505VC.docdoc 1125770ca72ec38466e63abb84b14f1128a7b5fdee91ab098dd25c53230e1537Virustotal results 30.00%Heodo
2020-08-21REP_51079756.docdoc 0a10c7547caff2ef72359bb8941e5b1d66920f7ecefd54c795b7d18c1474ab9dVirustotal results 30.00%Heodo
2020-08-2146262587.docdoc ee0ecbcd1c840072ab9f352930a3d1d53c1669f8ea22577bed152b6e644a6c74n/aHeodo
2020-08-21D_AS8892477788HE.docdoc 827b61d3f0f0d3d42ee69919ecdb9a190e3939c7d32cf425f7cf355276a3d2d4Virustotal results 30.51%Heodo
2020-08-21F_866782488.docdoc 3c86a0b190ac5ab87b216155e1a11d7a756739986e3545d994fce52d209cd64cn/aHeodo
2020-08-21T_LUF_080120_YQI_082120.docdoc 5aef84eb7042aec5b21c949a61c3beb6aae3ed2e1d897d383e802a60766af3ccn/aHeodo
2020-08-21M_PV3984515203UK.docdoc 31e1775c43a698b705e2a0e7b26e8b8942b04b51bb902f9008fc355c637c2c4bVirustotal results 31.67%Heodo
2020-08-21DOC_PO_08212020EX.docdoc 87fa434c22634148cd773528a464946457014d363c09cfe28a9a28b69f14f136n/aHeodo
2020-08-20D_XH672TE2J8RA8.docdoc ba157ef26a5a82a7c5380c26dba2cc7996739287eb02f8af8e4080b08f02d946n/aHeodo
2020-08-20REP_53059453.docdoc 27b71a21e0539ce4941469274938d6cbcfcd998d0f06e84160f0f3c313b6e6feVirustotal results 31.67%Heodo