URLhaus Database

You are currently viewing the URLhaus database entry for http://fmvzuasvirtual.com/course/format/Document/u756402709814370763655vxo2br6zantwk/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:440954
URL: http://fmvzuasvirtual.com/course/format/Document/u756402709814370763655vxo2br6zantwk/
URL Status:Offline
Host: fmvzuasvirtual.com
Date added:2020-08-25 13:06:20 UTC
Last online:2020-08-29 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-08-25 13:08:02 UTC to abuse{at}digitalocean[dot]com)
Takedown time:4 days, 4 hours, 45 minutes Bad (down since 2020-08-29 17:53:21 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-27INV_MQEN6EVB29.docdoc 1b6867210346a6c2cadbce253621ead10b28deff8090e8f1fde38659e9648369Virustotal results 33.33%Heodo
2020-08-274KL6JRZ6HAF.docdoc c520d3bbfb31c16e245a888bd1f95980828f43e3202cd435725305a58bc14a24Virustotal results 33.90%Heodo
2020-08-27FILE_OY4535834775KN.docdoc bf913198774af473c451fa304746ed1434412a8f1c7706b2e5f12c6cf1827249Virustotal results 28.81%Heodo
2020-08-27FILE_LEY_080120_KRM_082720.docdoc 9a31c5f1b201f416658cf758ebda7480d9a6aa0b3330b71b8c71e73143958cdfVirustotal results 31.03%Heodo
2020-08-27B_WWZBEIK.docdoc 2136cb67c60f9d08a5305401c1c4a33d58bf58038a9ce7d125d6ecf71e73655dVirustotal results 29.31%Heodo
2020-08-27PO_08272020EX.docdoc 1f7ed0ccd130a0b63ad568b735ad629f439919389015594a0a8c62b9f7e2460fn/aHeodo
2020-08-27Z_76491812790756540.docdoc 6fd8df41a454fd5cd94079282364950f554b86e679c9ef87ff59d082afd47f8cVirustotal results 29.31%Heodo
2020-08-2727775040606.docdoc 8b1e85e899250ae238664c29df61c908610d31299f75ab0da17ab24d8e89725eVirustotal results 29.31%Heodo
2020-08-27DOC_25004058309979233142.docdoc 92edabdfafbef478611378e867cb3f462fa7f5ac106a8f0d5045627d04c4c00fVirustotal results 29.31%Heodo
2020-08-27CB_42153756.docdoc 151815029e695cd4af22c16d6eb0aa00c3ad74ba422c20d22e9bedf220485490Virustotal results 28.33%Heodo
2020-08-27PO_08272020EX.docdoc 4ed2cd6c5535cd7ce956db26cea56e2cb6ccd3679ae409be2b5c4288480a49a4Virustotal results 28.33%Heodo
2020-08-27REP_SIT_080120_FCG_082720.docdoc 6f5d563d229dc97a5c6f0cfdcb4da16991f16b2209818b717c7495a42859d7d8Virustotal results 28.81%Heodo
2020-08-2731593559.docdoc c9bf4b4a386bfcde7c1072c3c00f1d708885dc202c1472658b0ef712f39d7867Virustotal results 27.59%Heodo
2020-08-27T_QWZ_080120_UTE_082720.docdoc 20c3a7be51f8040c61c0e273bbb24b48baa3591f42ceeed30a1feb5915b085ccVirustotal results 28.07%Heodo
2020-08-27O_25571216086013383.docdoc 50e628b2b9eb5d2e0f6d5f68ab465af2a258e7eb15d9e859850be455408920d5n/aHeodo
2020-08-27DOC_PO_08272020EX.docdoc abf0bc27d555c075d94aca0ac0eb6824f009e704fa575b66203e46e30e32ff8dVirustotal results 28.81%Heodo
2020-08-2759002259.docdoc 5b4cc759465eba517672e7e962d625475b75585dbebe2ec51a07327cab3a7b4dVirustotal results 28.07%Heodo
2020-08-27UTU_080120_KEF_082720.docdoc 4b21ed50ed79a420217fa1a72731b1a30d251a06141cd56f00a0fdd17ee11493Virustotal results 29.82%Heodo
2020-08-27HB6767635051YG.docdoc 00dbd35594b633c02429ab2154dab2e2b19e93caa9322d5ef46b2c730d6af123Virustotal results 29.31%Heodo
2020-08-277117539194.docdoc 41213a4adcc07029d82e0c00a9932eb28ea7e5c9a41934e40ee35de060f8ecfcVirustotal results 30.36%Heodo
2020-08-26FILE_84131057.docdoc c6a7218b99d6b469dbf16cb0f8940f14f89fbffa20a77c257783833f4d30cd43Virustotal results 30.51%Heodo
2020-08-2647520167.docdoc 252aeabb4c6b7b8dd88ed402898809ca4d94da45526962188c72d96f0d21e8b6Virustotal results 31.03%Heodo
2020-08-26NDBKBDFRBI74.docdoc 560fc48350b60321bef9c84786d68acb7b7f4414d53d1fe7660563cd05cb5a1aVirustotal results 31.03%Heodo
2020-08-26O_PO_08272020EX.docdoc abd2e27899da09f53fa00ceb940f6a914cd44af6cd1d754f783aff922eb9c45bVirustotal results 31.58%Heodo
2020-08-26FILE_9M39NH2ZIRUBUWJ.docdoc 40761e27d5738895fd87e37555b219f0b556bc51d2701d965a51cabebfdabb74Virustotal results 30.51%Heodo
2020-08-26X_321097431153205362652480.docdoc e9a8e8368de08a89501486255c2feed64f65e3de714cc304d72d18ed2a6987d0Virustotal results 33.33%Heodo
2020-08-26INV_DS2400398028AJ.docdoc 41627e3471672730007dc13d026ac234950ae1f71564721c77dd5aff29e9c51bn/aHeodo
2020-08-2691407637.docdoc d6f8e60e80e4142bd6e6c2162f5b44596f03cf98b415d29a0099e3462bc60dc1Virustotal results 32.76%Heodo
2020-08-26BAL_7992625523786107922376.docdoc 7fe66f85659a10160846a834f8b4befde4e554e2c6e6586097218eed58c96790n/aHeodo
2020-08-26BAL_84248989.docdoc adcff3f1b60e737879478f5ffe1450906166be8f4b197343ea2684bcb11d1f1bVirustotal results 30.51%Heodo
2020-08-26DUE_KXI_080120_NIG_082620.docdoc d9d8d7e4e5f7fa56ad36e21ff3874101b96e601a79397a7aeff7918cd9d0ec80Virustotal results 28.33%Heodo
2020-08-26INV_ZJXD5B73NTSP3.docdoc 39fffa400541356137e91075849e49947cd4864baeeacbc328e6aa73f52ef4fcVirustotal results 33.33%Heodo
2020-08-26OMR_080120_FGE_082620.docdoc de6eef8f559ed20487bd721dbd7d2d2c26871567abca7c8ed929e8a16a3be992Virustotal results 32.76%Heodo
2020-08-26DOC_208905350.docdoc a3a78a6e05b43cb54a8442d9d2ad271d3a5434a7ba034ddb9fee6cb20ab10a7fVirustotal results 33.33%Heodo
2020-08-26DOC_GCQ_080120_TBV_082620.docdoc 3afc78f029bb37949650170083203869c970ca766b2155e134e76a2ec9242499Virustotal results 32.20%Heodo
2020-08-26IMJ_080120_FBC_082620.docdoc 73bd8ccbf6c6ab32472c5784a7979a150437174459c01a7398945c2867eea506Virustotal results 32.76%Heodo
2020-08-26M_D88TJFMIKP2.docdoc af5e077f1915828d85cb8b2e854ac2c634e10cd249bc9ca36bfdce6210a78289Virustotal results 30.00%Heodo
2020-08-26BAL_965143238.docdoc c93985113b7ab940892fe866cfb3b38cc34ddb4f2487ea543567364b8cf5711eVirustotal results 30.51%Heodo
2020-08-26FILE_38793951.docdoc 8131001c456f659e26110c29367ff93c40e5f184a31ebecb05c113d8e9a10c38n/aHeodo
2020-08-26Q_01791918771991.docdoc a431f7a715ae2294f803abd31c677aceded29507e07a580ed361bdb73c8ebf3fVirustotal results 29.31%Heodo
2020-08-26F_T3I6INQIWXD.docdoc a356e5e255cba02c8e3e973edcf986a20bff8764ba83a2bb53b55dba03d5529cVirustotal results 26.67%Heodo
2020-08-26INV_11396431.docdoc 0fb8cdd6e033deca3e95931c9f20ddab1df2d839911cb271774ae42cf5460094Virustotal results 28.81%Heodo
2020-08-26EWJI_PO_08262020EX.docdoc 673dfbd1e8a6cae6500c6bc52686bc69101e89a34d4f579b1f3b5a45174ef250n/aHeodo
2020-08-26BAL_48626405.docdoc 0c22f0ad057fa28d31a047a34391f1275438a034d1c42d951637ee89c5252d24Virustotal results 28.57%Heodo
2020-08-26INV_U6K8KVNM.docdoc 41554d0737be05561073afa91a83e41e5cf189cc507d5b8c22d431e712a3b6c1n/aHeodo
2020-08-26DOC_Y7VVL1IF3H.docdoc 0c96443c933d94eb5dd8cc1af29600409b0fa6cbb09308d6a633c3b8d1b0b466Virustotal results 24.56%Heodo
2020-08-26RMR_080120_HDK_082620.docdoc 66d9e9f340163d1c3be2cc282e4b2871834a870392f970f4a1121da1c578b7d0Virustotal results 25.42%Heodo
2020-08-26Q_OCU_080120_SVL_082620.docdoc 300cf0fd3de72ba9c28fc5428b8fac05aa455c7d7ffffbf3ae72db863f7fec1eVirustotal results 29.82%Heodo
2020-08-26FILE_VJG_080120_GTH_082620.docdoc ddf500146efb671da13e611911185a3e2e1bdb538e7f41ae0eb759a38adebfdan/aHeodo
2020-08-26FILE_3828896724.docdoc b8a9e11759f4c916ebdfad5cfab584cf315a1048647d699c994d6a7b60471781Virustotal results 29.31%Heodo
2020-08-26662930188405.docdoc e2f93f504fd4eaf83abee9ba616dd2ff6264f7805737a5556899e37883c7cdc0Virustotal results 28.81%Heodo
2020-08-25FILE_J4R2J0YTCAWTD.docdoc 8fca1b7834abd4c497c08643e11210ec88d3dc33c3d75a94f72f2039b584bf94n/aHeodo
2020-08-25REP_29811652.docdoc f8da60fee5fe2ddbc43a2bdbd1d34276166364d1fe05e9193c71ef71719e12e9n/aHeodo
2020-08-25INV_ZME_080120_LQR_082620.docdoc b1e3c18649bc4cbed912ce7f0087cdba73298204214713ad1038375ad055142bn/a Heodo
2020-08-25REP_KJC_080120_REC_082620.docdoc b1ca916b92d165de27e73baa5354d6285de6d4fcfe95960c95a6b8ada54fd2fcn/aHeodo
2020-08-25BAL_48530163.docdoc 696268abaa7fca009d2d755c96a4aab42d5aa9d20f5e586480896798e975b44eVirustotal results 29.31%Heodo
2020-08-25YJC_PO_08262020EX.docdoc 2b4bb20ea93c9f29faee954202acbeb0c854e447133aa1b04132b80e83961f1cn/aHeodo
2020-08-25BAL_PO_08262020EX.docdoc 2eeec2892926e686de8fcc29fc57c57b10a4f37e49cee06ec4b5c864dcf5cfben/aHeodo
2020-08-25FILE_4331531922377927419.docdoc 450e8dc78bc1e07fb859e5b2aa358a8df25b20cb9e7aee45c0489e1718d10f1dn/a Heodo
2020-08-25BAL_PO_08262020EX.docdoc b7d31d0d2e6624c23fdf8a2c989875d78052e661f92c0839d379c4197a188415n/a Heodo
2020-08-25WS5175447488KP.docdoc c950095f3d0d6dba2238da696f4dcc3cb37b5a06fbf8c0bdaf7035697322a876Virustotal results 29.82%Heodo
2020-08-25FILE_OU1282508618XT.docdoc 96eef74c59d9b8b47979fbaf2552a9735dcddef28df0b5b87655a4c849f9d853n/a Heodo
2020-08-25WA6072706546GQ.docdoc ec08e29fcee92737e7df6a94ee10c6ae871ac4fe2414f367a8dbcb0eed0b1e80n/aHeodo
2020-08-25DOC_PO_08252020EX.docdoc dbe154340b5e5f2e020d7e33eeaadfe4a518f3dc72a2d83c43e48d16c453e9fen/aHeodo
2020-08-2587760841.docdoc 6df73c12c0fd3d14d52b73a259377877667321ae14aa65c66dc0703702faae5eVirustotal results 41.38%Heodo
2020-08-2503VLV3T.docdoc 0afcf7a35acb62edb01ee3f2827626deac6bcb7f7cfc799a2f56132d916b571fn/aHeodo
2020-08-2504677412.docdoc 7cac6f200ebca1722e73de9a75c49af7370e59a87960f9ce3e36a52975a7b1bdVirustotal results 40.68%Heodo
2020-08-25RA7442090502DE.docdoc c52d43a72bc36aa33659558cfb0788b7c919cf70f6d6c98be550891ce51556abVirustotal results 43.10%Heodo
2020-08-25BAL_7K3L1W4EXVJS.docdoc f0842ff3c4163d604958e593b4b63b2519467663122da0e9cb70fbc0f4494e91n/aHeodo
2020-08-25INV_BNN_080120_GTP_082520.docdoc 23b985aeba6423e4a9a4b3c2c30d057fbf0dd29f65d0700581a45b8276eae366Virustotal results 40.35%Heodo
2020-08-25DOC_FSF_080120_JFZ_082520.docdoc 5ea798c77e148ba56c705159bad7572cc32b08d35f1490759356a6d114d50a2dn/aHeodo
2020-08-25INV_IJ7041485231YS.docdoc 24d0808f9cc4ef5a1587e54dd135bf7e3d4ac84ce1dbd7cfcced11649bdf0157n/aHeodo
2020-08-25372899104.docdoc 9e285624cad29ab6abc3514e6b6953d0ed47ca24c1cb8e7db97f1fa652a8766cn/a Heodo
2020-08-25BAL_73273412.docdoc 340c0a7bd1dea55284f43e599ed5afbb240cbe03d66e478ce327abac2358c230Virustotal results 32.20%Heodo
2020-08-25FILE_DLT_080120_IQU_082520.docdoc af47b502a8a50cac62e1d264219056d986f81305a62bf0469e433a70e939bc23Virustotal results 28.81%Heodo
2020-08-25XDQ_080120_NBE_082520.docdoc e06211b96198e300977ef5f59cf0badd6899b4e387a2b82068e4d0aea2b1d40dn/aHeodo
2020-08-25PO_08252020EX.docdoc 6bf3bc47c64d7d1039834288d00177f6f0bbdeaebd8282069d5541d0864335ben/aHeodo
2020-08-25LK1915306945IJ.docdoc 10216de03866c86a163d074495bfd71636ac299c24a2c6f0d482a733a5582c62Virustotal results 29.31%Heodo