URLhaus Database

You are currently viewing the URLhaus database entry for http://www.mega360.kiennhay.vn/wp-content/uploads/LLC/En_us/Question which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:49252
URL: http://www.mega360.kiennhay.vn/wp-content/uploads/LLC/En_us/Question
URL Status:Offline
Host: www.mega360.kiennhay.vn
Date added:2018-08-29 22:05:14 UTC
Last online:2018-09-07 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: unixronin
Abuse complaint sent (?): Yes (2018-09-07 11:40:45 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:3 hours, 48 minutes Good (down since 2018-09-07 15:29:27 UTC)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-08-30Invoice as at 30/08/2018.docdoc 645a5857929d50d0a48946a4eab5a9cff19604be480aa0709daebea3dafc9967Virustotal results 33.33% Heodo
2018-08-30Customer No 3599647.docdoc 7e5eb1211902c7024773452d9e6b28c26b52373efcb790184979cdace463d195Virustotal results 31.67% Heodo
2018-08-30Review invoice required.docdoc f75136051ff1f592a523db55a99a3d18f2daebfa648271c67eb4a0c66bb58ebfVirustotal results 31.67% Heodo
2018-08-30Invoice # 02R56664.docdoc 236961983c929d5cc8995eb5c7c6bced61dd60e70912bb11018c96f356eece31n/a Heodo
2018-08-30Invoice.docdoc 6db4f090094bade9095701030eb9f3b5b3f0d29f8617ac475d9d327d333919c7Virustotal results 35.59% Heodo
2018-08-30Outstanding invoice.docdoc a0d2ec906181775ebc4c9c2365b3b56192a394d51d9cb64fce0a1dfa079a4703Virustotal results 35.00% Heodo
2018-08-30Invoice as at 30/08/2018.docdoc 223ad7404b6776907df027f8e04bb958f4ee640c00928af57899861687f52450n/a 
2018-08-30Billing Invoice - Job # 2137449.docdoc 5375c40bdb1a2228f013bb59b0a40ae5e0dd1baae2fbc16b7e684453a6d0e991n/a Heodo
2018-08-30Latest invoice - 648498.docdoc b310420513b142dbff7001fb48a391591d97ffc1ed7564805c978fe60a971c51n/a Heodo
2018-08-29Statement as at 30.08.2018.docdoc e70ba787217df3341c7994fdaadb339ad5cd53a1589f5e9342b4e7f95eaa97b0Virustotal results 31.67% 
2018-08-29Inv. no. 35NEA50209.docdoc dd43b0fe3835ca81c6cac5d4d07cd691ad4780fabafdeba9b3ecd2d46aa62a47Virustotal results 30.00% Heodo