URLhaus Database

You are currently viewing the URLhaus database entry for http://dungcubamcos.ga/wp-admin/docs/xYRd31Q0TAgeq/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:545534
URL: http://dungcubamcos.ga/wp-admin/docs/xYRd31Q0TAgeq/
URL Status:Offline
Host: dungcubamcos.ga
Date added:2020-09-17 13:42:09 UTC
Last online:2020-09-19 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-17 13:44:25 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:1 day, 12 hours, 54 minutes Poor (down since 2020-09-19 02:38:38 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-19UNTITLED 2020_09_19 49937.docdoc 4186791608fe67e3dd4a2f61f52ed52ba67c4d7d75996cbf27f8379a44509f18Virustotal results 22.03%Heodo
2020-09-19REP 20200919.docdoc 614c62ac24ffd787e87c3f0be186188b9c87530dcc81b1559e388c1e06d1e2c7n/aHeodo
2020-09-19rep_GVV121.docdoc 93e1254e65773ffb3d3f3aeeda414a5356482c00d5ecc36dcd385158ac7c8fb4Virustotal results 22.03%Heodo
2020-09-19696-20799.docdoc 57335ffb483da81d9154676109daceab8f15e679af95fe3d0313f09d70619d85Virustotal results 22.41%Heodo
2020-09-19Untitled_2020_09_19_1588.docdoc 0b58ba1859d47221ab95122240157d9d4bc885723fb94b700f1c36cb28edf3c6Virustotal results 22.03%Heodo
2020-09-19M3286-270.docdoc 254aed29f31299a98cd09ddf208306a72f9e9c6f7b821c20af8197e12e32e877Virustotal results 22.03%Heodo
2020-09-18Attachment-2020_09_19-NQ60685.docdoc 9cfbd2b1385991e74144b32795611bff463960304a0bac67116378ec94caf271Virustotal results 22.03%Heodo
2020-09-18Doc_20200919_6761023.docdoc ea48e310224317a3a93d7679dbb50ae967383d973cf7713613d8a240224ff454Virustotal results 22.03%Heodo
2020-09-18Untitled 2020_09_19 GGI147812.docdoc df50fc4b87844f590011e4655d981e4aa7d498dec2d0940b554aea8538567352Virustotal results 22.81%Heodo
2020-09-18E85223_U4875.docdoc c358d536ae6f128e4d3e87de606603d1eb16268041e18e130fac19804fb21de4Virustotal results 22.03%Heodo
2020-09-18dat-20200919-831483.docdoc 9ad2fe8f74ea62256c9ad4c199d69c91b8c76f9a605cb5c038fcbec9d0e85054n/aHeodo
2020-09-18LIST 2020_09_19 6645702.docdoc b7b9257d8c50f28e5aa87090083acecd0359655c255d52dd1030c0375097e0e6Virustotal results 22.03%Heodo
2020-09-18arc 20200919 RI2057.docdoc 5dcb34b82840165da4c8d3f693522093656d8731ab6ffade09c8f5d2b8376408Virustotal results 23.73%Heodo
2020-09-18REP_2020_09_19_863088.docdoc 7234cb8db24e20ba0abe1fb9f9a177573e1e83122a6f3b8debd45e34b67a7775n/aHeodo
2020-09-18Doc 933191.docdoc 5f947b8388016997bed38166706bb096d920127a6a8c7823ff7dcebcaba8f81eVirustotal results 27.12%Heodo
2020-09-18INF_ODU461.docdoc 6c10c2ec829e5c74174f1c3237f44a6aaee6d53c6fa9eaec16e8caeacc3a8b9bn/aHeodo
2020-09-18Rep 2020_09_18 9125378.docdoc c3d3a8875994a4286a4689dec6992bfa46d12decace42927701e0265a33128c1n/aHeodo
2020-09-185974188-2020_09_18-HW244.docdoc 0993a8e2a1ede660ab29dac20d8b95443ba1577a1247c423d7c7fce39820fb51Virustotal results 31.03%Heodo
2020-09-18Untitled 20200918 ZLI5835.docdoc 1e68ebd904cacf30d35734935dc212a7484e063e1a3519783249d890572a19ecVirustotal results 30.51%Heodo
2020-09-18Mes_Q11350.docdoc f8e7f7f012680a8d3f5624ea4deb0f4761bbf1b8b43d8696de50c5e8833f1c21n/aHeodo
2020-09-18doc 20200918 W9494.docdoc 36e558eb9793c1590c59d139f78c9ef94073482a1cf904df78f45a2da8bfccc9n/aHeodo
2020-09-18QY329_2020_09_18_9969.docdoc 902d3ce3d266b665931673e3a33ca290f991ebc092aff43dfaff09a74701b5c0Virustotal results 27.12%Heodo
2020-09-18INF-2020_09_18-172708.docdoc 50d66616676d8ca532ea8333e2d545587d54e83abd08f0720012392cba583f26Virustotal results 27.12%Heodo
2020-09-18ARC 8727.docdoc 2af40cb6abf2d4d87c395830ee311bb8c173a2f99d4092973306b2703d416c9cVirustotal results 25.86%Heodo
2020-09-18Doc_2020_09_18_IS350848.docdoc 05e3d40019d2f5e33417acd54cbcbff55b0d9873e53afc329346102bcd8e5680Virustotal results 25.42%Heodo
2020-09-18dat-2020_09_18-AW285.docdoc b1ea1b35bd161e9d432523b6f7cc6c4868c5ecf8065f64d0030fff59e0aa99f2n/aHeodo
2020-09-18Attachment_20200918_J2056.docdoc 39ab2007df6e588e7a2eed34c24f22b1584c9fde9877b59dd8b7441962940d38Virustotal results 25.86%Heodo
2020-09-18Attachments 20200918 528.docdoc 29c2db70c2ce8da26776dac8aa23097df5663524a46ac77518a87d9d964c4e8fn/aHeodo
2020-09-18DAT-20200918-691766.docdoc 7a26d78e43eed9a8b66afce0aeb832d911c9e96642ba906f3c6c2c5c6cbaff21n/aHeodo
2020-09-1847983-20200918-80221.docdoc c78b6fd735feacf05ab8254985b5a5f154b52b13e5c0033b566d90c3155c915aVirustotal results 26.67%Heodo
2020-09-18REP_2020_09_18_Q445.docdoc c03b6f6a7c2392a296a5e3744871ecb5852a36e3946fb65cf574f54a6050ad39n/aHeodo
2020-09-18DAT.docdoc 4e32005b1ea54f5b7a05f50fa7630e992190edb459666a026ebb506c2e1a2c8cVirustotal results 23.33%Heodo
2020-09-18List_20200918_WW702440.docdoc 0258529b89cb288a228b0791ffc721de998c886e2622408ef37389d0796cb038n/aHeodo
2020-09-189412-2020_09_18-RO54823.docdoc a02fd4f0a71684d97d6bc0c9647fad084aae073d7648b377f734a8ad39969abeVirustotal results 22.41%Heodo
2020-09-188411N-2020_09_18.docdoc c82c3dc7341a149248f768f8f7da5e9f1ca7dcd9f2d1cd61a56386cfef07ff7bn/aHeodo
2020-09-18Untitled 20200918 Q4206.docdoc 44fc387cc55c1a2b5fc409d86cef0344a9015e93f8bf7ec6f4095485281bbf88Virustotal results 18.97%Heodo
2020-09-1879523-444.docdoc 19147bf00c478f62beea73090f1790a35aac1d8769bd6eea4c9e69488a4f283eVirustotal results 20.34%Heodo
2020-09-180232HTY_2020_09_18_L58575.docdoc 926646a1836f587ca813319f3add693a168a273ba2e60e58283cb000d9ac3b6dn/aHeodo
2020-09-18Attachment_33661.docdoc 1124cec9996bce15f2c44d62cc624b00c3f2986dc98a88741048f868472ddf27n/aHeodo
2020-09-18FILE_20200918.docdoc 7ea8a1c6a1c4f2aeb6aa23ca6a072593db27e100b923c825538f3049e8f2972bn/aHeodo
2020-09-180412-BJ085.docdoc 939e4e33110ad867238204c1d4a138144a2a8800cf2a9d22e50881d038acd713n/aHeodo
2020-09-18file 2020_09_18 F05901.docdoc f8a3c7880b09bfa1e2cd25c09e319e9fa1f694f78895bf9564c2688d1c08d06en/aHeodo
2020-09-18Attachment_3374.docdoc 500d6a1fe24b097c7b2318a05dff0596b11d03b3b85226d8eab529e1b73c3cacn/aHeodo
2020-09-18doc-20200918-DQ6201.docdoc b3df6baae42ad2fb9e41daca8e7ecfd97c85406cfaa41dee0fc391f1d447cb77Virustotal results 21.05%Heodo
2020-09-18DAT 72903.docdoc 4418e78d38e4119d63168efb8e0e4b0001f4d5de4db0d7ea9ed526aee126a659Virustotal results 22.41%Heodo
2020-09-18Attachments 2020_09_18 X489900.docdoc 6c9c0682b5474b6cb1e3f3784a90c0b2e62f8594aa9ad25a2616ad05adf0a302Virustotal results 20.34%Heodo
2020-09-18list 2020_09_18 905.docdoc 4ad5afded81de6033a833a3dbd188cf2928e290e3cb5e843b00b2e7e52c41357n/aHeodo
2020-09-18doc 3424.docdoc 23cbfb675b38359788fb1f2ea9602ba6ad72c26ca1765dfe3c24d4c61b2e21e4Virustotal results 19.30%Heodo
2020-09-18LIST 2020_09_18 HN490764.docdoc e1cc8191d234e666cfc2fbc5499ace6b530da364d6efbd8fa863d098257e05d5n/aHeodo
2020-09-18dat 20200918 78473.docdoc 4de5afc6e3f8441ab7e934289c6d0cba392fd84915d38cd181313f644fca41fan/aHeodo
2020-09-18REP 20200918 3670.docdoc 2d8fad34a841454804a253b4f020e2d5deea07796a75e369e4f65663e5803660n/aHeodo
2020-09-18List 20200918 9668598.docdoc 1455091f3d4f8b98aeaf8987443cd556bca8b6e72a1c88df6578e247f95735adVirustotal results 18.64%Heodo
2020-09-18Inf_20200918.docdoc cdbddc6e344dca0161e590649d5937d6271bd7c6fd53cdfac8ac5f235b4b2ad0n/aHeodo
2020-09-188502G 2020_09_18.docdoc 1451a6f5cec836396725062e85afd50a7fa34abb6d99cf0ab08af0e765610345n/aHeodo
2020-09-18ARC_20200918_S47278.docdoc 8cc271a3c843d86d10e06a206bdb54c29e0879fb671d22d8eacee4b90ce21f38n/aHeodo
2020-09-18rep_9701.docdoc 93b355ce46612ca6f1553506670478aa91b4ba2aaab153d9289a28f5765b759bn/aHeodo
2020-09-18Untitled-2020_09_18-RU3006.docdoc fb614dd4f7faf0c4f3c4ea8c0b77238a4b024247c5e3282a3c9f2a8a0ab24e09n/aHeodo
2020-09-18arc 20200918 6596110.docdoc b2f4fe15d94caf88194505573376786dac796dedf0272c7f339e4c0455ff7abcVirustotal results 49.15%Heodo
2020-09-18Untitled.docdoc 48269194d5f4d7e90e2ecf404c45608a995c627a81cfc1aec5f60962423ed564n/aHeodo
2020-09-18Mes_2020_09_18.docdoc 44dcbec9953d3cf2568c5850042be34d73ad1aca1bff0e11683623b9b91dcc44n/aHeodo
2020-09-18REP_20200918_PWH162.docdoc 186ef4aa313417e178a272142392d6f289c1b9e3c9bc3818b3c04a399670b2e6n/aHeodo
2020-09-18FILE 20200918 289.docdoc 23b73b6d7e3d2266bcf0c20586d750bae5d4b3e873447a95e582df8e1d31f945n/aHeodo
2020-09-18dat_20200918_VJK43022.docdoc 96d436517f2e35248a049283382d963b8924ec0a569f93a093838f1cce8e3708Virustotal results 41.38%Heodo
2020-09-18Rep-20200918-LD155.docdoc 2c884afcd8cbdb6504dc36a8d6f0e78415d4de142b7c977fcbaadbfdbe667479Virustotal results 40.68%Heodo
2020-09-18inf_20200918_P643.docdoc 143fdd99fd4e7254e358b5fc3ffbecc50110ed5fd0e920fd22898893455adc35n/aHeodo
2020-09-183120474_2020_09_18_77127.docdoc fed5e7580640c07c65d8f7dc61525cec900564c60b608e59670491b4e82d8e8cVirustotal results 37.93%Heodo
2020-09-18INF 6887.docdoc ee7f615648104a41d003de9bf9567f5473569322da47d33def380dbda210864en/aHeodo
2020-09-18INF_2020_09_18.docdoc 1aa763675bb57de2419ff0c6db6954df9d9b83b1d05a49fbc33d8db379753db2n/aHeodo
2020-09-18930HQM-2020_09_18-78691.docdoc ae2debd077e0cc2e764ce16c176c7d08129ef095bfae6c5196dc3789f6ea0612Virustotal results 38.98%Heodo
2020-09-18doc 2020_09_18 6023.docdoc 0fa784f6a6eaad808c6f9037d5515f435da8c204edba06b50d4839499bccd481n/aHeodo
2020-09-18Untitled-20200918-400.docdoc 09e50d506aa9487e90283df7675b3f77f2d6ea20c8cfc8df842e34184ecde239n/aHeodo
2020-09-18Attachment 2020_09_18 8473229.docdoc 48d9902f9387ffc07af22ed14eaaebb093f37f8f63d4942f0d76744ae6f14f4an/aHeodo
2020-09-18mes-6436.docdoc 562c1a653b94bfc9219306d06089d0621f9f3fd9712476d1e543828e67d1eb83Virustotal results 35.00%Heodo
2020-09-18FILE 2020_09_18 EM2844.docdoc a8fbe20181a901e4ee77e91e558cb97c24abdf0654a81d254124fc9dbcfce07an/aHeodo
2020-09-1844463ZJF 9178.docdoc 68a6ee3668a51859a1ccabe683a3d6148c90ec6cab3ed3e4cbf58e3dbfbb5ceen/aHeodo
2020-09-18list_2020_09_18.docdoc f9a9596b06fd6053fd9fe2f73a3cc010078c12423f3e963d553675df3a02b77bVirustotal results 34.48%Heodo
2020-09-17REP_Z07733.docdoc fac05b7ef1455e22097b936c48496ba95620364be0aea7125fce483d1bcd7849n/aHeodo
2020-09-17dat 2020_09_18 P234.docdoc a799324029ea75b6b4a71f02bce59d976fd0926ce98d134c071d39e892f1da2fVirustotal results 33.90%Heodo
2020-09-17Rep 2020_09_18 31885.docdoc 578663ca789cbb8f68ad4c1a55a609f0cfe21226ef04719d8fe894db5932f181Virustotal results 34.48%Heodo
2020-09-17INF-FZV627.docdoc b2333c8d2f6d1bddce72b7f65bb31a0ffc83dc7d933e262391377410c1655b7bVirustotal results 33.90%Heodo
2020-09-17file-20200918-54743.docdoc e717503e0b005ae9e55f5b68598e20f54053a841547624052b42d44230114790n/aHeodo
2020-09-17Untitled 575545.docdoc 287e30bcb3719fff1e00d0432cd8e03d081c5d4461cf779e06ce5e709ff6a674Virustotal results 34.48%Heodo
2020-09-17dat-20200918-5467149.docdoc e36c64b96d2cd2ac0e73dfbb55750f10b5afbaa1c2ed9a7129a19faae285fcc6n/aHeodo
2020-09-17rep_2020_09_18_77338.docdoc 330ee4f0efd63dbf210487a2063245aaadee2a0e9914d2defea50dc68abc3426n/aHeodo
2020-09-17file 2020_09_18 I345050.docdoc 1bc4a47d0fe2369993ff6f11e93075f7e441de5d443e88719a9787c43f6a277aVirustotal results 31.67%Heodo
2020-09-17arc-20200917-765.docdoc 4619c7c0dfd83d76ff1daf51de6f5e714cd8fa4f5298fb4cc4f113cb2045cc29n/aHeodo
2020-09-17INF 2020_09_17 42488.docdoc c17a1457a32fa56ac31ad5c80d2b6fccbc071a5cd3705a68603ee176f93de1b4n/aHeodo
2020-09-17Dat_2020_09_17_99647.docdoc 7c71b980b5d06b02c7a2b304ebdd8c23039d1b1f64b983d30601a85f5946fe8fn/aHeodo
2020-09-17UNTITLED-2020_09_17-61849.docdoc eeb00ac2c23ea0f07d1616f8811c5321ca5d60eed5c1c427fc9a36e0acdc406fVirustotal results 32.20%Heodo
2020-09-17Untitled 20200917.docdoc 365353a8c4daf08b6b1ac9baacd65fbc835475a6e165996df62abdfe1f218d60Virustotal results 32.20%Heodo
2020-09-17rep-20200917-U6579.docdoc fe35529da45302e22bede02816c935c3c7a15bd8840583fdac2c080f12f9fc83n/aHeodo
2020-09-17Attachment G74651.docdoc 0bbcf36fb9468cf4e66bdb897dddc8f7b9533bebe58a5dd188e398415630c468n/aHeodo
2020-09-17REP_8200894.docdoc dc601e89c617ab5b7093519f49f80b27b1a51a6de9800a06f9802d566cb8d671Virustotal results 36.21%Heodo
2020-09-17list_YCY718173.docdoc 441c6829aa2af5dee07e2ffa564ee1975921cbb52ee8950407ee26fa2389347fVirustotal results 36.21%Heodo
2020-09-17Doc_2020_09_17_021.docdoc 46cad0ffaf0d5f1f1d43c5f9a23e3d2dd1a3de391489a357e7e4627fd62bc6beVirustotal results 35.59%Heodo
2020-09-17ARC_ZC945861.docdoc 914758e51d1ade5c8370a8bb0aa8d9039b2b5901690911f007b77ad221f118dfVirustotal results 35.59%Heodo
2020-09-17FILE 2020_09_17 87713.docdoc 34de78f47b7608eae238f48273edca81c42d78618e84a547a428d6901aa9bafdVirustotal results 33.90%Heodo
2020-09-172164 2020_09_17 U043685.docdoc 77b35ef953d16224dfb90e0c534ce30f48b16723738498a0cc61dcf274f4bcc9n/aHeodo
2020-09-17REP-20200917-6128145.docdoc e8deaa1c4ab1cf3f1b442441387ef5dff0204fbc8090e717e2d9db6c3a55e3a0Virustotal results 33.33%Heodo
2020-09-17Rep 20200917 WH2893.docdoc ed29661ad4236e52dc3578c4b2fc5a3c448c9d7a51a343cdb6f3c6ab29e0eb4fn/aHeodo
2020-09-1713503445-20200917-43439.docdoc 120089ff2f68e783b44f00f3f9679d71cf5c93c16a88de58c11e392458ba0090Virustotal results 31.03%Heodo
2020-09-17list-2020_09_17-VY515.docdoc 90069cf2aacf169cc5b60ff991059f5f56fac838108983753d618475e11afb72Virustotal results 30.51%Heodo
2020-09-17FILE_2020_09_17_1954.docdoc 6efe2b25d58d149779b5dc787a99d5e7c1d1520fc2920a670275be98d609bef3Virustotal results 30.51%Heodo
2020-09-17ARC 2020_09_17 X285460.docdoc f1a5458e9790786e23446c2f9c979b5468d6934276e6d132445182f483619c98Virustotal results 31.67%Heodo
2020-09-17List_20200917_RVN1924.docdoc 0e935144ea3afb8f1f74a23ba99af21ebcea78a2ede007cded7af7313e8170een/aHeodo
2020-09-17Inf 2020_09_17 IM903793.docdoc 9d9354908b81a04ab0bf987a38568afc5ca83ef04d8c9436fdac228b6167947fn/aHeodo
2020-09-17Attachments-20200917-CEC003912.docdoc 57bf9869d94200d680d8b134ea568935e87036ce8e1bf2a3c4382f8c414642a3Virustotal results 31.03%Heodo
2020-09-17doc_2020_09_17_U539150.docdoc f910334358562b3ff08ee76ddb3e496df83bbc1c9c33c3c5f7d549c2e7d73ea9n/aHeodo
2020-09-17Untitled_I448.docdoc 446232b7c1dd8e62a180852687e5839658b5725eb973debdc7060fbbdbb94cf1Virustotal results 30.51%Heodo