URLhaus Database

You are currently viewing the URLhaus database entry for http://dragonfang.com/nav/LLC/rsBsCvfbTWggie8H/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:596965
URL: http://dragonfang.com/nav/LLC/rsBsCvfbTWggie8H/
URL Status:Offline
Host: dragonfang.com
Date added:2020-09-22 13:18:04 UTC
Last online:2020-10-30 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-22 13:20:28 UTC to abuse{at}a2hosting[dot]com)
Takedown time:1 month, 7 days, 19 hours, 1 minutes Bad (down since 2020-10-30 08:22:11 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-24Mes-2020_09_24-HGM6924.docdoc 3196b8694fd5439fbabe402c87ca63a1d71fc67c7ee0d3a23fc0b3db6201924dVirustotal results 32.26%Heodo
2020-09-24LIST_2020_09_24.docdoc fdd1f341fc91f2da54b135658a4d9e13e29e387f500f3ef4e233e60c419d6bdfVirustotal results 30.65%Heodo
2020-09-24Doc 2020_09_24 21910.docdoc ba70c35fa9fe6c659211cb57c37743fcbfa7c18cd4904cd8da6963aa573b65e9Virustotal results 20.97%Heodo
2020-09-24FILE-711.docdoc c5924eb9d616ca56abefefa101be8004a3fc80f14ff4f81d96554191e02851a6Virustotal results 19.35%Heodo
2020-09-24199849-20200924-379.docdoc f2e3feb41565cc844a3bb072dbb0d54fb53d4f1cc44860f23dc3d8c4f4c470edVirustotal results 19.67%Heodo
2020-09-24Arc 2020_09_24.docdoc 6725873944cc032a1241f756b6113b54f91201df2dea44fffc6db0e10d5873e7Virustotal results 19.67%Heodo
2020-09-24doc_2020_09_24_JHX9013.docdoc d82d5b660d95337c8161aa70584a8f8d8ac9134a4566571a7514b8912fe15766Virustotal results 19.35%Heodo
2020-09-24List-20200924-720.docdoc 6093c4cfb002d365f8ed7749c339b75a92ae859f23a5989378d8096481daa5caVirustotal results 43.55%Heodo
2020-09-24dat.docdoc 23db49d5886e034ad5ab63515e5c5c6b6374d5bad5c9b68cfb3d84f39451a301Virustotal results 41.94%Heodo
2020-09-24doc_20200924_242984.docdoc 448c58d4e526ffd04116fb0f31bd9971ce9f51c993c4368e3ef8a54c93a2c70cVirustotal results 44.26%Heodo
2020-09-2470407_II073695.docdoc 77d05388e54ffc1cf04195a80a090cb3eaa41f8820c93c4c646f4f56cb6beffdVirustotal results 43.55%Heodo
2020-09-24List 2020_09_24 NTV9091.docdoc cef0a21256e2c9bb654f4f7fd0454fc6dc1795f3aa95862003eaa9e5c144ab42Virustotal results 37.29%Heodo
2020-09-24Doc_20200924.docdoc 89a45325b3f1df9afd4f37462ca8202a64c8937098465331f9c8e11a042f9280Virustotal results 33.87%Heodo
2020-09-24dat.docdoc 6aebb8ddf83325ed3d212b9842279a94afa9981ee7d1374d0b3b9cdff8429181Virustotal results 35.48%Heodo
2020-09-24List-UN6407.docdoc 031a4e9cda99df5d982b2b59480f2354ba7a4f13a3f6d6366feff317bf4820f6Virustotal results 32.26%Heodo
2020-09-24file_2020_09_24_9629.docdoc 20994e696d6f973aa02b7ba5d2265c0888048ca6fac06b739208feff988aa8a8Virustotal results 33.87%Heodo
2020-09-24mes 20200924 893224.docdoc cb764536b329d21fa9638d8e1609ad4382e4e4ba44756045a7196c051cd12c78Virustotal results 32.26%Heodo
2020-09-24rep 2020_09_24 B752.docdoc 6e613f281a3af3a8d773be9013d997281a8af57e592e2f7fbec463c15550304eVirustotal results 32.79%Heodo
2020-09-24551FAE 2020_09_24 290.docdoc 7d47cfd77354eeae25a92db11ba24486d38653c3d2f2750076541f61b5bfb09aVirustotal results 32.26%Heodo
2020-09-24Attachment_770871.docdoc f6dcaaa7b1e36ac14966538d45c8a37232030e1426436a26542239f6c4b15eaeVirustotal results 29.03%Heodo
2020-09-24MEC059 20200924 YGH621323.docdoc 234d3ad4abc48e15ee2c813f7202154e54609b7380d8d7f803801c1759ed2042Virustotal results 27.87%Heodo
2020-09-24rep KR873303.docdoc 07b0daa0a34769595b6b92ce783ecff28fc3dc65c6db54c34e29ca308fe52991Virustotal results 29.03%Heodo
2020-09-24rep_20200924_DV4415.docdoc e70e596d135c977fff3ac2431028c138f7a11cea81bfb9a9ba46ea0e0109a67eVirustotal results 27.87%Heodo
2020-09-24QHQ44380_O96153.docdoc e5393bee26b731a4036fdd9744d6b4f51d3d3ce1387b402ba4d69f2e6662d58bVirustotal results 29.03%Heodo
2020-09-24dat 2020_09_24 R98907.docdoc bf3d18989a7a63608d556b1d26fdbfdba74fa356e1afd7140720f67b69ee3b89Virustotal results 29.03%Heodo
2020-09-23Inf.docdoc d5925a52ac9cd59de6d9a5006d99886c79175fa1b26006effce8f26ca1a6385bVirustotal results 27.42% Heodo
2020-09-23Arc-TK5126.docdoc 96307c5a62e457f86a55e67c624892de7b841d9f9e37545fff75861f6ff6e749Virustotal results 29.51%Heodo
2020-09-23Attachment-2020_09_24-TF98589.docdoc 7c2e5a786cd93193cbf4304bf8e31d4a43d82372020df0af6cccf42807c7271en/aHeodo
2020-09-23Attachments 20200924 2427116.docdoc f82b28e208e15a7b4719e1a889c93c0d0374ad8d7c3f64b31a9dea9f4b3739d1Virustotal results 26.67%Heodo
2020-09-237828SBC 2020_09_24 7281718.docdoc 49691f870b7ca7b5d3c9afc41aca1dbf596dca7dc6792db9486764605416e19bVirustotal results 29.03%Heodo
2020-09-23MES 2008.docdoc 75876c4b8ebbac638052c4f3fa36f23a3c95260b80ea6fc8f79eaca9eb520384n/aHeodo
2020-09-23Arc.docdoc 77bb45c0d54367995f458381e455ca73f508800058627eb5ee009c21afcb1aefVirustotal results 25.81% Heodo
2020-09-23Arc-20200923-OX369894.docdoc 3d91abcdf5047599dc82e15e44df9bde34a36108f97b00e1e33bd2f22a1c36beVirustotal results 25.81% Heodo
2020-09-23Doc 008153.docdoc 776094e859ef485a39874c83e60218bcbabab097a64d650b872a9c747ca9b7b0Virustotal results 23.81%Heodo
2020-09-23Mes_WML299008.docdoc 564cf15d75ab866d106285b7075ff84a4b2a056802d26af1bbddcfbc2e2aa176Virustotal results 25.81%Heodo
2020-09-23Rep.docdoc 4bba9a7e75c30f59092690a7c7aee69fa75e0bac9834ab0ed5cc09a6c17b0800Virustotal results 24.19%Heodo
2020-09-23List_2020_09_23.docdoc 135b150b7ea1a24c7c8ddea3054657448457991dea76b3c0548d677f0c74284cVirustotal results 22.58%Heodo
2020-09-23MES-2020_09_23-218.docdoc bf0c0d8405f31ddf2f8f42f73b66516e529a85f5045cd102ad36dd7dc5bca66cn/aHeodo
2020-09-23Doc_3249.docdoc 4f01417931e4498a58f74e41c407ca92ea12ae6cce0bc3ea9a658dc10f8426daVirustotal results 24.19%Heodo
2020-09-23422VQA_2020_09_23_81421.docdoc 0b54100fa83ac1de95e2c67b08ec5a99ea5cedb577c2673aba4001022cf1742eVirustotal results 25.81%Heodo
2020-09-23INF_20200923_RN3449.docdoc 157c4132a9d7dfc4c0b616ec23eea97422080b4d646e01d3e221156b928e3793Virustotal results 26.23%Heodo
2020-09-23List 20200923 098.docdoc b594f91ceb1a040dcc4ef4564b41b1395206b6cae74fa91a058e1fa37635ecf3Virustotal results 24.59%Heodo
2020-09-23Rep_2020_09_23_6660.docdoc b3d65a2c55563656ddd7488aca206a0a27fb5feb52e52830aec1988e96ade840Virustotal results 25.81%Heodo
2020-09-23Inf_20200923_ELH7129.docdoc eb08530e5f924639dcd82792dbdb90d6cc3b51a631675c77a66a27351382158cVirustotal results 24.59%Heodo
2020-09-23Arc_2020_09_23_111426.docdoc ead850998ef19987a2e21771e9b09484af3bb04bb923249ef8ff2ca79cfbb4acVirustotal results 25.81%Heodo
2020-09-23Doc 76222.docdoc 15440bc61bdd599da087f77c230d5fffe82ffe3cb14210457d7f09e8f0783c0eVirustotal results 26.23%Heodo
2020-09-23FILE 20200923 2562.docdoc 75f1ed9dd71a41c4abe792b3059d2795f9f41cecc24a62328bf28df60c0d66can/aHeodo
2020-09-23Inf 20200923 9961277.docdoc 97ee15aec9942138dbaae6def6b0c9de2c09cda6a79f682badead8d02c3d72c2Virustotal results 19.67%Heodo
2020-09-23DAT-852.docdoc 0990a5ce9af5ef021c1ff33b8203d94b316af05b9cc835d92d94d50fd19c2bc2n/aHeodo
2020-09-23List 2020_09_23 B148.docdoc bf62cdbe7b5e4207ff3acb0aba88b0180f584c4a1a7d3eb14dc3d66c27fdbe21Virustotal results 29.03%Heodo
2020-09-23Mes 467206.docdoc ed046f3a480159d75e1c6dd59296f3dd9346855902d555f1aaaf9dd5b5b7ef8aVirustotal results 29.03%Heodo
2020-09-23rep CLX512512.docdoc e213173e3eda08277bd3f8276a466a8eb67f19823c6fb95aa45a06fd29fcd646Virustotal results 27.87%Heodo
2020-09-23DAT_20200923_CU411107.docdoc 5f81d77b9f520598ee93cdda1bbea38982756b2457fbdea877739ce5dacb294bVirustotal results 27.87%Heodo
2020-09-22UNTITLED_2020_09_23.docdoc 14fb3459b2830d93d3158893cf9d19a967236429dab7740d73d83999d23d380dn/aHeodo
2020-09-2280618L IWC169385.docdoc ba5d071fc037701ffb594141c4fbf04433bf37144605d40e1173666d657dabf4Virustotal results 27.87%Heodo
2020-09-22LIST 2020_09_23.docdoc a5b7961981d9acbb422832a05d2c07c48361000fb79f1d9e07877821e02e2512Virustotal results 32.26%Heodo
2020-09-22arc_2020_09_23_BWG780.docdoc dc40b9c54ef5dcd5fcf499329332d588db376b50c841461e5f05818e97b69b5dn/aHeodo
2020-09-221326VYJ-883509.docdoc 55118df66440387e6511fc9600eadd4e69c65dcb7708ad80d3d2a16ea05439e7Virustotal results 32.26%Heodo
2020-09-22Inf Y0143.docdoc 3581578c9dc74cfccd9fc4db4a1253d45b3155e89b6f731117c15699a3e29089n/aHeodo
2020-09-22FILE-2020_09_23-VWR5976.docdoc a3687bbc2aeb593d37b6c271d3a7cf88eae1627ed4534daa58c52ea4ce175585n/aHeodo
2020-09-22Rep-20200922-PSA183.docdoc fbeb9d04cda2cdc25d0f83cf72853d3c3240b72ed8047f657e576061c0157037n/aHeodo
2020-09-2297604648 20200922 KD86059.docdoc b65531ece6eaa37f17e7288f476839b5b62cf10e5c4a0c9ad70b236b463820ddn/aHeodo
2020-09-22File-2020_09_22-56283.docdoc 5118e3bd72677f8cda269a8e2c50571beffb5dc3f7dbfb1b05cd1e44a904a214Virustotal results 29.03%Heodo
2020-09-22MES-20200922-YBX9826.docdoc cb244ee23263d4776d7a353173d14fc35fe3c1312615415c70def4cf97744d97n/aHeodo
2020-09-22DAT-2020_09_22-DQM3675.docdoc 36873802b0e2d2fc64d49d400b8e34e9136468414b5c51f269bc9fa5c98043f6n/aHeodo
2020-09-22142_20200922_638238.docdoc 0e33b003b9c1cd0b792da43846113a32d28de0d64477f84d90bbbffa40098016Virustotal results 29.03%Heodo
2020-09-22mes-9398.docdoc 1ddec7617d6087292e3d51b1fe1079a93c28e9546171d2bbd2fa6f049fe2a089Virustotal results 27.87%Heodo
2020-09-22mes_20200922.docdoc 1086ffb88505e44c03ff9497ac66a9df3717d361cfc1aef1cff28a1b67ae9eb1Virustotal results 47.54%Heodo
2020-09-22DAT-2020_09_22.docdoc 104d2e1471c7993b4d02e8043079b61edd68a9c7744f66779b40d798cc1f8da1n/aHeodo
2020-09-22dat_2020_09_22_U1913.docdoc dce6a65ac76a2a50740ea22eb74b87da3c5edc4a6135e9b1c39e1b4baf9a02d7n/aHeodo
2020-09-220996M 2020_09_22 332120.docdoc 522c2dc1ddd02fb8e3718418be524df238dda9e30b52aae22abd417881f1f359n/aHeodo
2020-09-22Mes_FEF515.docdoc 34ab318455d30759d79e7f3979233661b8995d3510928e85e62ab09af03cbd66Virustotal results 46.67%Heodo
2020-09-22Mes_73977.docdoc c4699bc83e2c480aa53af341f4b67b5dfb27cb5d28fb09a7619b55689b686ae3Virustotal results 45.90%Heodo
2020-09-22list_20200922_VF431.docdoc b58e849ff15fd90ea845ccee23fb2884bf9666f6dc705ac84dc556130a1f90edVirustotal results 45.90%Heodo
2020-09-22doc-2020_09_22-Z3740.docdoc 8ce52163ceab79b32f012e6129070434d32ea30dfab92da2a9e62e79da693497Virustotal results 45.90%Heodo
2020-09-2258089410-2020_09_22-4197322.docdoc 8becb7ca0d2d13bc1e667d22cf222c927c6b952a67daede438a39afcf555629eVirustotal results 45.16%Heodo
2020-09-22Attachments-20200922-UO54473.docdoc 1f6ed2ece5d580a01e3e3afbf88bebc1ecd74f37e6fd2b256ecb855d82941667n/aHeodo
2020-09-22Arc_G810.docdoc d4ebc64e8b514d0421a035ef5ead0893ee01889332cf393385f2a460b0b6807en/aHeodo
2020-09-2220291813-2020_09_22-Y5361.docdoc 650b390c56eed72a6309b925bb07185de472eb81ef4bb982bcfa8aae5a2b93dbn/aHeodo
2020-09-22Inf_W658093.docdoc ec0011702614cd33aa57769c23abfa9106382cc9b99ec9a1f9bb57204cd157d9Virustotal results 32.20%Heodo