URLhaus Database

You are currently viewing the URLhaus database entry for http://379code.com/rec_site/INC/b9XGeO8knB0omPl/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:599808
URL: http://379code.com/rec_site/INC/b9XGeO8knB0omPl/
URL Status:Offline
Host: 379code.com
Date added:2020-09-22 19:43:10 UTC
Last online:2021-02-18 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-22 19:44:05 UTC to ipas{at}cnnic[dot]cn)
Takedown time:4 months, 28 days, 6 hours, 24 minutes Bad (down since 2021-02-18 02:08:34 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-31List_20200924_WSG768863.docdoc 981656d848704b33f76fe0de7d3ee9f3c3459791228ad58a5247794e65870ca6n/a 
2021-01-31List_20200924_WSG768863.docdoc 2ff8e2099f4fbbdcaeb3f9941910ddf7c7270ec52c79d5de26d6b0caad4abc65n/a 
2021-01-30List_20200924_WSG768863.docdoc 19a05e8d1d7da9417f8d64ee3e622952a413ed50db058a2e766856c25b9c5a86n/a 
2021-01-22List_20200924_WSG768863.docdoc 19ad6a82d99fd26ee985866b58a2d4dfba4e86b384932975b1fec68eaecb212dn/a 
2021-01-20List_20200924_WSG768863.docdoc ee972be50c5cbe8f04ca5648e6ea9cfabb897e38a9042e12e4280cc0e6905c8fn/aHeodo
2021-01-10List_20200924_WSG768863.docdoc 5ef7154910edebcadb074615c25339af4c5f352c412588a8883ae0552c9bda1fn/a Heodo
2021-01-10List_20200924_WSG768863.docdoc c94d20753782225ad7fcac9bf722b130e237ac632ac850842c82b6fca056bd6en/a Heodo
2021-01-09List_20200924_WSG768863.docdoc bb7984ca0ce32630dec17bd2cecaf7ae8929a28794e3cb0a7fe9722f43002f2an/a Heodo
2020-09-24List_20200924_WSG768863.docdoc b28789468422ca575b59374652bea0a7d0996749a3f2490f6214abe39d74e456Virustotal results 27.87%Heodo
2020-09-24UNTITLED_20200924_U492587.docdoc 53894a66cb2c5b7803247d709fb0ddd3352721e5b03c2a381085a5018a2eda0fVirustotal results 27.42%Heodo
2020-09-24726 20200924 Y51651.docdoc 1e2311cdd83dc62ce3967d86b505de9ac9a472d43568bb35f442c96d1f707029Virustotal results 29.03%Heodo
2020-09-24Arc_2020_09_24_I645150.docdoc 4bf4fd8fbc2393d9f481cabefe7bce1b95a3b389d0240ac379990028255e46f5Virustotal results 27.42%Heodo
2020-09-24arc-20200924-DNK155762.docdoc cc1178c321ee53394b7dea09acb81d269b879f37e5471cca641c3efbe4e33b0eVirustotal results 24.19%Heodo
2020-09-24Rep 2020_09_24 856441.docdoc 518411f4b9661929ca614ae7f1d3fdbca813b5a0ab56f4967d95e4790fb7c865Virustotal results 24.59%Heodo
2020-09-24Dat 17847.docdoc 0bbf6ade1e1dde1eee57d4a7ff17d22247db6a4c8aca326ae05e3ec8464e5f85Virustotal results 24.19%Heodo
2020-09-24ARC_20200924_G554.docdoc 951d6f18d680fd8bee849c739c1e9b2da02df8baa9230ab6c74266f3bbe444fdVirustotal results 24.19%Heodo
2020-09-24Doc Y148.docdoc 8c5281d5e516b39c0aa3930f69e374a20ec1ab7158fbbc1dc61bec98f7038210Virustotal results 24.19%Heodo
2020-09-2474837111.docdoc 60bd12b32ea4d28ec43c02a394f2ddfcaa21c0820cbdff6e37debb55c1673fb0Virustotal results 24.59%Heodo
2020-09-2402972 AV08486.docdoc 781059ed8dbae8a755fe64c0c768dd9b0f9603d24b80b3d4ef6d54a937acb2d8Virustotal results 22.58%Heodo
2020-09-24Arc-20200924-003922.docdoc 4281c9ee68e59660621b3e010964d4d0c4babcbd981a8364e1b50db7f38fb6faVirustotal results 22.58%Heodo
2020-09-24doc 37469.docdoc f48bda7896fc157dc03d910227cd8fb45d0396145e064172870e3517e4b4a962Virustotal results 22.58%Heodo
2020-09-24list.docdoc 662578e28038eff76d3259275b4c5dbc898a193b9b8c1456635f703abecc7977Virustotal results 37.10%Heodo
2020-09-24LIST 20200924 627.docdoc baac09a30d626467916ed21abd6522e80bd2b584d89ebbfaf9cbbbd31e0fc49cVirustotal results 32.79%Heodo
2020-09-247053423-891.docdoc 0ad6a98cb8928f61b66604f06096da02a0fa94d3c5e67db08ead722adddc8f7cVirustotal results 32.79%Heodo
2020-09-24FILE JUX354420.docdoc b0a9fa5890efee7a7871819049cdaa014fe5da77f85ad8e9d3dbc46ae3a5e348Virustotal results 30.65%Heodo
2020-09-24list 2020_09_24 461355.docdoc cbf85bab7b9a7440bcae99084eba2d8293de6d1b1c0c26af4b6dd96f79ebcfb9Virustotal results 32.26%Heodo
2020-09-24file-20200924-4836.docdoc 8523ee64ad62d31567483e0e181de018dd58cff185667cb0564e0ace8f22eaa1Virustotal results 30.65%Heodo
2020-09-24list 20200924 881.docdoc adb4e66249d841c987f80f9d50cc6812bf7886019be050ddc644ca97c0116abaVirustotal results 31.15%Heodo
2020-09-24Arc LLK984.docdoc 1f26f8840f7a7566250b6a164cc65759f4b1f6b604678ec97222cd5144b0cebdn/aHeodo
2020-09-24MES 2020_09_24.docdoc 9554237d9a237ce9702ff8502da80e347df17141104c58b4ea721a482875c7ebn/aHeodo
2020-09-24Inf_20200924_59431.docdoc 10c276571c36df4cfe95f75f6a76d198dc5637d7669169289f2d8e06ede86a0en/aHeodo
2020-09-24Untitled-20200924-2671303.docdoc be3c79e9b5fd61ac148d1f5687acadb548a968dc7c12a7ae63a0c9bb31355945Virustotal results 22.58%Heodo
2020-09-24ARC 20200924 327.docdoc 8c4582acebd9d1950b39201a054fe39bfa7677db5caf10962d44c49d5e37b9ean/aHeodo
2020-09-24rep-20200924-FOZ7049.docdoc c5924eb9d616ca56abefefa101be8004a3fc80f14ff4f81d96554191e02851a6Virustotal results 19.35%Heodo
2020-09-24mes_2020_09_24_8063.docdoc a8b0c95f687d86dc74995de8a27b0d68e8f8f32a07ad8333a1aadf15c1cdff67Virustotal results 18.64%Heodo
2020-09-24Attachment_20200924.docdoc e2eca82c78611a391480ebc7741bf38bd94ee339bf24f50790690f097fed1488Virustotal results 19.35%Heodo
2020-09-24DAT-MBE272572.docdoc 32723c361acd35dd884c3243982f32d78493255655f04ef6246b0c4fdb18f3f5Virustotal results 19.35%Heodo
2020-09-24Attachments 20200924 K83879.docdoc 15b5594b366a3bae22e4d6bdaad907bf889b957c9e8572452d9569ed245530b9Virustotal results 41.94%Heodo
2020-09-24284008-20200924-4085.docdoc 77d05388e54ffc1cf04195a80a090cb3eaa41f8820c93c4c646f4f56cb6beffdVirustotal results 43.55%Heodo
2020-09-24Rep 2020_09_24 19108.docdoc 24e031fb985e7f9a012366503ac58c163c138850f5707b5029a5793b27857ba5n/aHeodo
2020-09-24doc_2020_09_24_H166283.docdoc cef0a21256e2c9bb654f4f7fd0454fc6dc1795f3aa95862003eaa9e5c144ab42Virustotal results 37.29%Heodo
2020-09-24Dat 20200924 862564.docdoc 89a45325b3f1df9afd4f37462ca8202a64c8937098465331f9c8e11a042f9280Virustotal results 33.87%Heodo
2020-09-24INF 20200924 1987540.docdoc 43320c9feae650e3c06d36b9e410a8c53026cb49b0ff87d773cf1f72cab00143n/aHeodo
2020-09-24UNTITLED-2020_09_24-KBD383.docdoc 452a5769e0ee8f5698e793518a7272414d747287e82494b62ee4db46f2101f18Virustotal results 36.07%Heodo
2020-09-24inf 20200924 954300.docdoc 39869bce9c64b45c624de3c72e57ed683652bea15fa5b0195f5fe24287c6169aVirustotal results 35.00%Heodo
2020-09-24INF_61512.docdoc cb764536b329d21fa9638d8e1609ad4382e4e4ba44756045a7196c051cd12c78Virustotal results 32.26%Heodo
2020-09-2432725AR-2020_09_24-L509.docdoc 0bf5cdd3f37f117e4ae69a13ceeb2d812055e6bb5b5119bf9adbf69d4218d63cVirustotal results 32.26%Heodo
2020-09-24list 20200924.docdoc e78aaad701d002d1f339fc7ba9cc5b4638abb42e61d7e17a5ece92ecb54ca0b4n/aHeodo
2020-09-24Inf-20200924-EHF1673.docdoc f6dcaaa7b1e36ac14966538d45c8a37232030e1426436a26542239f6c4b15eaeVirustotal results 30.65%Heodo
2020-09-24US4826 9189.docdoc fb0558dca547b0e5446371eb2b2bc4204d97d088d68cbe23d0634c4c6ae55222Virustotal results 30.65%Heodo
2020-09-24Rep 2020_09_24 RNP7288.docdoc 204bc7ba8ccc1a68101bcaa5a6e0c77ec50b92bab7ffe72f1a42baaf8615775fVirustotal results 27.87%Heodo
2020-09-24Rep_20200924_OG567.docdoc a94c2c5af432da438e746e9cf551dd6b3c7645af7a509a8bd8a7b4cdfc76ad96Virustotal results 30.00%Heodo
2020-09-2420170GU-20200924-11669.docdoc 98cac1b2d3b5764f8aabb6955ae8d2f9d1078b7f4fe2ba221e4c54da5460ef08Virustotal results 29.03% Heodo
2020-09-23file_3652.docdoc bf610aa108a8cdb11b895e0c49cbad7b781810f1c4b95a051d0a75ad830563baVirustotal results 29.03%Heodo
2020-09-23File 20200924 29688.docdoc a496cccdddad5164a08cbffe45117788e25e55db35dbdb3f92db0d967ff0e452Virustotal results 27.42%Heodo
2020-09-23Doc 2020_09_24 C585.docdoc c884ecee384466aa2277769f07888f2f8039ed3293f378229a20b976db70fd4cVirustotal results 29.03%Heodo
2020-09-23UNTITLED 20200924 PCY185188.docdoc 7c2e5a786cd93193cbf4304bf8e31d4a43d82372020df0af6cccf42807c7271eVirustotal results 27.42%Heodo
2020-09-23Mes-2020_09_24-UI69715.docdoc b68b9c15c5a7acfeb72e071e97f69d69f7b47e89f701d85bbc2778c70ec89994n/aHeodo
2020-09-23List-2020_09_24-E522055.docdoc 75876c4b8ebbac638052c4f3fa36f23a3c95260b80ea6fc8f79eaca9eb520384n/aHeodo
2020-09-23MES.docdoc 4abadaaac5deae9fc700f643ac17a294f0e79c9b2a279539f63143cc7b093cdfVirustotal results 27.87% Heodo
2020-09-23Attachment 2020_09_23 JX3202.docdoc 3d91abcdf5047599dc82e15e44df9bde34a36108f97b00e1e33bd2f22a1c36beVirustotal results 25.81% Heodo
2020-09-23file-2020_09_23-CJS602402.docdoc 64d553d12211594d40c53f9a9a990fcab6914821ebed778e738a19b69f0ec318Virustotal results 24.19%Heodo
2020-09-23Attachment 1731976.docdoc 564cf15d75ab866d106285b7075ff84a4b2a056802d26af1bbddcfbc2e2aa176n/aHeodo
2020-09-23DAT-71624.docdoc 119edd7d031bc99f2939e66f373d09cbb0e7764477f9e6f22219bc62c87e8abdn/aHeodo
2020-09-23ARC_20200923_R907.docdoc a8af16e435ec85cbc506c12db6e8e3d1645a20c86a7404615ae00c5ea20cc39cn/aHeodo
2020-09-23mes_2020_09_23_11995.docdoc 0569044120c296a2826b7d0b0697cea36d7b071c883946e33d688dba77d83ad7n/aHeodo
2020-09-23DAT-20200923-BA32782.docdoc 16f75edb898e43ae44ff9318faed5391597f8d7c77da9893a18293408da5194cVirustotal results 22.58%Heodo
2020-09-23dat 2020_09_23 E082148.docdoc e87784055a8e3b9a8f795862cfc2ba4277f9df2b2df1b6eaff28585356e5b593n/aHeodo
2020-09-23Inf_20200923_NVY423.docdoc d6ab1b265eb6331801c83229a73f08bc969d1230d47239bcc0c6a87640a8b3dcn/aHeodo
2020-09-23File_88500.docdoc 2447fc806ce070c1d22694056f4e86d527e429252036ca87f990c1472d525be4Virustotal results 20.69%Heodo
2020-09-23mes-2020_09_23-ELO148.docdoc 99c6443620ff752f432c0f8e38e9ff759f5e9792c6f4ea4009286ba58ea72f92n/aHeodo
2020-09-23doc 2020_09_23.docdoc 2904ccf30ccd72ff68523360807c982c86851b7c1f83b509ff37ea6a03683514Virustotal results 16.39%Heodo
2020-09-23JMY4659-2020_09_23.docdoc cf38c161e0cff2758dd124885d9f615cbe3144de9bec628de65b4cd5d9fc101en/aHeodo
2020-09-23rep-20200923-811758.docdoc d9735d6b5f9b942ce00384c9bbbb997abf37f1ff2580dc4a9ff879670f961c8aVirustotal results 17.74%Heodo
2020-09-23Arc-803575.docdoc 4d5552e2c38a9b71d831b1518c75670e3a462a05db3a51acfc30f309f928c108Virustotal results 17.74%Heodo
2020-09-23247_0241.docdoc 043e784bb77e64b58ffbee762edc43a23422b9400cf0dbfe1287a4074ce64e7an/aHeodo
2020-09-23QXW5672_19796.docdoc 00d65057e563b8b9ac6f3e0c359dcbf80672aa208a4a64439dd2bfa157ec14d1n/aHeodo
2020-09-23UNTITLED_5700.docdoc 17127ad6578095f99b1c0b5061f0afc0fe36ac6eaf8820dbcea4965f2510b533n/aHeodo
2020-09-23file_2020_09_23_4417.docdoc db038e21bf63ae34f34ca72fcf79b82c440034cc2b279a1ab25c1a3cf091eb02Virustotal results 31.67%Heodo
2020-09-23file 2020_09_23 HN675.docdoc 43eedbdf492f436a35cd9dc842910b7fd67940bacceebc6f3f70e9a8e7ecf90fVirustotal results 31.67%Heodo
2020-09-23List-20200923-0924308.docdoc 5616a07174bf07899d97125e61f8bf9dfffc6c3e363c87a6fbef04d0ca2be8e1n/aHeodo
2020-09-233168JS-069.docdoc 5efdd71d90285698cac5b43da89e5741caf97ba48b7dae94cedab21865012332Virustotal results 25.81%Heodo
2020-09-23Attachment_20200923_4005209.docdoc 8561121df631ce8002bed1cb4192c90cc6629ed5a52a5f9922d0f65eac925ac4Virustotal results 25.81%Heodo
2020-09-23Attachments-20200923-XZ38214.docdoc 388f962e7a559e7b2c97684fc711132a9859a847abe8893c649cfe87919a32caVirustotal results 25.81%Heodo
2020-09-23Dat_2020_09_23_732743.docdoc c19c194be66f1e409fdeb6e093c5a35be5a0052a6880adf02a4ea800bfaf1277Virustotal results 25.81%Heodo
2020-09-23REP-2020_09_23-961.docdoc 28fe9c0eafe150e2f7464f22aaf91161ff9872a6b9a3559b6dbed7d1dda0a22bVirustotal results 24.59%Heodo
2020-09-2336499532-20200923-0902779.docdoc dcada826af6a0501af1285249ba37249233f4990e0b7ff7439e414311038358dn/aHeodo
2020-09-23rep_V626.docdoc 15440bc61bdd599da087f77c230d5fffe82ffe3cb14210457d7f09e8f0783c0en/aHeodo
2020-09-23file_7799413.docdoc b9ca959ac2d459b40232da6b96372a28fb5881cb7b1659cf6547e39fe8c2ad65n/aHeodo
2020-09-23Mes 2852003.docdoc a479d904e47ac4318ff5f4b0b9e46eabd12fed4df701fb91829a08684ab7bdc4n/aHeodo
2020-09-23list_730339.docdoc 27752e3dc9ecb6d42611dfcf97e6f865d51cb19b9e10f24ef496c3c011d74b7an/aHeodo
2020-09-23dat_20200923_7679389.docdoc 9779f5ab7945d472c6984721ad10fbf0297623ee1c25eeb109c33c6c8587d594n/aHeodo
2020-09-23rep_2020_09_23_7567153.docdoc e57f2ee4d91ac6c94a9a19245a7d869c2465705846d1c4af6f85162448587c0fVirustotal results 29.51%Heodo
2020-09-23MES-2020_09_23-43960.docdoc a61f1b45b06305829478c9c58b8b8e94fff53017fc1e735bcd18e288f0efbabcn/aHeodo
2020-09-23file-2020_09_23-KSW730726.docdoc 25a6879db668a83d39e1a4696472ac50058cbca71afbe055fe38e6d7c4b8c8ebVirustotal results 29.03%Heodo
2020-09-23file_20200923_6468.docdoc 0c2f0e779e16a329037da7e3ba3b8c89fe246e93d8bc3beb6de83daf2c4d9e2cVirustotal results 29.03%Heodo
2020-09-23MES 2020_09_23.docdoc 2476d30165bd880c46ae9c11a0a7dd1c90560cc39805f1255fe7c888fffb5f72n/aHeodo
2020-09-23List-2020_09_23-45572.docdoc 94a81d329bb24822021c39261484f9010d84154b9f9f9d25506cd221381e55ffVirustotal results 29.03%Heodo
2020-09-23Attachments_5509.docdoc 799375bc17349fabb727d209dce766f0f790222a89a95d7783de4428c113320en/aHeodo
2020-09-23Arc_CJ35172.docdoc a1b5ef92ceaa6be33f3950c95ae60066fd936f9757ed3213b26f31ad04659cf4n/aHeodo
2020-09-23Arc-20200923-A3260.docdoc b94733cd6b4927c464f2e077dc1f63a740f0982d413efb3b80fdefc3abaa8dfcVirustotal results 30.00%Heodo
2020-09-23rep 20200923 7801308.docdoc ffeeb0722e07550459e556ff30cc8718de924313f5eb93821a1ed9dec87e5df7n/aHeodo
2020-09-23Doc.docdoc ca4c7b4c1ea9e7145ff335a29663652adfbb0ebb877a560a33b1d60ae678da95Virustotal results 29.51%Heodo
2020-09-23file 2020_09_23 803.docdoc 033162fdc60c2d8188ff7d79a8a860e806d15dcef06a00ae9a68ea0cfb1f6916n/aHeodo
2020-09-23inf.docdoc 352b0eaafd07102686fb7e59059288bd6f527e4190c6700cc5dd1e6f267bda16n/aHeodo
2020-09-23Mes_BUZ6904.docdoc 9c67d232abc4ea64aac36180f8259c7a5a52ae4ccf35ac7d5b9e6f350f5ee00bVirustotal results 29.03%Heodo
2020-09-23list-20200923-1693380.docdoc 690391009290bc441dcc05095630d2785d34b18b64819ce580f3bdf2d45b1d19Virustotal results 28.33%Heodo
2020-09-23file_20200923_T6392.docdoc 97d2b08197301a0059c2de0cbd059211231382fd31f2435fb72eea7eed55031bn/aHeodo
2020-09-23Mes-PPG918682.docdoc b6f00133a52da6464eed7e2893e970887b80718514a3fadab1f4653ce636aec2n/aHeodo
2020-09-23INF-20200923-634.docdoc f2de99ef933f7cf018ba9947803a5f5c5a9cb72ea0971ee3a565468c10a8783dn/aHeodo
2020-09-23arc-SC550.docdoc e98190a409ec70f224b71425bddf57cb8ed96eabd6e92497579714952e93fe4aVirustotal results 26.67%Heodo
2020-09-23Inf-2020_09_23-2568.docdoc 5f81d77b9f520598ee93cdda1bbea38982756b2457fbdea877739ce5dacb294bVirustotal results 27.87%Heodo
2020-09-22Inf-WGU14652.docdoc 73b2c723dfaf202622c57e8b9bc4504b45f7617e3f644e4097c9489a459ee85cVirustotal results 27.87%Heodo
2020-09-22Untitled-20200923-988.docdoc a132f8367518b36376bd03160587713674ff98805021fed3d6e3ff58c045a97dn/aHeodo
2020-09-22file_2020_09_23.docdoc a4be8227b93822ebc5ee886e18ff44b120a5a3349f1cb2698504ae2ce0004530Virustotal results 31.75%Heodo
2020-09-22Mes.docdoc 047e8725d4fd86015892b7683a66f466968556af8ce62635368b4b53f41b6fd6n/aHeodo
2020-09-22Attachment 2020_09_23 3998629.docdoc 9895cbda416306bb0fea5069cc2c9525a714f63de4260492ec34e1d5697ae24bVirustotal results 32.26%Heodo
2020-09-22ARC-2020_09_23-7981885.docdoc ace46d2110313599b081c85c401a092182633a33621e529365657305eac4c094Virustotal results 32.26%Heodo
2020-09-22Mes-XCA483.docdoc 3581578c9dc74cfccd9fc4db4a1253d45b3155e89b6f731117c15699a3e29089n/aHeodo
2020-09-22rep-SPG79699.docdoc 8031c668f56e12d2f6e1d54f98aea8eca655f14e6dfa3ca6df9da76aaec004f4Virustotal results 29.51%Heodo
2020-09-22Inf 20200922 870137.docdoc fbeb9d04cda2cdc25d0f83cf72853d3c3240b72ed8047f657e576061c0157037n/aHeodo
2020-09-22Doc-AX8052.docdoc f7d2c758c06cd5e2ee4d6e2df8ef0dde049145434e8cb1ed6d667aa35d5c5877Virustotal results 29.03%Heodo
2020-09-22MES_20200922_305.docdoc 519ade7779233a4aa1559c30318a4785bb0e2c995a56b01fcf95b4b69e1a3fd0Virustotal results 29.03%Heodo
2020-09-22ARC 20200922 RZV27406.docdoc cd537ffeb9d0a9e21855ebee9da69cd5b7e1c0839e6fca3be47f0a695a41d2e4n/aHeodo
2020-09-22Rep_2020_09_22_98728.docdoc dbde4aaff8c1d5748e3be5ec0e07691b1f8d1b6a089e1c041825584d5b49ae7dn/aHeodo