URLhaus Database

You are currently viewing the URLhaus database entry for https://ambulanceservice.nl/export/FILE/gZ9OGCi1hJ/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:609289
URL: https://ambulanceservice.nl/export/FILE/gZ9OGCi1hJ/
URL Status:Offline
Host: ambulanceservice.nl
Date added:2020-09-24 06:15:34 UTC
Last online:2020-09-25 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-24 06:16:03 UTC to abuse{at}microsoft[dot]com)
Takedown time:1 day, 6 hours, 33 minutes Poor (down since 2020-09-25 12:49:54 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-25Rep-2020_09_25-DT208.docdoc da7ec5afa8db927c31e6681e3c5b1a24478b5914c09ef085217577930f80fc11Virustotal results 35.48%Heodo
2020-09-25UNTITLED_60628.docdoc 596a33ff6247a3d1834480d9b6dcf1018bfc8c47682a2678092a5cb405fc4207Virustotal results 35.48%Heodo
2020-09-25Inf-2020_09_25.docdoc 679372a330a482eb1eac0878fea681fba87a3282cde739609dd40db33cd927c6Virustotal results 32.26%Heodo
2020-09-259019HM 576.docdoc 4762173b830867e66236739ea023b8943e455c417725b404cffbf323051113dbVirustotal results 27.42%Heodo
2020-09-25doc 2020_09_25 562160.docdoc 3ff95e7223102007ee83d55571b3345c84f34e7da2ddfbe8405cf2d513f8f18cVirustotal results 27.87%Heodo
2020-09-25dat-085370.docdoc 1157d25d77ad7dd6a0c899536bc79a3110cf1ac31f5d565dd6873ccd8b656decn/aHeodo
2020-09-25inf_20200925_18151.docdoc 9d06766f2784c92850094fdd86cebc736e2c624fd71d8ff5de9552cee8ef1d40Virustotal results 27.87%Heodo
2020-09-257254359_20200925_5414.docdoc a21cffa6aee262c7cede6e64c0727d655e4ebf9ecdb510368317786c1560c2c3n/aHeodo
2020-09-25LIST 864.docdoc a8e140780a126d73e0ab124a2d5e7c35a0cb220d18b52538de0bb9661c626d8fn/aHeodo
2020-09-25Doc 20200925.docdoc 19665d81b443fbbea43c2269393dd1497a8ca560342eb9bcbb5bf6133033c0dfn/aHeodo
2020-09-25dat-2020_09_25-QVI702323.docdoc be04f42994a949f2410ea3fa9f0cc18180fc8fe00e22e0549ee36b9f4664fdd1Virustotal results 27.42%Heodo
2020-09-25rep_20200925_UX543633.docdoc 6dddc5d95dd2e82c04b2c55b36a5d380d52bb2f7d9db5ea56f825b1ad6869735n/aHeodo
2020-09-25DAT_91048.docdoc 4c333f9fcf9014e667e58456c447d30dd256234fccfb41bb3d0c30d4c18fde57n/aHeodo
2020-09-25Attachment_20200925_4190851.docdoc dabd7f6160c9330d0a252f8e5e4d17e3dd248f6bcb9668988c0a92012d118e1eVirustotal results 27.42%Heodo
2020-09-25mes 20200925.docdoc 61b2eefaf7b1949d93302e7da67f597047468742c037db1b38520a6e720eb35dn/aHeodo
2020-09-25File.docdoc 6119c776a665ceeae14b6c41f368a0c8fc38c84de92a8908012785d47cba3585Virustotal results 25.81%Heodo
2020-09-25Doc_2020_09_25_EL2391.docdoc 55ac5280a7142fc79c894cdc890d3a3b76a4eaed03f0b938b355e07b95316e17n/aHeodo
2020-09-25UNTITLED-20200925-6888.docdoc 45e6aea2390f44e6f216b37b4534d4d8d0841e416aa1ba63d0b194dedac58130Virustotal results 26.23%Heodo
2020-09-25inf-2975.docdoc 0f674723c07c5218324a68f25f78d92f4f7f8e4662c3856380643e948187a4can/aHeodo
2020-09-25UNTITLED-2020_09_25-623.docdoc 07d189b2ee68877b394336048609d065644c10d82bc5f58f7994df1c85a9e498Virustotal results 35.48%Heodo
2020-09-25Arc-2020_09_25-D07701.docdoc 9a3560cec5382ed5116dd25d7f7a3df51d3a59ed1d494e32931a1820bf577e42Virustotal results 36.07%Heodo
2020-09-25Untitled-20200925.docdoc e979e5d62f7d4071c132262078d292902fab0efa9947de49d89e30ea28c01f87Virustotal results 32.26%Heodo
2020-09-25Untitled 2020_09_25 QH851.docdoc 1b4bdeafbb09007e953a6160fe436d4804b6edb5069a03724183c8299f6e5ac5Virustotal results 32.79%Heodo
2020-09-25file_765.docdoc dea89797b0e3407f423c2d3db4732897df4779beb6caf903ceb16029c480f012Virustotal results 32.26%Heodo
2020-09-25Attachments-093532.docdoc a5d07fac1fd1f74e00644c183bfe972d95582bb06c0f8a16e3a0f58cab1152e3Virustotal results 32.26%Heodo
2020-09-25rep-20200925-242.docdoc b998510a8bf687ea61a4eb01488f3480eabc30b7a9e66f1eded2eecbe9e09280Virustotal results 32.26%Heodo
2020-09-25inf-20200925-340258.docdoc dd4a091ec478dbcc01133454fd28cd9e6ad233c1a6c208ac74d5a290a92f475dVirustotal results 32.79%Heodo
2020-09-253682239 2020_09_25 BTZ976.docdoc ccdea9cce81a446140e0d879ca8aa9a94abc087dc40e758a648cbd5cafeddf93Virustotal results 32.26%Heodo
2020-09-25MES 2020_09_25 MQG77537.docdoc f3e4a5469d7a04109e3b462ae519198b845978938294d7b0b5f43139a332b649Virustotal results 32.26%Heodo
2020-09-25File 20200925.docdoc 3155aee94b5f26a27b523fe5df878a43d7d7ba601989219c94d61199dfa016a1Virustotal results 32.79%Heodo
2020-09-25311ME-2020_09_25.docdoc 69165cd9c129bd60fccb936744427651093153871bf0b5f61530461a10add533Virustotal results 32.79%Heodo
2020-09-25List 2020_09_25 F12768.docdoc 15220c43248046fa93074c3c80521f9773803510ac48a42f7de5b5c28c97eafaVirustotal results 32.79%Heodo
2020-09-25MES-2020_09_25-901655.docdoc eac747b64de29080e128302ff648719d8fefcbbce47c9065edefa2ea5862f74dVirustotal results 32.79%Heodo
2020-09-25Mes 20200925 VNZ92384.docdoc 7d684e2495a1cdc7c3ad26a959dad4081aadc55fc3835ccfa22da218cc48b2b1Virustotal results 31.15%Heodo
2020-09-25list-G1145.docdoc c21d9c8c5393107c347799164ff5d5b7cdc7520bfb0a2e4ff3472e51809e5e20Virustotal results 30.65%Heodo
2020-09-252337765-20200925-BP5436.docdoc d7610350dff505fe91024c77b0e93d7a33fb2a121189ff230a635606becac380Virustotal results 30.65%Heodo
2020-09-25Inf GTD70786.docdoc b4da5a271c46eb9d526edea40d4f641a1a0da3dc6048ffc493b8fece7044022bVirustotal results 31.15%Heodo
2020-09-25inf-2020_09_25-NV4901.docdoc ba753a3170901bef149aa59bdb45420ee05fe7331873bdc50db85193881b2e4bn/aHeodo
2020-09-25rep_2020_09_25_7132895.docdoc 9c89759e237878a95c83cded3d21a6adc6f8d4ed97c3d955138c7dfd1b713334Virustotal results 30.65%Heodo
2020-09-25Arc-P13639.docdoc cebd7c93a666d0a79cff9edb88403e8a8318dcaf5cc86c52c65fe834fc87e995Virustotal results 30.65%Heodo
2020-09-25INF-2020_09_25-K192650.docdoc 18e942439d79f97e34245158394275fae160da61d8abc66b9f45496a11e5a22en/aHeodo
2020-09-25Arc G030.docdoc bd497f91d1b3471692be59bc55fb9a4bcd885d680ba65087f99431f0be67d62fVirustotal results 31.15%Heodo
2020-09-25list-2020_09_25-889.docdoc 8f4015a5c75d85d664f039510af60b5ebb29951e91591b81865b1687b38770f4n/aHeodo
2020-09-24Attachments.docdoc a7bf6cee3dca01f25d30af7e184981a1d239058da20311b95129408827f2d98bVirustotal results 29.51%Heodo
2020-09-24MES_2020_09_25_G9400.docdoc 0ed207539883ae673ef01f8e02fe3d8aca621eb279ed0ac875079b159c05a6a3Virustotal results 27.42%Heodo
2020-09-24FILE 3740.docdoc 1632ea7fdf8e7ab955b1357fe5640e06aadcfb91202f35eba24bcff15b298b3dn/aHeodo
2020-09-24Rep_2020_09_25_CVA03464.docdoc 85c250bac6afbcff7c16c4cab2dd2653dc238fc483613bbf4c37b1fe3a6e8712n/aHeodo
2020-09-24List-688.docdoc 9e5f0e71f00b8f6b9873396df74c8857c4fa39ddc5375d47c5a657e6ce932cf4n/aHeodo
2020-09-24INF 2020_09_25 326712.docdoc 7f79ff37cd9a41bae9a937d105462a9deb6bf053d1b8d36efcc84fed27d6699dn/aHeodo
2020-09-24FILE-2020_09_25-913008.docdoc 8cfab9712cea12da9721200bd60d891ad5868d173a31260497d0dfac7919104dVirustotal results 25.81%Heodo
2020-09-24dat-20200925-ODR9025.docdoc 40553c3c1a1a2ff36541fff6d148b3d3a89962869b7d29d3dd978f4957bb53d5n/aHeodo
2020-09-24Mes 520018.docdoc 185f4da81b1ccadae432ba82640736fc8e8e2bf32ac25f0283780ab885f10b26n/aHeodo
2020-09-24Untitled_20200925_LAB030.docdoc 2f7a6f37a7a19e9da53854546cecd329d172d98e27dd512d348a384638f227b6Virustotal results 25.81%Heodo
2020-09-24list_20200924_270000.docdoc 018ad63f47b0c526a0dc6864302e8482d644e1d636bc862981882d9ed34b4d75n/aHeodo
2020-09-24Dat 1753544.docdoc c8610bfc395c0df7be8885b0b52319b7f39ccb478e3d3d90758ed63552f94a52n/aHeodo
2020-09-24Arc 20200924 5619428.docdoc 2ca4f67d659ac798a549746e9415d5924ad92dd7c8aa90dd445f1bf6b4e6c6e1Virustotal results 29.51%Heodo
2020-09-24doc-20200924-801056.docdoc 53894a66cb2c5b7803247d709fb0ddd3352721e5b03c2a381085a5018a2eda0fVirustotal results 27.42%Heodo
2020-09-24I460 2020_09_24.docdoc 1e2311cdd83dc62ce3967d86b505de9ac9a472d43568bb35f442c96d1f707029n/aHeodo
2020-09-24rep-2020_09_24-HSI404363.docdoc 4bf4fd8fbc2393d9f481cabefe7bce1b95a3b389d0240ac379990028255e46f5Virustotal results 27.42%Heodo
2020-09-24536_O407.docdoc 16b03b1a736df687552c54b6cafc8d0fe05b523e5eda225112c5e16bdcd9b0e9n/aHeodo
2020-09-24ILM4792_20200924_9552.docdoc 612249e717e41cbbc2e1f3b188a6239dd839b101daad36420d7c2ac1bc06566fVirustotal results 24.19%Heodo
2020-09-24LIST_XB69730.docdoc a258899b24c32a9441790d61c5db4301afae19b152551d9d08bcac2bc376346dn/aHeodo
2020-09-242514SWJ TG28866.docdoc beff6e1dec6d27e33ef7c729c5f11c9d044aa7dde6be325a028fd8f98c61c569Virustotal results 24.19%Heodo
2020-09-24dat.docdoc 951d6f18d680fd8bee849c739c1e9b2da02df8baa9230ab6c74266f3bbe444fdn/aHeodo
2020-09-24REP FLV035.docdoc 60bd12b32ea4d28ec43c02a394f2ddfcaa21c0820cbdff6e37debb55c1673fb0n/aHeodo
2020-09-24Attachment_2020_09_24_380318.docdoc 9d662d8134f80a49e5d1af24721adc994cc3335cf87cb206832145bb494d7e74Virustotal results 24.19%Heodo
2020-09-24LIST_2020_09_24_P8488.docdoc 4281c9ee68e59660621b3e010964d4d0c4babcbd981a8364e1b50db7f38fb6faVirustotal results 22.58%Heodo
2020-09-24Rep 705515.docdoc 531cda86b86c944133a24ae5428baf0f0de2eec8e5326ba1d15101ba7d1357fbVirustotal results 22.58%Heodo
2020-09-24arc 2020_09_24.docdoc 466fe575959bbf84502d995c9dbe9eed39a8f60fc1340600094b5ff7a6c4cab2Virustotal results 22.58%Heodo
2020-09-24List 2020_09_24 654.docdoc 963ac9c75f4684b43800ebc6cc5e1b94d27f2d8087cb41741025b4d20e66d92fVirustotal results 22.58%Heodo
2020-09-24MES.docdoc 2895c65552bf40eca8e7d0c2a4707dcec711ceb80af55e1be66fd9e5dade6268Virustotal results 33.87%Heodo
2020-09-24list-20200924-744.docdoc a480137b781966afdb9faf717461bdfa384061fd21da898b447d924801063c60n/aHeodo
2020-09-24DAT KU5551.docdoc 6ca4c4bc99110bba835cc64055378d05d0ac578abdbfb73fd3b4bfd9958123b2n/aHeodo
2020-09-24LIST-2020_09_24-02363.docdoc 649574766029bc1522b50f75bc2e6aeb76537751b1daf24bbc2f6bfadeaac360Virustotal results 32.79%Heodo
2020-09-2489329P-20200924.docdoc 94d496b45447bafbd61e3db3257ff0371ff39e44f783dd6ceca721bc79151be0n/aHeodo
2020-09-24LIST 2020_09_24 877651.docdoc 8523ee64ad62d31567483e0e181de018dd58cff185667cb0564e0ace8f22eaa1Virustotal results 30.65%Heodo
2020-09-24list-UIL3755.docdoc 8aa6ee85417efee3681ed0d50b4a7120458083c598820bed86659902b31682b7n/aHeodo
2020-09-24LIST_2020_09_24_1759564.docdoc d2f8727ea7e9cc981e1ba473128565b91230257d4e402038d2e03ef9661dee7fVirustotal results 31.15%Heodo
2020-09-24REP-2020_09_24-ZY492466.docdoc 4da7b86975d7a29be7c1f9dfc46eb1463388e66694d9df0ef78ee14549c145c3n/aHeodo
2020-09-24Dat-1733593.docdoc d3cbce7f756b07e47bb8f703bbe75f923ff2dd3134bf5ac11be8ec46e6a80500n/aHeodo
2020-09-24REP_20200924_018.docdoc 80e1bc32c17a50925f89034a663d003675155ef685794381b55a771b8b793dd1n/aHeodo
2020-09-24ARC-20200924-6233.docdoc e8a4a2f6f84a7765c97cfad101d7a08a1a6615d1f972f08475b2b16b9e37a57bn/aHeodo
2020-09-24MES_Z64173.docdoc 439df4997262d2db8e015f7449a8b33c9bf2c8db09f8b184d69c7ad6fe968c92n/aHeodo
2020-09-24UNTITLED 2020_09_24.docdoc f2e3feb41565cc844a3bb072dbb0d54fb53d4f1cc44860f23dc3d8c4f4c470edn/aHeodo
2020-09-24rep_20200924_KE11339.docdoc 7ac2d92f6e512351d634ba8379ee1740add6e1ef9323c0b1f178d38d4b37a50aVirustotal results 19.35%Heodo
2020-09-24doc-20200924-XS912788.docdoc 6725873944cc032a1241f756b6113b54f91201df2dea44fffc6db0e10d5873e7n/aHeodo
2020-09-24INF 20200924 759.docdoc 448c58d4e526ffd04116fb0f31bd9971ce9f51c993c4368e3ef8a54c93a2c70cn/aHeodo