URLhaus Database

You are currently viewing the URLhaus database entry for http://newww.net/cgi-bin/DOC/98jdZB9WOg/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:618980
URL: http://newww.net/cgi-bin/DOC/98jdZB9WOg/
URL Status:Offline
Host: newww.net
Date added:2020-09-28 21:04:00 UTC
Last online:2020-09-29 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-28 21:04:02 UTC to ipas{at}cnnic[dot]cn)
Takedown time:10 hours, 1 minutes Good (down since 2020-09-29 07:05:55 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-29Attachments.docdoc dffe6b12754772da4ccc5aa7c07425a752a3680f801e0df24fc609e879e83e8cn/aHeodo
2020-09-2918352-20200929-9607442.docdoc 27be7747d9f1e8080ba29e9d11d4623e75d529133896b0c741ad580a77524be1n/aHeodo
2020-09-29Attachment 20200929 610.docdoc 33c4a2fd6323bb9b915d3368cca5015470e2ebe56ac0d7fc33568530acc9fafeVirustotal results 41.67%Heodo
2020-09-29dat 2020_09_29 855.docdoc b9f2ef3014df3e4b77d60799f13cad1ca487bbba30542ab3ae5f1e7018633c6bn/aHeodo
2020-09-29arc-20200929-JPC899800.docdoc 0543a908de650442eb28c0b24cca2680f9d81f997991401a6dfa4c00a5a0d27an/aHeodo
2020-09-29mes 20200929 R623487.docdoc 1a9b68acb14a41b81e465462a902db345c061e9c26d442d55f4310203b27e3b5n/aHeodo
2020-09-29IR1308 ZDT770966.docdoc 466ecc37e94d5c4fc81bab60c1395d3cba013f2b4cd613280ee6c9f394f93f19n/aHeodo
2020-09-29UNTITLED-20200929-4342.docdoc 3e79f14f4c08406b5c877414b692137f49a9ae3e6916d5f3d670901e85cef51an/aHeodo
2020-09-29Attachments_20200929_900753.docdoc 9b846ef76b8ce3b96e0caf773b9aa5af2decb8157a2eb2b3332f46336ed10ec8Virustotal results 40.32%Heodo
2020-09-293806-2020_09_29-4216.docdoc 0028d5cab5558cff8e7be74cc0522d68dff4b695f5bf9e8067f2b5c61b0c05e8Virustotal results 40.32%Heodo
2020-09-29File_8155042.docdoc b19337ff283d5e928eb6bc9b902fc02a47f506746ab9fc02955e02d7112f3be5Virustotal results 40.32%Heodo
2020-09-29REP_8803.docdoc 20d036ecef1bdc268854cfbc558d4aa3536c41caf65312445a2c9e779ff04b9fn/aHeodo
2020-09-29doc_1103676.docdoc cab62d49d500e135acf0c1331510182e4fc10de9a53592bdb1b081825e42cb7eVirustotal results 37.10%Heodo
2020-09-29List-127.docdoc 0640443a07a7f6b188d0710e06ad87ade660169f3f7a727d20c62d2797a3ff1cn/aHeodo
2020-09-29File_2020_09_29_B8612.docdoc 4734288e85d6c3e9300ac2c1cbe27e866f93b509befa8f0aeb012fc5de0acaa0n/aHeodo
2020-09-2939719-20200929-WH04033.docdoc 246477a658fa6ecb8e5a5a6509eb87dc115c85a3cd1d465a8667f2cd468aa4e9Virustotal results 33.87%Heodo
2020-09-29MES 20200929 5424096.docdoc 76625b162b7830d0e881fcc218b3a1a5e02876825b671ae1ea5234fa2c9863f8Virustotal results 32.26%Heodo
2020-09-29Rep 20200929 A91531.docdoc cbbd7ed4de288e481568bfd404ee416c9654434c90d5453323245df46900c45aVirustotal results 32.79%Heodo
2020-09-29File-2020_09_29-6265.docdoc 6e47d9d4c5c0c5d99f35c5050daaa60384cc12611008a724b31054a3f8378835n/aHeodo
2020-09-29inf-QN685621.docdoc c4d71bfae9a53000542d7ed153b108ab1e860f71a1d39584eebf0c19ed44de4dVirustotal results 32.26%Heodo
2020-09-29Arc 20200929 4763.docdoc 0debea2deb612b9b45d6c0d5436d8a10523ab340be98ce9c66f2ff4bfba49eb2n/aHeodo
2020-09-28MES-2020_09_29.docdoc 45397b94d776a37290f1bc5d37f73758d17185070342f0186eb8aa5b031d8e12n/aHeodo
2020-09-28Inf_2020_09_29_6728.docdoc 203faceaea459744bcbda58dc7d1805054c4cbc185f4ffb562a9a24cf8a3f8ebVirustotal results 27.42%Heodo
2020-09-28FILE 20200929 VD613484.docdoc ef60c376b444bdbb03ce39da019d3eae8dc37db20231dd815489a01b31d476a5Virustotal results 27.42%Heodo
2020-09-28Doc_328.docdoc 9fcd248c2fa42d29896ea9274c9b7f05eb7a278c36aeb3aa1ab0edb3ad4bcc37n/aHeodo
2020-09-28Arc E356.docdoc 25ba07757eed7d8e7d07336a49141f5ee33fa19b03abf8e4dffdc67175f64b7bVirustotal results 25.81%Heodo
2020-09-28Attachment_20200929_ZJN4492.docdoc 2bd00c93683c862bb3172de25951bcc67b35b76bd38a02e2898bc62535102410n/aHeodo
2020-09-28F854-2020_09_29-9719.docdoc d72853f4f43479b5cf54a9a6cd20d3c0ed1758a6c370a4515f1b2d42aeb08ea2Virustotal results 32.26%Heodo
2020-09-28Mes 20200929 ZPB1183.docdoc 892671eed8cd1e26b5209503d1c9ffed3e3f04ec5760e421662e1b9df31177dan/aHeodo
2020-09-28arc.docdoc 84e86cacb1380fa9a15a3e972787fba140cb9d1e975013c8ac4027c58da8ca99n/aHeodo
2020-09-28dat_2020_09_29_SE156804.docdoc 3ab1c84503217087f45e8cf1acaef86781dfee20643e93e0d982dba8803fe719n/aHeodo
2020-09-28INF_20200929_85920.docdoc 38413610f847b081dc8863471aecc4ce783cc12e54a0960718c07a4316d95e4fVirustotal results 30.65%Heodo