URLhaus Database

You are currently viewing the URLhaus database entry for https://uskolor.com/wp-admin/INC/qH3v0qsn79fBWdQ3a/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:627225
URL: https://uskolor.com/wp-admin/INC/qH3v0qsn79fBWdQ3a/
URL Status:Offline
Host: uskolor.com
Date added:2020-09-30 06:38:07 UTC
Last online:2020-10-06 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-30 06:40:12 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:5 days, 22 hours, 47 minutes Bad (down since 2020-10-06 05:27:26 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-02list-2020_10_02-BZ772765.docdoc 067c1e673ad4651cd4ee651d7e8d2621dec03ceae9e828f30c7734c1e5ec468aVirustotal results 28.30%Heodo
2020-10-02Untitled-X2710.docdoc 2ef749c3ad9cc5ce992bf6dd10419a608f27c828a0616de59fdce339216c60e4n/aHeodo
2020-10-02MES-20201002-1256685.docdoc 2e0e591fded3770dfe0bf1d5d3dbdb04c8e66abe5ded5254d8116c2a18d7cb49n/aHeodo
2020-10-02UNTITLED 20201002 119816.docdoc f5ce40f0d5896d349a34f3fe5c97da085beea52f3d4aac1aa35f66eafd68f6dfVirustotal results 26.67%Heodo
2020-10-01UNTITLED_2020_10_02_8499.docdoc 13c6b5f721451f98dc115ccd2220ba318d1ab222155ddb398a641a898be13ac1Virustotal results 25.81%Heodo
2020-10-01ARC-20201002-OKN3783.docdoc 7e1612ea633d0d3504ec480b81ee9dcef1ecac0027e4b1dabb2c9510d25309bdn/aHeodo
2020-10-01list_2020_10_02_765.docdoc 61d90b981c1823a18defd1fef8cf97a72c6dd8f9ec671b5d30579be1933d15d7Virustotal results 24.19%Heodo
2020-10-01FILE 20201002 676.docdoc 17a74d63351431ab60c6c523b17851fbc58d395af4f574b6c48a4383441f55b2n/aHeodo
2020-10-01UNTITLED_2020_10_02_HX1693.docdoc 179cbf578c9346ba1f910ca3fffceb4b8742fa9a14e22e8840f6aeb327d3d216n/aHeodo
2020-10-01CR32260-2020_10_02-257684.docdoc e792d898b596ba1b63d7e20d0472222df3df3e22802dce1f2af0dd786c80ee18n/aHeodo
2020-10-01Untitled-2020_10_02-I33661.docdoc b6ebe926a1fdb9dab77a989e1c2baa277a059ecd23ad30d38cfe23a490bfc949n/aHeodo
2020-10-01Inf 2020_10_02 SOA746.docdoc 2107f6f0e72299c2de738a72439bb6cde55017598205cfb4bb904def95c32fcdVirustotal results 20.97%Heodo
2020-10-01Rep_20201001_QB1180.docdoc 5908e5d3a8cdc41c90fd77dba64af040e3b51123db40e41187156506a8bbc877Virustotal results 20.97%Heodo
2020-10-01List 20201001 4043.docdoc 762ff0b38d71b679ea9cc4111562791f2877ca2568912bd290450f0de347534fn/aHeodo
2020-10-01doc_20201001_EX793.docdoc e13be4efd86f1555d3f10abf16e8a16ec0ce0b8e98889d775b76bcc6c7f98c0bn/aHeodo
2020-10-01mes-20201001-8185845.docdoc c8a52336e766c3528e9c82bf04fcadb0a6501cffc45a96de0903ffee21974db4n/aHeodo
2020-10-01ARC-20201001-JPD932738.docdoc f62e983e1977d2713fc38fb56fbff002fade36a76fa5b54111378bbb70e0f691n/aHeodo
2020-10-01FILE_2020_10_01_TJQ94516.docdoc ef39d0cacdf367b0606fc63082917413b6d4bfa309e4e8ebf076f9c776777949Virustotal results 20.97%Heodo
2020-10-01rep-20201001-LLV13707.docdoc 92293cd9361f1c321350bb79a2c3e2f805b30b65b72a564c027c2ce191834b99n/aHeodo
2020-10-01FILE_K28550.docdoc 0093fee8b1b5ef95ed81af5ad48c020ef9ab5a682e9494f2a0deeffa90bd55e0n/aHeodo
2020-10-01Untitled 20201001.docdoc 0896cbbc93498aba8208d70e14186648bc1878eca81bc4ddeb07be9141bfb3c0n/aHeodo
2020-10-01REP MZ169.docdoc 6e479b2ad5944afd22a2e516b58a97af6cf1e4ee558ab6c7e4302d2c9928b878n/aHeodo
2020-10-01ARC-260.docdoc 5dc35d0f237e44b3377a6e13ccea24f31517bc05dfc92d75a91a5343b6c1a9ebn/aHeodo
2020-10-01UNTITLED-PE2018.docdoc 429640344ceeb02f20848b6aa0881bb97191972235419d97859adf9e6762369bn/aHeodo
2020-10-01List 2020_10_01 84167.docdoc 1fad0d1e9f92471ad92d8d22694e3fc307735bc004af3b0c3a402f22fa6eed3dVirustotal results 20.97%Heodo
2020-10-01INF-3493.docdoc c4c4cc8b217cf11e0e82a0c1a845a396812ab6c9e7405a0f1e51162aef81c702n/aHeodo
2020-10-01Untitled_20201001_2561496.docdoc 211f2c462c3c6a670add324dece52fa65dfe0be419f4f6fbf97c1d2b76064607n/aHeodo
2020-10-01rep_20201001_2565.docdoc 21eb469426dab3a249476c273f96a3bc4989d6212b787bc6142a5223251d6a72n/aHeodo
2020-10-01MES 20201001 DCB457.docdoc 92fc4013ca1a46683aefe7c783436c66926ac1790722d61017d9d1db2ed417b0n/aHeodo
2020-10-01ARC_2020_10_01.docdoc 9c719790d407174eead364b465df37878831b659af2c579c1c333373224e53b4n/aHeodo
2020-10-01Arc-20201001-L77074.docdoc 746113af0253d11772b82c935ec29f4686e5a6ad13798afc399e00556208bc24n/aHeodo
2020-10-01MES 20201001 PZ395588.docdoc 3f5284458a0d2d7d50d7487391aae521f625a8920bfe03a7c88d412f8c17699en/aHeodo
2020-10-01rep_20201001_242758.docdoc dc39971b11bac88ccead0c170436a904cd1b00c5b49dbb629aa5c7f81f1a3edaVirustotal results 29.51%Heodo
2020-10-01List-20201001-246290.docdoc 4bd8263c0751db82dbb92c4c6fc12a02050ca69256a36a40ee79b994a0cdbe8bn/aHeodo
2020-10-01File 20201001 9939895.docdoc c22c630bccc355598f8a992e640e0ad20e81dba56b0dfc2a38a3ae1bfc0e767dn/aHeodo
2020-10-01Attachments_N617500.docdoc 0679cc770f45f325a058c315d00b0c8bd8764f1b91e51306b38835eae11a9e50n/aHeodo
2020-10-01Attachment_20201001_864.docdoc 35219ce35f0741058785e4bc864b33f524806aadf6d8dd77979e72e25f6b23f2n/aHeodo
2020-10-01Inf-585436.docdoc f19e3c04859bcfa6a7272325ea91a0d03d34699a050291787af4d3d9aba8f4d0n/aHeodo
2020-10-01FILE_IZ2200.docdoc 9b07ffa3b699ac627a00d3d1fe3fe5f9701af22d83567a3bccb838486970e504Virustotal results 29.03%Heodo
2020-10-01Dat_2020_10_01_E281.docdoc 082cfd95d0b520f52fee520762fa4c4620f7f343195f65a72da3cf34422119b9n/aHeodo
2020-10-01doc.docdoc 6eb4294cb19f6acadf70b75a9ec23ae77c8bb8123fde7c58d293b25ab12184c9n/aHeodo
2020-10-01Attachments-5201.docdoc dc3e689b6ae35f5b93ff02f0010a64854b462513827ad17b71a3d9991b6272b3n/aHeodo
2020-10-01REP 2020_10_01 70065.docdoc 6a37830158b6a8e60f6bc41880d508e53db1b6f59b4e917a7d361667de807875n/aHeodo
2020-10-01Rep CW719.docdoc a1a6daeddc9c07b3660ac0f9f22b98011615cbe27c907e95d9a9b568b6febfb7n/aHeodo
2020-10-01Untitled_J095014.docdoc 7939bd84d7195af270a86b1cad9d3a413effbf4dccb91cced148bf37ea8b65deVirustotal results 29.03%Heodo
2020-10-01MES Z950556.docdoc 857db507ee804fb61efddc2c08ca8c0da54fee58ede29f82bec97513e1b263cfn/aHeodo
2020-10-01inf-2020_10_01-19768.docdoc e0f75fd1da01c160ddd7d2e17d64c51d2d04ea2979f26e35f7e7c7493a7b08cfVirustotal results 30.00%Heodo
2020-10-01dat.docdoc 9f2b84e3636d99a49ea3ae417c564253d9a351cc49c756a61c63acd530fd3748n/aHeodo
2020-10-01MES 20201001 FBM025683.docdoc f500682624f2e7ca6a407eee8ea4d347097c36bc08e8717a8cf6496152f9a627Virustotal results 35.48%Heodo
2020-10-01rep_71876.docdoc 4e29f93d23065a600d39a4f1db754b951bd6a38706c145d990df65d6ebf5b6dfn/aHeodo
2020-10-01INF 20201001 AF603.docdoc a12571b616d1499b09566b0d42aa974633c3772d339c768a443017702baa86c4n/aHeodo
2020-10-01Attachments_YTI639868.docdoc 14086c7d40516a5e11471a163fc4c4d594adfd1c5965e0ae0ea7ddcd013252e1n/aHeodo
2020-10-01File-2020_10_01-ZS442.docdoc f4aeb1fb3ee7a1e47154bd3b5b2209626b73ca9812072ce7597fd191cc384e93n/aHeodo
2020-10-014694-2020_10_01-2574.docdoc 777127cbba49b66a0abc912156156af484a0903a78b298981ed5e34b107cc08cn/aHeodo
2020-10-01Arc_20201001_771965.docdoc bde7001edeb6f299d49c1bd80bfa2368ed58033c8a6f3da6fc35e3b77b6fb79dn/aHeodo
2020-10-01UNTITLED-2020_10_01-Z21357.docdoc dd67f6c4d25192a01c4c15b73cce5e5387ea5e256f83c8f36b5b9eeb64296410n/aHeodo
2020-10-01ARC-7375.docdoc e85cd2b7d8fc66fe5e53999043e387a05bee8f1a8f0eb603fbf6d646707e0b49n/aHeodo
2020-10-01dat-20201001-0966.docdoc c831c106f8014dfb9f2010acf1b27a73896a4def52607e403a2a9740926ed0beVirustotal results 37.70%Heodo
2020-10-01DAT-HKY470093.docdoc 86dbb41d6058264e118fb00ad05407dbef472020460a4c9f0de0ada45e794935n/aHeodo
2020-10-01DAT_2020_10_01_WNA643952.docdoc 2316491908b1b0175a9782d21fef85f16d29b5dd05d72c00c8dc943ee110afb4Virustotal results 35.48%Heodo
2020-10-01INF QV67951.docdoc ccf93c2ab74f6f2f92abeba4a4ee4d1c5cf50928906b1793fd008b8284409e51n/aHeodo
2020-10-01DAT_2020_10_01_8254.docdoc 34bce035f84a22c00827f1722c2caaedd1f3d7ea059b4a4a695e8867874de5b9n/aHeodo
2020-10-01Doc_2020_10_01_EW336.docdoc 625b3a690caaa5c130c9cf6aff2104b733573c0124222e7761d9d9abd7f5bc03Virustotal results 29.51%Heodo
2020-10-01FILE_20201001_2670143.docdoc d382a8d884d288f590e7382d6f5a50924269e1098dbeff15c664104aece75ddeVirustotal results 29.03%Heodo
2020-10-01rep_20201001.docdoc 1127939b95fc439579b8513866e2a50ebeb5657a717a1d6425d49782213b55aeVirustotal results 29.03%Heodo
2020-10-01Doc 20201001 7120.docdoc 5ad115d91c8d255bfc8162408ec267d672db69e95bb393c54e0055136e7fc148n/aHeodo
2020-10-01Doc-20201001-RU0406.docdoc 1065e6daa80b86a72a1d83d506754e2095355742ba0162e798a32fe05d39c265n/aHeodo
2020-10-01List-20201001.docdoc 1a4225aa9c57fb8c97a5859dc3d004a323c5a31ad17def4ea965f4ed6fb8dd88n/aHeodo
2020-09-30inf 2020_10_01 NS814.docdoc 83528dd86f27eafffd6b8b9bc31bcd40ce046ae2f1eadc585ccc3125af320625n/aHeodo
2020-09-30Inf.docdoc 06c7dc1301836c796492d6ca99e8461840a031969bfcaacde4cba2113ac79069n/aHeodo
2020-09-30UNTITLED-2020_10_01-93574.docdoc 24a4f7d8cf601311928b7d9c78fd6067e4b6e6a47c641fbdc86703b0dd3f1ee7Virustotal results 27.42%Heodo
2020-09-30mes-2020_10_01-889.docdoc 00811b4a43db0ac2a88c49f0f4cbda45da02316ba871e9e1fca39f1217a92f46Virustotal results 25.00%Heodo
2020-09-30rep-20201001-29446.docdoc f11d0274ff135a761481a1bb14c95f9c150546817e0a85e6f05184d628df0144Virustotal results 26.23%Heodo
2020-09-30mes-2020_10_01-313972.docdoc 7b2561cccd85d4a2dd4d7c8c873b6e498f1030c959b48a8899a4032502d0c4c4Virustotal results 26.23%Heodo
2020-09-30LIST_2020_10_01_0015652.docdoc 19b1eea04af9072b8f9b94aa2c85b3160cbd12770bd5d169655b334141d8ef3cVirustotal results 26.23%Heodo
2020-09-30list.docdoc 32a1991f3cccd7f0d787d1fd9ef745328cefd8d134d25a6a2e12d49808143952Virustotal results 25.81%Heodo
2020-09-30Doc_2020_09_30.docdoc 9cee1e4dc71831888865312ede140d40ea8091824bf6af5428fb7ecdce64ac4dVirustotal results 24.19%Heodo
2020-09-30UNTITLED-20200930.docdoc 45440a139d3d0c4952dda574501e86db04790d2f61ce83371b2946ea2d25d8a5Virustotal results 24.19%Heodo
2020-09-30dat-20200930-378.docdoc 80f5d2e808b8c7de7bea25770b1eaf9399318da561276024a0208d1c72ece2faVirustotal results 24.19%Heodo
2020-09-30Inf_20200930_W87369.docdoc 6660c9467c8a00bf94702fb2f3887f078c41c6f662507e7c780dc6567759b33an/aHeodo
2020-09-30list-2020_09_30-W1379.docdoc cff2fa25c1647eefa1f93a6154f913e48d56acf9a0f2f25d477bf83ddbc3a64cn/aHeodo
2020-09-30ARC 2020_09_30.docdoc 98a129783214c4f848182d4ee393f9778ea81fad1808c5d1e589afa4738e38adn/aHeodo
2020-09-30LIST_9322.docdoc b45538a5c2f1eab20e6d8dab63909e18e7cbcf2e60b52c8546824233ad1a5f9dVirustotal results 24.19%Heodo
2020-09-30file 2020_09_30 H966761.docdoc e2b24fbb416a982a127d5345f349e7b8c4f1ed8ef78c4dee5bfa98fb7d957fa7n/aHeodo
2020-09-30doc 476.docdoc 11b7cce663e70bde75cbf0b81b54ab96d97eac177d58c0abbc44f8c250854a8cVirustotal results 24.19%Heodo
2020-09-30File-20200930-DAG5134.docdoc d1d490fff99d39d7fe492fb302196e52af180381b1ccfbf0bb48ad76dd114168n/aHeodo
2020-09-30Arc-P3858.docdoc cd4e40d3b639c11b89ee51b90d700ac2d0036337b64bf354c10703b23923e621n/aHeodo
2020-09-307531-J295640.docdoc fe2b3b26f27a28edd30637e0731391445f14567e3b456f3ce5f2250d3ba58d71Virustotal results 22.58%Heodo
2020-09-30mes 9612.docdoc 20c992b630d6e6b26b569be0a0f276a8d5f698cb5f79cbd6d2c3f2741c839728n/aHeodo
2020-09-30FILE.docdoc bb859c1cdc55c8efda32c573ecc7e09c0692cf12de6a7c4bdc300e6e86456782n/aHeodo
2020-09-30DAT LVY2098.docdoc aa5f51ed04026aad5af58f4d5ef9ab31771b70fb02bd536162e5ae19f6e3531bn/aHeodo
2020-09-30Mes-2020_09_30-24888.docdoc ccd09c9d5a3e23cf11d4573a5ce8d84c634f8cdcf7188378a94ab61d27544009n/aHeodo
2020-09-30Dat_2020_09_30_OS98073.docdoc d8e405782c4f5b141b6031715d78b4d56a4b64b6f8f61f6de6af59c7cac4e96cVirustotal results 21.31%Heodo
2020-09-30Arc-20200930-KZ201004.docdoc dca2f3f5cd4fc577315e8bd9fcb344afb5cdc0726cd6349dd3698c48cc0542d4n/aHeodo
2020-09-30396O-MOP203347.docdoc f6ed8a2b25a6f8f693aa0aa17e1a77c02888113452cbbb4efae319131fd375ffn/aHeodo
2020-09-30inf LSS33538.docdoc 7af64c915f5010a4a5d04d1adfdcff79a31628d3ea1774547057f2f8a2b229b4n/aHeodo
2020-09-30Untitled-20200930-2628980.docdoc d1d29ec48f52dafe3baabff310d309ee7de8c725618d5db63307636e5ff68f4bn/aHeodo
2020-09-30Doc 322.docdoc fd826f7ad1f1e372efdc57065d0bb9c4c29931529a7ec64c0cdc3fce95a4b547n/aHeodo
2020-09-30LIST 2020_09_30.docdoc be1d469e7f434641202ffde45e666cd4b1d255814f8cbf344a3aff1e78e86768n/aHeodo
2020-09-30Mes-20200930-C497299.docdoc 6a8fc6ea0a16a349b6127200b4c1398c112a6251339536b6e0c034c035cb5eceVirustotal results 22.58%Heodo
2020-09-30File_20200930_167582.docdoc 1c19fac3068aaf8a893e43175cf7304a5dc037ad05a31eaec72df3b1f9de9905n/aHeodo
2020-09-30file_J56415.docdoc 0dc8b5cefd0791007bbc51f60516c87fd6d938fe4d44c7f7249e47f38cc3c73an/aHeodo
2020-09-30MES 20200930.docdoc 7517322994d207e75f7e760a7797f433ed016d4d39d3b2cc257e6b05d158c0b8n/aHeodo
2020-09-30arc_20200930_NLE580.docdoc 32df3c70f61588818db28100b3aa78cd777b526393d31f97a17cddbee56e12d3n/aHeodo
2020-09-30662BCV-20200930.docdoc 14f2d1d18d19afe92e1aaf65fcc49f7798d6d9c1c150d1d840895741bdd527bfn/aHeodo
2020-09-30LIST_560531.docdoc a0105d00c8554ccf45329bf8b6f502eb63dd0e844edfcde8e2bd0c6000c9e708n/aHeodo
2020-09-30Attachment.docdoc 97a1dcdb0f512e1576b86aec1d69b7666ea402ee4259cc24fd6ae14892a6e584Virustotal results 21.31%Heodo
2020-09-30mes-20200930-XH65279.docdoc a3f7b976b0c108284bf0de59187798f84d509ad7182c92761cedbb9b35ba4a3dn/aHeodo
2020-09-30File.docdoc 05674b023509b9764ea5b6a44beb92fc22f3e2c6ec3f1e8e96723fb0cf522056Virustotal results 21.31%Heodo
2020-09-30REP QON13725.docdoc 12ac85eae36cadb62fd9e5f907ddfb4be98326edce0e3e073622a1c87563cfa0Virustotal results 20.97%Heodo
2020-09-30Rep-801747.docdoc bc1a1a8828821a74c104c0e49dc6a8456e2d89c4f2af71491ea5136f93460561n/aHeodo
2020-09-30mes 2020_09_30 J735.docdoc aeb2040f463a73944b82179ca8dd49ea3531d9b21d9d7b837b38d6817a9bfa7en/aHeodo