URLhaus Database

You are currently viewing the URLhaus database entry for https://dpbank.com.kh/wp-admin/balance/m1sbmu1fo6z/zh3koootvm/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:629006
URL: https://dpbank.com.kh/wp-admin/balance/m1sbmu1fo6z/zh3koootvm/
URL Status:Offline
Host: dpbank.com.kh
Date added:2020-09-30 11:09:09 UTC
Last online:2020-10-07 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-30 11:10:40 UTC to network{at}cogetel[dot]com[dot]kh)
Takedown time:7 days, 0 hours, 22 minutes Bad (down since 2020-10-07 11:33:19 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-30O_83623373.docdoc a3d743d11312e842641d3124985266cfd1471f8d21881fb7dfc8dfa9cbd1fe47Virustotal results 26.23%Heodo
2020-09-30REP_470174277235168.docdoc 63d11b10d793151af69aa10ba45dcd9de40ca61834d018e42474786090043655n/aHeodo
2020-09-30INV_39113491.docdoc d46320a38b414b43c59ca8d4290d2da2129bafa4cacc5de0162242e761f1dffdn/aHeodo
2020-09-30BAL_4SEK5OFQPMSKA.docdoc 89184bca1106ed62901477bceef09ee282bceca404d17c44630544fdd803cbbfVirustotal results 25.40%Heodo
2020-09-30DOC_IG6789013170KE.docdoc d1cf503fbba6cc08731bec93c969a61a90d2e0a3f84c4a913535c9ab77e41160n/aHeodo
2020-09-30KN_36777149.docdoc 05917a3d7daf2bc7de49c374fe7ec364e19f2aa1b60480a666ed224053f0fe1dVirustotal results 20.34%Heodo
2020-09-30REP_43330121.docdoc 6a8c20f078785ffb74c4a5cebe9fe37cac8d5e8b01641fb56a63499cdd7bd0ccn/aHeodo
2020-09-30O_EB0355467919FL.docdoc d206f9b0e7b447444d1f5d592716186fac89b660509dc88efa51a5701e795a77n/aHeodo
2020-09-30REP_PO_09302020EX.docdoc 1d5daccb3ffdca9e417370c654eefb0f6a0b2c3de51d7ca751c676d623cd57bcVirustotal results 22.58%Heodo
2020-09-30FILE_NO7975616598UP.docdoc 583be8560739028b53b2363adc1a5198c194b0ea7abb706f3dd49e9a170d7f79n/aHeodo
2020-09-30TP_PO_09302020EX.docdoc cdc88da9dc92cd4bbf8e6de747dd552a54b99dce8dfc68b79373710fc7938e52n/aHeodo