URLhaus Database

You are currently viewing the URLhaus database entry for http://goodmorningclearwater.com/items/Document/T8hAkNpd1hkNaOsD0/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:697956
URL: http://goodmorningclearwater.com/items/Document/T8hAkNpd1hkNaOsD0/
URL Status:Offline
Host: goodmorningclearwater.com
Date added:2020-10-15 14:13:05 UTC
Last online:2020-10-17 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-15 14:14:02 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:2 days, 8 hours, 29 minutes Poor (down since 2020-10-17 22:43:09 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-17Mes-20201017-8565.docdoc 294c6f87d8514072c30988bd55dd643c5c018b9f9ae05b9db1a97d034b31e092Virustotal results 55.00%Heodo
2020-10-17list.docdoc cbabf68dbf69bbc9e13cf1c4decc549416db53379348b45da4b5fedff65152afn/aHeodo
2020-10-17Untitled-2020_10_17-367.docdoc c147f6f4d8e08ce92756aea055fb18dc3398e77ce2ba5a71bfa3d6eb5f3de750Virustotal results 53.23%Heodo
2020-10-17List-4733384.docdoc 560cbfa962587b928c5ba13f5cce70b94a0a90991ee4f4db32f2a6c6a3936237n/aHeodo
2020-10-17FILE_2020_10_17_67796.docdoc ccad29eac2b2a4c03fc1c9a9ac36544345fb0a5f454746c05dbb5f02d4d53210Virustotal results 53.23%Heodo
2020-10-17Attachments 528493.docdoc 4885a6fe3e6e3cf17f4b9c157b848115b2b51fc4b8e3e478650c6d8401062476Virustotal results 51.61%Heodo
2020-10-17LK596_7230.docdoc 203a54f8692f6554ad685a3d9e94ec1f3482366c3c455312540f744cbda4f479Virustotal results 53.23%Heodo
2020-10-17dat 20201017 485.docdoc 115b344de8011d635adae59417a4dab2f992101ce81619ffe1b1b0423d9df79an/aHeodo
2020-10-17mes 2020_10_17 J20733.docdoc ac172c6a7fb2f8004f019c9dd8d7400f660d58187ed3adcf2502c5effc15271bVirustotal results 51.61%Heodo
2020-10-17File 44587.docdoc 73a83fd3188295433015762cab772d1fc554aad7da08da7e0373ba66a0a9ba38n/aHeodo
2020-10-17Doc_AM63820.docdoc 65fe5c36c465cfa1cc58f54aca29a2da9e56f3fa0b499ff8ae0b654338db114bn/aHeodo
2020-10-17list-20201017-440.docdoc 64791e6b0eec05add1dc9e363173e850e7d26305d1f3940a7f966c42544b2147Virustotal results 51.61%Heodo
2020-10-16list-20201017-64233.docdoc 528b63ef8c44d0a5b08974fb6ad9efa60e0021ce6993d25b30ef1b90c00df222Virustotal results 50.82%Heodo
2020-10-16List 20201017 053237.docdoc d546749eeff6828f731a5f79a2352276696d9ce6d5614dc6e9779fa2dbbe6799Virustotal results 50.00%Heodo
2020-10-1603230J-AW9606.docdoc fd15389b3b01c59ca8423ab71c03de2492fa548fdb0905592ffe35c9289a8227Virustotal results 50.79%Heodo
2020-10-16File_2020_10_17_534498.docdoc 5c58c91ffdffd84690c6746f6afc2eaeacd03df2e4a83c6e662755624113cf5bVirustotal results 51.61%Heodo
2020-10-16dat 20201017 ZK4256.docdoc 4773da38da0ba3154bbb3b813c803bd6e1f9ab3bad1888f1402f7b17073620ecVirustotal results 51.61%Heodo
2020-10-16Doc_2020_10_17_ROH346757.docdoc 1d74d9c148d2a786425f0447d4415368184fd896521dc5054434c999fce03a31Virustotal results 52.46%Heodo
2020-10-162261UD 77390.docdoc 0d613e3b8dd87abdca992787394ba93c986820dd46d13b63128699ff814aa6e7Virustotal results 52.46%Heodo
2020-10-16UNTITLED 20201016 0878.docdoc 6db73d3f7fc4ac1265b81af31cd04fb1ef63de503ea603a20b93daa896e18c11n/aHeodo
2020-10-16XGN230 20201016 5561.docdoc becd0ea41a6c3f2b51a69aa00a1cbebef6693500be304c1930355601ad2972a7n/aHeodo
2020-10-16PE51566_20201016_G1504.docdoc e78b57e96d5a3632c93a56a0bbc199107c194dae316c84dd64473a513a3b6745Virustotal results 49.21%Heodo
2020-10-16DAT 2020_10_16 5179768.docdoc 35359c56db6c6b554320c0f3f2f1ac6470ee849d0e7bdb20696c529df2a3336an/aHeodo
2020-10-16ARC-2020_10_16-IL640.docdoc 0b39de8a1d12106ac3b6445b1837e1997793d2942550058963532f19297f3843Virustotal results 48.33%Heodo
2020-10-16File 3892.docdoc f57355bd1efba81163d91947723bf0beb7e259ecb320963ccec0c38d46cbbbedVirustotal results 48.39%Heodo
2020-10-16doc_20201016_7936961.docdoc 0e044c945bad69533f1cc676a53ed59d287e4681c239be2a61e9e4c46775da4dn/aHeodo
2020-10-16Attachments_LI924514.docdoc 08720082a85becdd96c2f6a15bd2e14fc19f13517c2a0b9aeae5fc4334adf92eVirustotal results 46.77%Heodo
2020-10-16Attachments-2020_10_16-ILH098.docdoc bddf126e79e9a62c235c0b9b763a594d8c49fc76d38f39400409262f43373d43Virustotal results 48.28%Heodo
2020-10-16Mes-2020_10_16-BA304206.docdoc e74ba7fccd951257aa46146461056b2353a80a3ea72b7d5216ca148d2d8d99cfVirustotal results 47.54%Heodo
2020-10-16File 20201016.docdoc 1624b05443de29506e082b313e97b643449089b98a8f72b9146fb94776fc498cVirustotal results 45.00%Heodo
2020-10-1668847128_CU9464.docdoc b458f12a6949fee524edefc720811a94bcdae2ba4403be20f0b1df513f4c7ac9Virustotal results 45.90%Heodo
2020-10-16Dat_2020_10_16_ZUX729.docdoc 1406e1ad0a2f3279707dc3bbd80c7b8ee1341d590c7e32490133958c6d2cf55cVirustotal results 45.16%Heodo
2020-10-16rep_OA5081.docdoc c9590b8ccebf3eaca2e64fc27644c7e7a3966d001c3168c1f56c9e943bc18360Virustotal results 43.55%Heodo
2020-10-16List_20201016_7679920.docdoc f43ffb253ed400fbee717e198d3419277815ddfbf133fb99c20a4ea9294297bfVirustotal results 44.26%Heodo
2020-10-16doc Y784.docdoc 5c950802d0e13e9e3d6ffd50a8ddae5845886576c9ef1d270592c086cd9ba38an/aHeodo
2020-10-16file 2020_10_16 MMP356409.docdoc 902d3b48f1baafaf6f2c85572b13693b97da55c7f52fe0833634a73227137570Virustotal results 40.98%Heodo
2020-10-16mes_2020_10_16_L847.docdoc c128f199530c6206b5a3f96445e0e788255d13133f6730c28fda83124e41386fn/aHeodo
2020-10-16Inf_2020_10_16.docdoc 87c5e9b3096c5f62c32a8cf5d8f039d34b3a6332ce4664871f3fba6f90ef0c31Virustotal results 37.10%Heodo
2020-10-16ARC Y990.docdoc 844fa7e2e8ddb967031bb8b2907076c09e64e5a9119bfa53df5303338b159265Virustotal results 37.10%Heodo
2020-10-16Attachment_20201016.docdoc 7fc6ddf9cf2f06edd039e1a51a60deb79891f36a46a9538ddf9634bff847fe9an/aHeodo
2020-10-16Inf_53499.docdoc fd599aca746e2e35846653c92d10fb3ca09d419e9cc624a4641def19859c8c82n/aHeodo
2020-10-16UNTITLED XYO581601.docdoc 091eb50d9fa579763ac89d5d3e0ca18b5d2e595b1523e2c4c3b4fcd4eea36983n/aHeodo
2020-10-16843L 2020_10_16 WKB19705.docdoc ab8fb0a4b2361d2bdabb361b5b7a4850c03ccc50a3c83085ae3a3cb1cd617080Virustotal results 30.65%Heodo
2020-10-16AU73239 20201016 5266.docdoc b8c3395821bf8abb0723002fed6297814646864cd0d71f5daefa5c24c38f445aVirustotal results 32.26%Heodo
2020-10-16dat 2020_10_16 59354.docdoc 3858f819b8f0592d10bad163b692a1a85db0ae60bdfa91a1272c3d32f216f1efVirustotal results 32.26%Heodo
2020-10-16ARC-9879.docdoc aacd12efd23212b0b9b6324b46e0c5c94877447ecc6f5757f31799e606b7a9ean/aHeodo
2020-10-16Attachment-2020_10_16-955.docdoc 6980b31565edaf3afbcff9d9e5944ae0ef03b5b895ffbe8416a5ba976a24f66cVirustotal results 32.26%Heodo
2020-10-16Arc-2020_10_16-23453.docdoc f937a97bd6491ef93fb7aaf9ba74ab45293543764c0c47415bc01da8b23e9a70Virustotal results 41.67%Heodo
2020-10-16UNTITLED-20201016-M512.docdoc 38a5fb11e6266a457f515df1b8c3ba51c2dfafb32164cec12057a63a473daad6Virustotal results 41.94%Heodo
2020-10-15List_20201016_02075.docdoc 859a52cd1b0aa5c84836f1d4b6e63be3df7155d97fcb2f40fce4a55d4bebb495Virustotal results 37.70%Heodo
2020-10-15Mes 824.docdoc 39f443a944e3114cf6c84fcd6c270f6f8ed42bd1ecf833189fb7e9a96c8fdd2aVirustotal results 38.71%Heodo
2020-10-15Doc 2020_10_16.docdoc eb03d4e9200be3cfb0b55c695c5c7e2f2770759fd4d2e8018dfc0161e8441802Virustotal results 40.32%Heodo
2020-10-15mes D06440.docdoc 9224f06c0199e984b9bc5e2cfc12af8d8ea1d1022db475a557a1e93221030f76Virustotal results 39.34%Heodo
2020-10-15doc_20201016_589.docdoc b6a29fa485514c193ba2a233797415547a50dccb1b774ac2c80ea3809d4dc7aeVirustotal results 39.34%Heodo
2020-10-15Mes_20201016_TMI291767.docdoc 14e928a8d3ef4c7013858f49c98cefa84fa4adcabfe98fa4b439c0675e176618Virustotal results 37.70%Heodo
2020-10-15Mes 2020_10_16 OK585.docdoc bb0d9d8cf3e5d3fb3e4652b1bdf66f7e687ebb79f7a388a116abbaf16a4653f0Virustotal results 38.71%Heodo
2020-10-15File-HG110.docdoc ba684ebc48901ee996b66714e35477d733b515c3c30830ede0647c2d82f61780Virustotal results 40.00%Heodo
2020-10-15FILE_2020_10_15_3867795.docdoc be2d72ee1a4da699026d47683395cd063bc94662a384bc7352e9596f63f6c843n/aHeodo
2020-10-15inf 2020_10_15 LC625.docdoc c06c5f5aa047340ed059bc1c9dc4b3d6d504c327ead6975d7ad864105454ac77n/aHeodo
2020-10-15List_2020_10_15_BYL83967.docdoc ebe9e0e7cb09bc0f3f863dac7dad37159eee6b50b8a392843a216f9d06243aaaVirustotal results 37.10% Heodo
2020-10-15LIST 20201015 YA214847.docdoc 025d55306343c8d022c5aa8d702939747f437c1f8be3ca31eb422b94bf223826Virustotal results 36.07% Heodo
2020-10-15Attachment_402.docdoc c5b83a9110c98d64c6be18ca249951522af69da8731273ffe57a2f25e1fd7157n/aHeodo
2020-10-15MES 2020_10_15 SDW6732.docdoc 75dd267099fdfd3110d516cfdc76eae4c995003a66972cab2b4eb59364874609Virustotal results 35.48%Heodo
2020-10-15REP X90668.docdoc 3b4c6148c3758e6d268d5a4913224ddcc917028132ea4f494b04a845aae3a84cn/aHeodo
2020-10-15ARC.docdoc 8374be23b9b3080fd3452328d45484d328474c2b5ac04b9a6b659bec8d27fd29n/aHeodo
2020-10-15UNTITLED-20201015-GCI928.docdoc 15f21498e046ce0577fa5fc0922e7c4953c8df70e99a1c3929c3c1584fea4938Virustotal results 33.87%Heodo
2020-10-15List_20201015_E0426.docdoc f12eab86a863456f2d5baf4dfdc1f52d659380054bcc0e15519a295259a27141n/aHeodo
2020-10-15list 20201015 Y4121.docdoc b8a36c0d639f18dcede90970eca0e7f71043d1300ffb820340a118a84770c83cVirustotal results 30.65%Heodo
2020-10-15LIST_2020_10_15_RAM069368.docdoc f607167136354fefa2961728a1cc92df13218607929e9f4d6bd59f82ea216a99n/a Heodo
2020-10-15MES 2020_10_15 XU497.docdoc 6f5d6dc0a4e19472b570cfdc77f2a062155744143dac5ed173e95fbc194f4b8eVirustotal results 30.65%Heodo