URLhaus Database

You are currently viewing the URLhaus database entry for https://betyland.com/wordpress/Document/xmVq14mmye0yPb8qnpDE/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:698122
URL: https://betyland.com/wordpress/Document/xmVq14mmye0yPb8qnpDE/
URL Status:Offline
Host: betyland.com
Date added:2020-10-15 16:11:23 UTC
Last online:2020-11-03 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-15 16:12:04 UTC to anti-spam{at}list[dot]alibaba-inc[dot]com,abuse{at}12321[dot]cn,abuse{at}alibaba-inc[dot]com)
Takedown time:18 days, 12 hours, 19 minutes Bad (down since 2020-11-03 04:31:27 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-17ARC_20201017_OHT156188.docdoc 294c6f87d8514072c30988bd55dd643c5c018b9f9ae05b9db1a97d034b31e092Virustotal results 55.00%Heodo
2020-10-17File 8214229.docdoc fd4a45974318a540bf249d7aa768f6d4ec1bb268bb05e5028935db34aff711f4n/aHeodo
2020-10-17Mes-008.docdoc de8f5371f1f381eb86c66eb64a658010a08a18e4e1be1069602195f8c59f61ecn/a Heodo
2020-10-17doc ZE6166.docdoc c147f6f4d8e08ce92756aea055fb18dc3398e77ce2ba5a71bfa3d6eb5f3de750Virustotal results 53.23%Heodo
2020-10-17N445-2020_10_17-050.docdoc 1cee91ca2689e165e0a72614f98d0dc71da6671ecd0e7f32bb3d6d2710e8dd0dn/aHeodo
2020-10-17Dat-2020_10_17-RH383273.docdoc ccad29eac2b2a4c03fc1c9a9ac36544345fb0a5f454746c05dbb5f02d4d53210Virustotal results 53.23%Heodo
2020-10-17LIST-20201017-NU930.docdoc 8b3323767793829332133050855ac69ea1a0cd1b5a51441f1baf16d09f47e663Virustotal results 53.23%Heodo
2020-10-17doc BOX004406.docdoc 4885a6fe3e6e3cf17f4b9c157b848115b2b51fc4b8e3e478650c6d8401062476Virustotal results 51.61%Heodo
2020-10-17File_20201017_92506.docdoc 78f2969b92269cd9a3e1cc7003b0949f47421d551c323dbeafa94ad0a836bf34n/aHeodo
2020-10-17948 2020_10_17 TFV976.docdoc 4bd01a5aa1d997804821b42665124f2fd7799102613bf0bc2e7eed3bac76543dVirustotal results 52.46%Heodo
2020-10-17dat_20201017_F222.docdoc 49bfab81e7c83836e13d24a1c3e607ce00aa745e850f110ef848cf96ab0b5b30n/aHeodo
2020-10-17REP-9065716.docdoc 1e52bc38ce5e8a3c4da25a7c7e4d8169a31fa22bfdd9e43759ff57d25b40db02Virustotal results 52.46%Heodo
2020-10-17rep-20201017.docdoc b5ea62943f3b8f07f8fc66e4e35a1d4d12022eae32ee901b016f48bf66fec06fVirustotal results 51.61%Heodo
2020-10-17Inf-VVN927671.docdoc 1e59616d8d30b5c30b132e96368fd13723b10d8111db17a2c7aded6d311983e5Virustotal results 52.46%Heodo
2020-10-16doc 2020_10_17 268736.docdoc a9d9b8357ff803bd36d7bd0c12c770487fe774ccd22e81318606bad0f6ddaf90Virustotal results 52.46%Heodo
2020-10-16LIST 2020_10_17 IJ950155.docdoc e6c583d968049b133209f01abf2a46bfb3fdb4abd68b5f0ef3e74881c438d1c5Virustotal results 52.46%Heodo
2020-10-16File_880.docdoc d546749eeff6828f731a5f79a2352276696d9ce6d5614dc6e9779fa2dbbe6799Virustotal results 50.00%Heodo
2020-10-16GIQ14323 2020_10_17.docdoc c5480c5bcd7c9b06e744ebfca49ef98e45da1200c5e3762d6b47d9825189f3eaVirustotal results 51.61%Heodo
2020-10-16FILE 2020_10_17 5730.docdoc cecc7a6d54b23fac9722185d9674512f5b51840e9909978de84128d07172791bVirustotal results 51.61%Heodo
2020-10-16MES-2020_10_17-G810.docdoc ee2a584f20b8fae9caa25baa3476b1dae0aac0d511a2a2584dde95eeb42c4d06Virustotal results 52.46%Heodo
2020-10-16list 20201017 809.docdoc 49cdf52f6974aff3348c2c2ddb75be089f05da06c6dbc7f5b28fb6b5ee4cbdfdVirustotal results 51.61%Heodo
2020-10-16Doc 2425294.docdoc 0d613e3b8dd87abdca992787394ba93c986820dd46d13b63128699ff814aa6e7Virustotal results 52.46%Heodo
2020-10-16Rep_20201016.docdoc 14fb23d425064edf96ba4acb656479002d69054eccbae3688760eda138dbb67cVirustotal results 51.61%Heodo
2020-10-16arc 2020_10_16 PHO4734.docdoc a0851102c87a910c627e0d68a5e41dd1b448b75e66fab4bb0623715d71b6a43cn/aHeodo
2020-10-16Inf_2020_10_16_Q14588.docdoc becd0ea41a6c3f2b51a69aa00a1cbebef6693500be304c1930355601ad2972a7n/aHeodo
2020-10-16File 2020_10_16 9135.docdoc 946f2932db99a282d3ebdec264e3de1b8c260b12f95769381d8bc99433b66b93Virustotal results 50.82%Heodo
2020-10-16inf 2020_10_16 6806.docdoc 01c662f8366e330d9a6ce7ed84d56d851bf7a3837ca52fef71a7c0eb9966abd8Virustotal results 50.00%Heodo
2020-10-16Mes_20201016_348029.docdoc ff2225f50847fbfdff2af9e81b67fc82dc5a26f7c4a78edbe36d775f1c153c22Virustotal results 46.67%Heodo
2020-10-16Dat_2020_10_16_BF66023.docdoc d6a39bdb97baab89afc48245f344e08873c19e0e92da5841f6f3afdf899d735bVirustotal results 48.39%Heodo
2020-10-16arc_2020_10_16_L64449.docdoc 73af5d8dc838da50fe5bf91e2d5b0c477691b5f53a915e40966cce23390b4d73Virustotal results 48.39%Heodo
2020-10-16inf_20201016_C5671.docdoc 3eaa0b65ba2011470369ab443b530cc881c190b9504553bd9944dde2e377e698Virustotal results 48.39%Heodo
2020-10-16file-2020_10_16.docdoc 1cc8ccaf21f72d5aee417cfcf2102f4b5bd1213bfd52198ea91e30db4995e85bVirustotal results 48.39%Heodo
2020-10-16rep 20201016 OF72125.docdoc f40f5db1426fe2f7cad79d90340b062bbb4c7a8caa8669516cd3f68245d6a075Virustotal results 44.26%Heodo
2020-10-16ARC-20201016-0521007.docdoc 8ed756461aafb34e46cb55981e7ee51b05239c5b256671a70c10c13a2d1b86c0Virustotal results 45.90%Heodo
2020-10-16731424_20201016_5192.docdoc 2278a6affb021c01407640a3bdee3c0cdee192eb4b8326f90188c57e0e428856Virustotal results 45.16%Heodo
2020-10-16Untitled_2020_10_16_XM026662.docdoc b7f75b414b39d9953e79e861636a8f2752e14212713048f10fe98ed9a5a28063Virustotal results 43.55%Heodo
2020-10-16DAT 2020_10_16 8021444.docdoc 902f211815c618d5fa4d6b9626122d47dd7076349d7924dae9d9e034a9416b13n/aHeodo
2020-10-16INF_A78479.docdoc 94f9d064a654c11dfd64a500db871e2fa948243c8fa44e8a324ae7a541d45246n/aHeodo
2020-10-16Attachment_2020_10_16_NR02001.docdoc a0280b173f8cf4f4c5ef7f47352415c416d82a17fecd5ad83e4e2e3db88e8c11n/aHeodo
2020-10-16Attachments 4655.docdoc 0d8a6d854e14a57fed7fb1f39c731fcc825c411e22410ba84b0f771f327df08fn/aHeodo
2020-10-16Attachment_2020_10_16_R715001.docdoc c71a347dc1b4b4f771859fa46e9bbc78f503861b6af6501a3a1106c154df7830n/aHeodo
2020-10-16Untitled.docdoc bc96169f690600679633a5223fef5fef9760fe7531e3e555c2bbdfa6472336f0n/aHeodo
2020-10-16Untitled_F799575.docdoc 0ef4619de5dcce5e63b32e29c2c6d996546c456c648048b5b5e064970f8bff59n/aHeodo
2020-10-165631-20201016-68502.docdoc 091eb50d9fa579763ac89d5d3e0ca18b5d2e595b1523e2c4c3b4fcd4eea36983n/aHeodo
2020-10-16mes 20201016 02317.docdoc 5dcbc3ca0de0a87ff5d782320c293502637d846e86c909bf7540a4b25924ef04n/aHeodo
2020-10-16OY98816 GPC703994.docdoc 1bd4395a76b6ed6c809259f58a36266882c9a3f79e1064a5ba0277561ff8addbVirustotal results 32.26%Heodo
2020-10-16FXW03949_2020_10_16_758.docdoc 40f707ff0b92ba2a43159eb0f53765ee692d9f002ca512d1eefd9cf7ec8df2e9n/aHeodo
2020-10-16892_20201016_U56831.docdoc 2f2fc910ebf28cc8b687140edaf78de565a50a73f22bf2d0da6b4e8dcfa5c5e8Virustotal results 32.26%Heodo
2020-10-16Attachments_2020_10_16_QY767297.docdoc 59bc6c4c9aefc45191fcdc25edf0f1e99d98dacbd979ca2b917563ebb376b0f7n/aHeodo
2020-10-16doc-5258614.docdoc 2f1309d8bb47ab6e05f61b0ba47876288b946708065197deb5d017a402cb6397n/aHeodo
2020-10-16ARC-20201016-678691.docdoc 37c21f0f578d3c63515c63f95541e4b9415878dbcdd420e28a57ad221d118f2eVirustotal results 51.67%Heodo
2020-10-16O24779 20201016 VXX54789.docdoc 953e1db493bd64b85be6166ddc1fcd8c35fc618189477b578cd123fcfc86611en/aHeodo
2020-10-16Doc 20201016 AHU790549.docdoc c4493f30d0f99ad1a4256ae563fe215e3a21c036ad2b4cc1ceb4792eae8600d9n/aHeodo
2020-10-16Doc_2020_10_16_865377.docdoc a47762c209b57d46904972127a1289ee6b304fad012783b113472df47b76d81fn/aHeodo
2020-10-169386_79665.docdoc 8d55bfa88aac7102ed41f043d7266e85bfd3e83d0d8f7d298876419eb1bde683n/aHeodo
2020-10-16U3241-2020_10_16-68366.docdoc 33e9aa06794873710331ae9974a1df6d3d1529d39553dbd6a504a1181b05bbe1n/aHeodo
2020-10-16454U-20201016-5973.docdoc c85e897e957fa44b137c35917ea9886343ba4b8d4fbc13668515d382ed874555Virustotal results 46.77%Heodo
2020-10-16Arc_2020_10_16_509.docdoc ef15c47fd8dcd129ee3580f45ef2062281b18b7410002a2631200043b9d170aen/aHeodo
2020-10-16Untitled-2020_10_16-9311804.docdoc c0fcff9f41f313cc5a5b8033b5f724c61f19943859630958d99350d3b18b9ebeVirustotal results 46.77%Heodo
2020-10-16List-2020_10_16-8824836.docdoc 83448d68b30a338d342ea658d0e47016d9d48db83c7750caf277bc17f0a3f0f8Virustotal results 41.94%Heodo
2020-10-16FILE 460.docdoc c7cf5a3d5d7fa1c15561e9ae23236bca356132e283a8651ce8f9257bdf79f77eVirustotal results 42.62%Heodo
2020-10-16161RRW-DTS542316.docdoc 4bcee4209d4076c06692a189497b7953ee701dcbd290530146d15bac6391ca75n/aHeodo
2020-10-16Attachments_20201016_A37425.docdoc 77336efe637e5b6480a97a6764e16c75424a6c44345993fbc87a04fdb1a4437dVirustotal results 42.62%Heodo
2020-10-16mes_23272.docdoc 38a5fb11e6266a457f515df1b8c3ba51c2dfafb32164cec12057a63a473daad6n/aHeodo
2020-10-15List-2020_10_16-45840.docdoc b060160af00ceb90812eb219ac8e72258f487365866f64374c5786171cd6c947n/aHeodo
2020-10-15540M_6689194.docdoc 9ad0875a2102f3ee12801e8cbaa933ceb7837cb914ec2102841a5e40a0eaf5d2Virustotal results 38.71%Heodo
2020-10-15REP_20201016_1604626.docdoc 609112e04613f2eed3ecfddccfd458d553696c160e8d452d24621c02e2ecd9edVirustotal results 40.32%Heodo
2020-10-15Attachments-748677.docdoc 9224f06c0199e984b9bc5e2cfc12af8d8ea1d1022db475a557a1e93221030f76Virustotal results 39.34%Heodo
2020-10-15LIST 2020_10_16 3618.docdoc 5ae6059ec64a9952d72dd06acc66b5a25a984f65a359ed2c2fbf70275f8f4204Virustotal results 38.71% Heodo
2020-10-15Attachments 794.docdoc 57d9875f19239fe1fe11134bde1cf1eae57315b38691deced8eca15315650ee2Virustotal results 37.70%Heodo
2020-10-15Inf_2020_10_16_BNX5434.docdoc bb0d9d8cf3e5d3fb3e4652b1bdf66f7e687ebb79f7a388a116abbaf16a4653f0Virustotal results 38.71%Heodo
2020-10-15UNTITLED-D828791.docdoc 3939a27a1020c30ca4c964869ab63dd1df1046bffbf5ec73b37c0d7928270655n/aHeodo
2020-10-15ARC 2020_10_15 W43621.docdoc 087d4ce4b2eda3a5b3163a35e16fd76ec394796385ba25d0fe279bf11b725571n/a Heodo
2020-10-151665PZ-TI5059.docdoc be2d72ee1a4da699026d47683395cd063bc94662a384bc7352e9596f63f6c843Virustotal results 37.10%Heodo
2020-10-15Dat-20201015-A3416.docdoc 7b467bb043db52981a24d5f2680b1f2dfeaf55ec319a54fea495dd5972e6eb7cn/aHeodo
2020-10-15UNTITLED 2020_10_15.docdoc 4e5714b2cdd27477923fc0212b8c2c98e39419799da32885649e9942ce92c52bn/aHeodo
2020-10-15doc 06814.docdoc 7ca67f684f308874cf0e09f91eafd8a0faac215153b89240b04b0fe43a940f8bn/aHeodo
2020-10-15mes-2020_10_15-7210.docdoc aa78d4049fde87461afbc1654128cda3d34fdcdfabcd7c960cd72c36d63399dan/aHeodo
2020-10-15Inf 20201015 PNO9905.docdoc 83f2aceb7484f940d50b61d0f1166bfbed0c7b8e99e24f7c92f802e948a4c1fbn/a Heodo
2020-10-15INF_20201015_Q503.docdoc ccaa4efe9ca3fbe2c256637236ed683d07b21b2269c01e622908be45b29a5780n/a Heodo
2020-10-152030-20201015-Y88693.docdoc 6439bdec4a4f7553faf9bf82885221a3cb452b5fc936346a847f8c3468f3b7d6n/a Heodo
2020-10-15UNTITLED-2020_10_15-E4684.docdoc 10697c9f4f38e8ada4c97a822c59d8fe2c073ea423bbee98f44ebe04ae6e72e9Virustotal results 32.79%Heodo
2020-10-15doc-A3392.docdoc e210bb0a557d8e99a096361862122f5869cb83031a08cff2eb41175320ca87a3n/aHeodo
2020-10-15LIST-F8746.docdoc 5d436b78702bd9c929e6f7bb815034b897f1a3332940743f14bf7a9fa1a1448bn/aHeodo