URLhaus Database

You are currently viewing the URLhaus database entry for http://skoal.co.za/docs/9cdfgdkiqjj/gcdg5z/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:717750
URL: http://skoal.co.za/docs/9cdfgdkiqjj/gcdg5z/
URL Status:Offline
Host: skoal.co.za
Date added:2020-10-19 12:44:07 UTC
Last online:2020-11-06 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-19 12:46:02 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:17 days, 23 hours, 44 minutes Bad (down since 2020-11-06 12:30:36 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-19DOC_ZFX_100120_ONF_102020.docdoc d2bfbbaa7d795231d900c544c667d08adc25d996043fe338bd8e390f3b5a7564Virustotal results 37.70%Heodo
2020-10-19INV_BFX_100120_WZS_102020.docdoc 1f5cb6e130ec0617eedc02d8554908a959a996089632142459c54f854cc52e16Virustotal results 37.10% Heodo
2020-10-19BAL_ZQEKEOEVB.docdoc 0c985b2c9d1db701a2990f23a790736c0e172df54eb3e1dd4c62a15456bd79acn/aHeodo
2020-10-19DOC_43539707.docdoc d58cd29763a975f1b26a90e4406b8e1477794a8ab2762d2113e9e329c029ea04Virustotal results 36.07% Heodo
2020-10-19DOC_04781567357168.docdoc 5e6567555b2e4a67f8f23c33992a9c668b4a43136bf33bd3c0cedebd8d99c290Virustotal results 37.10% Heodo
2020-10-19E_0129443182859484.docdoc 78a5f938f7dd3a00b5f78f0d86abf735fd4609990f37fc1a2d411f9dc1ab4dbaVirustotal results 36.07%Heodo
2020-10-19INV_LLS_100120_ZYZ_101920.docdoc 455f0d38ef7a2fa26af12a20467fff0fd2c26e1b0b0269c1824a263fb6f1b6dan/a Heodo
2020-10-19NK6932826420FQ.docdoc cf359edfef0a7fb78764aafab77ac4ade74de4ed9d3d3a2a8d17baa237d3e5afn/a Heodo
2020-10-19HJ7526163529CC.docdoc 844f5a0d32b339d2753996642cac6fa99aea871aadc4438c081469e5f6b42979n/a Heodo
2020-10-19INV_SQP4U9TQAJ.docdoc 314260b047fafb8a9e73e12c2d63b8fe7aca80e25fa1511e2c96a2bb40e26df4Virustotal results 37.10%Heodo
2020-10-19FILE_752813959092.docdoc cddaf70d5e1afb6707dc5113f508919266360889e2b09df2f46916eb432f58eeVirustotal results 37.10% Heodo
2020-10-19FILE_PO_10192020EX.docdoc 3d82207119a5c24befe9aedbd371a9168a00420cb2b0587ed4f3c3a4810b1cc5Virustotal results 33.87%Heodo
2020-10-1988624045.docdoc 4b906d56dd10c8d471dca7a08528213a88203b7c6f04a960e2a5a76cc6222788Virustotal results 37.70%Heodo
2020-10-19AIF_100120_DMU_101920.docdoc 1b35a153c217213d98cef264a35d28055ec0924e11d594e4b6dde8174d0abb70Virustotal results 35.00%Heodo
2020-10-19Z_31445548.docdoc f9bb2c1295e01206b01528ccd2e09f1662a6f12468249ec30238ae7187723fefn/aHeodo
2020-10-19REP_69933185227430189.docdoc 0afed56fa5ceb5e8f543c3b66243c8739bbd04f899aa3a2f9aff10614c28909fVirustotal results 29.03%Heodo
2020-10-19TH_IR2W07YTWNULU9F.docdoc d95cf2e0e51389df6e97878b1c041fd79f3e61abafc8ff61bcfb691562625e5bn/aHeodo
2020-10-19LVFNW06VP8FL1.docdoc 5ecc6d05457c8d3f382c04c9186f74ec16a9d9da9c1d7c3dd0c392afae7cf852n/aHeodo
2020-10-19DOC_94398277.docdoc 5c674607e8d61d87eeef970d125a85af6820f2abbdbdb84d9f2e85fd6ad982f1n/aHeodo
2020-10-19INV_CGL_100120_VIE_101920.docdoc 82e4745aa3cb7c221377f4b45307959b841347623658e6cec425aa46aa53c2c8n/aHeodo
2020-10-19FILE_PO_10192020EX.docdoc 3cc91108bd9d95f641996cfbde558f3ef6f6e02cd25106217a2d6dfab9da1f30Virustotal results 31.15%Heodo
2020-10-19INV_70122508.docdoc bf4249f24189224be0b48509b7618d77f103b09a154d06e6b302c271c53ab179n/aHeodo
2020-10-19REP_5701105977758.docdoc 00b3a42a8f864aef2c3eea8f902f6905400767bdae65f51468d5b40694531632Virustotal results 26.23%Heodo
2020-10-19REP_UL7013498426KD.docdoc c4a82a8cbffbb0e1398e3429b37d9adda018c824d1c0235ddf77c8bd57efd334n/aHeodo
2020-10-19PO_10192020EX.docdoc 5704de861cd887e620c5d4091b7e0281b1a3936c0d3d1e60403dd76a755fad6fVirustotal results 27.42%Heodo