URLhaus Database

You are currently viewing the URLhaus database entry for http://cozyvietnamtravel.com/test/Documentation/XZO0mTAjjTQI98VxvmbD/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:719201
URL: http://cozyvietnamtravel.com/test/Documentation/XZO0mTAjjTQI98VxvmbD/
URL Status:Offline
Host: cozyvietnamtravel.com
Date added:2020-10-19 18:10:06 UTC
Last online:2020-11-23 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-19 18:12:02 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:1 month, 4 days, 15 hours, 10 minutes Bad (down since 2020-11-23 09:22:53 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-21inf-Z6443.docdoc eaceeab4c28861551e3667a051864c07951782f29dbff2afd860a46f81678299Virustotal results 40.98%Heodo
2020-10-21doc_4146701.docdoc 6de36a0ec9634543dd4b2bd99a9da772db767288f7616b6065906b913d08013dVirustotal results 37.10%Heodo
2020-10-21doc_20201021_DD200.docdoc b1243a17301864481f3e9e804cbd045786948ba392c537e15824de813cdf6189n/aHeodo
2020-10-21Arc 2020_10_21 FO230.docdoc 9f892449d9dd2097e8a1fffc51fb03215b306bc4cd0d8a1399d936a0cf4477a2n/a Heodo
2020-10-21Dat_2020_10_21_ANQ1945.docdoc 5fbaea04b7f8b9b636feb501c89daa611c6b9f1dd474fb4f59f1de5e9129cffbVirustotal results 36.36%Heodo
2020-10-21doc 32955.docdoc 90db88f7d96dc2e608f50cd9ed18e65262e360a81fad107084863fe201d05e45Virustotal results 29.03%Heodo
2020-10-21FILE_20201021_39373.docdoc d73ed4bc0c34c0cf8f5ba7b2a1baf0983d039f22dd04a5a27645ee5a0010cd2dn/aHeodo
2020-10-21mes_H63894.docdoc 2700e74dfec403cdd5306ded2adb5a78f8cee0aeb693b9ad6708383785a2fd1cn/aHeodo
2020-10-21Dat G889.docdoc 9bef99c8e12327ded16455d788af6804370777cf4cdf3d260f60e189cec14401Virustotal results 32.69%Heodo
2020-10-21ARC-WGN353.docdoc 2ba2268d9dae48b1eecc2d72496ea373ae0b71bf3743ac28b38170d74d3cc178n/aHeodo
2020-10-21doc 486.docdoc 045041df64a94daee99eaaf2d1ac99432dbd37c364eaa832872d6eed0c4c7138n/aHeodo
2020-10-21arc 20201021 04329.docdoc 6d5672ee985c881e079ef58e09b8a6b80c19d12ef95bc8f7daf6bcc89dfca76eVirustotal results 27.87%Heodo
2020-10-21Arc.docdoc 22ef4dbbe29239577c7904c9aa615b3dd0fcec7a93fce97d7230478dc1008361n/aHeodo
2020-10-21Inf_2020_10_21_BKN68001.docdoc 2ed7fc29d8c300523e1c3539aef67fd024ffa66e8d46be2857bb203eba6ef33aVirustotal results 33.96%Heodo
2020-10-212890-L293.docdoc 07bfe70b006fae4c1bdd4778f53370a428d8752e8e40fe8eb644ba21f3e1f542Virustotal results 29.03%Heodo
2020-10-216011270 20201021 973011.docdoc 30c2e852d1e5e7c012215cc51844045f56481a24007992626ea5d61524ab06bfVirustotal results 29.51%Heodo
2020-10-21Arc 20201021 CG575258.docdoc f25033e642de4c3a110feab5d13c75c1c82a48470738715458315f1019691835Virustotal results 29.03%Heodo
2020-10-21file 2020_10_21.docdoc ae6211c500d8209fca2d71af7b2329fc59cd558d293c06fbce25637bfb7f71a1Virustotal results 26.23%Heodo
2020-10-21REP.docdoc f7a4248ff5b65acb63d8f92ab525057813cf61e5af4ceea424a79929ce92e34eVirustotal results 25.81%Heodo
2020-10-21Inf-20201021.docdoc 7abb9489b6326cd1f02464f62b873ba152c38b8471c54c1d8e63d178cae77c33Virustotal results 29.63%Heodo
2020-10-21dat 369837.docdoc bd3cf32d2c212f76acb68dd73eb7efa0ca8dc2c731b4671ebf63f9a19f4456baVirustotal results 25.81%Heodo
2020-10-21Attachments.docdoc 0b512821f19f41fec60258ee30aa03398db8c1d1c5ba1c9be6a78f430acc02c7Virustotal results 25.81%Heodo
2020-10-21doc.docdoc dbff25f6086156396426be5e5e87a00cfd184cc2db75a68f493e3d05b0b6537aVirustotal results 27.59%Heodo
2020-10-21UNTITLED_2020_10_21_KO37287.docdoc ce47bb4bf2ebd0fc00569443a3bd23f8ddd8e3cfbd5d46711d4db0c29a615312n/aHeodo
2020-10-217092239 LY802.docdoc 9ce1cd383d7891aaca34ed6eb93d24d7e52bf9996729ef047d09d249857ca56cn/aHeodo
2020-10-21Inf_TE3734.docdoc f83e88d56e261efc57db1cb029e35b893693c6e0f0222c52c1ba67bade2ac6ffn/aHeodo
2020-10-21rep 20201021 CY10488.docdoc cfad292cc4d7597e9308af807955f482aaa1b9a16e7a58e0b0a145bf3c97bd92Virustotal results 48.28%Heodo
2020-10-21MJD76414-4308.docdoc 569f46817662a2682ce22ee8bfbbd49dfe429f97c9d99446055c404f2e7074c0n/aHeodo
2020-10-21arc_2020_10_21_186061.docdoc 9d543da5eab2a9f1910e5d478545075f534d4666dbf6108fb5feb51c238d011an/aHeodo
2020-10-21Attachment-2020_10_21-QN394.docdoc d44b3c4852eacd4e0f3f74ee7ad98e9439b486312e5fd96d78c52922a35fd6d9n/aHeodo
2020-10-21Inf.docdoc 5678071ee4b08346299b80b0c58ae14beb8b4ecb90265ae72f97a9b1de00be24n/aHeodo
2020-10-21Dat_2020_10_21.docdoc 56af9ab333edcb3f1e1476f76a85c38b4c6e841d731ef11b4c6c0b3b985d5265n/aHeodo
2020-10-21List-293.docdoc 9b5113e55188fa28b7186e461bf5c88065c351a5cbb85b9e30a1a222d17201can/aHeodo
2020-10-21REP 20201021 GZI460754.docdoc 2c343ce115f0677eaf8c26f14fa357c30131562c5a1c7f73da0adf5ce7b35b36n/aHeodo
2020-10-21Mes M10612.docdoc af93a55183a4713a4187549597d92839e0f634122f19ff90f3dc42950304d96en/aHeodo
2020-10-21UNTITLED_2020_10_21_475.docdoc a3739438bd54340937905305ec828223cffb8c5735c69854d186f45169bd09c7Virustotal results 40.32%Heodo
2020-10-21List NWO30611.docdoc 1161ccd91275ccbaac32ef4906e3492003bb10612a836f77bb185f608beaf64cn/aHeodo
2020-10-21845VIK-2020_10_21-622.docdoc ac06d56d750a46e13b29151c551aa058eb82fff816f2511d81ccf4fc17a582d1Virustotal results 40.32%Heodo
2020-10-20arc_2020_10_21_420820.docdoc 9c354ca6b12c37f6883dbfd7400f0738f7cae56e489883468bd5faaca7321380Virustotal results 39.62% Heodo
2020-10-20FILE-2020_10_21-H7513.docdoc 0fe1e8504b3073bcac87230b7c8246dc263ad53568a2439f767e581be42409e2Virustotal results 40.38%Heodo
2020-10-20MES_20201021_016946.docdoc e6b6d9b6f5033db818313d95549bb3856ef27cdd2947e22fec5641af2d86ebc3Virustotal results 38.89%Heodo
2020-10-20arc_2020_10_21.docdoc 1a6a0547f67f8898652a60610db0c8d5ea000026d57566afb67a910764c632c9Virustotal results 40.32% Heodo
2020-10-20Attachments 20201021 28736.docdoc d79db52bab8a98169ec0c379bc19f29b97b4a82badb5db497d224e6d339d465dn/aHeodo
2020-10-20Rep_20201021_IGV694.docdoc 6d0c6646ea7e9c11e5bf89755869472c66fce4a113ea815c53c1f76ba75aed76n/a Heodo
2020-10-20UNTITLED_20201021.docdoc 53ce8bc408537cd3a3ca0e9870075deef77223b9de63a7c77c668a03d5b468daVirustotal results 37.74%Heodo
2020-10-20Arc-2020_10_20-5415148.docdoc 6dd258d0dbccb0643ca202ae070d72e63bfc91161a292e25859df40032b28027n/aHeodo
2020-10-20arc-2020_10_20.docdoc 634c51ed89df35214ed52b0b572b36393c4d5d8ac12201d5a565c2fcdf395872n/a Heodo
2020-10-20Arc 56865.docdoc fcc2338ece859e3e1922884428c4bb2744b9789c374094c48fd13ec87346731fn/a Heodo
2020-10-20UNTITLED_2020_10_20_850.docdoc 49a1a0f60f22078f1e47ae035953587fa7aeda90e6a9d540bc75344b385b3fd1n/a Heodo
2020-10-20file-2020_10_20-456.docdoc fa4b39244bee5923a417a20a6826df68dcd6fe18b937e7e3054da6fa43cdf4ban/aHeodo
2020-10-20DAT 20201020 X646001.docdoc 4482aa9e74926fdfaa59a09c12ff1f1229e80748be4754a963129600fdef995dn/aHeodo
2020-10-20list HNL7380.docdoc 1d4c9f76f3e0b4cc025feb09e7a28f8862415da9023f97c213791399b12a793fn/aHeodo
2020-10-20list 2020_10_20 S05039.docdoc a01188e44d401266a96ace72e2573c544f356fc096709d2eb7518f9663c48a3cn/aHeodo
2020-10-20Rep-396576.docdoc adb347097467f747656d28f236563f62ea53e6a673641b5939a400bbf62e676cn/aHeodo
2020-10-20arc 2020_10_20 MD5741.docdoc 8ebdf7f4cf9f86c5d366fa4cb54ae4941e36823f07762760ce2cb0521ab8e8dbVirustotal results 28.33%Heodo
2020-10-20doc-182460.docdoc 2762f9e4fb3fd982938d550c44a28ec54fe08ce9ab7e20c79cc50895e45763a2n/aHeodo
2020-10-20Dat 20201020 765.docdoc e61bbba014ba814fe2a9468b7bdd4836be933cfcfb7a076f6ea33d4e7c713fc1Virustotal results 28.33%Heodo
2020-10-20FILE 2020_10_20 892819.docdoc 6f06d8e9e7c2c107f8e27160ca8359020b18b6e2eb80e2de1fb15054552f8b49Virustotal results 30.00%Heodo
2020-10-20Arc-2020_10_20-914633.docdoc 15c109de6cc4acd8526fc63694f325867292228995c301378b9de3f144b311ddn/aHeodo
2020-10-20Mes 2020_10_20 H52506.docdoc 123723b516e6fc91c1cdf19558205f1768cf8d773e7d13023e179c8cc6e6cf08Virustotal results 32.26%Heodo
2020-10-20MES 2020_10_20 MIL75737.docdoc 1896b0b4775c51d9d27d08608ca75a4ec5988365f4471c7188cefffbbc6b913en/aHeodo
2020-10-20UNTITLED 2020_10_20 E975.docdoc 742fdd81b47ff4f1ff37be5fbeba3f6a2cb26f486286db5595b7ab186582e0ffVirustotal results 35.00%Heodo
2020-10-20DAT-20201020-5464.docdoc e99d453a1c1b09bb8137dec33d02b97163edd1363c3e412e00a2521563914aa9n/aHeodo
2020-10-20List-2020_10_20-8013.docdoc 36d85e7b590d027ee48f10add640279d408c58137c90337b661ea084c08e78d7Virustotal results 32.26%Heodo
2020-10-20Inf 20201020 5243086.docdoc fe333a9f370254c15b5913f5bac702faddde7990452537d4fe148c25fd3f9a91n/aHeodo
2020-10-20Attachment-2020_10_20-140.docdoc 253a23db09dd9cf26085981b5fbbb900a9c07a2a4880ee60cdb4233356f78c6an/aHeodo
2020-10-20FILE-20201020-E018726.docdoc f7966b4ed06430b993ad3643a001227da210dfeebfe670a74ac4b2c9c2679e97n/aHeodo
2020-10-20file_2020_10_20.docdoc 6a73c8bf0bb87860076895464ed0da18a763d1401ea65bc5d68a172c2fd309b5Virustotal results 32.26%Heodo
2020-10-20Attachment 20201020.docdoc 268aa7df3be7ac167b651a571104e3bc18dbb5be66fa909b97fc9dc19792e88cn/aHeodo
2020-10-20Attachment-20201020-714080.docdoc dc96ddabfd3f1213f7ee69ef80a111a67b3addf58bbd7e76518419f909e44aa1n/aHeodo
2020-10-203357012_790253.docdoc d631154982a0ad47d628287dfe79df49cebb121a972df13db6d88542116cbc60Virustotal results 30.65%Heodo
2020-10-20rep-RU13580.docdoc 86fcc48111c6e12b9d0c6057b457f8459ff54d306a578ce23673c0c8529a9bc6Virustotal results 30.65%Heodo
2020-10-20File_V096.docdoc 380ce3ace72784b8c33d60d1c012e291f20a96a8669707634b45ca07a35d5c57n/aHeodo
2020-10-20doc-2020_10_20.docdoc 1760a7148954c3b3ccf35f079923772534fe38520bde8a0e3c1f0e06458b728en/aHeodo
2020-10-2080494 20201020 002613.docdoc 5d4a57d1a34552b7f1fa083273da82ece6b3a222f575df9421a7788238774b31n/aHeodo
2020-10-20Attachment_20201020_ZRJ5690.docdoc 1dc9d9c96259e23a7654f8fe1a2f186fc2c035c4c46a85daff8f1660fa95580en/aHeodo
2020-10-20Doc-20201020-DT711.docdoc 787791bad8fa843f9ec53df000eef8bff21e5850fa187c518e826d0ca52cc14fVirustotal results 31.75%Heodo
2020-10-20Untitled 20201020 452217.docdoc eaf3d04450cc7943d874b559af2cc90787f32ba36aa6cded35f2f977971fc6afn/aHeodo
2020-10-20List-20201020-TV58774.docdoc 962a17d2cf91c9f5df4b767c711ed445db675831bfbe3f2f09faa707807e5fa4n/aHeodo
2020-10-20rep 2020_10_20.docdoc e815064edd4d9b2ec2f1214e71684b097b806f01d0e589878b0401cecbd210d8Virustotal results 32.79%Heodo
2020-10-20LIST 5740670.docdoc d3d4d84e3a65c176379d77480626309e1d9ab1436be744a5bcb59bb6e17e9763n/aHeodo
2020-10-20DAT.docdoc 9fa23e7bdcaa378dc4c515ca09f6ab664fa5e32c7ec857baef39a7425281535dVirustotal results 51.67%Heodo
2020-10-20Attachments KAI332.docdoc d0e1f8621980227b8293b9c8c52aeae9743b9ffefe8adab468cae79c72bd2d71Virustotal results 50.00%Heodo
2020-10-20List 2020_10_20 122.docdoc 9af477969fd8c3ce0f58ffc9c2f01cafbf12cf7a0e116ed506993edc51b6fbafVirustotal results 48.33%Heodo
2020-10-20Attachments.docdoc 193df1dc2f0c0e1a9f636ebe31c7e5f6c1a9f2187aeb7f7aa815e7ba3a2e5188Virustotal results 47.46%Heodo
2020-10-205168_2020_10_20.docdoc 4885ef6ea3554aa3274e532eae6b9cd97a4be8106d186cec322d408c72b565d6Virustotal results 48.39%Heodo
2020-10-201612 2020_10_20 0836.docdoc eb322e13a71d24533bac0486fc957917f68ac521a57b202b19f6e0a14248e6fcVirustotal results 48.39%Heodo
2020-10-20Attachment.docdoc 6783474a069d2db04f9da74026d3380f66a2b303770d491f3c0def5bcc0ea0f9Virustotal results 48.39%Heodo
2020-10-20rep-20201020-685433.docdoc 0c409567dc61d2b2cf73591346bd7b4c5093e44649c17075c07e1605c4617d7dVirustotal results 44.07%Heodo
2020-10-20doc-A559126.docdoc c029615d4e2c5c7cf4f773707333aa16a2a31d70dd8aca098f931f836a0b7859Virustotal results 43.33%Heodo
2020-10-20LIST-20201020-I44788.docdoc 6327b738dd471b615dda7803b2acd8c9deb49008c8fbd7c5503be35492eea5c1n/aHeodo
2020-10-20List-92739.docdoc 17bcf85c3e8000d32daecede094fee54c474bc66ab96fad5dbc428959ee0166bVirustotal results 45.16%Heodo
2020-10-20List_2020_10_20_309668.docdoc 47c659c5857a2dab8aa5c6a29623384f6fc5651856d7ccdf8b4be607b4c17b12n/aHeodo
2020-10-20dat-2020_10_20-KY648140.docdoc 639663610cca6441a36141da55733332d7cc089dad3fb409b8857db78e0e6ac0n/a Heodo
2020-10-20LIST-2020_10_20.docdoc 5bc31794601b4088311bf33225005d0f3be38cd991a2de34690fb2dbfb79fe32n/a Heodo
2020-10-19UNTITLED WFH464.docdoc 9ae6be8f5b646a1862d814e91092889f433abe7f883de9dd29de175305e3ea45Virustotal results 40.32% Heodo
2020-10-19arc-UF065.docdoc 3b15710a3ff2b8f40af56ef3f69de2a7d1bc5f6213ed69d4c26e8362ac7e8a68Virustotal results 37.10% Heodo
2020-10-19ARC_2020_10_20_65940.docdoc 197b83f5290dff46430a782816e01e4e6038d99f2ad9536153d2cec8b85c459bVirustotal results 38.18%Heodo
2020-10-19Arc_72066.docdoc 27e44663219563e7600f8b9da77ab67915fe6f480b27cf6ef50da02c475ea10bVirustotal results 37.10%Heodo
2020-10-19Attachments_625184.docdoc 690a4efeaba7d8fb29ee6f9d39381c4f7ac5f540bd5e6ee68505e61e3969d07cVirustotal results 37.10%Heodo
2020-10-19UNTITLED-BEW359.docdoc 979236f4d2d99e9272c6abef5b246723ac02e7bba9dc2aee883c4c907fe4b362n/aHeodo
2020-10-19RX97681.docdoc 820dbf03a1ce8fae74369e14e191ecf8d0b47d15ed4311091cfed2cfd35f83c0n/aHeodo
2020-10-19file RNF755.docdoc 2d5db19f14ba5acd1290b35efceb0d2a5fb4b948cc627ccfd3fffa7e41136fb1Virustotal results 37.10%Heodo
2020-10-19ARC 2020_10_19 56573.docdoc d6fc8acb0c1a4b38f100335349e71cfca14003134259cd7798a9d50fe45735een/a Heodo
2020-10-19Arc-2020_10_19-H560.docdoc 99e86f06296071cb510678271b6f0ce1becb7dc7c9729c2ead4ce1985d85f5b4Virustotal results 37.10% Heodo
2020-10-19Attachments-738306.docdoc 9cc3f31a00cccd69129b9318e20e5c967f865bae15e21e1e2fd4df31a74d1866Virustotal results 37.70% Heodo
2020-10-19File 2020_10_19 153.docdoc 0741cfd29e5f65b1aa4109ef4a59d28a73671f4ccd35cf80c3df2928ecf39a03Virustotal results 36.67%Heodo
2020-10-19REP_20201019_IWZ640363.docdoc 14e14dff94f0ecce9eae85db1e0d740e7ef3363e90a0459985101ca8799855ean/a Heodo