URLhaus Database

You are currently viewing the URLhaus database entry for https://bilhen.co.za/admin/browse/sxJ7dN48jvuIdqc/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:720382
URL: https://bilhen.co.za/admin/browse/sxJ7dN48jvuIdqc/
URL Status:Offline
Host: bilhen.co.za
Date added:2020-10-19 23:35:11 UTC
Last online:2020-11-28 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-19 23:36:24 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:1 month, 9 days, 8 hours, 43 minutes Bad (down since 2020-11-28 08:19:51 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-21Arc-20201022-562637.docdoc 3708d8b3ef74933bf3bc87c45a60ac2f1e4055b0190ffe937756146e9a9ddbbdVirustotal results 45.90%Heodo
2020-10-21Mes_2020_10_22_CI2804.docdoc a6a0435d980b4a2f75c95757aa7d6b7810c901e612b8d6414f8dee775adc4dc0Virustotal results 48.33% Heodo
2020-10-21Mes_20201022_71838.docdoc b7e9cf82054a08fa01d9412cb90a56de33c1d1f0faf71f5ac572dc691b47fe81Virustotal results 45.45%Heodo
2020-10-21INF 2020_10_22 37842.docdoc 11c7dd1537f0a9fb591efd42ec9cfb3a2c4a3025c5e1dca1b5d865ed4c2901e4Virustotal results 43.55%Heodo
2020-10-21Inf_20201022_178.docdoc c2f0f8e8d0fbfa48d0ac6cd1251964b6a14dd3b0956a1d293140bf7cb439e049Virustotal results 43.10%Heodo
2020-10-21Arc-2020_10_22-48425.docdoc aef5a4970fdebe3d03b26480ed0641733b326d81933701e1f24dda114c45f87bVirustotal results 44.44% Heodo
2020-10-21INF-ACJ6984.docdoc ef8c0459a311cf0e92880ee25a10a7308c3b53dd688040c6dfdf404a5d912418Virustotal results 43.10%Heodo
2020-10-21inf-83677.docdoc a5065cd1a8893b58fb52762b2e314354325c88e882538e99f93bc861a9f3f9b4Virustotal results 47.06%Heodo
2020-10-21Inf_20201021_812.docdoc 81db04b572cdadc14cb46b27ef12139a47d676a3f110edd88cfa1df31b03f5e1n/aHeodo
2020-10-219504 YA25442.docdoc 6166977ed2093f4737ea6771eb5fa4298fe60000d3ea12a61966cc10c9e83d26Virustotal results 45.16%Heodo
2020-10-21UNTITLED-T1369.docdoc 072b389b119cdd6e5ffdb135b093e5660a2a72bbd2f2bd85d54da961d78076b5n/aHeodo
2020-10-21Attachments 20201021.docdoc 7d812b3579d4c3f9b7d05487763dd9253ce70bebca34b9d46735f76435e3fdd0Virustotal results 38.33%Heodo
2020-10-21Mes_20201021_20306.docdoc 2776ddec53bb1fb2deabfd3bcf61453c5f4f74c077b563b634fe985b43751befVirustotal results 36.67%Heodo
2020-10-21Attachment-YLL975.docdoc 9f892449d9dd2097e8a1fffc51fb03215b306bc4cd0d8a1399d936a0cf4477a2n/a Heodo
2020-10-21rep_K48643.docdoc 1c9f16cb8efe6d27052e6e20471366e7516176926ff0f7c04038156016be4b0dn/aHeodo
2020-10-21file_2020_10_21_A598.docdoc 0b8e56c320095e3c3115231277fb787bdb09ff540c7c88e56a84bc3f0e6b2509Virustotal results 32.69%Heodo
2020-10-21Arc 2020_10_21 K128201.docdoc 6c0ae95f51a00be8dfda2a6cb025bc98ffcabead12c246527001c4f3ba4097e2n/aHeodo
2020-10-21FILE_G53762.docdoc 9e85b7c470bb6003c7934afce6f4fe5cc33c0544ac3bf9e518babf02181a65bfVirustotal results 27.87%Heodo
2020-10-2108144935 2020_10_21.docdoc e5e6e30be59c7739674127adfd5bd46fc0f457261b5c5df2bf4e7f1ef6b96664n/aHeodo
2020-10-21arc-ISV177846.docdoc 791c60fbfd51349fa2eda51f77845271e32454ea92ed72b962fcec151a773078n/aHeodo
2020-10-21Arc_20201021_82815.docdoc 392d59f80e34423370a40f018dd33cd2a3e451c1c3533d624ec15c4006cec7a2Virustotal results 29.51%Heodo
2020-10-21REP.docdoc d66507e04664bc245fc279c53f5be49bc10b2677f4a82db33eb921845d8000baVirustotal results 29.03%Heodo
2020-10-21REP 7053.docdoc 5cf94921e7f5e431b10d32644f2b44db4f0ff9b2a8c53426cccc4ae2d067a346Virustotal results 27.87%Heodo
2020-10-21REP-2020_10_21-P069509.docdoc 9646ac232319549f504b079167907cfd4ae36c7c67d9143770cf6fc7a953b57aVirustotal results 29.31%Heodo
2020-10-21Attachment FHP666365.docdoc 0429da48f2a7712f9d48d30212b70720b93dbd7106a1f848b47eeb5765b3898eVirustotal results 29.03%Heodo
2020-10-21List_U792834.docdoc 42f05c4f7081fca3768cea7957d5dc7cd7150ba613d3048134254b47227e8ba0n/aHeodo
2020-10-2141289VSG_RBE6879.docdoc 63975d38fcb4445cf225d1d04ee42b547fbb2d0abf8984a27c883fd6e33d3d98Virustotal results 27.87%Heodo
2020-10-21list 2020_10_21.docdoc 3a1562e7ec3d071ad866476f63095e5c06e5b89ae90d4762c4348a993778f645n/aHeodo
2020-10-21Rep-VWY802970.docdoc 7abb9489b6326cd1f02464f62b873ba152c38b8471c54c1d8e63d178cae77c33Virustotal results 29.63%Heodo
2020-10-21List-20201021-6824.docdoc 1d04a4a138cc6bc3a996df34d592142073a63da20a8a4ffc14bac27d1020e764Virustotal results 26.23%Heodo
2020-10-21REP 2020_10_21 FU7401.docdoc 649393f30f3b0d4b90e8a47b5de5c4dfccd4225cde41413a5f14fcfc034cc113Virustotal results 25.81%Heodo
2020-10-21MES_441.docdoc 0b512821f19f41fec60258ee30aa03398db8c1d1c5ba1c9be6a78f430acc02c7Virustotal results 25.81%Heodo
2020-10-21Rep-20201021.docdoc 1924885ab53101752f2d462e884866c44923db9fa2abc8d6c779f614f2b5d615n/aHeodo
2020-10-21inf-MY17966.docdoc 637c64d5bbef5333c8f75b6e1e107884cae410b1cf90f5a6ab2cc577b18d077dn/aHeodo
2020-10-21Attachments_730.docdoc 06a4322e423330a9c7569485a3d4f5b5a606c8abfb8f18346e87790786035189Virustotal results 26.23%Heodo
2020-10-21Untitled 20201021 YI83711.docdoc 9ce1cd383d7891aaca34ed6eb93d24d7e52bf9996729ef047d09d249857ca56cn/aHeodo
2020-10-21file.docdoc a886955819a431586bb94b3b3960c906f5cdf2246de18906fbd6b469f021bf91n/aHeodo
2020-10-21UNTITLED_HNF4039.docdoc 43d04047627c2d334f2de109882639ae0bdacabad54dfa75e18e6387be466145n/aHeodo
2020-10-21List-2020_10_21.docdoc 569f46817662a2682ce22ee8bfbbd49dfe429f97c9d99446055c404f2e7074c0n/aHeodo
2020-10-21List_620159.docdoc bbea1b9b6eeb19a427e7b9ba29ae38e14cfe47cbbe56a7fda41d53fa04338d43n/aHeodo
2020-10-21Attachments-14696.docdoc b7a3c002f6427917cefe8dd23e591d1730a8ebedc30fa847f032edd2ecfe7583n/aHeodo
2020-10-2146138_2020_10_21_R041607.docdoc 8cc00d46f56292d6c48a768afcee7d24c2b80736e7a2283e0827830769cd7041n/aHeodo
2020-10-21inf I1205.docdoc 2918744bd6d4370e10ecf517c9c5c264edf439dc9a11612a21db5306d4c1fac1n/aHeodo
2020-10-21Mes-20201021-0424.docdoc 1c1dd01649f497ab505dd380dd73bfef3d3363602e9d38de1c4c763688776525n/aHeodo
2020-10-21Inf G5189.docdoc 9d5a3182d287d3126fd08ea5a6fc0432f5e096ec7b0f95a081691e86b7f7e3bdn/aHeodo
2020-10-21891W 20201021 YCM32947.docdoc babf60f02c1e6a8f67190de41f21329a21be9363a62229be2967f29822d82cc1n/aHeodo
2020-10-21LIST PCE4036.docdoc a3739438bd54340937905305ec828223cffb8c5735c69854d186f45169bd09c7Virustotal results 40.32%Heodo
2020-10-21rep-640831.docdoc 51a56f76b33ea9e1e518f64db6189eb7751b411f7105f65857537015138310d1n/aHeodo
2020-10-21MES_4405.docdoc ec1dc5c0b7d3efcb9ef07714ef2fb22a899caeadab5d1dc2cea4f7bb9853b3b5n/aHeodo
2020-10-20Mes 20201021 9736.docdoc 97674e869c38689af2dd93f2f5378051fc8829e97decc21abe01dfa7f57e2757Virustotal results 39.62%Heodo
2020-10-20Mes_20201021_LZH15454.docdoc 0fe1e8504b3073bcac87230b7c8246dc263ad53568a2439f767e581be42409e2n/aHeodo
2020-10-20FILE_20201021.docdoc e29ed36edd45d2345cc8304608acefd9540287d4e6e84f9eb805893a1a646be1n/aHeodo
2020-10-20UNTITLED_20201021_H37280.docdoc 1a6a0547f67f8898652a60610db0c8d5ea000026d57566afb67a910764c632c9Virustotal results 40.32% Heodo
2020-10-20Arc 20201021 2156.docdoc 856e4ae7a6c3bd006ed39b53ae95697de2b832c202ba56e7ff253978c02a10ebn/aHeodo
2020-10-20mes_20201021.docdoc be2f451e0ebe7e230d262cde9c384c049eee2e697c141941200fdd550e3ed917Virustotal results 39.22%Heodo
2020-10-20doc 20201020 4644.docdoc 97a5f5b6e3ece61dbc14fc1bc46e7712b37c38d7f20d2b1be271b53faa55c8b8n/aHeodo
2020-10-20list 2020_10_20 1954.docdoc 3b5449224663f3406ef496200a1d856f3a714defa6b7d4e7b3636927a3f07015n/aHeodo
2020-10-20Doc 20201020 667877.docdoc 634c51ed89df35214ed52b0b572b36393c4d5d8ac12201d5a565c2fcdf395872n/a Heodo
2020-10-20List 20201020 837433.docdoc e9a5e9c3eacc517ddee148273dc5ef07f997026bed7f3ee2cb4d7c333a7fece0n/aHeodo
2020-10-20dat-20201020-754063.docdoc c1c8000a7dc89b2690959e6ed634cd1382ce17f993954ed524d59b0fd340a1een/aHeodo
2020-10-20DAT_59760.docdoc 3990d3ddd544db77ec9f7db002a4003b3fadade6921d821f8fc41fb38c793e14n/aHeodo
2020-10-20List-2020_10_20-ZPV82551.docdoc 86ed6b53ac6710955d2a4b65da95550e5217abc3d0bf7585e6900983dda73f7en/aHeodo
2020-10-20Rep-20201020-T707.docdoc b8b0cad2bf62ed1d73b6eeca3a4b7a81478dcceff11ca6bceececdebad5e5237n/aHeodo
2020-10-20arc-2020_10_20-OMH546072.docdoc 9491796ab21b9d5b01d7eb48194abb6c5be6003977803fd151f12a87d22b5cadn/aHeodo
2020-10-20FILE_2020_10_20_ZEN51747.docdoc ea45121348e247f7309d2fd009737bd15cb1fe24bf7a582686e5fe3104c0ea7cVirustotal results 30.00%Heodo
2020-10-20mes.docdoc 312bfc526b9b6b7143f42c5b3bcf872bb0952a9589f5131e396e5f0d59a1a0abn/aHeodo
2020-10-20file-2020_10_20-FAR661.docdoc 2762f9e4fb3fd982938d550c44a28ec54fe08ce9ab7e20c79cc50895e45763a2n/aHeodo
2020-10-20INF_20201020_4535.docdoc 6179b6ad118187e5ce7be7389aa897a4834bc7b0b2ab8913aa0b4f0db8ab7d1bn/aHeodo
2020-10-20484 20201020 BU80869.docdoc e4f31c3d77ee2fae5af18dfa8d49a12530ee08825277fb43e7042475a1639585n/aHeodo
2020-10-20MES.docdoc 15c109de6cc4acd8526fc63694f325867292228995c301378b9de3f144b311ddn/aHeodo
2020-10-20Rep.docdoc da4d3d64394ea4d6ca303d8b7e4acf96b78ae05482edd738480d530c4da4b348Virustotal results 33.33%Heodo
2020-10-20MES-20201020-0054954.docdoc 454685094885959c80b6daf83c782183bc3761fc0f9e8dfd792360cb7f3ad670n/aHeodo
2020-10-20718877 2020_10_20 8349533.docdoc 932cc29a17e8257b56982aa2894be64e95b279928a4dad094994202e6aa32cb7Virustotal results 35.85%Heodo
2020-10-20INF 20201020.docdoc f963019244354ab00838230093b10128229a1a601fa315fff61bed4bd88f2f59n/aHeodo
2020-10-20Arc-2020_10_20-3569.docdoc 0fafb3c7a81ea23206adb43223e0c98b2994e94b38ff36fd2d034f2fedb74c7cn/aHeodo
2020-10-20Dat-365.docdoc 36d85e7b590d027ee48f10add640279d408c58137c90337b661ea084c08e78d7Virustotal results 32.26%Heodo
2020-10-20Dat_20201020_799846.docdoc fe333a9f370254c15b5913f5bac702faddde7990452537d4fe148c25fd3f9a91n/aHeodo
2020-10-20LIST-20201020-MF63193.docdoc 3f9097ae9a69048066939b773ee8003971659e39a80c2d587d25053612b78e08Virustotal results 32.26%Heodo
2020-10-20Arc-172195.docdoc 3aa6c16e0ae6c44ae2831d279ed39664bcca4eb5a956a28fa167931f52494ce6Virustotal results 33.33%Heodo
2020-10-20Dat_20201020.docdoc e042b69a66ac4d8ca4d27576d9a067edbfb13f379f26bd6441bde37d0cff9d99n/aHeodo
2020-10-20Dat.docdoc b60a54ae11a2afb4fe1566bb6444e4518cd638ba7cade354005ca6ac536a9b7eVirustotal results 32.26%Heodo
2020-10-208185RB_2020_10_20.docdoc e6bd200296f14de638c42ec445f642b76ebc1881978a0c74eb732b03d2ac00ddn/aHeodo
2020-10-20Attachment TO23525.docdoc 4214c12f3ac9ed206ad2038d0411bb49825a196848cf8732c0857a1f33801221n/aHeodo
2020-10-20Mes C74389.docdoc 5b3069c3061e3941471dff62687a2a7ccbda231abe76b3f07b58f763abaa6d10Virustotal results 30.65%Heodo
2020-10-20FILE.docdoc 4170e9c19ec42f331d5aad6d020237f37daaebdd0c0679875ee0c6f3dfe5e7b1n/aHeodo
2020-10-20List.docdoc d05f79498a7e732d0b834412b1e8989b8fa6f6aba3703c9401a6346555767fa3n/aHeodo
2020-10-20191E 20201020 43422.docdoc 47bd310d0911794576424dbd3ddb4295abe16323e10b691e7d54a0626e592170n/aHeodo
2020-10-20UTF76133 2020_10_20 L41739.docdoc afe4cba2dc9c3b247c0990e4bb185dc1eb53b4e3b58cfb1e5677576b1507b7ccn/aHeodo
2020-10-20335CT-265021.docdoc 89fc864dae609f9e368dcfa7e141e1633a1343cdc90442aee73c094bb2e81ccfn/aHeodo
2020-10-20INF-2020_10_20-M717504.docdoc 962a17d2cf91c9f5df4b767c711ed445db675831bfbe3f2f09faa707807e5fa4n/aHeodo
2020-10-20REP-2020_10_20.docdoc 72f45b367198360b01de63433ce0d0cf962dcaad9942827ed5b30724197e51bbVirustotal results 31.15%Heodo
2020-10-2011404869 5426268.docdoc 485440711ff60c647e6fc7bfa85ab4859c06bb56e354f108648a3904231a33a6Virustotal results 50.00%Heodo
2020-10-20Doc_20201020_6743081.docdoc 2f237e6dcd0651791cf07f25839792a2000bbd0be88329c3ad129e767b780492Virustotal results 51.67%Heodo
2020-10-20DAT-20201020.docdoc cedcb3350a54345fd4bb23b7b9d5fc753bf7bcd4dc5b37c6c4b61291bb3dcd01n/aHeodo
2020-10-20arc-20201020-D01978.docdoc 3481523719c66d648c8519ec510a81d054cbaa903c5ae60b4ac642a20748d587Virustotal results 50.00%Heodo
2020-10-20MES-446062.docdoc 193df1dc2f0c0e1a9f636ebe31c7e5f6c1a9f2187aeb7f7aa815e7ba3a2e5188Virustotal results 47.46%Heodo
2020-10-20MES-2020_10_20-7664.docdoc 6d63f7d30ff007d1360e127c4a2cee72fc09a3493b816699a052d38b48f1ad0cn/aHeodo
2020-10-20file_403814.docdoc 0d9efcea665e28dc8d2c3e8de13fec5af94bea6e35a96b42a8e70567c7876b80Virustotal results 46.55%Heodo
2020-10-20file-2020_10_20-OZ83973.docdoc 772e28e74f64318fb799daefedfe706a216c8604ae06c2a86eecca89a354e33en/aHeodo
2020-10-20Arc 20201020 25669.docdoc 3c0ec9a3bf2ff5e49e04644d134520ea789dfdae8411093b5b9b8f18a5363551n/aHeodo
2020-10-20UNTITLED.docdoc b548be3fe343498e82f9fb62fe50ccb099b09df567f62a6a557a14f5d3773fbeVirustotal results 43.33%Heodo
2020-10-20Untitled_956204.docdoc f8fdf9bcd696a4c06cc8579db778c097957dac41de586fbb6a8edbd70cb0cf30Virustotal results 43.86%Heodo
2020-10-20Doc-20201020-XXJ731670.docdoc 6327b738dd471b615dda7803b2acd8c9deb49008c8fbd7c5503be35492eea5c1Virustotal results 42.37%Heodo
2020-10-20Rep_105715.docdoc 87a7289961845b4c5d06554d318aa51a1e4fc5aeb580d9dea164398d968caf14n/aHeodo
2020-10-20212_20201020_P6688.docdoc 44c2c1f67fd38ab65b3a8424f7d5ace8c5ed6e044ee2cf9171a215b37481999aVirustotal results 45.00%Heodo
2020-10-20Untitled_20201020_19375.docdoc 639663610cca6441a36141da55733332d7cc089dad3fb409b8857db78e0e6ac0n/a Heodo
2020-10-19Mes-2020_10_20-O0370.docdoc 427356e6cb2bd5180118dd4c2cf522c27331b85388ddf6405839f2a60baf8d49n/aHeodo
2020-10-19list-1584757.docdoc 9ae6be8f5b646a1862d814e91092889f433abe7f883de9dd29de175305e3ea45Virustotal results 40.32% Heodo