URLhaus Database

You are currently viewing the URLhaus database entry for https://new.fudiai.com/apps/DOC/iiy7oGi6oJMTiYIT1t/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:722442
URL: https://new.fudiai.com/apps/DOC/iiy7oGi6oJMTiYIT1t/
URL Status:Offline
Host: new.fudiai.com
Date added:2020-10-20 08:29:06 UTC
Last online:2020-10-20 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-20 08:30:19 UTC to anti-spam{at}list[dot]alibaba-inc[dot]com,abuse{at}12321[dot]cn,abuse{at}alibaba-inc[dot]com)
Takedown time:11 hours, 11 minutes Good (down since 2020-10-20 19:41:27 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-20Inf_2020_10_20_WVG5500.docdoc a2300aa79fff2473f402abcbc0cfa1f3b861279b6f810dbe65ddb6e0104eacf0n/aHeodo
2020-10-20Arc TMR0149.docdoc 1b69b581c4117e2c0a34be295451ec37741a692d464991e5556b2fdce3cca7b7n/aHeodo
2020-10-2071391H-2020_10_20-655.docdoc 1d4c9f76f3e0b4cc025feb09e7a28f8862415da9023f97c213791399b12a793fn/aHeodo
2020-10-20ARC-20201020-154638.docdoc a434bed312fb5707d130f067dbf4d73a486ca97da11d5c2a763f5074d09183abVirustotal results 31.03%Heodo
2020-10-20dat 20201020 OU466.docdoc ef6f58d61cb76b5886a5f0c9b7fc91d07c6da5130abdb537020db8b348b4df1an/aHeodo
2020-10-20list-20201020-I590551.docdoc 53aadbfa58803c40c95ede998e5b1b4a90f3c419b341859a6df4612d08282246n/aHeodo
2020-10-20Doc_20201020_24703.docdoc 0a7d3b60f84a91cf712abde514f3eb1c37d053b5a988db0b77d652d5674087c1n/aHeodo
2020-10-20List_2020_10_20_80178.docdoc 12e07b82fad9e73b029e05af2bf09d2996cc9ffce7e8794880b3a4124018f808n/aHeodo
2020-10-204633703-QYM56294.docdoc be687deb48a6043230adc74e3f2a8830826bc9e2c87842c12cca8c5cba7b7e3eVirustotal results 32.79%Heodo
2020-10-20Rep_2020_10_20_763.docdoc 838f9fd0c536a3d5f2cb4031a2e784cfe408a2aec8876be02f874e96438a3625n/aHeodo
2020-10-20Doc 20201020 826.docdoc 45da95df0ab3f6bcc657abd4346f19bfce4a639908a3036cb36db5bd58a991a9n/aHeodo
2020-10-20DAT-2020_10_20-4360.docdoc 60c45c4aed850583c158a7b64f9e6d52bdac2c9570c6db9c712237e605e34b50Virustotal results 38.71%Heodo
2020-10-20Attachment 2020_10_20 0957706.docdoc 417b6bf7007bb95e5fb990fa4fe11c7ada2f568904b2dc63d5eed025823a759an/aHeodo
2020-10-2033315166_20201020_NE2776.docdoc 932cc29a17e8257b56982aa2894be64e95b279928a4dad094994202e6aa32cb7n/aHeodo
2020-10-20File_20201020_785049.docdoc e99d453a1c1b09bb8137dec33d02b97163edd1363c3e412e00a2521563914aa9n/aHeodo
2020-10-20REP_48596.docdoc d31d84743f87012c94740e372b34c4691637ad09534bd874d35856105a11611dn/aHeodo
2020-10-20REP 2020_10_20 MWT6655.docdoc 015f1050070a250730f4de15f6ef453df59199e04a4d93cd8bb8ce7cf90bde36n/aHeodo
2020-10-20DAT-2020_10_20-982818.docdoc 3f9097ae9a69048066939b773ee8003971659e39a80c2d587d25053612b78e08n/aHeodo
2020-10-20DAT 20201020.docdoc fa15dce4279dfec6e787cf1cd312ce2e99c7a73e9886d87154d1de91d29a62ecn/aHeodo
2020-10-20arc_2020_10_20_76862.docdoc 6a73c8bf0bb87860076895464ed0da18a763d1401ea65bc5d68a172c2fd309b5Virustotal results 32.26%Heodo
2020-10-2021601394_2020_10_20_4754.docdoc b98bfff40e1a2305fe983aee8842e25ebbd00d027f693a77e97008ce6a5fb2fan/aHeodo
2020-10-20Attachment-20201020-E4362.docdoc e6bd200296f14de638c42ec445f642b76ebc1881978a0c74eb732b03d2ac00ddn/aHeodo
2020-10-20Mes 20201020 LR51496.docdoc 420fc6dc7bb2ad0cf210f5f6a170426b11907f26d2dc02f091dc58223a77d5feVirustotal results 30.65%Heodo
2020-10-20Arc H060.docdoc 5b3069c3061e3941471dff62687a2a7ccbda231abe76b3f07b58f763abaa6d10Virustotal results 31.15%Heodo