URLhaus Database

You are currently viewing the URLhaus database entry for http://filmspace.vn/cgi-bin/LLC/kNqzNxBakjiuuyHhF6yE/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:728531
URL: http://filmspace.vn/cgi-bin/LLC/kNqzNxBakjiuuyHhF6yE/
URL Status:Offline
Host: filmspace.vn
Date added:2020-10-21 09:57:09 UTC
Last online:2020-11-06 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-21 10:48:11 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:16 days, 7 hours, 49 minutes Bad (down since 2020-11-06 18:38:03 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-24inf_20201022_907.docdoc 143da6a9992c14819edd723847e3e2e186cbb089b6c1916a4a2efc0b058ef6b7n/a Heodo
2020-10-23inf_20201022_907.docdoc c3ae83713bc91ce496a1f71f6c38c7152dba6994d67fe3a8b4bb09bda9018a13n/a Heodo
2020-10-21inf_20201022_907.docdoc aa388c2278d9ca8c8841bb81441797821169bd089f2550c1ff77fc08394914f1Virustotal results 44.26%Heodo
2020-10-21rep 20201022.docdoc 31a8e7fe3832a5f55a12e17b8ff62219e9e27b9e69c4adb81d6a396fc09bf1b0Virustotal results 43.33%Heodo
2020-10-21DAT_20201022_NSI21482.docdoc 5e85db3f41a0d798a61f167d3f1ab2241ea48e5b776460fad9877ddd7479ab90n/a Heodo
2020-10-21arc-20201022-V4105.docdoc 42538e931722bfc76683ba8032a3f9771599b561326a105c20053210ee28d4c2Virustotal results 44.44%Heodo
2020-10-21952_K92190.docdoc 1c44d978b227dca4a87a888cfd5c438e1bc63141c7e2c3dd46dc1ca0a985c204n/aHeodo
2020-10-21DAT.docdoc 9c75838cc42f348468244059c015724825f308c37f38c7bfa21abda88309dbfen/a Heodo
2020-10-21FILE-2020_10_21-SHJ862133.docdoc 351bc2d545540f7803343ed6b60942a6a96d7bf0524c30abbba917f25467fb99Virustotal results 46.55%Heodo
2020-10-21List_20201021_153295.docdoc 070b95608ac39758543a1aa4de5e51edf174d99485e7259ebbef1fd68805a835Virustotal results 45.16%Heodo
2020-10-21ARC_20201021_G552.docdoc 0cd4327f88216c586d6a55c043f3f6d131be5492eb05597a705f45b4f4763310Virustotal results 47.17%Heodo
2020-10-21MK099.docdoc 6de36a0ec9634543dd4b2bd99a9da772db767288f7616b6065906b913d08013dVirustotal results 37.10%Heodo
2020-10-21LIST_2020_10_21_QYH83713.docdoc bbb06db34f51c53da6ae7059ea01e98f90c45e21de62c91bd299adad0b13944bn/aHeodo
2020-10-21list 20201021 Z44296.docdoc f5e06729985a8332d74568dff36ebfc8dac7e0b52b6629c78df8d6095f8d5413n/aHeodo
2020-10-21Untitled TND65590.docdoc d5df4df2b5f06371db820290a854b5a2fd5357921027df714f500b948ed849d3n/aHeodo
2020-10-21Rep_2020_10_21_WLD4151.docdoc 51fac7413bab587374d02a897e506091ee11ac91829b2ffe9e0cfcd8f251e62cVirustotal results 33.33%Heodo
2020-10-21File 20201021 NDP603.docdoc cef936ee53c8e9333c3c499878b39e33d50a8e39f1674c63bdb34ac04ba01630Virustotal results 27.42%Heodo
2020-10-21Attachments 2020_10_21.docdoc a1d14cef317aece443bc010579448ed548c495541c8540cf423fc5f1d8a20fe7n/aHeodo
2020-10-21Arc_20201021.docdoc 2d2ac5cd6f74a5856e83c7e4c12acc89c52216c00e83f8d84d58aee357824881n/aHeodo
2020-10-21423543_ZSS1380.docdoc db7fd02e58a7010694a4fd1296ad552e427f156efb262f3eb73b1a1142004947n/aHeodo
2020-10-21rep_2020_10_21.docdoc edf554e5aeb28ebb63fed5c33e0bdbf9c41029ad8c0f5d8d53af19aa7b523f6bVirustotal results 32.08%Heodo
2020-10-21File-20201021-J64166.docdoc d66507e04664bc245fc279c53f5be49bc10b2677f4a82db33eb921845d8000ban/aHeodo
2020-10-21INF_2020_10_21_926206.docdoc c72823b8cc723bcccbd12917f6ee2c96aace3f7fa27b0ad8907d451ba9df5e1eVirustotal results 32.08%Heodo
2020-10-2177366-20201021-195.docdoc 1a248ae0b477a41ee1372e8b11e927e9eed3a23a1438c0b6e348ab9d724953dbn/aHeodo
2020-10-21List-MTH629.docdoc 1735e9b918964e38b4baab78836894b79fa7a7473e6fb5136d97541b1f6524acVirustotal results 32.08%Heodo
2020-10-21Mes-ZD505.docdoc 7b379e5dd60536e28d876fd99a019dbf070807482a1aa9e2f29ce9957914c93eVirustotal results 32.14%Heodo