URLhaus Database

You are currently viewing the URLhaus database entry for https://t-watch.vn/wp-content/Documentation/bGaVnWLmcUK0Q/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:735196
URL: https://t-watch.vn/wp-content/Documentation/bGaVnWLmcUK0Q/
URL Status:Offline
Host: t-watch.vn
Date added:2020-10-22 15:16:08 UTC
Last online:2020-11-18 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-22 15:18:03 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:27 days, 3 hours, 34 minutes Bad (down since 2020-11-18 18:52:29 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-23LIST_2020_10_23_7651324.docdoc c201dc04bed84411f216935bcad9296fdb3e99daa909ead17006846758dc8346n/aHeodo
2020-10-23Arc_20201023_5606.docdoc dc449047057bb16de95db4e34192d9da2711671aae299bc381e7a5ab2f37cce3n/aHeodo
2020-10-23UNTITLED 146832.docdoc 5aa69f039b296badda988d4dcfa6971c4f3ed38b860725fecc70a99d091cec40n/aHeodo
2020-10-2311033GC 9621374.docdoc 8dd6f9470c3b3dc2cfd0895916a700d3ab5acae0a092e3b4113791cbac23d08bn/aHeodo
2020-10-23MES-20201023-00887.docdoc b9745ad5da055a585ba0ae73db8e019aedbccbe23904d104d0ba10bb4bbd2668n/aHeodo
2020-10-23Untitled_2020_10_23_WC50348.docdoc 55616b1a04e2397bceb215a3cd13e18eeddfe8e1d1a70e17bad4212e96189ac1n/aHeodo
2020-10-23FILE-2020_10_23.docdoc de3075003dae7cc1d27219ef1a911edea409e0977960756eb9b7dcecc9862aa8Virustotal results 53.85%Heodo
2020-10-23Inf_2020_10_23_QCI56789.docdoc 9cdddbc4ecd7167828b1ea5ef660f244b1230cc9dddb6c3f4843e1e0be81c0a7n/aHeodo
2020-10-23file 20201023 VTX0446.docdoc 623493fea7d7d2f6e25e4e0c6d64d8bc684086cf8258e543f4a859b5e2080eabn/aHeodo
2020-10-23UNTITLED-20201023-S44369.docdoc b0db3d5083a44747e1da01e6006e211a95e616455b85f9b9961c7dccd7f6e680n/aHeodo
2020-10-239469 2020_10_23.docdoc e4b62f41a4c63c57f172234a14c6f2f6598c4dce4bfd84896cb88b4eb9c1106cVirustotal results 54.24%Heodo
2020-10-23mes-2479687.docdoc 8248f6adbd725296a4c377bc8ecd9f6a00c09218d334e342776786cb9d6b903en/aHeodo
2020-10-23arc-20201023-JD91191.docdoc ff799dfe689af4b7f91327702adf9abbf48fdeeae9400493c012692c7bb07cebn/aHeodo
2020-10-23LIST-U21979.docdoc 70fa07241369935edadd1ce5eaf42bd68603d3e67d3c0a2e6ec052f44a37e449n/a Heodo
2020-10-23Attachments 2237.docdoc d894c7ca5f9545869430263459916b228a3d821ede8558416f5365356c0eed26n/aHeodo
2020-10-23Dat-J0876.docdoc 467cff3339922c5222b7cf47bc2ed154aa32c672291b072854671117da5ee6fdn/aHeodo
2020-10-23Dat 2020_10_23 72025.docdoc 7df71a638ddb96143a97778fcc28b8a4730001b82ef2c0ba7eff33a580b58023n/aHeodo
2020-10-23MOR5549_2020_10_23_G9385.docdoc c08df1aaf320c5907f8fa026f4fb52764fde92489159d8793d79d4183af18380n/aHeodo
2020-10-23Mes-NPC6073.docdoc 4f47d35f875582f23b3901262ec4097e7d11df94dbafce009f1264ff100246c2n/aHeodo
2020-10-23Mes SX7772.docdoc e4375d0a2ba932718dec66682d272815c527e91c52f8fd834f2b13a199c60e95n/aHeodo
2020-10-23ARC-2020_10_23-82292.docdoc 247612fcda0c42b16c95a6447a2c1fd50058e3b0795e129e46e5b9e4292da8b2n/aHeodo
2020-10-22rep GE5453.docdoc 3a9457301ccae0550d3264295b9c9e32bfe72cf042698300e4c6cce9a40b9aa0n/aHeodo
2020-10-22Doc.docdoc 26d7685602eb095c34ab91bbf5b63480114c8a5168221cfb42b530c964ddd50an/aHeodo
2020-10-22Rep-2020_10_23-3209.docdoc f4ddff9e93151f064216eeae4a8fef9f66e00e41b2a8f30e45768e33e5788f4bn/aHeodo
2020-10-22list-50556.docdoc f0e2d518a6265cccb1883da48d48dc033fa310abe31ed3218a1c0a6509f7085an/aHeodo
2020-10-22dat-SX21984.docdoc bf5aca74ec441467c5936928f2e58be49eccb72333a01b1cd294fce69eb1e453Virustotal results 38.46%Heodo
2020-10-22UNTITLED_20201023_XQZ1111.docdoc c6656e0509cd5854abdfabd0f1906fa7514dede0e346333b6bc0805729057542n/aHeodo
2020-10-22doc_20201022_ICB1336.docdoc 44680e4b146ceda2dbbdb6e68c5389c0ad6230f8cda0600f065a67df09e0ff3dn/aHeodo
2020-10-22dat-402167.docdoc c34461394bb60cae8905373f5c68ad3e5df587723329161d1cfc4befe40b23c1n/a Heodo
2020-10-22arc_20201022_0685.docdoc 91b0149df45bd0240de0e0b27a10f2c130ae4084b7fb310ffdefa6819c0dedc9n/aHeodo
2020-10-22UNTITLED-20201022-9866.docdoc bd979b335e1574fb61aa57f1d01c8597866ea1ede6e7ddb0bd24e708e22d5a8fn/aHeodo
2020-10-22Doc_737.docdoc 424a49a9733a4400ae32a1692903ea0ab710408c7a95ff4e07321dd7bc503c84n/aHeodo
2020-10-22ARC_2020_10_22.docdoc fbe8f5c905f6775ad3a8e659e3d46f73e57c9b9e88dd2ab3274568a03545cd15n/aHeodo
2020-10-22MES_20201022.docdoc d87198e80fbbe7c94cafb9c521c07837a97b8cab7a6dd1a9160051702838363bn/aHeodo
2020-10-22Rep 2020_10_22 CC158933.docdoc aba2852c2ede40d00712d4f0bf753af374f10fa332d165c7bf62b40803c6b393n/aHeodo
2020-10-22ARC_2020_10_22_GM664.docdoc b02a934a10f405b76ee0aaa46e19847d9ecf1718d49ef72233e83d4c5468a626Virustotal results 35.85%Heodo
2020-10-22dat-20201022-B795.docdoc 7399fc6f61590ec699b38e20e9a8d38684ccd43941cd42f7c4d8fbc660de7736n/aHeodo
2020-10-22Rep-20201022-X1410.docdoc e600970bb93a8c3708d6ceb234f37ad35250a7e43cf36b71c0ed157730a526abn/aHeodo
2020-10-22file_20201022_766.docdoc 536230d01e577e98aed429debfdd2232c6866262a424e51086e7f9a09315aafdVirustotal results 38.89%Heodo
2020-10-22REP 2020_10_22 C680596.docdoc 0c1e9db213b4bd4e65ad7efd5c37b96b478ce170f5df4707ea0920c5c217c8c1n/aHeodo
2020-10-22Dat-2020_10_22-ZNJ657462.docdoc 11c7d4455f5a8dc07436a9c20997b8c524642c2fc5f5697f5849f22b7222d6d7n/aHeodo