URLhaus Database

You are currently viewing the URLhaus database entry for https://www.dongphuctop.com/zohoverify/LLC/GaBQgaz7eq3Eru4Igod/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:735366
URL: https://www.dongphuctop.com/zohoverify/LLC/GaBQgaz7eq3Eru4Igod/
URL Status:Offline
Host: www.dongphuctop.com
Date added:2020-10-22 15:51:15 UTC
Last online:2020-10-23 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-22 15:52:11 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:16 hours, 4 minutes Good (down since 2020-10-23 07:56:40 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-22List-2020_10_22-994786.docdoc ea3e4e284aa106aa02d15e7be9d6129bf053e7b7c52a7a82920e8ed033a0895fn/aHeodo
2020-10-22217 O446339.docdoc a075a9add68d086b44892ff7bfc40312c62961d3d7cf07167b5af6d1beb284fbn/aHeodo
2020-10-22MES 2020_10_22.docdoc 815dc5497772b09c354c214d725f66b7c46a2aa9575ca6037e0999c3268e00a3n/aHeodo
2020-10-22Mes 20201022 I53968.docdoc fe8752198d1f11581f5d7b35b74747bc03dd125be31c6c81a84d778f26b07dcdn/aHeodo
2020-10-22Doc_2020_10_22_2249644.docdoc e214c33ee3131fb88e3a03800a2c913e64eba9339e59c71b3cbcf17aa14e0509n/aHeodo
2020-10-22093 20201022.docdoc 858dd6ca24076dfe6ad3f808ab39d6e7d0016140bb1e30137af267547b4e3b90Virustotal results 38.00%Heodo
2020-10-22Dat-2020_10_22-BF307835.docdoc 6ed3a153df026d0f11d93825e4ecf5b4defeaef68c7a267e7b0f5985bc6381can/a Heodo
2020-10-22REP-2020_10_22-7046.docdoc b02a934a10f405b76ee0aaa46e19847d9ecf1718d49ef72233e83d4c5468a626Virustotal results 35.85%Heodo
2020-10-22file 2020_10_22 GI99356.docdoc 5f899d6ba79a78bc6e85428be8ba9150ce5bdad6dc475b35c61156ff8f21550dn/aHeodo
2020-10-22Attachment-U006799.docdoc 8cd1c27e31ede752faf38d915cb7ecc05fd8044e331cebed09ad28fad2cfb8b1Virustotal results 32.26%Heodo
2020-10-22dat 20201022 0407.docdoc ed1aa667877338aa66e291884d7ea0531ab7668bc263424702edd2496c6505fcn/aHeodo
2020-10-226280T 20201022 AZ447341.docdoc 33d8282536536c651d28cb08401045d2a01d13e2606369788ecf8ffe2136a4b6n/a Heodo