URLhaus Database

You are currently viewing the URLhaus database entry for https://oceanmasternewport.com.au/wp-content/FILE/41265943108250657/ugcaf6tnal-0038/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:751382
URL: https://oceanmasternewport.com.au/wp-content/FILE/41265943108250657/ugcaf6tnal-0038/
URL Status:Offline
Host: oceanmasternewport.com.au
Date added:2020-10-26 11:39:08 UTC
Last online:2020-10-27 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-26 11:40:07 UTC to abuse{at}choopa[dot]com)
Takedown time:1 day, 1 hours, 55 minutes Poor (down since 2020-10-27 13:35:39 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-27C2240753338MJ.docdoc 4dee867bbb0a188951ce67bac529c1d7aefcd46c4964b24f6603829639aafb08Virustotal results 35.19% Heodo
2020-10-270095872.docdoc ac203b670a881b60dff3849213b20ae477e8a6084b9fe8fba68d3dc450374114Virustotal results 33.87% Heodo
2020-10-27CN7 invoicing.docdoc 5d36c2fbf5dfa8429067158c959a2d02d6958124a54cbd6f4b1fedae256ba60cVirustotal results 35.48% Heodo
2020-10-27October Invoice.docdoc 083c20d80dfd7f17a95d7bbfd891cc3756255aac0c24d4515b8c3b2d8bf87d12Virustotal results 33.33% Heodo
2020-10-27G06 invoicing.docdoc 0021bbe25ff5b692875ec9b22ecc7f278d7859484560e1b975c37770a227a1cbn/a Heodo
2020-10-27Inv_285537.docdoc b7eaf5aa815667a5010765737eb81a975d85b8a224438cb86bccc38024229637Virustotal results 35.59% Heodo
2020-10-27Inv. 09408720008.docdoc e833dbefb48241a4196b36f491145f80963fbbb77e99e16b8b7996bb1cb2cd3bVirustotal results 33.96% Heodo
2020-10-27Invoice #6402660.docdoc 2c1d441bc9fbb860924d2d11f2063f6273799543293e2979dfce5f0036b0dd61Virustotal results 33.96% Heodo
2020-10-27002993447.docdoc 486b51ff559079eea8a0864b77511485391fb712af28ba9d47183e75f965174fn/a Heodo
2020-10-27Inv. 017404313376.docdoc a9541a1e16a89043ba48d84ea1c035a61e6427eb283fd0a446fffea1a81143d0n/a Heodo
2020-10-277979641670ZH.docdoc 0d24e447f06192cb249e3557e7541d6f56562b803bc2cacba5896d16ba6d2db5n/a Heodo
2020-10-27Payment.docdoc b5a469fd115b4e8c279b1f768c6697db7f0496bdad9578c02ba0a517cdf6759cn/a Heodo
2020-10-27B4421353252OB.docdoc d3dc89591df12e22c0f540469d926d0f8e780d103f92dc9bb34cda86af498ec8n/a Heodo
2020-10-27INV_067014.docdoc 24cac0a9f39e692ecdf331a3237853807fcc3d54b82bc735ce8062ee50bde63dn/a Heodo
2020-10-27October Invoice.docdoc a2c3818b3d6d1b11a76e7e707793435950683ee8ae2a7627baa84f3914b97ec0Virustotal results 32.08% Heodo
2020-10-27Invoice 0035678.docdoc f4c63a57cf3097ee2f82854c11cb835c587eabddbb5cfe0b790f409165693200Virustotal results 33.33% Heodo
2020-10-27Invoice #846.docdoc 28b8cc8a466d51d35baf39d43b1b8ee07cc39c6311c3160b416b9cd0db7ead64n/a Heodo
2020-10-270016104445.docdoc a3fc8908940ded292b6235a272b2fd3f4804dbe42415758a7bb7f1e9f79857can/a Heodo
2020-10-27Payment.docdoc be38d405f6ea9e49d7be5ef0c7f75b7c3c8b201ed03af92b15ae0f6f284df534Virustotal results 33.96% Heodo
2020-10-27form.docdoc 36aa90ba50e9d59e473d917452254acb4a796c643840995d73b6ceb32bc596f2n/a Heodo
2020-10-27Form.docdoc c5ccc5296ba9cc6466a1280364fa69c9cca3ea9e68ba9e2f2e369f0caca531b7n/a Heodo
2020-10-2739729.docdoc e921c3eced90ed5ca0b1034f31b7834f18395410b56715c8c74d20521c69f9f4n/a Heodo
2020-10-27Electronic form.docdoc ca286e09b37ac73d3f0f4c732859bfb635073af2e14c81db7268955f8f2b796cn/a Heodo
2020-10-27October Invoice.docdoc a1951fc01603455e05809436133922be65abf396aa526bc7b1e834c0c9085f12n/a Heodo
2020-10-27Invoice.docdoc 7025a79caf1e0e05400aa946eea8f0cf6a58638edb662f95314ecf9ce329a37an/a Heodo
2020-10-27Inv_720791.docdoc b52206a6519f1e314af1c195541e3e199149e2f390d1828c1702df72f0890ecdVirustotal results 49.09% Heodo
2020-10-27October invoice.docdoc 3e428d0fc8c8a0326a2ee7ce8b8f44ad41fd994461dc1c81819d4394638d4c7bn/a Heodo
2020-10-27Invoice.docdoc a1420f0191077e126ed3743f14e7734b03ea987fd26d6c1101bb1a4449a1ce4an/a Heodo
2020-10-26Payment status.docdoc c6837f0ac871c07b7e1330f74ba054bffcf4b9d45e482669cfa35f7447229353Virustotal results 43.14% Heodo
2020-10-26INV_679327.docdoc 22e789b56f55595de86d5e309fc84e2aff18f91066663e7836827f926850ee4aVirustotal results 42.31% Heodo
2020-10-26CY-100120 BDEP-102720.docdoc b5a8ef08ff97426cab7ac269fbc6a50a4f92673850f4771c029650c27c017fe9Virustotal results 42.59% Heodo
2020-10-26invoice #29988.docdoc a19b0238b5884c3ec86d0b1bd0d8e78744f47250e8c82aa98b8ffb3b20dc7b89Virustotal results 44.44% Heodo
2020-10-26Payment.docdoc 4a7c1b0ec0e78d301cf0ea258afa8fd51ad627e470aa1353b34da0ea4f8bb7a8n/a Heodo
2020-10-26Form.docdoc 33578d8cbf0e732d7745430c8f54bd1e5f9a82a0d5abc1c442796d0033be72b6n/a Heodo
2020-10-26DG00 invoicing.docdoc c00ca9fbf8112e1320e4cf15d920231c831931263ed1d8913636b0567fd06bfbn/a Heodo
2020-10-26INV #1556 FOR PO #42786238626.docdoc 2bdfd0552ec178d4e63a1aa85eb50868af93f17f9098acc38ce46553ef54e579Virustotal results 42.86% Heodo
2020-10-26INV_60591.docdoc f585347a44fc63784d80a2d1649a753004e3d2a0645d39034eb3749d68afd926n/a Heodo
2020-10-26BBI-100120 MVFB-102720.docdoc 7c5a5c4cefbae1492b898a2ed68aedf33d80f1f76140ffc3d0f7737e3b51f961n/a Heodo
2020-10-26ABW-100120 KYOD-102620.docdoc 28578d403b261549020096e1e757df8a23735df3af4fe423664ebf4e6a55704an/a Heodo
2020-10-26LR008 invoicing.docdoc 48dc30e76d484749d152e5dae556982822af7448889052940e5e1abd054228e2Virustotal results 37.10% Heodo
2020-10-26005733712.docdoc 0ddfa08bda43bb6f2b367b7b569e7948da3cde06925bae7d6c1b10d6efe6d113Virustotal results 37.50% Heodo
2020-10-26Inv. 00015655.docdoc 05bdc226ce29c665f8738f79540000c0b2c0a834949f6d3f9e2bb0ee59e07b2fVirustotal results 37.04% Heodo
2020-10-26Invoice #1076929.docdoc 79223180d0d2085a22380b073eb5db42f6af15d98757762017435d1c8f715d51n/a Heodo
2020-10-26Payment.docdoc e4e2b59b96de572796b1b3d7aa8cdaf3527ec0435e4855c01e7a2442d6caccf3Virustotal results 35.85% Heodo
2020-10-26N-100120 IECK-102620.docdoc 5730f1a08d0b8672d61cd8304aabd3cc338498984973bb77c4b65a5d40a38314Virustotal results 38.60% Heodo
2020-10-26INV_438368.docdoc f5bd6e1c0a0e22b9f84d100bd391ecb57cf69d011db764a2852a59cb945bee6cn/aHeodo
2020-10-26Copy invoice #3213.docdoc a88691be2dee049c4df8247d08229a9ac1c327e3249e985aa4f1b513b1b52b0an/aHeodo
2020-10-26K00954 invoicing.docdoc e7c1ca3f9a68c93208c6f0e312e3c138c486f554c3762efd75bd3bb85f5a4d87n/a Heodo
2020-10-26Electronic form.docdoc 85ef6233fe3651d7b5eaaaad06d0350456e419abe29affb49dfc0cdb2d20e875n/a Heodo
2020-10-26Payment.docdoc 35f067350cea145bdbf233a38140a0591d753b65087a284de23963010f36ddbcVirustotal results 36.36% Heodo
2020-10-268890475259DW.docdoc 9793e78a00a7f62a7b97eabab2bac7e0c47a4fef19b064fea4e839986760f219Virustotal results 33.93% Heodo
2020-10-26Copy invoice #84431.docdoc 0231bc27e673f5d22b291e5653e498f8bb7e278d7d9b521aaa3cf2ecfbac49a5Virustotal results 34.55% Heodo
2020-10-268270790989OT.docdoc 27e9000918433f7d6c6da561ba9ccbe9c1b5f39fcc35c44412c256523d9637e3Virustotal results 33.33% Heodo
2020-10-26invoice #66796.docdoc 860ee8a8803028ce94e25d0ac5161306747611896325bb2eeaa4020d3e1a7e36Virustotal results 29.51% Heodo
2020-10-2613008235.docdoc 789dee41794e3a54617c575bec3c96f2f14566b825638a7c58178ef6582ad5b7n/a Heodo