URLhaus Database

You are currently viewing the URLhaus database entry for http://saigon24h.net/Inv/7193708590/FILE/EN_en/Open-invoices/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:92685
URL:http://saigon24h.net/Inv/7193708590/FILE/EN_en/Open-invoices/
URL Status:Offline
Host:saigon24h.net
Date added:2018-12-11 02:56:44 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Not listed
SURBL:Not listed
Reporter:@Cryptolaemus1
Abuse complaint sent (?): Yes (2018-12-11 02:58:04 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:5 months, 11 days, 15 hours, 15 minutes Bad
Tags:doc emotet epoch2 heodo

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2018-12-13virus-for-you.docdoc2e766404c50addd67ef227c566ce09080620b4630c9de43a78502606ae6e282cVirustotal results 17 / 58 (29.31)
2018-12-11Invoice as at 11/12/2018.docdocd87a69f110bdc8efacd9a992608ba7910db8af55ecb5e29776fac9648e73ac4bVirustotal results 17 / 61 (27.87)Heodo
2018-12-11Invoice.docdocaf4ecd9c34fdbab679c352f8355ca1be3f849364de8f5528aa2053ef39113d54Virustotal results 17 / 60 (28.33)
2018-12-11New invoice 90DU6570.docdoc22f27e1b46fe32a2f7cd24670f6d1c6d678968914e3b918ca2c78b3d0348d274Virustotal results 17 / 60 (28.33)
2018-12-11Invoice.docdoc26e9c3b634762b28869936af0f09cc95e2272c5c25cf4c022cbfe98ff38b678cVirustotal results 16 / 60 (26.67)
2018-12-11Outstanding invoice.docdocc3a6600646f886dd8552018f28e4169742b99255f383d62f61884e1cf04dc02an/aHeodo
2018-12-11Billing Invoice - Job # 248176.docdoc54a07347185583bc7024fcccd9b7a7742c27ced8f020ecca60adb34dbccae4eaVirustotal results 17 / 59 (28.81)Heodo
2018-12-11Final notice.docdocf86179fb8c8043a57c0df6ea54c799ed2dc8d1b9d659b648520b978b0c737c58Virustotal results 17 / 58 (29.31)Heodo
2018-12-11Review invoice required.docdoc18af2ff24dd0757173893ed9c66f9f1946f6127c5e2bb4a5e44d5b37897b0555n/aHeodo
2018-12-11Invoice.docdoc4e37106fffe50787a13cc5402323f008da09ac8bed5f66cd89743a95a453c4b0Virustotal results 17 / 60 (28.33)Heodo
2018-12-11Outstanding invoice.docdoc42934e5f92f9e05d492445c78a03062bf2533ba13a8fa0021c0345ad1f9ee205Virustotal results 22 / 60 (36.67)Heodo
2018-12-11Invoice.docdoc0a73c1ce094754d15fd60109125095723ca04e224617a3a5efb17aeb67526ac9Virustotal results 21 / 56 (37.50)Heodo
2018-12-11Latest invoice - 550445.docdoc09c8e1e5739ef4cfd8dc8b033c1c7c023064f70a10859ca28a59833539ee2a0aVirustotal results 21 / 58 (36.21)Heodo
2018-12-11Month notice.docdoc73aa2afabc1a40a8b6a3146c017a3984c6b548dd58912e058181cd2bd85e97ffVirustotal results 21 / 60 (35.00)Heodo
2018-12-11Review invoice required.docdoc09f4baf5272e6534517da3f0bb7359723b7eddd93f5606792cc2e6a7e936a4feVirustotal results 21 / 60 (35.00)Heodo
2018-12-11Final notice.docdoc1a2246436af1c15467f2bb58e1e4d8007b14078ce7813becfd15fd27a1113119Virustotal results 21 / 60 (35.00)Heodo
2018-12-11Outstanding invoice.docdocd567010c93cb4f0b1100e00abd90e1e911ec246262cd0bec5716078ad4cbd843Virustotal results 20 / 58 (34.48)Heodo
2018-12-11Billing Invoice - Job # 7653522.docdoc7a25518007e3d077c43165b755697e0ab92e2153e72ed484602c59e899567aa8Virustotal results 23 / 59 (38.98)Heodo
2018-12-11Outstanding invoice.docdoc012eabed4bf2daf19261a2ba1de0ca46b92ad61e9bc31a7e4bd13cdd6f8e7c83Virustotal results 23 / 60 (38.33)Heodo
2018-12-11Review invoice required.docdocbd5c4b5bd4e8239b87cec01747c64d98db9202105fdeb01308535dc3356353c1Virustotal results 17 / 59 (28.81)Heodo
2018-12-11Invoice Query.docdoc05fbf69ba94638a93443bc0b3cc97cf4b1e140133620db00bab3fef0529f8583Virustotal results 17 / 59 (28.81)
2018-12-11Invoice.docdocd0db55784134fa5e3568ec7ec0d88d6665aa87f136dbe05807ec4d141ab354ebVirustotal results 17 / 59 (28.81)Heodo
2018-12-11Invoice as at 11/12/2018.docdoc122c756c88f5f94a39e1b107c1db7628613521b5d9c85402e252b87fb83c007bVirustotal results 16 / 59 (27.12)Heodo
2018-12-11Statement as at 11.12.2018.docdocc072adca0179a17c59bf53ad5428d2e4070ab55f2169d7a5704a8ca526ea9a10Virustotal results 25 / 59 (42.37)Heodo
2018-12-11Invoice as at 11/12/2018.docdoc84ed9cd3abfa4f6b84460ae0b747230fed7fc469e32b767395f7afe5dde247e9Virustotal results 17 / 58 (29.31)Heodo
2018-12-11Accounts - Invoice.docdoc14a74ba9d54a1f9b8de7846d46fcea94d15f5eba4f4c1361994721c6c2abb464Virustotal results 17 / 59 (28.81)Heodo
2018-12-11Invoice as at 11/12/2018.docdoc885194cc0fa0d5c3f75c2153fd17db324427b0a648c917d196b2341a1b8ede4dVirustotal results 16 / 59 (27.12)Heodo
2018-12-11Invoice Confirmation UP28989.docdoce2f23d4775ece710bf80134a1dba19b94cfa9194d769281ba319186f03a1dd04Virustotal results 17 / 60 (28.33)Heodo
2018-12-11Final notice.docdoc16d1eb33627f995503e9bcef79bb799e72482b530c50ebd43f34ffe576bfc0a7Virustotal results 17 / 59 (28.81)Heodo
2018-12-11Invoice.docdoc2676c3383f24a6c7de1bbb881192c53892cadf82c71b90e72e5147fdc39ccc3bVirustotal results 19 / 58 (32.76)Heodo
2018-12-11Final notice.docdoc254c189fcab836ff9d69506217bf7c4662b057dda6ede51759c2b6f004a35a16Virustotal results 19 / 60 (31.67)Heodo
2018-12-11Customer No 4588377.docdoccc2405f09c798ecc2766a908277a56e5255dd97a21757e293ad7104105982fafn/aHeodo
2018-12-11Invoice # 38W98420.docdoc5db8e82da29b84edcad955dd15ce35f22429a0d55ebbf7a4138130ca533dde0dVirustotal results 19 / 59 (32.20)Heodo
2018-12-11Month notice.docdocce930600f3276d5d60abd3ca5f5f3885493198e5f686c7fa817446f53f3eccb9n/aHeodo
2018-12-11Latest invoice - 320789.docdocaae99acef6c295567966311797e716cf7f929d872e35d5a66070eb5b31f0e687Virustotal results 17 / 58 (29.31)Heodo
2018-12-11Outstanding invoice.docdoc88be98adbd949ec853acc153758beaf76b3a2264d874a726292c9348bb4356e9Virustotal results 19 / 60 (31.67)Heodo
2018-12-11Invoice # 42G4673351.docdoc16552a612e691dc1d70d033ac4306e0047f0bb532a59fac53aa85f61adb09078Virustotal results 15 / 57 (26.32)Heodo
2018-12-11Final notice.docdoc4acb34a5ad58767decbe0a134a53198f8cbfb3902ed3c33170f4dd153a6ed1ecVirustotal results 18 / 60 (30.00)Heodo
2018-12-11Outstanding invoice.docdocf90b4e2348300224409f6b24f046ad3e0e0fa5955919b9747582489fb6d7896fVirustotal results 17 / 61 (27.87)Heodo
2018-12-11Invoice.docdocdd07c09b322a4086eb1f8927c75d71702d27a395a2c5cb44e90585fb529b6861Virustotal results 17 / 60 (28.33)Heodo