URLhaus Database

You are currently viewing the URLhaus database entry for http://daoisthealing.com/cgi-bin/ggDTPTkVTMMzVn81NJQ5IDXcKNy90gOlG7RkpReZ7jVhmClDeMRPW/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:936729
URL: http://daoisthealing.com/cgi-bin/ggDTPTkVTMMzVn81NJQ5IDXcKNy90gOlG7RkpReZ7jVhmClDeMRPW/
URL Status:Offline
Host: daoisthealing.com
Date added:2020-12-22 00:27:05 UTC
Last online:2021-02-02 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-12-22 00:28:35 UTC to google-cloud-compliance{at}google[dot]com)
Takedown time:1 month, 12 days, 15 hours, 3 minutes Bad (down since 2021-02-02 15:32:30 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-230SN42NPX7CB34.docdoc 6c5c7d1b7160e3257cdc503f701c9cd77ee2f45e059b200e9dd216b28ce4d787Virustotal results 26.98%Heodo
2020-12-239Q5XIQ1PA4.docdoc 649918360167560700dc33d77632806bcc52576e640559297ce216691ea5dfd1Virustotal results 26.98%Heodo
2020-12-2388CAMFL8HIO.docdoc a7b7abb4d144045e42bf5e55e294d5b67850d11ccaac312734570ccca072851fVirustotal results 26.98%Heodo
2020-12-23JI5TGR4QNC206DS.docdoc 093e325f8e17124f9f181fc838f22a865b3b150c5cde9e1254345ebd6fb189dbn/aHeodo
2020-12-23USWWZHI.docdoc d515c766ed70768021011da8cee6b7e50fa0a5ab48bedcce9dac95adccd4500fVirustotal results 26.98%Heodo
2020-12-23M36MQEWCCOX5N.docdoc 177700c186c08d0b3242e4a5b0879a20b0d1150c85368200b985b4db691d49e1Virustotal results 25.40%Heodo
2020-12-2306NT1GZ9CEICFB.docdoc 10e82c9cb8fab1398ba9caf9a04b863ad24859a41262cbc36ae16bed8c2f9cfaVirustotal results 25.40%Heodo
2020-12-237IUD09Y1Z.docdoc cb4f991bd4228ec60ab6af1bab6193e68f4fadf3a30b226e7ee9cdfe893113a0Virustotal results 23.81%Heodo
2020-12-23GZJ9H9QOIDW2.docdoc 49f4475b4c4b63927d612bfcfc707d4a25237813c727333fbcb42fec441757dcVirustotal results 23.81%Heodo
2020-12-23PB6IO7XDUCQLGW.docdoc 8538d00638c32a97eac2e8a9e1766a39268d8effa55c28026d3b75fe114dbc18n/aHeodo
2020-12-23NVB0B8H1NVS.docdoc 7e0f29831e6732a730d1b231a94cae3a27525976381cf6b97d15fe45c295f239Virustotal results 22.58%Heodo
2020-12-23KS9I1SYIS9CNAC42.docdoc 1b7862cdd7e11129f0b2efba625efa4a4298cc9610881f0e2ecfef4299a10afaVirustotal results 22.22%Heodo
2020-12-23LWAGBOEBGIA0YVA.docdoc 241c359520f4cef1af1de9d4789bf620f8086c7feb5aa2deba772b87aef3d514Virustotal results 22.22%Heodo
2020-12-23UZOHEMCQNL6P.docdoc b3113257141ae38419e18067dfd959c1bfbaa38541c9d44588b19d5e05a77ef3Virustotal results 22.22%Heodo
2020-12-23UGSPHAADWSQL53.docdoc ebfadd85753d033e248aedd9f9c5772331aff8dc35049d0842e8c423d64ea08cVirustotal results 20.97%Heodo
2020-12-2366C0RGKA2XWQRB.docdoc c31a2ac228c882d72c112ad120473d012e0ba62c8d157e83cb7738293120eb15Virustotal results 20.63%Heodo
2020-12-23AXUI5YW.docdoc 1b1cb32d2f4a43f7bd1699dd46b55f8deed32e31065c9f13c69f2610b96d41c6Virustotal results 40.32%Heodo
2020-12-23FF7JWSIX5K6F65.docdoc 3fbfd6e982d209b8a17b661954954d34ed049c93ae235bd736f558199b81aa94Virustotal results 41.27%Heodo
2020-12-23X0YZXRR4R.docdoc ba9ea1c4a35b426bb909eae9b8b40a6acdd5a80c1cea10d8a336338a7b282522Virustotal results 40.32%Heodo
2020-12-23NQNSPM1PU2Y.docdoc 4a6d02a3adc59903ee067a5abc702d78fb31c61deb56b7360fade2ec85195569n/aHeodo
2020-12-23P56W0NCP6.docdoc 0b92e01b938b2941f4f0940c53a2f53da1f523d08ac18e2f8bc4dd9cc96b52a5Virustotal results 41.27%Heodo
2020-12-23ZD2O57EVOWUHR50.docdoc 47207dfadb642d35013dc02b38b9dbf49b10333f7447728b8471863fc9ca568fn/aHeodo
2020-12-23UW1TKEQCXG0B.docdoc 5f5a9d7e2e333beb6d779e447aca446f5bf88a9e05585ef90b1be35599c57ca3Virustotal results 38.10%Heodo
2020-12-23VYO05PXRXCD.docdoc 69c857ec1c8b113638e61d8da49ffbda13878a0785aab5d567bdc3fe251fd3eeVirustotal results 36.07%Heodo
2020-12-23467FM0T.docdoc f5e18d77f12c97a41d3afb41a6e69789d19fde04ffdf39ab1f53acd22185b83dn/aHeodo
2020-12-23LDJSGW7HRX7KS8L.docdoc fd76c945ff05629b1e31b55378f97c543c8dce7496389385dae3fd4b8acfd12dVirustotal results 31.75%Heodo
2020-12-238DO3SYO2EX.docdoc 525689f16129765cbfcab859edd5d99fbbec461ea04160605819b2f4b6150042Virustotal results 27.87%Heodo
2020-12-23SMQ423TG0C.docdoc 810ffc95c449b426c6bfc03c98c5e10cfbecbfff7858f10cd9c1c5ec29e2216en/aHeodo
2020-12-232QCS574JN2.docdoc 57f57ee9a02ff9b2983b7b3110a0269f0ac9cf44c8163805edac226aa6a5cc01Virustotal results 30.65%Heodo
2020-12-23G552CFBTMBUT03G.docdoc ef1b1013a1aee1aea1889ea4f3f736bac21dca5f8d940f13dbd2c332a8c8ac69n/aHeodo
2020-12-23SW4DK5CGALC9HA73.docdoc 168fe6ffe9e78f01a7f784833ba9306ef1edad3ccea334df35937424ef0220bcn/aHeodo
2020-12-23LHHGYAPHE9CG.docdoc 64df2f4241becefb0876d62be5908b4d62620e2aeb97828cb2819d952d106f11Virustotal results 28.57%Heodo
2020-12-23DKK8O1T4O.docdoc c29f20dc33cf2304271a54734dc3746f342898284264bd66094dee544fc133bdVirustotal results 26.98%Heodo
2020-12-23ZPJR2EBMIKONS0GH.docdoc 9a8b914d6bb8ae09a04b32fc897fdb9a9ffc073975b436b031ac837b7eeefb0bVirustotal results 26.98%Heodo
2020-12-23HZI78IFB2NQSE3N.docdoc eeeac0e4068f95a8d51d268eb14efdb0158a4a538bd414fde6f64911091f8211Virustotal results 25.81%Heodo
2020-12-235D38AEBQ.docdoc 1f5a0f7a62383b576ac6f661f97a2c035e72d6f054e5b63ea53123ed9081dae6n/aHeodo
2020-12-239JPGR3QPZ5P0.docdoc 47a492a3a0bfd3d8e0e6c5b72d0594fc8f387d657c457da34d5b7c097f8ab9deVirustotal results 26.98%Heodo
2020-12-23VFRGT4OBXJ.docdoc b6a4c5fd2aa2119a83b7372ac02aa65feae5a7d083a93656c4a437dd865a447fVirustotal results 26.98%Heodo
2020-12-23UXEYMH9Z0LB.docdoc 9d2ad424f8d1a39e1cf83b8d64131bc94d8b8ecf787b626e1118e348fc967f10n/aHeodo
2020-12-2212Y7SQT82.docdoc 05c57f48c8b1958bf16f64a292f9aa05a43f6185d02c54a0d8cf03b2fbc56ab5Virustotal results 25.40%Heodo
2020-12-22CR3T5OKM4V6GAORZ.docdoc 893d0822b033e0d5ea0484d9a61ce0354833603684cfb54e8e493f2740641784Virustotal results 21.31%Heodo
2020-12-226P08D0YUS25G.docdoc 6db84ec96bdba956f2a1aaf37771903b47d79d69fc01b53e33ba039b8e7669adVirustotal results 21.31%Heodo
2020-12-22A6BSRXPDJU41C9.docdoc e2e85f53c26daaa6cc7e1fe602e51f272ac256cc0c23725350d37b4a5a888520Virustotal results 19.35%Heodo
2020-12-22322H6DY69ZBAQ.docdoc 9da1b2de73b87188343a6af1fb13673f844abdb2a7396f528f08b6498cc2d4c5Virustotal results 20.97%Heodo
2020-12-22S2OXOU.docdoc 0afaf6e440bc0e03442ed8eb75f681526dd7f4c0fe9ac2f21b5e77401ea41960Virustotal results 20.97%Heodo
2020-12-224ZWVHHWG83R.docdoc 27906840017168a094ac6e8680394dc597113999570a3fd5bb8d19005ec8a01eVirustotal results 20.63%Heodo
2020-12-227XJ0RDXU7U5A5.docdoc 2b3c9804804fdcc11bb7fe3e0d269d644f968eae8f77d314ab1e8e700529d5e5n/aHeodo
2020-12-22N31TVM.docdoc cf9bc9b1442f38adb15e975a6ce0c8a12e5893516067ca74541f8c5aa26f4f75Virustotal results 17.74%Heodo
2020-12-22JUWMDTPVRE5FGAC.docdoc 755b0648467884ea407cb2be70ee59bdff597edec6e149816e553134e25aaf54Virustotal results 20.63%Heodo
2020-12-228MITCII7.docdoc b5cabad4213a8d3f738e1ad1145a3130b3f5fe2739bcb8e5aa1f1ac3fa3fcd7cn/aHeodo
2020-12-22ZIUMOCA.docdoc c56452bc0ff9abfcda3df47210eba4e178e55a49d0673f42c9d192ce0234ca64Virustotal results 19.05%Heodo
2020-12-22C9QD52E.docdoc 7502643f790e60f6929633b08e891ff81ad310001525c345b9dc2b448c1373b0Virustotal results 19.05%Heodo
2020-12-22QJ148DTWYRJ3Y.docdoc 53349be9f04bd91fc2896163434923295124f86d9f8cec1d0c6a244cc15bde9dn/aHeodo
2020-12-22YXVH25K.docdoc 7f7cfdf40853bbfed2268dc75e4981abae04045ef5571e0de2bb61f69578991dVirustotal results 42.86%Heodo
2020-12-22UCK8YHOXEP.docdoc e5b0d3a8fd2f8c0876aba637820cea0b01866dde8e089454066e1f6ece8e7669Virustotal results 42.86%Heodo
2020-12-22ET1RRB.docdoc c9167679e64cc007f5f7c42c046c9a36b51f62709a3e5b5350fed1fb8ce7dae9Virustotal results 41.94%Heodo
2020-12-22O2MD393T2K.docdoc 9986f2aec577488414772902af8ba11f64158e1f5e3483d7ece01b1964d77a3cn/aHeodo
2020-12-22O2AIE4JM1X1HYMTK.docdoc 0529eb660d413f7804da233612e8bd55fae073a9f2af58b046f7f8a24a5a99ben/aHeodo
2020-12-22IEGF3BEXR0UPQ06.docdoc de156d934984014292776d34ab173ee1fa9352b96ff42780479fc6eae2b114d0n/aHeodo
2020-12-221MT98F.docdoc 6f31c56a8ea0949ade1a3cabc55e00d367bb073cfaf7f1b447258c79483910f4Virustotal results 38.10%Heodo
2020-12-22T2GKZC6FUV281.docdoc 0906ccd9d06e96d68c703f978adce40508265b51032f906a9d16c86e0194f779n/aHeodo
2020-12-223EG3RXD4A.docdoc 11d7157111eded889bd4d863a18cf0f5b5f5db649956d7775cf499658e7fce60Virustotal results 34.92%Heodo
2020-12-22Q2R2R0N1.docdoc 02da530f198d747d124f0554938c6718e94f78528286171a3a3298e4eee488a4Virustotal results 36.07%Heodo
2020-12-22E7905BH2UELMQ.docdoc 72526ea70462d80cfb3edea310592329d47c4081c3ee6df1184a219a17b1a731Virustotal results 34.92%Heodo
2020-12-22MGWHW2DC.docdoc 6b865ef4ff2653d141429f88dc0b8e77f14d9315c583a24169804ef1a619dbd4Virustotal results 35.48%Heodo
2020-12-2273KL5S.docdoc 595ca6b04ee946fd5dbbb58b280ad140ada9d2c4f5dff6309281887695c8d4baVirustotal results 35.48%Heodo
2020-12-22TRX83X0KC.docdoc 7ec200a834392208ae8521c4804d11ff669137b4265b732a17660527ccf3cf36Virustotal results 36.51%Heodo
2020-12-22EM6OP53JXO3CL0A.docdoc 017aca0e574a2516567b9eb7ec25cd59f97443fa78373dc2fed9ce1cb981839dVirustotal results 34.43%Heodo
2020-12-22R56W3X6IT.docdoc bf71d36b2ba7d0198a2bebd6c351f932fba9da682a76a354de6b798db426a9e9n/aHeodo
2020-12-22YM319I0.docdoc 210e443eb00d4d6840fb07c0103d61f61b39918ad2c7b31b10509ce1da598fadVirustotal results 36.51%Heodo
2020-12-22FSF9A5NUXE.docdoc 8d81a91518edb9064843167a920609e56978183e85642ee805484047d2629808Virustotal results 35.48%Heodo
2020-12-22MSEWFLYD7OA58.docdoc 1ebb0eb36a2dba1d5dd9648b8e96e8e7c03fb0cddae7d0060ad0aa7990f5dcefn/aHeodo
2020-12-2295YGZQ8OGRS.docdoc 33b84c4e55798d0445fa4926f79f35d6b12ed272eda6f6686060a47bf22c39c1n/aHeodo
2020-12-227ZONSWF8OELN64Z.docdoc 08e886781f2ea3e8a0669e8276b6eb041d7dfa99e5cbd39cbafdcd8dfc958dc7Virustotal results 31.75%Heodo
2020-12-22M4MF6ZTW83PJ.docdoc 02170586397abeca0120b55a547fd80c877eb800f02d55c6aad2473b369f0a3dn/aHeodo
2020-12-22AW431G3WC0TZOZF.docdoc 01b23b3d610f9308bbf2c4e27581457a719ef6a98e8eb217241da2059b6df644Virustotal results 31.15%Heodo
2020-12-22D22LBV.docdoc 5149cb89cfadd9c7f7be6ff7dcd70eecba452c53d75bd5622bbb334b4ae587dfn/aHeodo
2020-12-22QW57CMDUC.docdoc e4127959db33f6f5833f80f9c153129e3aae1396d7d29f0de10a190b6b3e83e8n/aHeodo
2020-12-22ZS4O527FQ8.docdoc 206e5190404fbdf7b89e8e326f2746127d7ade1a4f994a0a40432f957a4a99bfVirustotal results 50.00%Heodo
2020-12-22SWDPO297QB.docdoc 5678fb2398f8ae050763eeb8ef6b94b0c43560105c301b6db5c453c84c7e6aa0Virustotal results 49.09%Heodo
2020-12-22SW3GC2LA0LU6L2MY.docdoc 7184f7e66d9b0566e48729543b3757f4f8ba91165a370d05ff5f9165d59aad8an/aHeodo
2020-12-22XHLOMALTL0ZIG3.docdoc 25eb015d9f19dc18f4c07b7ad294babedf1f3c0c62d698aea402c84ec09eedd1n/aHeodo
2020-12-22YTDENPV1CW4.docdoc 852a163a7446bab72a51cddd9a4f9779ed06d409186cab20d69127d08fa490f7Virustotal results 45.90%Heodo
2020-12-2251Y0YXQ3UOAPGUK.docdoc 99791db1cb487d25ca3160836589adcad5fc57a1dceecd3cdc82ecbee51716beVirustotal results 47.62%Heodo
2020-12-228372XEGW4UZIC.docdoc 419de57605bb9474687edcff1207a053c0da9c08c58d7ad4671981603cc08743Virustotal results 47.62%Heodo
2020-12-22OKMNFX.docdoc 131c12376698272b58eac7309a57016198b292bdf5b742e66c1ed352ff788736Virustotal results 50.82%Heodo
2020-12-22ARBBBSW9T2ST8XU.docdoc 8fa65f5db62b92accf6ac97f78141b1121b6fe2946a4d639818589e08cbfd467n/aHeodo
2020-12-22HDJVMGSEF3P7Q.docdoc 6adf12a084ccf2eb6dd19a35742a35f03bcba878416ef83b9c520e17d55ac329n/aHeodo
2020-12-224SQ2GJVLAM7V.docdoc 2e9ec962d345ba4cd081dc1bd3c89f72f8e52fa86cc06152f1cab0ead72042b7Virustotal results 43.55%Heodo
2020-12-22U8GGJBMEWQ276C.docdoc 45defa35954d6268fe26f6ffec131a6de427af2f682079ef11852a33ff1db07dn/aHeodo
2020-12-22PQTAVIK643UDN1.docdoc 56653f85b04940e6ed43fa36bad1c147ff98665b1466dd59f46fbaa65b38f209Virustotal results 44.44%Heodo
2020-12-22G22FPU4P3XE.docdoc ce6fb78ce0ce59ac239eebb55984e0497f6f9616a5a4ab3fe28b63e8456f3e8an/aHeodo
2020-12-22JWLXI8CSA.docdoc a02591c24d3c86f54be79271c7ec7e679141ae9245b3ac62da5d6f382edc0880Virustotal results 44.44%Heodo