URLhaus Database

You are currently viewing the URLhaus database entry for https://landfluid.com/wp/ZipHxjbBoQwkmheppokQ/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:949463
URL: https://landfluid.com/wp/ZipHxjbBoQwkmheppokQ/
URL Status:Offline
Host: landfluid.com
Date added:2021-01-05 12:21:06 UTC
Last online:2021-01-06 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2021-01-05 12:22:13 UTC to abuse{at}amazonaws[dot]com)
Takedown time:14 hours, 8 minutes Good (down since 2021-01-06 02:30:16 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-063BWWDXNFBL.docdoc de0a3645233c15feaa23ad91784a6ee8d68940d4defd54a50e3f10090bc65421n/aHeodo
2021-01-06Z6JTG45YZ.docdoc 3e06dc8c8f2f5e98592e30b5274a5ebb10d1731511a9b4813bed1591f2cbf8bdn/aHeodo
2021-01-06ULXO1C.docdoc 04f4411e43e60cd3d25f7b84b887bee4a9df9aac24b8f8023d1a9389a5d090d1Virustotal results 52.38%Heodo
2021-01-06XW6E96H6MIKS84G2.docdoc a6fb2e9f5db8866a8f8dfaba2d23fe53d60df660b8d356624998ea59b0678313Virustotal results 52.38%Heodo
2021-01-06AI2Y3LNY.docdoc 518bb7e643187438a185e0612c4bddbe62d736dbaf1b37cba4cb3f9e551eec09n/aHeodo
2021-01-06HH3U88EO2P1O.docdoc 4caba632ae9218e1820c95cc84d6d577243052781c50f304133a875481d13e08Virustotal results 52.38%Heodo
2021-01-06ACS2QCNKL.docdoc 21a6e4af3207ec97859c62198978cdce648c94f932b073bc3eb149418759e747n/aHeodo
2021-01-06WK3WID8PL81W9GK.docdoc 91301283dc9ff2a660bc059ae18fd6d89374f0ce7cdcf84629aa9c2846925022Virustotal results 49.21%Heodo
2021-01-05IUFNUMTCUB2.docdoc 4a4dba86e713cf92f9e8e440b31d56e0682d4226deb7ddf638ae9489da1c7b3bVirustotal results 49.21%Heodo
2021-01-0517J5H53.docdoc 0baffc20eaca4aeeb47c5c2ad8b6e1422d4407ebd13b501b7ebec60859dfe18dn/aHeodo
2021-01-05VOY3SATQRVGQV3.docdoc aa637b00fdde01bdd5c1e2f3d0b91364528bee85d5f1a8c1ff80fa730cf79a8eVirustotal results 47.62%Heodo
2021-01-05IPD7PDAKOL42UQ.docdoc 10662fecd3be581c0e3e48c76674df0e815878786e19bce2dcd21c3552655269Virustotal results 43.55%Heodo
2021-01-058BPSFCTC5ZUMM.docdoc 8b55e8ac93c6d98a00b5790b88263103586e05cb124ce6daac1b1061df4772abVirustotal results 48.39%Heodo
2021-01-05PIFWZZN4GW88W.docdoc cff0307e84e8f6c3c45d3ac88aee9f8761a6f7a271dc07e5c6b1a2b4012b654aVirustotal results 47.62%Heodo
2021-01-054OK9DG.docdoc cdc5395931b2b7da44dbfe1d93bef7a982f103fafc2259f0d0b41025628b11b6Virustotal results 46.77%Heodo
2021-01-05BIJCLBZ.docdoc 0ced2d1f1bbe1d20a40898ae28082521bc69ecc51d16b81d636de77791f0ef7aVirustotal results 47.62%Heodo
2021-01-05OFG1KJT58I.docdoc 2668d532f53ad3bd92b9d0fb533d6feaf17a6a01a08ee85787667442e9c69e5bn/aHeodo
2021-01-05MZ727AS2W.docdoc a03c9dc5727fee3968f4d2d8352258cfc56840dd972680704075d574c12dad5eVirustotal results 48.39%Heodo
2021-01-059S8P7AWH9IJ.docdoc aba67782417917b3d22447be393035e2d71c1237c51459a580d444c228dda781Virustotal results 44.26%Heodo
2021-01-05W4IDEU.docdoc 8c829198897d8ba3dd5a5b1f86741c5e5295a0eafb900bfa440802d1c622c469Virustotal results 46.77%Heodo
2021-01-05IXOSLNESWRQYX3EW.docdoc 62e59eaea6957db1a93e77c39471b0610482dc77a76165a48b7e0de0db27aea6Virustotal results 45.31%Heodo
2021-01-05U60X81W.docdoc 961a80ccd1b1e38897c5003ee920895e6fc6cbb1799b7b68c4429d8f5b5f9c64Virustotal results 44.44%Heodo
2021-01-05GREKWVZX.docdoc 7f9e6b9183a6a254ffcd68100012d645a5fb91caaf3b727bbbd76f4262595bb7n/aHeodo
2021-01-05M6G9J4AUD1MKKL9.docdoc 6527a3d2271262cfd7437e54a8f738dd3902cf973c372933ce6b8303f9dd6ee4Virustotal results 43.55%Heodo
2021-01-05T4OM6T1TCQ.docdoc 9989dfbbd3669ca3164a605c485ac6a06d5c27ebf7357bf76968e81d2068d3c2n/aHeodo
2021-01-05Q9O939VQGIRPTK3.docdoc 80454b5f97454034a460b2976c3161f4efcf1131cb3ba594669114a46e069c98Virustotal results 42.86%Heodo
2021-01-056WJSICDD.docdoc ab56a195c1632fff8ba092e7dc73858048b1fc67e6242ecc2c78612ae3e224afn/aHeodo
2021-01-05U65PA74W254WT.docdoc c4ce0eb227b221d4f84b66d77278e5508154523f6b6ce3bb756b33863a878046Virustotal results 43.55%Heodo
2021-01-05DJZBLVM8K3C2G.docdoc c2a6153157de0da1987225400eb7e32c87f9574e825320466772d6804cf8d3b0n/aHeodo
2021-01-05VIN17O7.docdoc 8fd9cb62864fba4744ed8c84378c4fbe014c5b9f08d61c6a84d8816c2e6e4d9cVirustotal results 41.27%Heodo
2021-01-058K81MD10T9A.docdoc e675703883baaba25a66c582f234d4afc20d4c8222845afb799f48323b535d74Virustotal results 40.32%Heodo
2021-01-05B7HYH48OUNUDWNUI.docdoc c8716d77cc9731a9bd2f9e62118940e19ef0e5f78720b842f7fd47d53300282aVirustotal results 41.27%Heodo
2021-01-058SMIS1R0A3MLLEV.docdoc 4e3a0ad4ce849705cfb0b25ceb1b9447b104129bf30552f0fe1591fac04a39a5Virustotal results 40.32%Heodo
2021-01-05Y9YJ8S4.docdoc 4ec6bb0b2ce1529a04163cb7987c3a252b4b942cf820aa976d0e2ffe95e84344Virustotal results 41.27%Heodo
2021-01-05IICD57.docdoc e4e839fc6e675fddabb7379eb120dbfcf806e83bbb109f762f1eab7aaf44b36en/aHeodo
2021-01-05QZFUMT6N1L85GY.docdoc d9f1daa0db3b8bb962e18b383421e2af30f8a1b2c16d334b8c422b5d16d7b42cVirustotal results 41.94%Heodo
2021-01-059LY8ZH87.docdoc d46ba86119e2dd83214de690677f6a6804a514580f74a8b698bd9feba2c914a1Virustotal results 40.98%Heodo
2021-01-05MT3YX9GU359DMVVW.docdoc 1820b988c13ef1a079fee2be0e5e8dd487e4780889fee3217ee772eea378e9abn/aHeodo
2021-01-05YC7EDRXJ.docdoc e4427b8895f8ca8b41f5612c07905088c64d16fff99c38b49e50c33d20fe9537n/aHeodo
2021-01-05VD1KOWOT.docdoc 1560c83b825876fca826777b5520ca73766c11d16b6bdde3126f9ad60c2466edVirustotal results 38.71%Heodo
2021-01-057GOFKKHOO396.docdoc fa67e7f709be28273b80782e6576f2e93ec9a1018626c3907d55e005fe12cf0dn/aHeodo
2021-01-05E004XB6.docdoc 36f1f3e2b474fdd2dba5500b93616364847f17689ab90dd0b98763bb817587c3Virustotal results 36.51%Heodo
2021-01-05XXFE0X5LNUND15.docdoc 5a4272405ec5815ec5ce110738678a0209b357093fdcfb9eb643570cd07cb7b9n/aHeodo
2021-01-05XGXD80ET9M.docdoc a56a1800d7e4025777037ca7710c9d3371e740bed22da122514b4926f7be79f9n/aHeodo
2021-01-05XR6B4I5CZ.docdoc 7a3b0250eb31576ec30cb36ba111082fdb6d95f294a58c412327caf1bd885310n/aHeodo
2021-01-05QORYQPTH.docdoc bbe6cd3d148a4f8079df0b0edd4c64642fa3a8bde29976abba31bd23dccdeba5Virustotal results 34.92%Heodo
2021-01-050UWQQ60M7BZTCD1L.docdoc e1ed12bcae0da4c4a1154924ad77715d27052249f5056a72f02f9c6a42a6ba59n/aHeodo
2021-01-051F1GYUOST4RK.docdoc 91a7ce72ae73517cf823f4b6ff773ed980257153161d71111b095b9a5b56450dn/aHeodo
2021-01-05G9HPU6AF.docdoc 3a6c0312e735a06c37589a86a75939fd3fa9fe9ab71deda4a1c23c9fda307e7dVirustotal results 34.92%Heodo
2021-01-059CZ4F2Z14216Y7V.docdoc a700e19d7dc7facdc0598d4c78fa8781ae1a7cf9a6c215deb838a9d6c78bfd7cn/aHeodo
2021-01-054AV132TFSVJ.docdoc 59a5bd5a89cb04636e5146b6637154636d8e608014dba50b76e584d9dbfeebeeVirustotal results 35.48%Heodo
2021-01-05RKNMFYQRP8K.docdoc 001e1ea7ab07c91d781f5c51cd2039efc3acaf9f3a7b4bad38979ad48ad2119cVirustotal results 35.48%Heodo
2021-01-05EPJSM3IM1A6F8N7F.docdoc 80fadde081a035c58538d60c3829934f50b57a18850e7506eae4157595906af0Virustotal results 33.33%Heodo
2021-01-05NWS1QMTQK50.docdoc ef6c966c74e229e34f880f5df67c40fc69a57caf55d1b033527dd9c5be04516bVirustotal results 33.33%Heodo
2021-01-05GDWPWHCSC6.docdoc 2325bb3d4ffb081d6234ed1bca74f8662b1f85c6d27d6dec106e376590b7263fVirustotal results 33.87%Heodo
2021-01-05W3SBLEEQXKBF.docdoc 15f23a4d0c6a15044c688746279a0a6afbc82b15d5c5bf6752ccffa01e9921f4Virustotal results 33.33%Heodo
2021-01-05YAT5CJXADA1CLO.docdoc f6e3ab2fb75c4dad953b4eabf8acdbdf4a8a40840e32e3f178fc2b044b27dec4Virustotal results 33.33%Heodo
2021-01-05XUE39L0RNSMJKUF.docdoc 755c1e87c9c3e345b5eca450c1c72e05e691421932a8d8e26048990f9cb2ab5bVirustotal results 33.87%Heodo
2021-01-05YVC153C0HHAMFTB.docdoc fb98c716e390d5ee1a67d0672d65fb94afc21949fcb158f654fb6405c079071fn/aHeodo