URLhaus Database

You are currently viewing the URLhaus database entry for http://tongdaifpt.net/Details/2018-12/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:98573
URL:http://tongdaifpt.net/Details/2018-12/
URL Status:Offline
Host:tongdaifpt.net
Date added:2018-12-21 02:57:42 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Abused domain (malware)
SURBL:Not listed
Reporter:@Cryptolaemus1
Abuse complaint sent (?): Yes (2018-12-21 02:58:03 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:13 hours, 30 minutes Good
Tags:doc emotet epoch1 heodo

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2018-12-21Inv808.docdocc989dbe1375f01fbb9a0f388687c845a004904035c9d34e5cc120b1c6056bfc1Virustotal results 11 / 56 (19.64)Heodo
2018-12-21Inv7359.docdoc57b0a093137784584e7c1a998d552876df74af0ec8a00a0b8526891f8c470cecVirustotal results 10 / 62 (16.13)Heodo
2018-12-21Inv74009.docdoc48b3075b281cafa8d1cc3d8f09baaf26f567e6734fcea9309dab93460623e760Virustotal results 12 / 60 (20.00)Heodo
2018-12-21INV928.docdoc58920b10b34928db438824695fdbd9cc4e2f18091da412fe8ebd7828b5fd07b9Virustotal results 11 / 60 (18.33)Heodo
2018-12-21Inv539.docdoca198e729fa0ea5f5e9a18b7f783628d4b35471d4ed03538f5ab1a35aa527e2f8Virustotal results 11 / 58 (18.97)Heodo
2018-12-21INV564.docdocd05269541be58bf8eebf8c606c31e7e6540b3850356bab25d0001555e9a2bde5Virustotal results 11 / 60 (18.33)Heodo
2018-12-21Inv5994.docdoc52c5ab04b3eb8845b54cfd44a5ad99ef26f54e8bde5fc9fdc076e09d3ad7a692Virustotal results 11 / 58 (18.97)Heodo
2018-12-21Inv68236.docdoc1fe9f099179696f992bd5c43bbea1b77e68841d2df2621564ab4f80a454c15e9Virustotal results 11 / 57 (19.30)Heodo
2018-12-21INV69544.docdocee05b5adc243f2080c564a4b0e4d85884f983509e12c045ee00d7e123ac16475n/aHeodo
2018-12-21INV555.docdoc33b1d4c0cc98802c52a897a4f063f454d820f0bc30be92363269641c342bd7ecn/aHeodo
2018-12-21INV757.docdoc485c553eaf507d41e36892ef473559721bd9d7b13696b69f92fe5482aadc1fb4n/aHeodo
2018-12-21INV7651.docdoc084ee3a04abaaf15cbdec12f7f74ae8e4670db840f24e8a3335ce1a9f6d07cb7Virustotal results 13 / 59 (22.03)Heodo
2018-12-21INV562.docdoc6edb65b9ceffa73fecb6ffcf12184a8e1d99fa66d72dba7bd34cdc06a2575b19n/aHeodo
2018-12-21INV5207.docdoc9211a77dd37798e12f65e2f756636771d2760e2cced9b5fade11d3757163406fVirustotal results 12 / 57 (21.05)Heodo
2018-12-21Inv5594.docdocc8d874c60395a47b5458a1324de2ad2a2b0e2cd3c0d640825642154dbf3bfe74n/aHeodo
2018-12-21INV862.docdoc27d4cc207fff079daad99ab37106d7ff0d95f801de36533f2d29047cb7107a00Virustotal results 13 / 59 (22.03)Heodo