############################################################################## # URLhaus ASN CSV Feed # # Generated on 2024-03-28 16:20:21 UTC # # # # For questions please refer to: # # https://urlhaus.abuse.ch/feeds/ # ############################################################################## # # Feed generated for AS13767 # # Dateadded (UTC),URL,URL_status,Threat,Tags,Host,IPaddress,ASnumber,Country "2023-12-09 14:35:09","https://expeditionbuilders.com/JK/WLpBQ80.bin","offline","malware_download","CloudEyE|encrypted|GuLoader|XWorm","expeditionbuilders.com","216.194.122.136","13767","US" "2022-12-15 17:30:32","https://procomexpachuca.com/no/index.php","offline","malware_download","50000|E17|gozi|ISFB|ISO|PM11|TR|zip","procomexpachuca.com","96.125.179.141","13767","CA" "2022-12-14 20:12:11","https://procomexpachuca.com/soe/index.php","offline","malware_download","BB10|ISO|nt005|qakbot|qbot|quakbot|TR|zip","procomexpachuca.com","96.125.179.141","13767","CA" "2022-03-30 23:38:05","http://support.exucom.com/cp/z0MEqoIBdT7hyXG4DfUwVUD5V/","offline","malware_download","emotet|epoch4|Heodo|xls","support.exucom.com","69.42.49.166","13767","US" "2020-08-28 23:36:18","http://gorrasnissin.com/v6/balance/cpbrjrf-00715473/","offline","malware_download","doc|emotet|epoch3|Heodo","gorrasnissin.com","96.125.179.141","13767","CA" "2020-08-25 20:05:08","http://gorrasnissin.com/v6/invoice/pd7olmt3/qdqr3w042913ddecgt4vmgzt/","offline","malware_download","doc|emotet|epoch2|heodo","gorrasnissin.com","96.125.179.141","13767","CA" "2019-10-24 18:52:05","http://www.city1stconstructionlending.com/wp-admin/s92708/","offline","malware_download","emotet|epoch1|exe|heodo","www.city1stconstructionlending.com","64.19.194.206","13767","US" "2019-05-01 16:42:05","http://justagnes.pl/wp-content/DOC/HPCJqIdCvLroXpoDHIaMlrAATYWwnu/","offline","malware_download","Emotet|Heodo","justagnes.pl","188.116.53.194","13767","US" "2019-04-05 04:56:05","http://ispel.com.pl/cgi-bin/trust.accounts.docs.net/","offline","malware_download","emotet|epoch1|Heodo","ispel.com.pl","188.116.52.26","13767","US" "2019-04-01 22:59:19","http://ispel.com.pl/cgi-bin/verif.myacc.resourses.net/","offline","malware_download","doc|emotet|epoch1|Heodo","ispel.com.pl","188.116.52.26","13767","US" "2019-03-13 20:03:38","http://bernielandry.com/wp-includes/3qmtd-xmr7y8-vjwdmzk/)/","offline","malware_download","emotet|epoch2","bernielandry.com","96.125.188.94","13767","CA" "2019-03-13 20:03:35","http://bernielandry.com/wp-includes/3qmtd-xmr7y8-vjwdmzk/","offline","malware_download","emotet|epoch2|Heodo","bernielandry.com","96.125.188.94","13767","CA" "2019-03-11 15:47:56","http://bernielandry.com/wp-includes/J3h/","offline","malware_download","emotet|epoch1|exe|Heodo","bernielandry.com","96.125.188.94","13767","CA" "2019-03-07 21:12:08","http://bernielandry.com/wp-includes/sec.accs.send.biz/","offline","malware_download","doc|emotet|epoch1|Heodo","bernielandry.com","96.125.188.94","13767","CA" "2018-06-30 06:00:39","http://airwreck.com/images/Order/Payment","offline","malware_download","emotet|heodo","airwreck.com","96.125.178.109","13767","CA" "2018-06-30 06:00:39","http://airwreck.com/includes/Factura","offline","malware_download","emotet|heodo","airwreck.com","96.125.178.109","13767","CA" "2018-06-29 21:30:05","http://airwreck.com/images/Order/Payment/","offline","malware_download","doc|emotet|epoch2|Heodo","airwreck.com","96.125.178.109","13767","CA" "2018-06-26 16:44:17","http://airwreck.com/includes/Factura/","offline","malware_download","doc|emotet|epoch1|Heodo","airwreck.com","96.125.178.109","13767","CA" "2018-06-15 13:52:07","http://airwreck.com/media/58OoE/","offline","malware_download","emotet|epoch1|Heodo|payload","airwreck.com","96.125.178.109","13767","CA" "2018-06-04 10:30:04","http://airwreck.com/language/XKthEO1/","offline","malware_download","emotet|Heodo|payload","airwreck.com","96.125.178.109","13767","CA" "2018-05-29 19:41:30","http://airwreck.com/modules/ups.com/WebTracking/ZHE-391675709863508/","offline","malware_download","doc|emotet|Heodo","airwreck.com","96.125.178.109","13767","CA" "2018-05-07 20:26:03","http://airwreck.com/language/eDtxNneFkz/","offline","malware_download","doc|emotet","airwreck.com","96.125.178.109","13767","CA" # of entries: 22