URLhaus Database

You are currently viewing the URLhaus database entry for http://pbj.undiksha.ac.id/wp-content/uploads/sendincverif/support/trust/en_EN/02-2019/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:148798
URL: http://pbj.undiksha.ac.id/wp-content/uploads/sendincverif/support/trust/en_EN/02-2019/
URL Status:Offline
Host: pbj.undiksha.ac.id
Date added:2019-02-27 15:03:08 UTC
Last online:2019-02-27 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-02-27 15:04:01 UTC to abuse{at}iconpln[dot]net[dot]id)
Takedown time:6 hours, 43 minutes Good (down since 2019-02-27 21:47:11 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-02-27Enc_message_45384551.docdoc 00fdcd9777bab81d8dcda0b09525b9755ccf5d1aaf6125bb6ab50d20fe9d4f57Virustotal results 26.67% Heodo
2019-02-27Encrypted_Email_file_1347383559.docdoc b2a016bb48d5fb564d965cd99d81435b6f8c0d9520d3715befa2d3f0b76c9671n/a Heodo
2019-02-27Encrypted_message_766275948.docdoc 10873c326fc35dd98727fdcf0baad4ac1c318b8811f0f9ae7785bc2cbf2c6226n/a Heodo
2019-02-27Secure_mes_134536491.docdoc 3d5611f7cfc08978d514dbded9342e6d1aa2def50dc6e36fe09da77ccbb18680n/a Heodo
2019-02-27Secure_message_699533477.docdoc 90e9a119405a5c9563fb875813d103617f9af4f27e21513dd8d3cce690758e69Virustotal results 25.00% Heodo
2019-02-27Secure_mes_5158946877.docdoc 316df27e602df69523549fb89f2e126be17f75ce42686d902c80634c0ffa500dVirustotal results 23.73% Heodo
2019-02-27Secure_Email_file_96038704.docdoc eb21c8edf63fae2f408ae71ef9a788a01e981bfaa34f8821a7aaa64593d17421Virustotal results 24.53% Heodo
2019-02-27Encrypted_Email_file_594938579.docdocx 1bb948ea6a642404c81eff109bd3bf4de8d17371bd084d3636e5638345cc5020Virustotal results 18.64%