URLhaus Database

You are currently viewing the URLhaus database entry for http://fisika.mipa.uns.ac.id/icopia/files/27xt4-dpkah-ppuu.view/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:151836
URL: http://fisika.mipa.uns.ac.id/icopia/files/27xt4-dpkah-ppuu.view/
URL Status:Offline
Host: fisika.mipa.uns.ac.id
Date added:2019-03-04 16:31:26 UTC
Last online:2019-03-16 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-03-04 16:32:05 UTC to abuse{at}uns[dot]ac[dot]id)
Takedown time:11 days, 21 hours, 1 minutes Bad (down since 2019-03-16 13:33:46 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-03-05US48290693098232650729.docdoc d8d04334e16e126ecff0f83450d4e141f9ca987e50aff09554e4f76a9ec13293Virustotal results 20.00% 
2019-03-0561995893849.docdoc 83a89cadd6bb2f37235f38e1df37e8bd7f67392e2da50fa4056f99f9322361a5n/a Heodo
2019-03-05LLID6281370196334209.docdoc b5c4f069de45cf6fb4cb93efca890daff8f11116cca078a17a25393462f2a5e4Virustotal results 21.05% 
2019-03-05PAY35689164865940158819.docdoc 4cbacae502913235ba9844b8077a904a92a79bd87807d2ced4b87a1429dcf10cVirustotal results 20.37% Heodo
2019-03-05US1231408928983421663.docdoc d13b5ea2761899fe92b4f097f488303f9cbc2f0488d3abd753ad6267ee3c8d8cVirustotal results 17.54% 
2019-03-05ACC95693766659853648139.docdoc b658f6d2637e167db691c2e328a6ac5a0a77fa110ab18dc4aca4fb80b0c413b8n/a 
2019-03-05INSTR2214060983463.docdoc f9c668acfd272f7559a02786f87a776e0207d2c2237bde1a60fdfe96876d9f9dVirustotal results 20.69% Heodo
2019-03-05PAY95344486646385508.docdoc ca059caef95957d6648e83486e6e53777b0ddb69f6cd7431666c87e0fdf7bf18n/a Heodo
2019-03-050416939828519307471.docdoc 7ca1bbaa038c0944f5786d4675dddf7379f11c9372fbe29185c9cdc2c91a5d3fVirustotal results 14.55% Heodo
2019-03-05INSTR653391548464467.docdoc 66a18db21f72197aae46dd69009ec87daecca0a6bf164c5a5aedb137989bb7abn/a 
2019-03-05US3322691335869707.docdoc 30b6d0eff4b6db2749ae420ac9707fa69e5a624165a6d362fb9b784fa22d3146Virustotal results 14.55% Heodo
2019-03-05INSTR380757149120114.docdoc e2d61daa23a64595b55893262ff9189ac1a8e23b22232a01132d188365867f3dn/a Heodo
2019-03-05US018747105308.docdoc 85252d2d199ca1c218556b0bb96161b65c0321f77e8f45855093d5f5d423f9e1Virustotal results 16.67% Heodo
2019-03-05INSTR479464673.docdoc 05f5fc2c02a6c2ecbbe5810c13291c246c3878b1392de62b61eabcf74a7ec295n/a Heodo
2019-03-0545214154448599401641.docdoc 040e88e2695080435c9155f956620cdd306fa7e27c2c3ca3523f75e22fa7060fn/a Heodo
2019-03-05US63579448883.docdoc cf54aa31a0aa3112e9faa9e6b5db10b0afe5c3d955872b668ee76bb913e8b476Virustotal results 31.48% Heodo
2019-03-05INSTR7909976874.docdoc 0adc8c14fe7c27bda68e51a8b1175fa203bde158d8ab11a8bd4cd6cec0f370a3n/a Heodo
2019-03-05PAY3706592037412.docdoc 36cb60796fe254e786832bb20f8b87046d5c40f838b9512e632f6da84a5a3bc6Virustotal results 33.33% 
2019-03-05US501904270.docdoc a99c4e7e61b71beba20d2b69787be3b0723db75e73d212f9e66d85d9762c5a43Virustotal results 32.76% 
2019-03-05FTDVX3074104249027.docdoc eaba39c8b5b75fcd183cb1c2f6a678a1c2af241e2d7a1dace5bfd0d501175803Virustotal results 31.48% Heodo
2019-03-05ACC58377152046924980.docdoc 66bfc24d91f857bc1d9497434662011f42a4ff687f4847c38c845f317e800086Virustotal results 31.48% Heodo
2019-03-05PAY0299286575.docdoc 913b37680c037bb565dbc9d5a306700b28212edab723b1c0ee8c8f68183599a2Virustotal results 31.03% Heodo
2019-03-052870120653432.docdoc 737aeba0ae9a527862a37b81eae2fc55d7fa7620a97bc6be07fb29839e0af52aVirustotal results 32.73% Heodo
2019-03-05645024969995584279.docdoc e94f3ab2a7dfcb8121b0550665c68f62d466268fd2da4ea48babefa9865527f5Virustotal results 31.58% Heodo
2019-03-04PAY3152366574.docdoc dd84e8e565cec56715a0379dbbf41367172a87121052e627f7c3dd31e97eb710Virustotal results 24.56% Heodo
2019-03-04QA648987326487542197.docdoc ff996384383ff0991b46c52cbb2e501d781d1c97a4d488b45e122916fbf1701dVirustotal results 18.87% Heodo
2019-03-04US46849160347988016.docdoc 83911a083964e373df597af74791cdded2eef9a144a6bf1b25f323904153df8dVirustotal results 22.64% Heodo
2019-03-04QQJNS8623240716365641405.docdoc ecb00a829d8203f31370e418d7f1b715f190826b1101ad535af08a924ac20594Virustotal results 21.43% Heodo
2019-03-04KKIPA3008777384487.docdoc 665f2fa3fe90167a119646473e3756c6f91c45c67e3ff6a04a839cd914ad4501Virustotal results 21.57% 
2019-03-04US92661066244816099.docdoc 87ebaf272068c4cfa043de242add3ac1a93d4932b20fe98bd2ec89ac3a9d4221Virustotal results 18.97% Heodo
2019-03-04103578019942.docdoc 8f2984f94dc67a7381f583f865c42221964735246ee50ad9a509ff692fafb943Virustotal results 19.23% 
2019-03-04INSTR573075277.docdoc 7ffe0a7372ad3eb762faf6fa44ac17fc04d31170bc56bd0dfe26820f85f06d91Virustotal results 18.87% Heodo
2019-03-0421450127344715.docdoc 5414862a9e2a876becb315b91373404c37dc311ee5040d163372cce37eea8de6Virustotal results 18.87% 
2019-03-04QXVTD882099648.docdoc 082f403d682f05cb97a0338eaca60947f7a87c4a6d45125ffbab9cd036501b0cn/a Heodo
2019-03-04PAY77232755436.docdoc 1590518d57a929a0b919161b4488fcf7e5e70807244e35168a90a36148cbc59aVirustotal results 18.18% Heodo
2019-03-04ZHT23398214445552.docdoc 3489be2aa6818f369b27151d4a4400616359ccd61455a7a2f700fec6ee977050Virustotal results 14.04% Heodo
2019-03-04UL80477669247451.docdoc f076cd7be0da9f063d1b75dcac629b8ed4c299ce4100e56d1f5879ea1e58b451Virustotal results 14.04% 
2019-03-04US144409306915.docdoc 3d7b0908e6d563cf0291c6962c957df49ca75f9aced50b72e2d0816f14be8c44n/a Heodo