URLhaus Database

You are currently viewing the URLhaus database entry for http://fisika.mipa.uns.ac.id/icopia/files/fyhwj8-sx526d-ngfto/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:158651
URL: http://fisika.mipa.uns.ac.id/icopia/files/fyhwj8-sx526d-ngfto/
URL Status:Offline
Host: fisika.mipa.uns.ac.id
Date added:2019-03-13 17:43:35 UTC
Last online:2019-03-16 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-03-13 17:44:05 UTC to abuse{at}uns[dot]ac[dot]id)
Takedown time:2 days, 19 hours, 48 minutes Poor (down since 2019-03-16 13:32:49 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-03-152019_03_DE5856493256.docdoc 688a43d13e6e2705c89c40d50d19439b6115957c819de8aed256b213303d0be8Virustotal results 21.05% Heodo
2019-03-152019_03_DET558728720181082.docdoc 3e8d1d3cbecdc6d8de0d0331bf79ebb6ff555b575e2e91c66f2040bd9f744a3eVirustotal results 22.03% Heodo
2019-03-152019_03_DET234743129.docdoc ebd2e95e7f136fa2274b9f0711394a78252c3f146aef707f75e6b81d8483d9b0n/a Heodo
2019-03-15DOK7166913271.docdoc c7a16fe65d845ff45e5896b2b46510ca06c295e5fdb87b3089f2164d56f96fe4Virustotal results 22.81% Heodo
2019-03-152019_03_DOK813456794520.docdoc 90b143bb53cb6841d9da935af1e5213f61e08e3d439de992e06e442d012992baVirustotal results 21.43% Heodo
2019-03-15RECH633630445616570.docdoc 7dbccbdcad299185bba7f79d61b63d13cfa4a4c4dd514c519e97ec649bb1d71fVirustotal results 20.34% Heodo
2019-03-152019_03_DET00947015997.docdoc 6d68a290585c0c8c14872708dc770c050331039ca3e18aba84e769e032171277Virustotal results 42.11% Heodo
2019-03-152019_03_DET107648104506.docdoc cf262f6b2cee7e95b3900bdc19ff12a06a01f262694d0c99c827687556f7b5b5n/a Heodo
2019-03-15RECH4101844993063.docdoc bd6b0a8c2ba7dd51fd2816f8f4b588a93dbf5f89f52bdce125e309ddb1858433Virustotal results 34.55% Heodo
2019-03-15DET21267033488304.docdoc e9e4cd2f2128f1782443cd369f130a08f0098b21c4abb4ebfcffe9849dbe6d6fVirustotal results 33.33% Heodo
2019-03-15DE9200115968.docdoc bb8f603dc0e356ac1c4ab5e9c6b8005ecd39a392e681402ad40b5d0cd804f668n/a Heodo
2019-03-152019_03_DOK781495801615650.docdoc 562d5b97c79d21bf2f6ab0bc588c8ee6c2754257451cd48986c86f389f21116cn/a Heodo
2019-03-152019_03_E7491115089.docdoc ec6c34b5caf9381cd07ac2f6ed1320707e64e5ab77b19751d89116d1c81fc00aVirustotal results 33.93% Heodo
2019-03-152019_03_DE283489531582.docdoc 76764d3d22bf183e62a16b907edf2a7381571cc7386a39e37718f2643de55ff8Virustotal results 33.33% Heodo
2019-03-152019_03_RECH78046986098.docdoc 092fc30364d1bc30ba813c65589b8974581b1f13fca93a44c979b67f3ef2dcf8n/a 
2019-03-15DET84600915806702.docdoc 388ca94d387497a4ccc6c2d6df665fe3ccc0e6e57bbef45d64ef654fb2c11a18Virustotal results 32.73% Heodo
2019-03-14DET4797508342.docdoc 0342e996472cd13ec651c008a23bfaf4728784cf17c726f17d92f6db4f7beb67Virustotal results 33.93% Heodo
2019-03-142019_03_593537353362.docdoc 4313abf129ec8df85b4405839b7d38bcad07414890ce78da5dbf5f56aa496a59n/a Heodo
2019-03-142019_03_DOK42708815517440.docdoc 3c3b87897819b700ec830e317fdb2d79448f4d7af9c7b7f831aa554a1989caben/a 
2019-03-142019_03_DOK183247818.docdoc bda6b548338581f754a4243b16097b266b88a85800a1cefd5935f25bfaff1e4cVirustotal results 27.12% Heodo
2019-03-14RECH408773375048259.docdoc 1bd75b896c0b24b407b13405a901c84eacb952dafa5565c4617777d436417d68Virustotal results 23.21% Heodo
2019-03-14DET6176366737976.docdoc c682ff24eb382238b5001dbe9d62b86c3b4e04e46617e05c50939a8940858ff7Virustotal results 23.21% Heodo
2019-03-142019_03_RECH59119100931.docdoc afb618b3e57391c0a07ca2a2e8c9080fcdcf2331f4790cb47c3352abab9e8025n/a Heodo
2019-03-14VMW646225573221.docdoc 87d748238573658dc6e3fbebafafa3e22006d4f73e6ed60197b70f94d7d662acVirustotal results 29.09% Heodo
2019-03-142019_03_DOK3491071896.docdoc f9380a52275a0b8661bfbdb17992ae6e15d8053f3ee937f2bdaccaa9aa0987e8Virustotal results 26.79% Heodo
2019-03-14DOK73129460087.docdoc 2c7e6bcd1ca2520a87053ccd01b210a850e6846eba5cf291a53723b75e3e3cf5n/a Heodo
2019-03-14DE192845194592.docdoc 168399973502212b1938656d770f7c8197c3cc6cd45ec9198495a1ccca08c90cVirustotal results 23.21% Heodo
2019-03-14RECH2843986462.docdoc 6463b40e63fdb8fe75bed1c9c568c990dd6c52c1a772b81a02c9f4c827bf3b2an/a Heodo
2019-03-14CC38531647683.docdoc 3a5cb31558f8cfa9e3d0bc7517b7df7886963cbe63757d308507464855948252Virustotal results 22.81% Heodo
2019-03-14DE7738084394768.docdoc 3eb82a4222e85a3bf961d094c19520e14f28142b9b58cc0ad165aaa219c788b8Virustotal results 23.73% Heodo
2019-03-14RECH086146556.docdoc 456159e926a54ef47b04b71e38c1ce18f61497e88eb7d9543b7274cda809018cn/a Heodo
2019-03-141982023884285.docdoc 7f601495b0e3cbca55b2019a759af31ae1628ef4cb9706b73322e6640c861e0aVirustotal results 20.00% Heodo
2019-03-142019_03_DET7405997623.docdoc 154153974d0ecf3c75cc6469f6fd4345cc2e652a7c01901e5ba00f299fc64d17Virustotal results 25.42% Heodo
2019-03-14RECH51036609304.docdoc b8daa50621bbf387c2cab8d2788eea874f3e178d75bc3978b3bb817aedb6ecb3Virustotal results 21.05% Heodo
2019-03-14DOK38737147318.docdoc e34c2e3d493cf67c31fd7adfff5041b773f3a45b959245e62d922e93c1750573Virustotal results 21.43% Heodo
2019-03-142019_03_DE318520513531091.docdoc b0a1885a6c9c9acdcedb5a167dd6ea48a160e9b0a61a49a8d71070f76a5dcad3Virustotal results 21.05% Heodo
2019-03-14DOK877195562451.docdoc 7cf568a80f9e6e47a18e36d724ef05e22799ff9458d5b6660b428b2d49553e53Virustotal results 18.97% Heodo
2019-03-14TW1343818921882.docdoc a09af7559ece9e43da3988f4d5622c1683f655d5cb3048895d30cd93038a6814Virustotal results 19.64% Heodo
2019-03-142019_03_DOK6147280673493.docdoc 3d6f9d448cf807a6ead21e2ecc9eb419d99222af0fc1c5a4d051857cdf34f189n/a Heodo
2019-03-142019_03_MYF8151536469723.docdoc 4a8b46e4acf204a5c90e278f8cb6cf7c751c0de754991e64182f7788c081d85en/a Heodo
2019-03-142019_03_RECH171316118285.docdoc a84f577a6a828fa6e52967597d0e9c724d84c368a82f0735b327a6299396da54Virustotal results 21.05% Heodo
2019-03-142019_03_RECH14544990283.docdoc f7435edefb20ef0ff2f05f5202b2429bf56a72409b19f316af5dcc844ae5e0b4Virustotal results 20.34% Heodo
2019-03-14DE209298848193.docdoc 81e394ee6932b58a71c825dff60f4f051d211fe7b215777a6217a139de62be04Virustotal results 20.69% Heodo
2019-03-142019_03_RECH62646230795097.docdoc 71cfcc18effcb5455aed5ad4938de2a2b237c5ad186721bde6a88cf89c09f314n/a Heodo
2019-03-142019_03_RECH423824638085584.docdoc f44eba5083630aaf1b74be5801c80b25617e17b16f91c6d1e0b61918a80cb24eVirustotal results 24.14% Heodo
2019-03-142019_03_T97016513384785.docdoc dc724e42ec75a11bb8303c163323cc54689a0d99950b5a912c7586d1255ae591Virustotal results 25.42% Heodo
2019-03-14DE58269737594761.docdoc d4289aa9de0d2c6c43c6e6974a683d035a3028d9bc92721523a1812124489640Virustotal results 24.14% Heodo
2019-03-142019_03_3840366509649.docdoc 15d409d467034ad2e178a3be9a5cb52145a1bba20e9e9fa6fa1bdfc91179af78n/a Heodo
2019-03-14DOK135124396590.docdoc debf1ecc7c45e8bac881e02196120c8959248527587a5c3b7b88b3fde7fd1288n/a Heodo
2019-03-142019_03_DET3003009473.docdoc 1682386b9177d40fc22fd1e61811028efea833647e20bd42aac2f5e35447f5d2n/a Heodo
2019-03-142019_03_RECH35099755144074.docdoc 7be5fae00a742991167b5c94e8c70fce4386dd1b9edd3809b3b6d6371033ec71n/a Heodo
2019-03-142019_03_DET987078894.docdoc 833985e81022a7cc0ea35d711858fe9b13b177447b6af63797582ec791157534n/a Heodo
2019-03-142019_03_23443685472.docdoc 1834e3a7f71294a8d9ed80ecb42f3d267a7e90eda5c3c3ff4114724318dbfe26Virustotal results 22.81% Heodo
2019-03-14DET0925581700.docdoc 2ee4992b3d273f10d16c3addeff7f5ff6d7f498f542be2522777680d2eeb0e38Virustotal results 24.14% Heodo
2019-03-14DQRKA98228178696.docdoc 4098d536c359dc63d3120c2e1f64870240860e90893ed61c7c560cb4a91eb734Virustotal results 25.00% Heodo
2019-03-13DET85494206201.docdoc 0e0f87407e98baf9c5a00a2ef33319ded224cb30c352208cc00972a3931412ecVirustotal results 23.21% Heodo
2019-03-132019_03_JGDKI51840720801416.docdoc 653d04b96f376ee2a1196bd42f741ce2cffb3fb82267a1b84ce8f94a8bf48fb2Virustotal results 25.00% Heodo
2019-03-132019_03_VO235680898.docdoc c8ccd9bccc525a4ee561fcb42daca80c8c4b116579e4bde8197777d416b7e8bbVirustotal results 25.86% Heodo
2019-03-13DE4632215389226.docdoc bb98d6883a5d7169513f3b6016fe927ec6a44d1a5c0b661112175e66e554e719Virustotal results 25.42% Heodo
2019-03-13LPSB5517123218.docdoc 1228b439b723a9009e82cce1f7b50d99fc24e09a271d5afca9a758ac9fa4f7f8Virustotal results 25.00% Heodo
2019-03-132019_03_RECH20316200989.docdoc e8e0725c73c862428d35807060c04fc4100c753f6bedccbee71bf43953e6c90en/a Heodo
2019-03-13P42247745473384.docdoc b05b6104f9cf5885cd0e95d71086b75aa958c95ce56d62f49bc4b9820374acaan/a Heodo
2019-03-13DE04113943420634.docdoc ba67ee187edf67affde3b109037e866e3754198de04fee3deec965cbbaa5f8acVirustotal results 25.86% Heodo
2019-03-132019_03_EJH6924720712630.docdoc 453ae71569c49be9931836de1975dbe6391f599db93ebf1d25dde287b6a7b4e0Virustotal results 25.45% Heodo
2019-03-132019_03_H44031006674.docdoc f1fa3cf1282c2f630490ddfb88adb7c4c672cab80c78edab602d90d712f21704Virustotal results 24.56% Heodo
2019-03-13DOK87026922172129.docdoc 2fd6fde0096dc8267c469772b413e930a025c94c92c581b01f82caee15f2c4bdVirustotal results 25.45% Heodo
2019-03-132019_03_QIG4558301390250.docdoc 5560ad1362c9e6f66b16e48a4ab157b48bc3c6a265832cb8cbf37793aeae96a9Virustotal results 25.00% Heodo
2019-03-13DE66415923040.docdoc 510cbceb74044f566c7bee69e4d187f0581c3eaad4739bca16a48bb8003e1f46n/a Heodo
2019-03-13DET187803814.docdoc c4c1e78cc4bc1df1efbba653d4d79c1a63e7edf2205c4cfe01c09f0d3341c745Virustotal results 25.45% Heodo
2019-03-132019_03_DE212535707286.docdoc 77cbe65661e22ec82b15e84af22596ba101a5008cd313fc52d269835cf46c4beVirustotal results 25.00% Heodo