URLhaus Database

You are currently viewing the URLhaus database entry for http://cibindia.net/blogs/jzbg-g12763o-ynlivde/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:173248
URL: http://cibindia.net/blogs/jzbg-g12763o-ynlivde/
URL Status:Offline
Host: cibindia.net
Date added:2019-04-08 15:30:04 UTC
Last online:2019-04-09 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-04-08 15:32:02 UTC to odeoninfra{at}gmail[dot]com)
Takedown time:18 hours, 3 minutes Good (down since 2019-04-09 09:35:30 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-094840248082_April_09_2019.zipzip b52cafabc388edc51877c5569b09861cc751d54ed90ee3e299676b4d7d7f3ee1Virustotal results 22.81% 
2019-04-0987516513041_April_09_2019.zipzip d15f9108fadcc36881f6d52211300f3314cdb298d6f7c3e4915da1518d93d173Virustotal results 22.95% 
2019-04-09037504645385_April_09_2019.zipzip 47f97d6ded64227b51333b3ac52d247344761ea5d81a1bdba616aa76e67aa513n/a 
2019-04-0968364863310_April_09_2019.zipzip 8e598d6f1f7c55a189ad914be1689ecbc33b900658dc9f3e9fb0461f6e60d6f5n/a 
2019-04-09527032121370_April_09_2019.zipzip 879c3856afb5d91a2809ed4bd42bf3cceb10a9ec047878e112132992e6093e6bn/a 
2019-04-091223630854_April_09_2019.zipzip e5a342da7b4a38b00f3577a38f6556aaf61b17baac5d1478a6e79271856b26bcVirustotal results 21.43% 
2019-04-0905186111739_April_09_2019.zipzip aa1c540c81771c1e580fbbac987fdd5ddfd13a4617076e6435b2d2ca4c03a760n/a 
2019-04-09695431668506_April_09_2019.zipzip 19099a2e122afd04166421e3e6e752d50c9949f7fc253ac41532cc0a8c097637Virustotal results 18.97% 
2019-04-09498903168510_April_09_2019.zipzip 5258b138523515322d64f7198aa37ce42223a5df2cfc80c2fbffe8fceb30309an/a 
2019-04-09169601499080_April_09_2019.zipzip fa5675eb1b1fa3d07c18750e68cd3d99fb1bb03555eba16106a2d8cf25bd6e80n/a 
2019-04-09428819111580_April_09_2019.zipzip f3f221217c1c07033f0ce8f09ac906074e11495bc2db1c157956886b30c92083n/a 
2019-04-090366706818_April_09_2019.zipzip 0ae2e79feef5a2efc6253f9e9a5b6a5a81e4166a188dbf9172ac475ff83839een/a 
2019-04-0937602571887_April_09_2019.zipzip 703825bea4b00ca88cbc24e542e8840787b773cbe39b157fa7b845681ffd40bbn/a 
2019-04-0921857072411_April_09_2019.zipzip 27ebca7e6d9f27c754aae8f4c3ce0f4bdb81e5e40ac23c3b26d6cf9c4b57fedfn/a 
2019-04-0974396619795_April_09_2019.zipzip 2484029bdf001a5ec7e3e98647e810d8ef4ae2ec2b9b88328d5b6c25c52b815an/a 
2019-04-09322328067086_April_09_2019.zipzip c8349ca2dcbfb63ce7c684cbea4096021fac583299b6ec278217c3cc84723912n/a 
2019-04-090476104737_April_09_2019.zipzip f7d4aeaaae6861bcf768d1f58c20f5118b16aa231fd4ef9e38e655f50517c629Virustotal results 18.97% 
2019-04-09984680842885_April_09_2019.zipzip e5e8d653fbf5fb3a5bfaec0542634a8c456fc174b19beac1390f7f50330b454bn/a 
2019-04-0916307549614_April_09_2019.zipzip 0a76905b38cfa69d70ecdac1f393656556f48df801e84fdbbea791404c46c9b1Virustotal results 18.97% 
2019-04-0890159569832_April_09_2019.zipzip 5376f1fe8974a579a406a0bfa0bec8a3ab0e0bab92e53be937228bef4fb79a69n/a 
2019-04-087042716684_April_09_2019.docdoc cd43768b83ffb7cbce14445f010840f50f3d4e22c34ff4e1627cc4afab27e02fn/a Heodo
2019-04-08379564445921_April_09_2019.docdoc cc57df17d4d1f28b75446657d1a81de72a77aad349b88be506a472256e9f691cn/a Heodo
2019-04-0811744689012_April_09_2019.docdoc a62781cc00a9c9339c0d8eba8d3a3a10917b618aa144c8d3632433be8fdc0d4cVirustotal results 42.11% Heodo
2019-04-088375223293_April_09_2019.docdoc 3aeae6ac1cf4bf92776686d5b6c1516dcf517e2067ff061b6404bfdb02add620n/a Heodo
2019-04-0853986417261_April_09_2019.docdoc d795282e1cf5997d712ad77b2a7f6b857633ccbefdb18194c9fc0bc4e1347966Virustotal results 33.33% Heodo
2019-04-080125049886_April_08_2019.docdoc b907cdd4842dedaf89e396e9b165efc29adf923478cbf3eb14f625c467b60037n/a Heodo
2019-04-08499855540765_April_08_2019.docdoc 99c8a97069d1dbf1dc45f883707fe2c8ba1f4d9893dc2b921d9b0061e370ae55Virustotal results 31.67% Heodo
2019-04-085288955482_April_08_2019.docdoc 22a049aad9d09a02720c909f9b1c319ffff891df09f0750985dcfca48e23c896n/a Heodo
2019-04-0820638183905_April_08_2019.docdoc c1eac5382d05ee0b363900402bd8bc2ff0aab6192c34d029d61796e4f0bb1143Virustotal results 31.15% Heodo
2019-04-0827317506293_April_08_2019.docdoc a048b611e89eb9dc1e6f7b1477d64edfc3f84ca203f982c1bb1fa721e3517c0fn/a Heodo
2019-04-08341955011408_April_08_2019.docdoc a559194c73542261cc837ec3df928de8f0e940bfeeb85885c0ce59ffc36a7060Virustotal results 24.14% Heodo
2019-04-080990609376_April_08_2019.docdoc f813a1ee040b469f0d251d37d4cb8a0bd6eecf09a40a261fcd4b2663e61e5e8dVirustotal results 24.56% Heodo
2019-04-087757537293_April_08_2019.docdoc 1a10b0d5d8a8c66990bbd81e200c8cf70c789ef1571d1cd2c0d2d214d847b9baVirustotal results 22.41% Heodo
2019-04-0806394256829_April_08_2019.docdoc 6f82f2e7fed23f6994ac870e06e955e5f10cfae61785315dd64acdc249969dc3n/a Heodo
2019-04-0803794019396_April_08_2019.docdoc 729e592899ee19847371661a5b38e8a84bcc7739bb4412e30c07d7595d3f354eVirustotal results 22.81% Heodo
2019-04-0852397018965_April_08_2019.docdoc 7ace49d38c526c75f5ef6850696b1e4686266d16ddfd2278423741cf088f7d6aVirustotal results 23.33% Heodo
2019-04-0816048354815_April_08_2019.docdoc 3e585f2cf98d44e2f6520f607b2061bc5fbc4638fd43ea711520f9dda38787ddn/a Heodo