URLhaus Database

You are currently viewing the URLhaus database entry for http://3kbrecruitment.com/wp-includes/bTRN-l9Q4XpkXqI6bZG7_kueTcVGo-ZGn/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:179494
URL: http://3kbrecruitment.com/wp-includes/bTRN-l9Q4XpkXqI6bZG7_kueTcVGo-ZGn/
URL Status:Offline
Host: 3kbrecruitment.com
Date added:2019-04-17 09:52:04 UTC
Last online:2019-04-18 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-04-17 09:54:02 UTC to abuse{at}digitalocean[dot]com)
Takedown time:1 day, 1 hours, 41 minutes Poor (down since 2019-04-18 11:35:54 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-1883323825908_7F_20190418.jsjs 73da7ffa3619e3e8afbc2334219f1bd4be18b4128d835e2dfa9db8e3a9e239f5Virustotal results 8.33%
2019-04-175074051527-L-20190418.jsjs 8b1b62324101cb93445ff7f6901e29fa08736ccb407948111e8babc53f3baea6Virustotal results 6.78% 
2019-04-170460420-9-20190417.jsjs 7460accf81db3640d5f7e1e7b430431adfd687918983e78ecc12a0308f95ec47Virustotal results 7.02%
2019-04-1792045128_E_20190417.docdoc 3b0dfca7ea59595a6d9f8fc164f4a9bd607e328c9dc98325095c192cc7918704Virustotal results 18.64% Heodo
2019-04-17130074591-M-20190417.docdoc dc4692de020475c0ad045174e165c0da23181a448f19c94bd018eb0a36ccdd49Virustotal results 20.00% 
2019-04-17930440411-OY-20190417.docdoc 6bdd6d13b63f789ed0c37bca07e57e603c35169c1bf325860b85f4f1ec192d52Virustotal results 23.33% 
2019-04-175031966965_ZH_20190417.docdoc 013b5f5c344a9e983d5292298090c33863774f984e6eceac326438a35654da2eVirustotal results 22.41% Heodo
2019-04-179193022870_8_20190417.docdoc e6536063f41983237a1e7f47ef9a102a604c1ac7ad900cb75165aa7777e14741Virustotal results 22.41%