URLhaus Database

You are currently viewing the URLhaus database entry for http://jati.gov.bd/wp-admin/jksk4-dxhs7j-mkwdnb/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:187256
URL: http://jati.gov.bd/wp-admin/jksk4-dxhs7j-mkwdnb/
URL Status:Offline
Host: jati.gov.bd
Date added:2019-04-29 15:48:04 UTC
Last online:2019-05-08 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-04-29 15:48:06 UTC to abuse{at}ovh[dot]net)
Takedown time:8 days, 21 hours, 33 minutes Bad (down since 2019-05-08 13:21:23 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-0106772724686DE_Mai_01_2019.docdoc ed12cccf232d6e24b35f114e6c8c3e2fa856a5bcc7ea2c64cd17774aedb83f7bVirustotal results 26.67% Heodo
2019-05-01911030630450DE_Mai_01_2019.docdoc 61e933a06b4a2af4239c378c84211b2ff1baab4effe6b5bf044ac4f2d3371c32Virustotal results 27.12% Heodo
2019-05-01Rech_390140400904DE_Mai_01_2019.docdoc 42981d37b50801d5cdc23d5d9f0a1e0e20f3787e24c4d20f606d2250ce5bf804Virustotal results 26.67% Heodo
2019-05-01Rechnung_387743102300DE_Mai_01_2019.docdoc 6f926261cf70832a6f3332c727eb674da29212109a968a25cab4cb92fced7694Virustotal results 25.86% Heodo
2019-05-01443542809080DE_Mai_01_2019.docdoc 4b37aca0d46401d67a57677fc4189ef354ec63afa9c3312cd076fbe0391b9c6dn/a 
2019-05-01Dokument_150440146889DE_Mai_01_2019.docdoc 9c8a8c93bd7627958c439fcb2f59df0236b1103da10b38c95498eafabd99887bn/a Heodo
2019-04-30Scan_967149915554DE_Mai_01_2019.docdoc 435f4d9ce59d7d9024dff0776db11e23abf9661df9ce07e7f2c0bd8f44c71b34Virustotal results 51.67% Heodo
2019-04-3020212126456DE_Mai_01_2019.docdoc 52448cd37a4b02eb30174ada8146ed194b6cc52c9d340816a615f368476d9a3bn/a Heodo
2019-04-30Dokument_276583094562DE_Mai_01_2019.docdoc de78f4dc145a2403817e0b72432b009a47cded50743f58368c8c973da06e49d2Virustotal results 50.85% Heodo
2019-04-30Rechnung_55076036430DE_Mai_01_2019.docdoc 2b1810f68974145fa51514b11e17499ff46e0d2eee96976a51ffa446424d1da3n/a Heodo
2019-04-3098472877586DE_Mai_01_2019.docdoc c654d69862242df1d006165cd8d0a60f683ab0eae1cb1cd5f374f831e4374606Virustotal results 48.33% 
2019-04-30Scan_254244749948DE_April_30_2019.docdoc 118942917ae2acf9a6c6ba8bae443bfa7d060b530958196b654729715276a4f9Virustotal results 50.00% Heodo
2019-04-30Scan_096351806825DE_April_30_2019.docdoc ae9aff9f74e7ad8ed8d61afd4f3796861ed3f08eb4ac310f3acfe9228d637b4an/a Heodo
2019-04-30Rechnung_49162839146DE_April_30_2019.docdoc e502442641596f41ad17623187f493e5848abddc38f07ef4795e935e936650a6Virustotal results 48.33% Heodo
2019-04-30Dokument_91799190897DE_April_30_2019.docdoc 034d793e2d7928a31f3a2d405552c9288aa51d9fb212759573cb300f5538e92eVirustotal results 48.33% 
2019-04-30Rechnung_59699995304DE_April_30_2019.docdoc d6b27400c5f0886cc2c21da11cacf302aa85e1b457a6f49ed8119b573fcb5558Virustotal results 47.54% Heodo
2019-04-30Rech_5595827462DE_April_30_2019.docdoc 576a1334ad99cf1d8913475a31a5cfd88e9234f041422c2f78f9f9ea3589ad80Virustotal results 47.54% 
2019-04-30Dokument_86133172993DE_April_30_2019.docdoc a68abf4c2b97d243d84969b61f10219e0eb42263822a18fd10a9575dc3371c02Virustotal results 49.15% Heodo
2019-04-30Dokument_9682420322DE_April_30_2019.docdoc d5fbe17bf24ae9b7d1f8a103fa4f5cc891c5550c6fb479dce723b49a488a29b6Virustotal results 34.48% Heodo
2019-04-30718796991273DE_April_30_2019.docdoc 14c0357b63d11dbadf73949bed4a57e9928d2843282d71f3111eb17711fc9dcbVirustotal results 41.94% Heodo
2019-04-30Rech_899008238042DE_April_30_2019.docdoc 4ea21ebe4deb18442e48c50e5df59871fe759b0bc7d77d9e642fb4c2d8d075c3Virustotal results 40.98% Heodo
2019-04-30Scan_2901239877DE_April_30_2019.docdoc da796c5520890b04964c30a0b56730e0069dd1682b69a3fc52a4cf0b8ee40412Virustotal results 38.98% Heodo
2019-04-3022615050830DE_April_30_2019.docdoc f399fb7c51afe772dfeaeb3bcd6e3d314556b9823612e79fabc1526b9c388efdVirustotal results 38.60% Heodo
2019-04-30Rechnung_0072359275DE_April_30_2019.docdoc 7428a72a1ea5094d15204e0137e42bc86333490aa07ff18637f9b6a8e3ca17e9Virustotal results 36.67% 
2019-04-30Rechnung_78222809750DE_April_30_2019.docdoc 1dced2e0d06a8d07a7333bee2a1836bedbe830c7f7a30439fd34dcc00140315cn/a Heodo
2019-04-30Rech_3749512950DE_April_30_2019.docdoc b163bc3e39ed7287802c713d220de7f1c51f9b6b4d1cd8e0cbfc68a5455efc85Virustotal results 31.67% Heodo
2019-04-30Scan_590782347328DE_April_30_2019.docdoc 0697a18483c60f3f703c0d498ba0d1288918ad7261101c942e33799eaaa1beb9Virustotal results 32.79% Heodo
2019-04-306187503242DE_April_30_2019.zipzip 149158e5194b7a7757b626328db5f8e9d494cfd2331e30dca9fa91bfdd8e2664n/a 
2019-04-30Rech_03616532632DE_April_30_2019.zipzip 91f52af10cf4f07da3a0135e8b36ac09bb3dc254b75197c937bb6c75329b315fn/a 
2019-04-30Dokument_9081432130DE_April_30_2019.zipzip dcb873aaf981a9101c9bc4456b45adefce72f9fed398c0807d18f23c8f660e6bn/a 
2019-04-30Dokument_4320502594DE_April_30_2019.zipzip 17c2862e57466cdc0083fcdbaaa5f811d536c4733551a56480d8bedf065cd1edn/a 
2019-04-309108974040DE_April_30_2019.zipzip 4f687979535434b3f507fbcd7a79608dbf44efe18a307f1c7230f684183773d3n/a 
2019-04-30Rechnungs_Details_58851978075DE_April_30_2019.zipzip acb2a1f2e43aad8f0ac9260e5b187cbba38d9197842f13eccb696472d8395983n/a 
2019-04-30Rechnung_5576017058DE_April_30_2019.zipzip 83580e091bdafe5d6fca03d031079547b92b71b021c0a9e10039e5462b49287bn/a 
2019-04-30Dokument_77300609666DE_April_30_2019.zipzip 697095a96dd7e49303579bbb2385e853ab895dc4ac84482c148ce3b7b114a75dn/a 
2019-04-30Rechnung_6074435390DE_April_30_2019.zipzip 1c4515536d3a349a32f02cfa892b9bdbe767ba6cf18eeeca2e66c60ebbfd5ed9n/a 
2019-04-30Rechnungs_Details_74013660269DE_April_30_2019.zipzip b76d3c76dfb0e4588602059e1721d00adbe3d072bafbca238c72590bf6a10d80n/a 
2019-04-30Rechnungs_Details_310105127512DE_April_30_2019.zipzip 285baae92a2a8b20c118158bf10047acd729385325b02cb2a1c94c4ac76c71d2n/a 
2019-04-30Rechnung_796368757433DE_April_30_2019.zipzip 6a0c81d50da8960a4c2d2717397b28469daf32e6b493c97ba65571474eb927c2n/a 
2019-04-30Rechnung_52060361653DE_April_30_2019.zipzip 502d2e88568368960307ed4132e9ecedb1feeacb52adc4e2880ff357ef5e523an/a 
2019-04-30Dokument_943853583990DE_April_30_2019.zipzip 3e2c14865aabe27cd67f418ee68fd6756bd19deaf10b441e473db26ff5412c21n/a 
2019-04-30Scan_2732482990DE_April_30_2019.zipzip f8c739104b49bbe4bfa3f22df29513e8a9d53d1845e3d22c01eb255879dc2ebbn/a 
2019-04-29Dokument_3580784156DE_April_30_2019.zipzip c3af1785fa644047257b418d81ac01f70ad9363f3d4e069415afb9cf185081fcn/a 
2019-04-29637290410171DE_April_30_2019.zipzip f6f7f241d71a293dc50646ed7fbbcebdc714fc573303a90040f854dd8cdf0cffn/a 
2019-04-29Rechnung_723089666317DE_April_30_2019.zipzip 1e0fc5e198d6e3ab691e939e24ae65fb6e5078383bb913f779043b737759a2f9n/a 
2019-04-2987251941661DE_April_30_2019.zipzip a7acd48dfd45e8f75d6eeb652585ac41897417db204fa09e6d3ed2d144987ce7n/a 
2019-04-29Rechnungs_Details_979682102969DE_April_29_2019.zipzip 256c926003a832186953ab908c40b390b97f5532b91e2b9137de07f7032a21e0n/a 
2019-04-29Scan_45921727196DE_April_29_2019.zipzip b0cffebe3160052520f49810e5f00df155075061775386741fcb44672d9c4900n/a 
2019-04-295871039543DE_April_29_2019.zipzip 3dd191e5643f297f67340d315f99060beccfdbef37e61a8ecb0c85eac1574da1n/a 
2019-04-29Dokument_46518999317DE_April_29_2019.zipzip f8802f68c16ed3670c2ef420d485dcbccb313049df9688ea9d87e5206cce009cn/a 
2019-04-29Rechnung_1309275988DE_April_29_2019.zipzip 1ed3861e2435d892b6f8fac9f56677980686462a5ed608ea06723474b5231a38Virustotal results 25.42% 
2019-04-29Scan_08988543428DE_April_29_2019.zipzip 55870b8b050962fb81e3f23f45e2525fdd8acad090d4e8948456a00956c23275n/a 
2019-04-2961780932155DE_April_29_2019.zipzip e4e407c52dc57bc18e11c9b1a5275c325748f1036d1905452f63bcd4b5b914een/a 
2019-04-2943957146632DE_April_29_2019.zipzip 74042bbdc588790df580d7dc041bba704a5ce560a18f11f522a00479ab52b955n/a 
2019-04-29Rechnungs_Details_58319121092DE_April_29_2019.zipzip d79516597d4f5a7383efc6cba181b9b685319e16a2a070fbb647f5993940a093n/a