URLhaus Database

You are currently viewing the URLhaus database entry for http://gkpaarl.org.za/language/Document/IUTlwZtOm/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:187585
URL: http://gkpaarl.org.za/language/Document/IUTlwZtOm/
URL Status:Offline
Host: gkpaarl.org.za
Date added:2019-04-29 23:40:06 UTC
Last online:2019-05-30 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-04-29 23:40:07 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:1 month, 0 days, 20 hours, 43 minutes Bad (down since 2019-05-30 20:23:09 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-02SCAN_15191960602US_May_02_2019.docdoc f65dddc5f054d91554fe20e60a06c22d0a8a6cdd6555ba5c7098e06150c66ec7Virustotal results 36.07% 
2019-05-01FILE_7674659856US_May_02_2019.docdoc 07ad82ee6f552024b89e9569759078672295762694af017f35f64bb7284b93c3Virustotal results 35.00% Heodo
2019-05-01LLC_890799564493US_May_02_2019.docdoc b4acd9d62915cecb1ba384e9ef86b7b9b26f38f0c0ee405ba3b4a396b44b56a9Virustotal results 33.33% 
2019-05-01SCAN_035761255606US_May_02_2019.docdoc 1f4a46bf19d090bee1282d5920e1ce502620c0a50cb4d5165d735d5b52e4a79eVirustotal results 33.33% Heodo
2019-05-01SCAN_16502043832US_May_02_2019.docdoc 8e56b9601576954a6830441430cdbf339831df28e8b6a4c29fa76471d83594ceVirustotal results 31.67% Heodo
2019-05-01LLC_1536864240US_May_01_2019.docdoc 571210656adbfe8cde574bb15f96232169cdfb487f4597ce1a4532c7a0258f46Virustotal results 32.79% Heodo
2019-05-01FILE_993700625837US_May_01_2019.docdoc 72f28f83d17f71068693f8f34ea40d09dc75d111635427f1b58fa9d4cad29558Virustotal results 32.79% Heodo
2019-05-01INC_044256751054US_May_01_2019.docdoc 3b338a2b75997eba6f9666aaea6f422da3e38754657f4be7f7e0e9967c479a63Virustotal results 31.15% 
2019-05-01DOC_5722531744US_May_01_2019.docdoc 9c51bcdb82373007744c0dd18a11c06decaa000f48880f23f1bf9a335e5af053Virustotal results 29.51% Heodo
2019-05-01SCAN_1578661378US_May_01_2019.docdoc dc49d2d7421719050d62368d665c84629bb08d6874ade0bb8940f133b619d9aeVirustotal results 31.67% Heodo
2019-05-01SCAN_2827293949US_May_01_2019.docdoc 930cace84e8704d5385df2db7557c7d3b2a183de3ffad0d3a51291745b4f9f39n/a Heodo
2019-05-01FILE_15821887397US_May_01_2019.docdoc 1a6641086b78035d6c9ba38c7199aac02d37dafbadf96059a81b6f4c35e49f84Virustotal results 26.67% Heodo
2019-05-01LLC_36795632160US_May_01_2019.docdoc 61e933a06b4a2af4239c378c84211b2ff1baab4effe6b5bf044ac4f2d3371c32Virustotal results 27.12% Heodo
2019-05-01DOC_3211721177US_May_01_2019.docdoc 42981d37b50801d5cdc23d5d9f0a1e0e20f3787e24c4d20f606d2250ce5bf804Virustotal results 26.67% Heodo
2019-05-01Document_4785450746US_May_01_2019.docdoc db1c99298b5e34e6f10a5e054febbbbb8ebf940b4cacdcd1b1f4bf542d7da41dn/a Heodo
2019-05-01DOC_316370007550US_May_01_2019.zipzip 28f5de2ea36ad6701b29bd66f36482ff3adb4ec9764abdb2e68d0c9edda23994n/a 
2019-05-01LLC_9107476183US_May_01_2019.zipzip 1eda728e0eaef3fbda88664ef172ea565bd91680b7eeb9ed2139ce6d53c4b5adn/a 
2019-05-01INC_986764647927US_May_01_2019.zipzip 1efb04be8a1e76d588aeb85b8c81fd9dd78c6985acdb014cde563755d00515b3n/a 
2019-05-01DOC_6666069555US_May_01_2019.zipzip f1a22662c96b40ff551f7e5088d9b223e2092ef810fb45f12111c1ac5a5aef17n/a 
2019-05-01INC_681618011870US_May_01_2019.zipzip 8b08973dd9b2326e6087ab9481b745df257be6a91ab24f59606ed517af837c59n/a 
2019-05-01Document_45805127332US_May_01_2019.zipzip 884559e127d417038de727f2e0ce4e726cb07b41e7d2e67f0c58ae65d01d63cbn/a 
2019-05-01LLC_74618553396US_May_01_2019.zipzip 515638fbd4b016393e3e43e80e73b4460b9681ed9f74846e46ddc2da2def8d14n/a 
2019-05-01Document_800184767465US_May_01_2019.zipzip 134a5b3cc98d9518dccc0a1c079729ed28ce580d77351d0db9c388ce88967e87n/a 
2019-05-01INC_68021133600US_May_01_2019.zipzip 06a1748aa115ecdd22f447b79fd8c18fa734b1df6fcee536389e701702571fecn/a 
2019-05-01LLC_701741247237US_May_01_2019.zipzip 2fcdbb64c7334570760e0ef18da54524913b83ab1118a0b515c34e4546d34875n/a 
2019-05-01LLC_270693344096US_May_01_2019.zipzip 0720522ffed9c8f344686b12881897b763668afcbf62c764144ad2350e1a3935n/a 
2019-05-01INC_464747886640US_May_01_2019.zipzip 595780aaa4574be8415c1a410f092e4bb4d796e5c38cb41a818e3950c42ec8d7n/a 
2019-05-01SCAN_1638564428US_May_01_2019.zipzip 42f51ed3877393591bcbca9984420af2eb40788db52b5bf855342d976b68fbe4n/a 
2019-05-01Document_3698002761US_May_01_2019.zipzip badb5079819847fc3710c8a50e066078e330119b9822ba13c5c4461f8e0a05a2n/a 
2019-05-01LLC_4421673205US_May_01_2019.zipzip 0661ce83250ef4de922da24ee9ca9ff8d7d210a9426f63446e75ff931195a792n/a 
2019-05-01FILE_568419670688US_May_01_2019.zipzip 4ad050f8985e6b6071bcde2ef41575cf139c5d16ab7bf294dcaa7a1d2220635fn/a 
2019-05-01SCAN_8987963248US_May_01_2019.zipzip 83a5ff425c42a6ced30c89c2303237607684657593dded26e48d44d9ab9aa88fn/a 
2019-05-01FILE_5843642610US_May_01_2019.zipzip 7107f62fea8402970cfc18af5c2e4ced364e52ffdf2e8bdd9eb8cb5bcca09a06n/a 
2019-05-01FILE_933856068856US_May_01_2019.zipzip ef41129cbaec4a2103bfc07425ab9e295858f6503aeeb658d62cda05c686a576n/a 
2019-05-01LLC_70694695691US_May_01_2019.zipzip ce38d55e1a76fbeee8e2652c6206431b573f025b068e8b1c8bfdd6cf1dd06c6an/a 
2019-04-30SCAN_112097907248US_May_01_2019.zipzip 3592b6133ae5969630f02091b29b66140424367f505431d51b4d66338fcfbe57n/a 
2019-04-30LLC_4286326247US_May_01_2019.zipzip 82e361a6e8ccd095abf8e360a1a8e30ae2295ccdbf013cf8dfdd5c6775f8c51bn/a 
2019-04-30Document_5982038173US_May_01_2019.zipzip 843a034ed647ebf2f06ac89147742f74851192dc0da9fc71e0274ba959ae3035n/a 
2019-04-30LLC_948891398026US_May_01_2019.zipzip ff53e5301ffd3aa97812a6f6686897910a2343b141b06f0e3441cead4ad3faa7n/a 
2019-04-30LLC_168145051835US_May_01_2019.zipzip 09341c2cd88d56daa5597e3ebda520748b4e8f7b919483c6143196e8843cf9d3n/a 
2019-04-30FILE_66952129728US_Apr_30_2019.zipzip c8410d1f5331d8ad39e717795c590c3827c9e241397f57d040d6aa8f668d3b05n/a 
2019-04-30DOC_148576384165US_Apr_30_2019.zipzip 8a3b124f86f9159d8d965786cccd2b21592ea27071dfd52be4a2ed945badd6efn/a 
2019-04-30SCAN_45887553094US_Apr_30_2019.zipzip ca91da1b9c09c308b62be491f4c25aec551e1b47fc63807ffd2befcdf431a2d6n/a 
2019-04-30FILE_25043324413US_Apr_30_2019.docdoc 034d793e2d7928a31f3a2d405552c9288aa51d9fb212759573cb300f5538e92eVirustotal results 48.33% 
2019-04-30SCAN_76544944109US_Apr_30_2019.docdoc d6b27400c5f0886cc2c21da11cacf302aa85e1b457a6f49ed8119b573fcb5558Virustotal results 47.54% Heodo
2019-04-30SCAN_421643550024US_Apr_30_2019.docdoc 42a04a35e214a16dcf1a928a99faa2648c7a34562eead18fa516512fcfa784baVirustotal results 47.54% Heodo
2019-04-30DOC_9733304323US_Apr_30_2019.zipzip 7b0455c1dc9ea7e8d931fb137b20fce034fd5f88c1f320fbc45353c99220b506n/a 
2019-04-30FILE_7332367972US_Apr_30_2019.zipzip e59dc9103fa40d841d85b76aba1e4ee760861aa3790eb159eb2e576e211fdd99n/a 
2019-04-30SCAN_95704412217US_Apr_30_2019.docdoc 73b99eff123644a39dff492f32d56732e9e091e57474f4e6ff9389b002c1c695Virustotal results 45.76% Heodo
2019-04-30SCAN_631025791755US_Apr_30_2019.docdoc 4ea21ebe4deb18442e48c50e5df59871fe759b0bc7d77d9e642fb4c2d8d075c3Virustotal results 40.98% Heodo
2019-04-30FILE_133137462053US_Apr_30_2019.docdoc c1149fafd459848007beb7b03aa37238890baa832f9a6da66148f7fd53ae2cc4Virustotal results 38.33% Heodo
2019-04-30DOC_89066211046US_Apr_30_2019.docdoc f399fb7c51afe772dfeaeb3bcd6e3d314556b9823612e79fabc1526b9c388efdVirustotal results 38.60% Heodo
2019-04-30INC_4771288190US_Apr_30_2019.docdoc 7428a72a1ea5094d15204e0137e42bc86333490aa07ff18637f9b6a8e3ca17e9Virustotal results 36.67% 
2019-04-30LLC_992319172791US_Apr_30_2019.docdoc 17b7ee868deb1727ad76e550adc36d7961fc7680118038ab2911427184306a48Virustotal results 37.10% Heodo
2019-04-30SCAN_0147749704US_Apr_30_2019.docdoc b163bc3e39ed7287802c713d220de7f1c51f9b6b4d1cd8e0cbfc68a5455efc85Virustotal results 31.67% Heodo
2019-04-30INC_119249059619US_Apr_30_2019.docdoc 0697a18483c60f3f703c0d498ba0d1288918ad7261101c942e33799eaaa1beb9Virustotal results 32.79% Heodo
2019-04-30SCAN_3045905283US_Apr_30_2019.zipzip 913be31889e3e9e184b0c0dcd99c27fd692b828719a2a2720e68f66f34a956ecn/a 
2019-04-30SCAN_771630593154US_Apr_30_2019.zipzip 6382c0fccba47914017b0710dbc8e7b683b66389c0ced367cf67275e4a44a4f4n/a 
2019-04-30DOC_32902953065US_Apr_30_2019.zipzip 801c3206bb79af618a9604f2301b3af35b15b2520619c9d72bf944c6711f7bd6n/a 
2019-04-30FILE_164201126488US_Apr_30_2019.zipzip b9de2f01b031f707ba8e96d5a6e79523cb7d0fa3a553e9b83be9697e0823e3bdn/a 
2019-04-30DOC_4885065471US_Apr_30_2019.zipzip cce9088974f8bfef1767832c7d15af4f2426dd809de3d901b8d3739732ffff34n/a 
2019-04-30FILE_7571151079US_Apr_30_2019.zipzip 5168f1ad8e6e89b33b65377c0b1de881a3b07bd82fd4a4628a24bb33e93eb49fn/a 
2019-04-30SCAN_007164933767US_Apr_30_2019.zipzip b8d085531b11f21090941696b88b50c864949ab4dc4d8a5527a54b25864493f0n/a 
2019-04-30INC_3110869360US_Apr_30_2019.zipzip 871d0bacc2d8872895f2ef82163cb981f4b37a756014e69eecea8b6d90f9cdf1n/a 
2019-04-30LLC_071338441306US_Apr_30_2019.zipzip a91f81a5084bb4f567fe9d9be3ed8c385b6aa9e20afccf8696f35ad4b28b0d7bn/a 
2019-04-30DOC_97541970664US_Apr_30_2019.zipzip 5c96d2e82199d8823bea30b2615f31354f8befcdd2745d277c6baec135e12390n/a 
2019-04-30FILE_460556623435US_Apr_30_2019.zipzip c22159dbebfbd8bcb611121ad6b0941dadf07e0d45f824a2f9218a534bd39265n/a 
2019-04-30FILE_64593137274US_Apr_30_2019.zipzip 74edf0f8bb5c01b68562f0d6354423a917221edb69689fa76248ebaa9cec94d7n/a 
2019-04-30Document_592687813772US_Apr_30_2019.zipzip 4e03a48014220c0e364fb21da3197d58401b6c448e7fbe36acf82980ac3849c5n/a 
2019-04-30SCAN_266920627940US_Apr_30_2019.zipzip 4ff59c9784994be18725637a5e2bd5fde4b86e30a92156d7853e707908be505bn/a 
2019-04-30FILE_32707237228US_Apr_30_2019.zipzip 28ea017874058cc89759fd5d69c1472c594e59704a6ef59a18173739c5da5855Virustotal results 18.33% 
2019-04-29SCAN_28561792199US_Apr_30_2019.zipzip 3f57d11011c5d78ebec6d365bc3ebbb1b130ba7a95e5b44f83cd9c0e33614256n/a