URLhaus Database

You are currently viewing the URLhaus database entry for https://jinkousiba-hikaku.com/wp-content/verif.accs.send.biz/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:189450
URL: https://jinkousiba-hikaku.com/wp-content/verif.accs.send.biz/
URL Status:Offline
Host: jinkousiba-hikaku.com
Date added:2019-05-02 15:02:05 UTC
Last online:2019-05-03 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-05-02 15:04:03 UTC to abuse{at}ripe[dot]net)
Takedown time:10 hours, 38 minutes Good (down since 2019-05-03 01:43:01 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-03MAY-RECH-137447533-3706592037.zipzip 3f7b22c0a29ca3f4ddece5481c6186fb27be8e8420139fd8308ffa9155541395n/a 
2019-05-0305-PAY-039453-7149893.zipzip 63a0fb9d63719947f5f2b3117b65f1b8607b350d1e629a6d4a1f953f8ab3933en/a 
2019-05-02201905_INSTR_2335839746_53185173.zipzip 45cfca657514f621d9b854a9ffa2ba2a763c9359b12ee18d83b504af70597007n/a 
2019-05-0205_ASLD_91062297_3256135689.zipzip 831457defd1f6b2d3421f68ca188784f9f258c68571e5c7be46901d521003477n/a 
2019-05-0205-ACC-62821411-644562.zipzip 215e1e3cfcb4ddea7f9fd7e175e0c08374ed17a873b67bafd5b8b0d7cb52016en/a 
2019-05-02MAY_INSTR_83603128_53786072.zipzip e63af93e82246aab4f81597029f27c36ad8705c25a590b8368097d5de261bc95n/a 
2019-05-02MAY_BIZ_44555299_08769933.zipzip 84a523ecf753f7a75c6a84d549d5a71951e1905b603488a9f6dd1176caeb2bf1n/a 
2019-05-0205-K-0251518239-1367632.zipzip 8e1f8f93d0ea2c74fa33ef66c74d02856eba9c7281e9cedd96ce8a128613de9an/a 
2019-05-02MAY-DOCS-7708743478-6142636028.docdoc a31b9ebd3c79ea7d6240df25a22b699a77128eb315c332af18fdba229e784926n/a
2019-05-0205-BIZ-680096-4161603146.docdoc 20b5c05fd912231f474b6cfb1c82ea1a952d1d835e6c7b39e8dcd38b16edb0e8Virustotal results 31.67% Heodo
2019-05-0205_REC_66927547_795535.docdoc e004665169889580886ca75a05f8d7a7739a39a94e2eeaa95bab00d9618ad8bfVirustotal results 28.33% Heodo
2019-05-0205-ACC-245927-338844.docdoc 5cd8f49395d0be8d0495633f2ca6f5f275f5fbb83ddd7e078784220141865029Virustotal results 28.33% Heodo
2019-05-0205-REC-234229487-3198036.docdoc afc2ac4f3fc0cd3719696f2428c5c615b8bc418b4e7e497ed38babb64b0ed6fcVirustotal results 27.12% Heodo
2019-05-02MAY-DOCS-485536-0441945.docdoc e98d6d03d74c3b122f5a6eb72ddb2c864f825343a68e873179659ec499320532Virustotal results 27.42% 
2019-05-0205_BIZ_485130456_1985601.docdoc e9cc355b9b2c501a852825e354361d39910f68c1be617cd4370d32f2f9d65ebdVirustotal results 25.81%Heodo
2019-05-0205-DOCS-38785175-446504160.docdoc 27965403597d9dce6ba0fbc8d3f907fcf228898f52db58015a628f15335efcc4Virustotal results 24.59% Heodo