URLhaus Database

You are currently viewing the URLhaus database entry for http://administrasi.utp.ac.id/-/L-36/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1988822
URL: http://administrasi.utp.ac.id/-/L-36/?i=1
URL Status:Offline
Host: administrasi.utp.ac.id
Date added:2022-01-19 07:59:12 UTC
Last online:2023-01-21 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-01-21 15:56:06 UTC to abuse{at}te[dot]net[dot]id)
Takedown time:1 year, 0 month, 7 days, 9 hours, 11 minutes Bad (down since 2023-01-21 17:11:25 UTC)
Tags:doc emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-19MFUM-455871.xlsmxlsm 84edb0a7a964669aefad50dd27f6a69ab2f4fc6cc70c1f10288a87104775a801Virustotal results 26.98% Heodo
2022-01-19565_4042526.xlsmxlsm acc9c41ba96ed8a91406bebc1f1d41b88c26bf7e1446c8fc4301ee0b840e1759Virustotal results 25.40% Heodo
2022-01-198221230012086.xlsmxlsm a675b7d974851232b65d25e7fcd87697f9cbbd9a6bac4d21b14a1e249015d321Virustotal results 24.19% Heodo
2022-01-1913982150_4086246.xlsmxlsm 607f4df6b7ab8a7d31bb402433e135024645cbc3df474b2d4d4144e093a654d3n/aHeodo
2022-01-196021802PQKCWZD163.xlsmxlsm fb52c8cd5527da88fe38a96ea9bb45772d3a2e6e317d1e6249a301ae8ef05ed5n/a Heodo
2022-01-19990263_288.xlsmxlsm ff21e0d799e7757351192a77594d12cce77faf6ebc669816ad4bc37ded38d952Virustotal results 22.22% Heodo
2022-01-19P-70882743.xlsmxlsm fbc47a25d026a1d3aabf04c65781142ef8d17ce0071e44f5925e33a2e3f715deVirustotal results 20.97% Heodo
2022-01-19FAZCI_049356.xlsmxlsm e48f46cd60cb0b369d14352daf83f4a07f78332ff849bf8acf3729fcfd19cd47Virustotal results 22.22% Heodo
2022-01-193292139_42852.xlsmxlsm 443dd2d26f74bfa06fd47b8f66378fa889268f0f6c4ced9fae74d7847811681en/a Heodo
2022-01-1956TDNLHFHVH_6005.xlsmxlsm d145d8bd97ef82aed65a01e30b7523f9380bdef7e4af3cbb706c3fe571d2accbVirustotal results 27.42% Heodo