URLhaus Database

You are currently viewing the URLhaus database entry for https://fikti.bem.gunadarma.ac.id/monon/OAH7XngpmWiT1vLkmP/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2109256
URL: https://fikti.bem.gunadarma.ac.id/monon/OAH7XngpmWiT1vLkmP/
URL Status:Offline
Host: fikti.bem.gunadarma.ac.id
Date added:2022-03-21 14:13:11 UTC
Last online:2022-10-12 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-21 14:14:07 UTC to abuse{at}telkom[dot]co[dot]id)
Takedown time:6 months, 24 days, 21 hours, 31 minutes Bad (down since 2022-10-12 11:45:50 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-23zxq1HRC.dlldll 3a0385c3ca7abb35e0f86360abcbf022a2dd9e3628148c7331b8ed4c6beced29n/a Heodo
2022-03-235JFmugTn.dlldll 46f9b955223084a750da107bb8b37bf214b7f61fba959d19a266e36f5e1975e1n/a Heodo
2022-03-23Z8GSev7lfjH6H.dlldll a75a101022bde284dd2fdd03727b7e12b517f37aa7a634074ecd4a9f6ed5de68n/a Heodo
2022-03-23hK2esrbbL0.dlldll 5725016763fe062fd110e2c1da2fb2c5a8b0f06573404b1e035c9ba9784c7a69n/a Heodo
2022-03-23afgdeSkCUcUO.dlldll 2964d06f6a242890a3f893bbce63be1862b52687ffacfb92c1a196ef5b891d03n/a Heodo
2022-03-23pj8vl7rwvtxJiqjqG.dlldll d235b3d26c5ae54de8b7529e3a9f87c359b2066a08c7bae26cd8cfe98059725bn/a Heodo
2022-03-230m9i.dlldll e72e34742662682d08e8f7124bebbbc2289ce1cac771d1d7687cbb78a2aa24e1n/a Heodo
2022-03-236cJiIEfREW8Wra.dlldll 4fd70a89d025d62d471c9331993274dbf35300d0e9b5f6f07e93e6df41ab5da6n/a Heodo
2022-03-23fj3XazAn2AjN880.dlldll fbd773216f9ab1d5ff628ca2ac01fbdb6196588f8cafd45f841f481c04ad255bn/a Heodo
2022-03-23p5Zg3XCYot35.dlldll ac4f30835ac2ae18b9e1ca41df9e91a4ae354a76a8186600258c62edce0c862en/a Heodo
2022-03-23JxnJjSEZdO.dlldll 3a6f0531ccbf6d3f4cfea2959b71372e2b4a2aae4d48bbe9722bdc0f3e5b14d9n/a Heodo
2022-03-23n4g.dlldll 76d9bd3218bc6d2fffd799924de69c53c60596b954eed41c0aef345de3890f60n/a Heodo
2022-03-23zTdMgF2VR2.dlldll ee142ade1f3719e32890aa67cb89207b54eaadc030014a95bde582fe2d1f4bc1n/a Heodo
2022-03-23ikCkT6uYJR1l3aIdQ.dlldll 871881127b74976e433eb6d775a09f4e03267c6085796522224ea7683956d320n/a Heodo
2022-03-23tEQ.dlldll 7516beda6a076c9871450cb0f67fdd68dfa33505822d68383bdbcfc916917edan/a Heodo
2022-03-23HNRvXmkTYsRVtx.dlldll aadf34c1f14fe6d5d92864bc924bb707badbae099f63090a59cb6e807ca80e17n/a Heodo
2022-03-236rN2Vd7.dlldll def1b5f615a925b9997cf0493287a6a979127aad07092baad83a717141e7beebn/a Heodo
2022-03-22Mc9bp0oPD7Fo8s.dlldll 076865e1580bcabe0cdb476214cda1a23ed37c5286a7f121235e49593dcbd231n/a Heodo
2022-03-22IK6x7DUqcbhEHwLN2.dlldll 1f5fcd609e69d4f231432367872edbbed3dd8e911697d26d8e3072414009456an/a Heodo
2022-03-227KiPzG10bgeNI.dlldll ab1ef2e185fb560b0752ff319265ae7134f876bef3baca3f702db45245286d64Virustotal results 46.27% Heodo
2022-03-22cMAg9Fy4tqTAlbL1fcr.dlldll 4ac4febbb86c734e00db6de8e3fdf2ecdea8228f6477602fc711194bc0a1fe55Virustotal results 49.25% Heodo
2022-03-22ZEGpO.dlldll ed226aa217c729468fc7e84d7c320136ecf7848a54a6c54de6b267a185fd4924Virustotal results 46.27% Heodo
2022-03-225HOQkllghRs.dlldll 01fc4ddcc95f4e92c30d53e9c6815be4e9f0df1a44f420a0bee0b919a8e84057Virustotal results 44.78% Heodo
2022-03-22qC5WkgOWlrElCSg.dlldll 64dfa44b623675566e0a0cc2c10f7831c463619569465ffa69a93ad8ebee7603n/a Heodo
2022-03-22hinkhbA9.dlldll 7c37a179f9dae52985a346e41ef83be2ecb633cf109b4fd5addf80f4787709f3Virustotal results 46.27% Heodo
2022-03-22eTB.dlldll c2896ed056f2f1b3d3386efc18308e262d4c6a078a2af5197c0577711960990aVirustotal results 47.76% Heodo
2022-03-22ejbVDxLHqQ.dlldll 2793bca1cbc47cfc45084160c8fced101470de6a05f72f4233bd2523c8e41d21Virustotal results 46.27% Heodo
2022-03-22W6JlkWyiEeLlux2b38t.dlldll d3107153de56ef702f4cca7e431f670e7d4ac3290e62937dbad82628fa4e1487Virustotal results 47.06% Heodo
2022-03-22IIWE2RtKdg7dxKZkRJz.dlldll acea0e520881519c74f9d8e688e85269e4c7d5a3acd2aa6107e795d45b069177Virustotal results 48.48% Heodo
2022-03-223AzvWGj.dlldll f609e19cab17314ef90a3c60b4adb1712286d2a909dd3544325878ade390dc38Virustotal results 44.12% Heodo
2022-03-22MyHUtCAYETxwVDODw.dlldll 5fec7961a75e88929456bdacf87abc38bb0c5313cfd3012f4fa54b6d3955d660n/a Heodo
2022-03-22nyEpv899kfn4DLK.dlldll e8ae7f2b68152d6daccd68130dc5b032f82ab6030fe6ce381db3328d86d44e4fVirustotal results 46.27% Heodo
2022-03-22o4nrpq6jkTg8.dlldll 91d8cdd4b383a7244e6e982b2fcf739125f8603ca4aa4370a3e4eaab74733089Virustotal results 45.59% Heodo
2022-03-22NcpqU1V83rG3bTDRh.dlldll fc382b746428116eb9e67af5a21ab73b72363285e63c8705fe9c966dde7280deVirustotal results 44.12% Heodo
2022-03-22Pys03.dlldll 8a1d1b2dc25ff35bdcdf5d3447350243a19a96cc2e20dc7cbbd580069c885616n/a Heodo
2022-03-221Ktn8l8H.dlldll 81e42f019df1ffaeb9b5941bdc9601b95f649dbba781985a815c92562fd1f9baVirustotal results 44.78% Heodo
2022-03-22qNuLM4.dlldll 41e61ecd618a685dea36e73b586e52bc5c09293f40072ed1d832b412b5588f04Virustotal results 43.28% Heodo
2022-03-22xys9qjUSUAKgZ.dlldll 458ff2684e4c218fcc2904374956fa1e6f6f742ca154325bb722e2d45c8df054Virustotal results 34.33% Heodo
2022-03-229njT68rtTPTThFFfSU.dlldll c82fded4df171ff5c20dc028b9cb50ee89a81be5e478c51455797cf5043950b2n/a Heodo
2022-03-22w9rhIUPYACKwPtw.dlldll 25c31577f72368fb3471d6fc9cb0b9ca3c27aff2956a3903143fb66fd96088edVirustotal results 36.76% Heodo
2022-03-22ZpRmdBUNgjwko4C9l.dlldll 6cba4be7c5be2ff40e3d1cd562b131b79ca71ee7690051ca89140034f2df47fdn/a Heodo
2022-03-22YNO3NeXibPgP7ih2.dlldll 064cfdcffd8c25f870a8a6811f00ae78fd9ac58b27564c8b83fda0d1205db54dVirustotal results 38.24% Heodo
2022-03-22NbpqpEd8H.dlldll e3b403763855f738159678c68d58fb149b842b4cecd961d5c5c4adb4a8412976n/a Heodo
2022-03-22dIbZ.dlldll b7892a9c6c4dac4cf3d4fd141b59f9c45eee34828436db75ec14a6cd2846d1a6Virustotal results 35.82% Heodo
2022-03-22L1XRsoZxKYW4UbzxZDi.dlldll 991243ac63232209b56bc8f69de19d236929a451054b714e0e508773ab765160Virustotal results 37.31% Heodo
2022-03-22qDWpVQ4K2PKGF3ACvk.dlldll 14899a68b7c9b3578a8ea5fc0ab61d44dcf87bd481df18cc63b0309c0d2eb431Virustotal results 35.29% Heodo
2022-03-22V4KTc968hQwT0A.dlldll e68dff422787be020c9f94566a31bfd9c6d1980e60a77e96ebf076edfdac4e13Virustotal results 36.76% Heodo
2022-03-22ezW.dlldll 046094e01da9e052fe69a87657c3f79947395d6420827c0d37719711a99c17a3n/a Heodo
2022-03-21HF9cmL.dlldll 6067137280dde1b820889562abd4c4f171491dc4f454ea0e76c46561a4f76929n/a Heodo
2022-03-21qjSb.dlldll 6fa52377c856415a6b630a6855063f54cc9b94f87c425776e73585e2d3f69efbVirustotal results 25.00% Heodo
2022-03-21frJWj4msjSlcthhCuUJ.dlldll f392c5377e2b0402543c3fd52545e1c88a80734db1c35ac3fff5df37afefc5edn/a Heodo
2022-03-21bmf9c.dlldll 4ce2dc1842a8809df56eaee298784eb05304a7347fac348925f32d3a074b6532Virustotal results 22.73% Heodo
2022-03-21XdAUgTov0MNS0q.dlldll b6dd6982aa3bcd7257145f9e65cffed29c85a9bf4d9d6dd9a3f4161cf4437f26n/a Heodo
2022-03-216Z52glImw5zvvAIdNw.dlldll 30c9a90f268d7e4638b6e1faa056daca2e13aca3349b815df9cad7c3f98e6801Virustotal results 22.06% Heodo
2022-03-210IXBRqLM3kHi.dlldll 81a1ed9b0fbcd79a702ecd54bd6bfcbb6ada1e5c2fab0d113c5d63b960f42e61Virustotal results 16.67% Heodo
2022-03-21ajPYIydHIbYhg.dlldll a4d996375eddd36b52bc7fe85b59272c8dbd0230a4c138535c6c0a9041fd0eb8n/a Heodo
2022-03-21YVEG.dlldll 13653bcde0e473b252182f11212d1f376ca53082883eff07bfa46d95afa3f2e9n/a Heodo
2022-03-212xjDxgHnfMqlg.dlldll f12eb3ebe18da148e1037065dec6ea2eca91fe113cf39b2254e8e42850ee3320Virustotal results 27.94% Heodo
2022-03-212c9Vzz6aP7Ktv3G.dlldll 70d3a8bfdfc39a2a0f64beb9e39574f4392ad44581702a6238ef4c2d8f4bc829n/aHeodo
2022-03-21EdDw0lsECEcrtC.dlldll de6ccf34f775c674632d8b8a6b0cc46849e7e670c7a302af75b7edd51da335a5n/aHeodo
2022-03-21oDDcddjjdy63eR.dlldll becb18f1927dc76c475d33f82fd007fd6b3a5c043fb5a99dced40eb027167007n/a Heodo