URLhaus Database

You are currently viewing the URLhaus database entry for http://bkohindigovernmentcollege.ac.in/cgi-bin/report/x7euvhz-59528430-9211594-8d2vdjkiml-03l1/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:289030
URL: http://bkohindigovernmentcollege.ac.in/cgi-bin/report/x7euvhz-59528430-9211594-8d2vdjkiml-03l1/
URL Status:Offline
Host: bkohindigovernmentcollege.ac.in
Date added:2020-01-15 12:31:03 UTC
Last online:2020-01-20 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?):mail Yes (Ticket DCU002247222 created on 2020-01-15 12:32:05 UTC)
Takedown time:5 days, 4 hours, 44 minutes Bad (down since 2020-01-20 17:16:25 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-17KWX9SK15ERNL.docdoc abd2ff2ff10cf0d8dfeec29c0a9809a469756c0b3108ab403fe2e029c1c25d1cVirustotal results 21.31% Heodo
2020-01-17INV_40358376.docdoc a13b037457db0cfd6982e62e3f76dd834a9ae2ab29af1bbd7b72023221c47e69Virustotal results 23.33% Heodo
2020-01-17FILE_1703557614016777880.docdoc d06c09f94e925a8e78c41e925aedc250ebee28853d29c1e1d4634502c9991ff0Virustotal results 18.33% Heodo
2020-01-17DOC_PO_01172020EX.docdoc fe932814b9fb95baf473284ceff4af5ea1100e4893f5a8edfa54b607ab6cd996Virustotal results 18.33% Heodo
2020-01-17RP_IDHTTQW8C91GRR.docdoc 37278a792abb805166b18e71b5ff929822059156a73f739e9633dc16984d28ceVirustotal results 19.30% Heodo
2020-01-17BAL_52224587.docdoc 7bb5fdc2f055e22227b6471aa23ea22c95fa0235bc96bb40893513d1fc6e6d76Virustotal results 18.03% Heodo
2020-01-17SW_2114264099901.docdoc 99ccaf3913dc5840b079598d897bb62ea7d91c87cc322ffa90397b0c7f9c61c4Virustotal results 43.55% Heodo
2020-01-17W48HPGPUF.docdoc 7fa223be816eecc1cb7c1193221b48e9168524b565439f844ee97934774953ebVirustotal results 40.98% Heodo
2020-01-17SW_FP23YW6BIOTJN.docdoc f3f139df5bc086f20c3615226f506ba9b565e31921ad9184f0f9df71be52f78dVirustotal results 40.32% Heodo
2020-01-17SW_PO_01172020EX.docdoc 3043a168a6f8c789c5ee4620047e06b338793136d2b2346dbfb4b03aab593baaVirustotal results 37.10% Heodo
2020-01-17REP_THH_010120_QCR_011720.docdoc c984833db58812ed08f1b0560576ec19bfec60b0a8103292c206042ef12007fcVirustotal results 36.07% Heodo
2020-01-16PBH_010120_MHZ_011720.docdoc 37b0389ffe84107582dcc9d62fc7091cc3a71915977dc69f605fb398902b3ce4Virustotal results 36.07% Heodo
2020-01-1674AG4FM1U.docdoc 8aa03e0069da2642cdf2b5951f6fc50e9bbdacd01a38e0e6c8d636a1afd522c7Virustotal results 38.33% Heodo
2020-01-16TQW_010120_FKE_011620.docdoc 862b4995090776854a12fbf924213919016691e4c85ccfa384c7fa92e02e8591Virustotal results 36.07% Heodo
2020-01-16PAY_54669002.docdoc a9c48a4f2a96384b1fe947448cb44eaadeb7c0a7754cd17a6899c7f6ae31f2e7Virustotal results 32.79% Heodo
2020-01-16DOC_12183049.docdoc 67e4ad463f707098e9dd3aa9ef44543687de41237cb6bd15500e428aa17c34c7Virustotal results 31.15% Heodo
2020-01-16PO_01162020EX.docdoc 8bf5586fdf5c09bd987b2246b8a60988842d2b3ca683a4fdd6f0a698d17909b0Virustotal results 26.67% Heodo
2020-01-16DOC_YJ4824616922UZ.docdoc dee80fcc93fdf28fb6d796015785e587e2fbc779c948f6ebc6f3a5628d54f905Virustotal results 26.23% Heodo
2020-01-16INV_PO_01162020EX.docdoc e2c167148b62b9f2ef7c2268d7779b5fe217cb86b3295ced1829ffd5064df41dVirustotal results 26.23% Heodo
2020-01-16DOC_ON5674235355UR.docdoc 743632f16eaf4dffd8109a5ea7c14e341db9af20a96f44838a046b9c6b183fdcVirustotal results 25.86% Heodo
2020-01-16PO_01162020EX.docdoc 9d8dbba8a0e996de7449c8dfe3136a7eea73a02e9b6f67a095c53c54abb04111Virustotal results 24.59% 
2020-01-16RP_HTV_010120_GPI_011620.docdoc 149889ce5c8bb26fa5e97f596ef4a8b87614e01998f4bb57fb25c82ddd84453aVirustotal results 24.19% 
2020-01-16C9KUQTPLJ1.docdoc a7d3f5474bdca4af088225b9280da969e8678960b6768ab6944a72866252c9dcVirustotal results 25.42% Heodo
2020-01-16ST_96521621.docdoc 8cf507a5d6fd40526c9419ace90c17b9d91a6949229cd0f5c8afa750836dcf62Virustotal results 24.14% Heodo
2020-01-16PO_01162020EX.docdoc 771ad3b2889d51eae42be0c3c53f7ab24667105d94fcd6e6dc93bca8ebbfcd85Virustotal results 44.26% Heodo
2020-01-16KVIV_ZX58DWWTXOLP3.docdoc fc68dd9971f85e873151fa2dae765c3406a74e35a608879a7b46cc250986b63dVirustotal results 43.33% 
2020-01-16PAY_383071500851596745287.docdoc 95b02c0e112270751b5fe7a49866ed9d31594f0b8d26e823e2242bcc3b902b26Virustotal results 42.86% Heodo
2020-01-1678884863.docdoc 6755b22aabcd9dae95e3e99cacfe217231c85f91ed30953a1afbeab582aba025Virustotal results 40.98% Heodo
2020-01-16MPYBXI5MDRZ3.docdoc 01d706d0a5e27c62abe9a72200925c5e23ed3c309ea88354dfcb55b36437c3eaVirustotal results 40.98% Heodo
2020-01-15DOC_PO_01162020EX.docdoc e763d67d538e1928f4e54ed83171e2b9495156d4c51598d1ef77162faecac2d8Virustotal results 40.98% Heodo
2020-01-15REP_65811079540206261033539.docdoc 12ab5cc68abfb6224f3a261e8f75acfceb88288023db49fa25ccda6e6620bc76Virustotal results 34.43% Heodo
2020-01-15INV_PO_01152020EX.docdoc 785feba560f2467465e64cec8a888b0ed5d477f94ce139eae8f6448508942595n/a Heodo
2020-01-15PAY_PO_01152020EX.docdoc d791ee2aac6bb4ca4437d45678f50c6ff87d5e6c41ec9a707a183a50be2c7f52Virustotal results 32.79% Heodo
2020-01-15REP_1509303426761062.docdoc 93ab67a92f697263656aeaeb5f01d856f25f562772e46a1a486dfcc777667020Virustotal results 32.76% Heodo
2020-01-1510907338.docdoc 2004c6f1abd300fa135b56f65c133ebad43e42aafae2b9b9726e3dd274424ea0Virustotal results 32.79% Heodo
2020-01-15LU_QKMHXXZC8RU8.docdoc 1ed83f7ed0265fbb7fa1006f405773d31c4b7069ebfbbb6086f0196160f3d143n/a Heodo
2020-01-15RP_57854293.docdoc e9f1c310320479dfb1302c7fff4316413d8671df442f0b3552ecf6d9561db46en/a 
2020-01-15ST_HLC_010120_ZYQ_011520.docdoc e26921bed7bee3f279a9495c5b26630f4a27ff40e51b6e5299f5c63b1796331aVirustotal results 21.31% Heodo