URLhaus Database

You are currently viewing the URLhaus database entry for http://www.hukum.unwiku.ac.id/Ocz19vUltp/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:29310
URL: http://www.hukum.unwiku.ac.id/Ocz19vUltp/
URL Status:Offline
Host: www.hukum.unwiku.ac.id
Date added:2018-07-09 07:09:03 UTC
Last online:2018-09-08 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2018-07-09 07:11:46 UTC to hostmaster{at}varnion[dot]com)
Tags:emotet link exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-07-10208139551.exeexe f0736072bed223a93fdf344d512f046d19d892e0242a8ec34cc47e3b71521998Virustotal results 20.59% Heodo
2018-07-10240537801.exeexe e58dcde028ee4ed5ad19b38fbb3a1bd5ffdac963a986ad330d448900a54b6792Virustotal results 19.40% 
2018-07-108156605560.exeexe 3f87973591636397be1eeb932cb1e6ff09bb81aac5f8f52d1b1245882086be99Virustotal results 16.18% Heodo
2018-07-1070600647762.exeexe 9195d7a2922238b3abd02e16fb65ced1527a0f7b3aef56d31626233ef1114521n/a 
2018-07-1084417023.exeexe d6f1bec715339f3558d07d438fec43c3012615759a7f45ec5e71f3c0beac549en/a Heodo
2018-07-1018273936.exeexe 2812e1fee480df0abc941897b18c546a00d7e34d112db7851cf6c796d1f8c287n/a Heodo
2018-07-1090380314669.exeexe a8c1e30c59b68348e96b597bb770a2bce88988d0f0c41d2398a8b475e13d41c2Virustotal results 22.06% Heodo
2018-07-09841689520.exeexe 237bd196a82f2d26b1e5e9db9db03b9c08409de58da0fbab8764c2d395bbe8c2n/a 
2018-07-09204447948.exeexe 0132afc432ec7fa76e14bd6b06371d9e981193596c7085e7885217088cd934c6Virustotal results 19.40% Heodo
2018-07-0919313214791.exeexe 1ad9cb7004438a2dfe8794ae10d711c5942c168fa73e45e227281b40607f66c4n/a Heodo
2018-07-0991483921.exeexe 07f54dee7efa175038f8eea8ddb14eb9f972e61b8926ad6b9667c3e92ce6c978Virustotal results 27.94% Heodo