URLhaus Database

You are currently viewing the URLhaus database entry for http://coniitec.utrng.edu.mx/telcom2018/personal-box/test-0lKEj-MEQf3ANS6Kg/363577-VylUbZXoVI/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:300379
URL: http://coniitec.utrng.edu.mx/telcom2018/personal-box/test-0lKEj-MEQf3ANS6Kg/363577-VylUbZXoVI/
URL Status:Offline
Host: coniitec.utrng.edu.mx
Date added:2020-01-28 20:16:41 UTC
Last online:2020-03-13 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-28 20:32:06 UTC to abuse{at}uninet[dot]net[dot]mx)
Takedown time:1 month, 14 days, 21 hours, 2 minutes Bad (down since 2020-03-13 17:34:58 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-30mes NIE741658.docdoc 3a67e274a00b615226449e7451a58b641a9d81e1cca72326b6c27fe68ea849c5Virustotal results 35.48% Heodo
2020-01-30FILE-20200130-08748.docdoc 915478aabf43d394dd3ef4f1cb6de4976b0415b9eea56cd6e50780c10b8da5f2Virustotal results 38.10% Heodo
2020-01-30LIST-20200130-JMT0200.docdoc 57813997e897ed8c025255e8ccb40972c476a3fc522a5437f5a02aeee20d4e5cVirustotal results 38.10% Heodo
2020-01-30file.docdoc 2b5bdd3bfb73fa7e1bd1b322c377a0ffd4386f783c6658748a15a25679b09b51Virustotal results 38.10% Heodo
2020-01-30File_20200130_TY3785.docdoc 4bcb5f3bc2310560505835c95ebf2173c58ca2d1f0e50139bc2d8141b4b6510dVirustotal results 34.92% Heodo
2020-01-30ARC_L061.docdoc 27e174efb0d6e8b05cf666fd50c3163d91cd9bc9416197af58f70c1f027d2a0eVirustotal results 32.81% 
2020-01-30Mes_457929.docdoc 2d865b1d71a6827ca4eb3b7f884d08cc2acbcea2e862ce53a15cea4128959e8cVirustotal results 30.16% Heodo
2020-01-30mes_KKG585.docdoc 767b17c9708aa05e3d52db97aa2842a873f2cf8e9d75f19e3e8c84fd32442e32Virustotal results 25.00% Heodo
2020-01-30Mes-18307.docdoc 7099bcda5f0b4caadc077f6bc794a4dc8933e66863535f49c23c8b19ec793b7fVirustotal results 28.57% Heodo
2020-01-30file 5919506.docdoc 6926bc1e1548f432acb621ea14a0a04189aacc9b0d3730cc275ea5be5ab2ddf7Virustotal results 28.57% Heodo
2020-01-30MES.docdoc 093fe06865cc5cd449e9684d621efaf181505881f5e0e818b0ec9c4459ef1ba9Virustotal results 22.95% Heodo
2020-01-30List 2020_01_30 K99598.docdoc 2d81565b3a488568df69e8fcacd9ca24b4afb50ce479521fbf15e31e65e1311cVirustotal results 25.00% Heodo
2020-01-30dat UH8122.docdoc 9770154f6b54c8685ee215a2ddb8c8c91d95c59768711dae07d13a0d7619a70aVirustotal results 25.81% Heodo
2020-01-29File-20200130-Q716404.docdoc 0c899fbd963450fdf0d3d487fd91c0ef00e8c4191115d99d58a6b75476b06254Virustotal results 22.58%Heodo
2020-01-29ARC.docdoc 2c7a2ffff7a4a2fcb7a86235dafda3b02ce67330155e00a22408d6c14b2f5cafVirustotal results 40.32% 
2020-01-29Inf-20200129-KW550.docdoc e49d66744b97eaa47dae870c0fdd5f6b3a52e1b2245e8567ffa6b8a344663fe8Virustotal results 34.92% Heodo
2020-01-29DAT-2020_01_29-AZI50518.docdoc f794730342329d1ca756e53becae5be97d1f5fc5628dc8dd371111d0d8df96c3Virustotal results 32.81% 
2020-01-29doc_20200129_K32628.docdoc 49725f6641477d5fcdc1933e66eb652922a1e1264277a6aef8069967eb0084f0Virustotal results 30.16% Heodo
2020-01-29Arc-662.docdoc b09c8d39fe17d600ac2beffd9540076f55d944b41ae3c11b26600252a272b3ecVirustotal results 26.98% Heodo
2020-01-29doc 20200129 VV9540.docdoc a6f8d6e5f80b47b55146e82c61a78c5ed8c451bcb68d157dee574d02c768ba30Virustotal results 26.56% Heodo
2020-01-29inf 55115.docdoc 41f2df35fe03375e39b939c95142a9c04e1613e60bcdeb4f50ea339349d04243Virustotal results 26.98% Heodo
2020-01-29LIST-20200129-597.docdoc a570252bf1c2fa10675c88c55f9ef2362c2c7d3ac6e6bc1400102a49f2aac861Virustotal results 27.87% Heodo
2020-01-29Rep 6389227.docdoc 02e02e6f3d5f2447a5269982bfa0714b129e54897d7616443ca03430d0a3188bVirustotal results 25.81% Heodo
2020-01-29ARC_20200129_191879.docdoc f8a5336b371ee216fc6fb0d0b23eca343a30c1d0ff719e61a847bffaaaf64a21Virustotal results 25.40% Heodo
2020-01-29REP-20200129-NK99192.docdoc 9e66ad03e7885710b534addc2f0c5637987970b3c6185b27cb42a4fcfa06dfc9Virustotal results 24.19% 
2020-01-29REP.docdoc 94e0d6de6118c26179d6f05dd39b5583f1fe79c66151f666734b93a655a71930Virustotal results 23.81% Heodo
2020-01-29DAT_20200129_39581.docdoc 7c22eab322ac6b786498c54df9abb223c3466203f681028b1023147f081fd6caVirustotal results 24.19% Heodo
2020-01-29Inf-2020_01_29-J73665.docdoc d6548725e281a6fac0ace4af505c15a21b8e1582ab951ad62e29dc42cae45885Virustotal results 43.75% Heodo
2020-01-29DAT_D416.docdoc 085777a85dd9b9d62ecf918d0cda586ecae8d0b32af5aa6182d85c77a8a571fdVirustotal results 42.86% Heodo
2020-01-29dat 20200129 U6475.docdoc 8c05cb88caacbc8eb0e4a1e79a0d1a707959b45fb39f5e694923b6b069ebce75Virustotal results 43.55% 
2020-01-29mes MLV91940.docdoc 6a23106b558df36e6d88bb5b5dd187430087eff0c8a2ca1586f8538e8259e01dn/a Heodo
2020-01-29file 20200129 996886.docdoc 5ed01ecc76724ef8dff654d4ef2b359c600c6dd3da2481677304b851d0c752b7Virustotal results 43.75% Heodo
2020-01-29Arc-2020_01_29.docdoc 24feb6df1e8f6c53bd9feedc048edbaa84e854f4accbd7fd64e8c4c74b2de5b9Virustotal results 43.55% Heodo
2020-01-29REP-2020_01_29-XQ327.docdoc 705a21a458e18ec2353f1141cd6971cd6ffe76398c6c0bffea9c4f3e2c370c87Virustotal results 39.68% Heodo
2020-01-28Arc R255.docdoc 522de927311fdb0ba76d51ac880c13fa8dce461eec5a120570a58e27fc82fa06n/a Heodo
2020-01-28INF-2020_01_29-YBJ457.docdoc f2a6a0283ff20ad3d0855ce7825d84920a0a27c55825a5a5b9ba91408388a402Virustotal results 41.94% Heodo
2020-01-28list CN20349.docdoc d92bc4efa28b232e6331a4e9b5f75992659ad3e64268f5adac60ea14f9932f5dn/a Heodo