URLhaus Database

You are currently viewing the URLhaus database entry for http://bpbd.tabalongkab.go.id/cgi-bin/IBEHVS/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:301365
URL: http://bpbd.tabalongkab.go.id/cgi-bin/IBEHVS/
URL Status:Offline
Host: bpbd.tabalongkab.go.id
Date added:2020-01-29 13:16:42 UTC
Last online:2020-02-26 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-29 13:28:04 UTC to abuse{at}as[dot]net[dot]id)
Takedown time:28 days, 8 hours, 57 minutes Bad (down since 2020-02-26 22:25:38 UTC)
Tags:emotet link epoch3 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-02-02ezetlguvu1.exeexe 0ddde52ca3e01fdf8dbaff394135e34de7f446d8d47942329f9b9832b3b2246aVirustotal results 57.97%Heodo
2020-01-31zedxmhf0n763.exeexe 6c847a24d6807c39d466085a2660b8ab1220a9f5139c19e2d8bfcfc65f7b85c7Virustotal results 16.67% Heodo
2020-01-31i2tc7q9s4408621491.exeexe 86ecdf00f7febc92b3a3ba959f214aa66dbe5fd566c35df1296db27917bcfb20Virustotal results 11.36% Heodo
2020-01-31osg6o6256975446.exeexe 43cdfe773032939e044c7a134f8b477d631b4cd98e6d649419185e605554ae8bVirustotal results 30.14% Heodo
2020-01-31evc0p037.exeexe 9d872e26dc6fe32b58c87c9a00bfe59165d76694ed8a96a06a8605638b7a0431Virustotal results 28.77% Heodo
2020-01-31eufq265796.exeexe bf23ddd580f58505bfbf7354fd89a2aea35e9eeab3ce5f82a7b4494ccda0c144Virustotal results 24.66% Heodo
2020-01-31sss4685.exeexe a04d18f1daef8282533eaf418c5d5d890c03c45e0d375a90358d7e9dbdeae233Virustotal results 24.66% Heodo
2020-01-306j08z39395906.exeexe d47544d1426eeba49e8508366aa47672270ffdce5dbbc80b449dcec6468fd11bVirustotal results 13.89% Heodo
2020-01-305dk0zblh6z72.exeexe 7b9ba41ce53c642ab4a8e542fd10463877bf9046163a15e96ead526840a67de3n/a 
2020-01-30zjuwt1rxjl026820816.exeexe 2ab2fe98d198f0d4a823c0cce6a7306c9967919b3548cf93d8b6da7f84b82cb8Virustotal results 12.33% 
2020-01-30jl6ppg38456148.exeexe 86da7b1170ba7a56cd456a809ddb50bd02453d3b3241bd0ae8c7f1a841af456fVirustotal results 16.67% 
2020-01-30x6qzz47.exeexe 6d8712f3348a3cf65b039f3511d0ab9ca8387d9ceb9ab3879a5f077a14b0e53eVirustotal results 16.67% 
2020-01-30t505v3680220.exeexe cc415377d5106f08b33a71819aeb6e3df976b079edb6ec676364beeb16f961b2Virustotal results 15.28% Heodo
2020-01-30r909d7x835782.exeexe 656aa0d22447d67dd1d55db2ed36faf2390d0c960b0d295e6b209f8118b575dcVirustotal results 6.94% 
2020-01-29n3f7uewut87.exeexe 5776b50e048d64817d805404627c30ae42803a1f0d3db5eef5908a0e3f39326bVirustotal results 9.86% 
2020-01-29c00.exeexe 84b34f5f6fa7e85108125cf909b51ff05cc9c276023497cf1cb1cfb808a7b293Virustotal results 7.04% 
2020-01-29mel2q1c32.exeexe b8dd80416160c5f32703f28077356faad3cc0ca0e38d1a09f74148add672de43Virustotal results 11.11% Heodo