URLhaus Database

You are currently viewing the URLhaus database entry for http://bkohindigovernmentcollege.ac.in/wp-content/private_array/test_xGGDyq_4UbllbdjoR/n9dzgzr705k_vwxxtwx/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:307159
URL: http://bkohindigovernmentcollege.ac.in/wp-content/private_array/test_xGGDyq_4UbllbdjoR/n9dzgzr705k_vwxxtwx/
URL Status:Offline
Host: bkohindigovernmentcollege.ac.in
Date added:2020-02-03 20:10:08 UTC
Last online:2020-02-11 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU002294144 created on 2020-02-03 20:12:05 UTC)
Takedown time:7 days, 22 hours, 1 minutes Bad (down since 2020-02-11 18:13:55 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-02-05list 6586132.docdoc 33d19b8e603f2a6ec66177ca19712f24c173cda04939612ada0a1fe3e0798c93Virustotal results 26.23% Heodo
2020-02-05file_2020_02_05_J1611.docdoc c0b9c90ce017a4e5196e744c7948464ff57431da4a1d820793c5aea57cc0a095Virustotal results 26.23% Heodo
2020-02-05DAT-NC3165.docmdoc da0b1e331a89bd28e4338a886d224c01e9194a764a6ded30bac8b16670a589b3Virustotal results 26.67% Heodo
2020-02-05Rep 2020_02_05 815289.docmdoc 4bda34084014e21ceb2db8fb9003f36f4b3a7bd5a8bcfb9b1badbf13529a6d84Virustotal results 26.67% Heodo
2020-02-05Doc_20200205_W682459.rtfdoc e9de053b8046e662771b320b25a49cd709591ac896fb6bd4c324ba0b13f37b35Virustotal results 25.00% 
2020-02-05Dat-20200205-389325.rtfdoc ab556aef3f7baf74127e682541cd5bb674af38a62c4c1f89ff43f09388894af2Virustotal results 25.00% Heodo
2020-02-05Mes-2020_02_05-D203.docmdoc add57fd6782c427fbdbab1e52f313746c594f78a352135f6961c6e7d3d9ea2f6Virustotal results 24.59% Heodo
2020-02-05Mes_NWB232194.docmdoc 8da9b64f05685802f69618feda838a3f4331363e5e7ad48cc004353b8a4dac2cVirustotal results 25.00% Heodo
2020-02-05doc 20200205 BUS8433.rtfdocx 49935d065197043a5954f5c0af2fde686f0dc8e83a648ca5377b249246310ddeVirustotal results 36.07% Heodo
2020-02-05rep.rtfdocx 87b1933c9a37e955daf97fd9640da17cde0f579c30a655b8d1af0fcf8ecfb7cfVirustotal results 36.51% Heodo
2020-02-05arc 20200205 57408.docdoc e96b3b96851ad8f49fa155f44b5dad11bedded8a6c96898fa814e872822f3eecVirustotal results 35.48% Heodo
2020-02-05LIST 2020_02_05.docdoc a464fbbd0fd6eb2e09bb5c04dd46379d3cf1c4f67eeb3f4e9f0b9f7896a2192fn/a Heodo
2020-02-05rep_20200205_UE8194.docdoc ab25cd8065a0df8608fcd69bd29689ae7657b263b8290a459052ff0cfcac3951Virustotal results 30.65% Heodo
2020-02-05doc_2020_02_05_XM931684.rtfdocx c88c5193f9ffea07709eeb7dbe053ec079f2a2d4f142fd26ca76ed7f55c6e6abVirustotal results 30.16% Heodo
2020-02-04ARC_20200205_X95286.docmdocx f2d5330b5aa423a1c21c6f960154447080fb0b6a7747307519ce8d57a310d1a0Virustotal results 29.69% Heodo
2020-02-04Rep-2020_02_05-V32173.docmdocx 6464ea34b63546f7d2cdcb780b772b1250731bd38c105c2feb70e0928d49b1abVirustotal results 32.20% 
2020-02-04Inf-2020_02_05.docdoc ec4146a69e81f690514da6199f759c184964dbe031f6ca7850b4af5d0d365150Virustotal results 36.51% 
2020-02-04file_20200204_879.docdoc 1b84fe0719f2a2c1c1816209e75090e1e969a09e78d93682bf5fb1b6f9e1d6eaVirustotal results 35.48% Heodo
2020-02-04Mes 2020_02_04.docdoc 226e3d9397801a0c20fc12e65373887d6b8e32d5d47ea818a8b891be4513e330Virustotal results 33.87% Heodo
2020-02-04Inf-2020_02_04-GH7762.docmdocx b652230d0ab5eba2fd05573b7ef10013f6563c1bb9f64d5f5106b15cc8a5ade7Virustotal results 31.75% Heodo
2020-02-04LIST-W49902.docmdocx 597a313c1d55cc65b461fb9ff7e086dac74ae798f9e9641b03420282e54dc514Virustotal results 37.10% 
2020-02-04REP_819012.rtfdocx 786563efb876e891aa804967d96e0a176417ad2c731e93a1fd788cc7d15d57a7Virustotal results 37.70% 
2020-02-04file 2020_02_04 CV03148.docmdocx a22639097a957b8debdfb4ff182eb2b6a288368b09b8427853ed91346b687737Virustotal results 35.48% 
2020-02-04mes-20200204-C458.rtfdocx 71504ffb2ac7323b2da494aabf013190544db3e4230b363b639d68878aaf77dcVirustotal results 36.51% Heodo
2020-02-04Arc 2020_02_04 2680.rtfdocx 167323f590c8eea01e897581a3de8e00606c176ff6518fd3ac0a3d64dd2e7d9aVirustotal results 36.07% 
2020-02-04Arc_2020_02_04_DQW99158.docmdocx b71394268acf3acca757143450d5ccc9030bb60cd3e5e9e3245f81fa1b63e757n/a 
2020-02-04File 20200204 555719.rtfdocx 3455fc14bf4bc55e2cd1a0d3e6ba9f195bd43d0a44099f3f23cb2c9b95310140n/a Heodo
2020-02-04File-YW4369.docmdocx a2af1039b0c9e8636d89d189de0aad64528f566301920152cf493d54409dac79Virustotal results 34.92% Heodo
2020-02-04LIST-MLM4394.docmdocx c896b275330256006e4bd20c9f1acb9b11b059ff0673988e853bf709b6fbf67eVirustotal results 35.00% 
2020-02-04Doc_20200204_1075171.docdoc 002d694ef8bf683023d2285a4a16c1673c4ac35874c13d7cfd9c9dc9cee5854cn/a 
2020-02-04FILE-20200204-OQ9534.rtfdocx 028f4c2dbdc1cc4dcc34a7dd5f190ca34075756f22fefa208b992649fedf8c14Virustotal results 33.87% 
2020-02-04DAT-2020_02_04-1473545.docdoc 7769ae1cce4e29c3e8bd982600d46a07804c1f66a2772bf00ea100aa24c227baVirustotal results 40.68% Heodo
2020-02-04FILE_20200204_278.docdoc 06ef3b76fdfb2eccd0a672a1023ffeff68a0dea6d2a4da527eaa596842391fc1Virustotal results 38.10% Heodo
2020-02-04LIST_PAC960964.docdoc 0c5326e304b5b23196b990d4ba1000e7a34150acbfa3b3cd8aaa35a12f124e26Virustotal results 38.10% Heodo
2020-02-04LIST_363.docdoc 821d5e01c6a22bf01f87a2cc063615e17a74dd2599e21bb6ec2de779f77c8d08n/a 
2020-02-04LIST-BJ2591.docdoc b5bdbfe46cbe25168c809c0da1cd3018bef7e7821ead2808e7b22f4a01d76a34Virustotal results 38.10% 
2020-02-04mes-2020_02_04-SUV5763.docdoc 3d78b8943ee63fbf0eea864676e6cc25a64863d53c9252807f5cfd86ebe3c4fbn/a Heodo
2020-02-04mes_2020_02_04_M0156.docdoc ce8eb63345280d1325f0c238ee972e035dae857560a8092478c2d7029db2b81cVirustotal results 34.38% Heodo
2020-02-04LIST 5651121.docdoc 96ca41fe85593ec2adee71cbe9ddeae3c084689d3bd049ba0b3a548895583c11Virustotal results 33.87% Heodo
2020-02-03ARC-2020_02_04.docdoc a958c01598fe12500a80df8027f579420835f95b60f2d55b885127d396e6196bn/a Heodo
2020-02-03Doc 2020_02_04 823447.docdoc d48d382a360c44f8990a525f7ee79c00056b9091d438e3d641396d8353374bben/a Heodo
2020-02-03Mes 2020_02_03.docdoc 0d7ea58a5c9c2e9c564452f61b6fdc2c2a590d27f718ff40d270537518afb93bn/a Heodo