URLhaus Database

You are currently viewing the URLhaus database entry for https://bpkad.lomboktengahkab.go.id/wp-content/uploads/balance/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:418093
URL: https://bpkad.lomboktengahkab.go.id/wp-content/uploads/balance/
URL Status:Offline
Host: bpkad.lomboktengahkab.go.id
Date added:2020-07-22 22:35:06 UTC
Last online:2020-08-25 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-22 22:36:03 UTC to admin{at}djshost[dot]com)
Takedown time:1 month, 3 days, 5 hours, 33 minutes Bad (down since 2020-08-25 04:09:25 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-23E_97489021960800593048.docdoc 5de801d1734e78ebab4e8a80a424bb6f06e1e7c72938e6d7922073bc7a0370d7Virustotal results 41.67%Heodo
2020-07-23REP_087223747375204.docdoc b60d6ce4f8a065f651452dedc9f4108941e5141d8e9cb38dcbb350e9fe7cc1fbVirustotal results 40.00% Heodo
2020-07-23JZEYUAF.docdoc 7ae0262abfeb81f5186b2d2a3228db31f1e8c2e76f64307cb4bcda3f113c5e43Virustotal results 42.62% Heodo
2020-07-236907169785320095298.docdoc 2e6835bb4cbe6487d7ca03ecaa11680c6a1c67ae96b80f9b13a40a15408abd39Virustotal results 40.68% Heodo
2020-07-23Y_167433196093860.docdoc a6d53ac3f7ddf730b2265f40cc8621657d2533c9b9068b969f9b644f72825a37Virustotal results 43.33% Heodo
2020-07-23Y_OFUENI2TTVLK.docdoc 29e6dc4e9c118ba98db7b5aab063c19788100ccf19ff84d03d8412ffa61765b8Virustotal results 43.33% Heodo
2020-07-23INV_LRB_070120_LCU_072320.docdoc 6e9efc2f4e7954913c26e29d8883f05fc837f93cbc11ed6aa1f59e1306bccf97Virustotal results 42.62% Heodo
2020-07-23BAL_HX0000312183JW.docdoc dc7fcde663a9d815ecd5773ded15b90adcb4da90b556db8ce5474fd8b0526419Virustotal results 43.33% Heodo
2020-07-23REP_PO_07232020EX.docdoc fb4e11b91993d00ee53d54b80a44cd235c151005999e3308a58c58f979a3e47cVirustotal results 45.61% Heodo
2020-07-23BAL_29387769.docdoc c7a0c36d929c3967281ea2e2e6f999ac17cdce4a691339ad9850e367ff10976aVirustotal results 43.33% Heodo
2020-07-23CD8871635268PC.docdoc 5a8d4e08be59caa5eec7779e9cc51d5e333cf692dfaffd35a637e072b27e2090Virustotal results 43.33% Heodo
2020-07-23REP_MF1031934625MR.docdoc 5c3ece93e2a6644d09daac8a92d6d624794c5e88db7781c77eb5ffd03d2ff8ffVirustotal results 43.33%Heodo
2020-07-23FILE_71772691.docdoc 9d24cd113094edffa574173b3ce1295006fd5e243bc82578b6fb81a7d28e95f5Virustotal results 43.33% Heodo
2020-07-23BAL_48294160.docdoc 4c99123bb97ae169e6ab05660104745891d0ae7823f8594f8de82a833dc13d15n/aHeodo
2020-07-23INV_76283978332758.docdoc d204d9a16bd7b8412ab3ea6b430424ed732cd685e4b7b8e08b2f10a7151503c4Virustotal results 43.10% 
2020-07-23INV_OVE_070120_GUB_072320.docdoc c5af9e9fa8e2d32ee0e979cd671f80652356deee03af4f1fbb226630fcf7038bn/aHeodo
2020-07-23RKT_070120_ZKC_072320.docdoc 5f2520828449385a186054f9fd1888a69f6d808ee764bb50c387821529d0fdc0Virustotal results 43.33%Heodo
2020-07-23RKT_070120_ZKC_072320.docdoc 5f2520828449385a186054f9fd1888a69f6d808ee764bb50c387821529d0fdc0Virustotal results 43.33%Heodo
2020-07-23REP_RZ7133485704VQ.docdoc ecfcada8131c01436ccd879656898e0c54347fc88b8e4c523fcfe2faa885cea5Virustotal results 43.33%Heodo
2020-07-23DOC_QBWI9ONSHXL.docdoc 337d0f509a061e77549dfcf7c2a178ce5d01e9a6467033cc68aabac91c9d6c4bVirustotal results 43.33% Heodo
2020-07-23FILE_76805354.docdoc 201e65180b4832e4846c2b92accd04338090231dff03fcd300543968d409f828n/a Heodo
2020-07-23REP_NZ57LAG6PP89.docdoc b3322a0449ee0eef689ea9a34041b6d53fd90c330d1e5f224b10dacf2a3d1bd6Virustotal results 41.94% Heodo
2020-07-23DOC_2233296973.docdoc 8c457c505817b87c7b59486ef32e36330f01767f01b97e67493bf65df9f19c7fVirustotal results 40.98% 
2020-07-23BGX_070120_HRO_072320.docdoc 2403eb46760fc42de500a11f1ef2ed9193bbcf6869d68343f1c9ca5cd754621aVirustotal results 43.33% Heodo
2020-07-23BAL_DV1551380570SV.docdoc 7470d42e27dcc8eb13d9c5a4834ea53e27ab889b433b3798d7dba2475ec5ad6en/a 
2020-07-23BAL_DUJ_070120_ZIE_072320.docdoc 90fcbf490c8b5c82b4a621d2eda95d5a174ec25e79494532d86b437fd4752977Virustotal results 42.62% Heodo
2020-07-23LVE_070120_PZL_072320.docdoc 24d23d72819c0da93862f501aa6bb426d20220620b66755706ae74a511943acaVirustotal results 41.94% 
2020-07-23BNC_070120_PLR_072320.docdoc a38009fa686fc8b2d5d64ac631da032b3ae4306eae5f763c354a30bd27acd7e3Virustotal results 42.62% 
2020-07-23REP_82878341.docdoc c3959ea8f24121577d9921bd69d95b3a680fea6a6d86ae9e4687d9f05ae6610fVirustotal results 43.33% 
2020-07-23BC0IBDD2I2PW7Q2.docdoc fb1f786f0ee87634573d696bfa8c3c77de7931a5a5cd367e29526eebc26c3bd7Virustotal results 41.94% 
2020-07-23DOC_19313607.docdoc c307436eafab96d2c26a88ce87ccc4a9513e92bb62f67a1259b985f9bbc7b1dcn/a 
2020-07-23X_XU9802650308YU.docdoc e887884ab75f057789b77715e51767f86bd1f2c5857c595af609fee2f045ef87Virustotal results 41.67% Heodo
2020-07-23LO3929868624IF.docdoc 5dd8e2da4e54d029cdf708ad6b1555a0188c703fe5ae2a11d2e1428088ceebedVirustotal results 42.37% Heodo
2020-07-23HDWI_JGP_070120_LTF_072320.docdoc b87ae14c7da7b5b214dcce0176340b0d35ec9d7fa048cb23241db07f35d56e87Virustotal results 41.67% Heodo
2020-07-23V_NEC_070120_YOS_072320.docdoc 61077d5fd0bb05fdfde47490320fccf5db5b458c1d2144bec7ee9c48e15a506cVirustotal results 40.98% 
2020-07-23BAL_0S0I2Q1U4TW.docdoc cebc54a58a021a0d955723c260148d0d20cbb7c7ef59586a5dc6370bd7fc03ddVirustotal results 40.98% Heodo
2020-07-23FILE_XPF_070120_GQI_072320.docdoc c0f7c736eb0dece796e74848ce229d17113f5a1e94570952391fecb6ef362433Virustotal results 40.32% Heodo
2020-07-23REP_7168178400.docdoc 67b4d45558173d9845374c02d96c5835e69913c4bbdbd480549a9d493533a4d4Virustotal results 40.98% 
2020-07-23INV_74217889.docdoc 059b15d40d3bdd5846f97c7de1ec2d26e171d6a585a9d7604c0bb41740219be3Virustotal results 41.67% Heodo
2020-07-23INV_83532381.docdoc a0fe687640b5e1dd66f75770b5f81570eee2dfdeea5955882f12b6e6be05e498Virustotal results 41.67% Heodo
2020-07-234VHVOGIOIA.docdoc cf0b313eb90ec7e86a16c5af80147288aeded5d6e8d1333bef4c68c5c9599223Virustotal results 40.98% Heodo
2020-07-23PGNR_PO_07232020EX.docdoc 1aa324aa103a6acec054d97dadf915026fe9bcb397743c11cc15f90ba2f14e90Virustotal results 40.00% Heodo
2020-07-2332471704.docdoc 60bd24426f0d271756f6d5071da1534deb37c8398e7e1ed66357b9104111d54bVirustotal results 39.34% 
2020-07-23QR_WV4049567579UX.docdoc 516119b22bf255a207f5453e26a9292d9eba7cb81b8619dd36a560fb057094afVirustotal results 38.71% Heodo
2020-07-23FILE_46662718.docdoc daa624b964e78d640d7be3b509121048114a186d6e9982ef7a9498d81373f90dVirustotal results 38.71% Heodo
2020-07-22FILE_KX0PKWP6X8HXKA.docdoc ece54d4d0a7d1ac6029624db0e3983d0fb7926c523a190cb5179e98272da53f9Virustotal results 39.34% Heodo
2020-07-22REP_D04A5S75W.docdoc 648bd9dc2648dccbd4a251c9aefac5a16276ca6a040a40f5abd2fc295af92c4dVirustotal results 39.34% Heodo
2020-07-22WC2470697924EW.docdoc d50d98dcc8b7043cb5c38c3de36a2ad62b293704e3cf23b0cd7450174df53feeVirustotal results 38.71% Heodo
2020-07-22INV_66708589.docdoc d490b0224c7403b91377d919134919169d42a115e897465d27fb8e4d61b35efbVirustotal results 39.34% Heodo
2020-07-22INV_BZW_070120_KJO_072320.docdoc 694e3d8db738e2dc0c126f0e8eade84677bf290041e4aff16d4b82301a59f8daVirustotal results 38.33% Heodo
2020-07-22PO_07232020EX.docdoc f1ebb4160dba56424b98b04a121a56dbe21ad5e7a2c4bb3816f2dc0eaf0e3afdVirustotal results 37.70% Heodo