URLhaus Database

You are currently viewing the URLhaus database entry for http://perpustekim.untirta.ac.id/api/v1/https://Pages/H7Wxggu7opSLx13kp/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:452963
URL: http://perpustekim.untirta.ac.id/api/v1/https://Pages/H7Wxggu7opSLx13kp/
URL Status:Offline
Host: perpustekim.untirta.ac.id
Date added:2020-09-04 02:25:07 UTC
Last online:2023-05-17 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 11:24:05 UTC to hostmaster{at}untirta[dot]ac[dot]id)
Takedown time:2 years, 9 months, 28 days, 6 hours, 37 minutes Bad (down since 2023-06-19 09:03:12 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-05-08Untitled_2020_09_05_H5584.docdoc a048251509ffd480cbead87fb1a6c34d4f2d934eef12667590b2f6749dc4c7c0n/a Heodo
2021-04-05Untitled_2020_09_05_H5584.docdoc 9d26434723b2f1533cc8285fc1de96a1dff007cb073d09da6f4cfbab29416f57n/a Heodo
2020-09-05Untitled_2020_09_05_H5584.docdoc 62cc3eedb06b43f8a3e286b0a9f04cbf36fe240a532b217d91950ea20fa0ba9cVirustotal results 28.33%Heodo
2020-09-04Arc 20200905.docdoc be5a076cc07b81d54fda54ef3c56f2d60ee214c3d1fe46de3dc59a1df619dc29Virustotal results 21.67%Heodo
2020-09-04UNTITLED-043464.docdoc 50d0908dff351c8fcdfd307f4c93cad6065d4c10c2614fd4201209f862681cfdVirustotal results 20.34%Heodo
2020-09-04INF_2020_09_04.docdoc c586e91d4d8099da78bb2b844f2da8385b3ce716069343a4020b32274c7ade39Virustotal results 31.03%Heodo
2020-09-04inf_20200904_QAR54778.docdoc 088de2c93ca2a5d1c4e17cab469aa2ea619a58e4c03c744b338f74787e4dca86Virustotal results 30.51%Heodo
2020-09-04LIST-2020_09_04-PZ12221.docdoc 970e16cc8aabea583a577bb3ca6a50b795357231ff02822fafb8aa7dd143667fVirustotal results 22.03%Heodo
2020-09-04rep_20200904_868.docdoc 2f40ae83dd7e6ea630b731213a7f9629565af65eca2bf9990d77114dc2b441e5Virustotal results 41.38%Heodo
2020-09-04Arc 850205.docdoc 0ff718026b382be765c02b7185f73fbee59245cd282bd71f5623fe8f5e28a52fVirustotal results 40.00%Heodo
2020-09-04INF 20200904 6206947.docdoc 1fa1544383bbda2ef984f9c0a8a1e3ec9c37ede4a0e897d8177d7e92d3809ea1n/aHeodo
2020-09-04arc-2020_09_04-F07125.docdoc 9cf29b7fcce905e807fd1e4493af36f7f0e8618912601f1a85cf52af6d38d6b8Virustotal results 40.00%Heodo