URLhaus Database

You are currently viewing the URLhaus database entry for http://perpustekim.untirta.ac.id/api/v1/https:/Pages/H7Wxggu7opSLx13kp/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:452979
URL: http://perpustekim.untirta.ac.id/api/v1/https:/Pages/H7Wxggu7opSLx13kp/
URL Status:Offline
Host: perpustekim.untirta.ac.id
Date added:2020-09-04 02:33:12 UTC
Last online:2023-05-17 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 09:49:04 UTC to hostmaster{at}untirta[dot]ac[dot]id)
Takedown time:2 years, 9 months, 28 days, 7 hours, 0 minutes Bad (down since 2023-06-19 09:34:16 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-05-08Untitled_2020_09_05_H5584.docdoc bd915936f4ebec925c3575f9761ed6413b8f33e5a22c0b0e1fbee841f082e34dn/a Heodo
2021-03-17Untitled_2020_09_05_H5584.docdoc 50108a6d3dceec60be34172d0849298905389b14366205e4b9fa32157e3fa9a6n/a Heodo
2020-09-05Untitled_2020_09_05_H5584.docdoc 62cc3eedb06b43f8a3e286b0a9f04cbf36fe240a532b217d91950ea20fa0ba9cVirustotal results 28.33%Heodo
2020-09-04Arc 20200905.docdoc be5a076cc07b81d54fda54ef3c56f2d60ee214c3d1fe46de3dc59a1df619dc29Virustotal results 21.67%Heodo
2020-09-04UNTITLED-043464.docdoc 50d0908dff351c8fcdfd307f4c93cad6065d4c10c2614fd4201209f862681cfdVirustotal results 20.34%Heodo
2020-09-04INF_2020_09_04.docdoc c586e91d4d8099da78bb2b844f2da8385b3ce716069343a4020b32274c7ade39Virustotal results 31.03%Heodo
2020-09-04inf_20200904_QAR54778.docdoc 088de2c93ca2a5d1c4e17cab469aa2ea619a58e4c03c744b338f74787e4dca86Virustotal results 30.51%Heodo
2020-09-04LIST-2020_09_04-PZ12221.docdoc 970e16cc8aabea583a577bb3ca6a50b795357231ff02822fafb8aa7dd143667fVirustotal results 22.03%Heodo
2020-09-04rep_20200904_868.docdoc 2f40ae83dd7e6ea630b731213a7f9629565af65eca2bf9990d77114dc2b441e5Virustotal results 41.38%Heodo
2020-09-04mes 20200904 CHC943424.docdoc cbf75dba4c6b4f8cbcfb647112f9a0a4f8efb293526aea73ffebcd800379e08fVirustotal results 40.68%Heodo
2020-09-04rep-20200904-H804554.docdoc 595e8a24f2e5e51e56138296f7c6cd58e709e8f532dbacc38ae66f462e0e071dVirustotal results 40.00%Heodo