URLhaus Database

You are currently viewing the URLhaus database entry for http://fib.usu.ac.id/templates/J0VzvN/SEP/Privatkunden which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:48723
URL: http://fib.usu.ac.id/templates/J0VzvN/SEP/Privatkunden
URL Status:Offline
Host: fib.usu.ac.id
Date added:2018-08-28 16:49:12 UTC
Last online:2018-11-19 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: unixronin
Abuse complaint sent (?): Yes (2018-09-07 11:37:46 UTC to soeharwinto{at}usu[dot]ac[dot]id)
Takedown time:2 months, 12 days, 21 hours, 40 minutes Bad (down since 2018-11-19 09:18:20 UTC)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-08-292018_08Details_betreffend_Transaktion.docdoc 116ea42a5da96fed4444b066b3005614076b3b7a32bdaeb131c4da12f48d9b93Virustotal results 38.33% Heodo
2018-08-292018_08Details_betreffend_Transaktion.docdoc 574417581d627ab5ad76d085458f4729c9ceab21cf1b7866815880bfcdc29d81Virustotal results 37.29% Heodo
2018-08-292018_08Informationen_zur_Transaktion.docdoc abe0ef45a56289299c007087029bf03c76e3ba13c144fe1d5eb4936d80a36f82Virustotal results 30.51% Heodo
2018-08-292018_08Details_bzgl_Transaktion.docdoc 283f4abf0240e746d9f8287d1a70d83ab085b91198b08b8a06453ceeb8c66408Virustotal results 23.73% Heodo
2018-08-282018_08Details_betreffend_Transaktion.docdoc 3900fa6612af18ea93484a8e5e5f7c77a961f304a6c58f595935ea73df008795Virustotal results 30.00% Heodo
2018-08-282018_08Informationen_bzgl_Transaktion.docdoc e95a1730be5d655d7186684f7600f282c968de8ddb8c980c7c26317229e37ef1Virustotal results 30.00% Heodo
2018-08-282018_08Details_betreffend_Transaktion.docdoc 0c97ed85f2b9812c168c180b2c52fe12d397d8f738384e7d8bae6b73295ab04eVirustotal results 30.00% Heodo
2018-08-282018_08Informationen_betreffend_Transaktion.docdoc cd47b5edee9b25790dddd4f2259299b4ea450dc7fe8672cba488403f26e15716Virustotal results 30.51%