URLhaus Database

You are currently viewing the URLhaus database entry for http://sesisitmer.com/For-Check/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:52699
URL: http://sesisitmer.com/For-Check/
URL Status:Offline
Host: sesisitmer.com
Date added:2018-09-06 07:39:08 UTC
Last online:2018-11-13 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2018-09-07 11:49:35 UTC to abuse{at}cizgi[dot]net[dot]tr)
Takedown time:2 months, 6 days, 20 hours, 57 minutes Bad (down since 2018-11-13 08:46:57 UTC)
Tags:doc heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-09-06Doc26977.docdoc 495ee06c9aa8eeff382b2f5f92858ba9c9782880921216d2d2989b841d626fd2Virustotal results 39.34% Heodo
2018-09-06Doc582553.docdoc 8392cbca4a188b038a4ee855e738edc4c782725a2e8efc9ba0529eb8a7c965b9Virustotal results 32.79% Heodo
2018-09-06Doc729968.docdoc 51d3d70235769a5fd43d542aa1c60a0f88ca82b4ccf51a40225a8a29675e77c5n/a Heodo
2018-09-06Doc7745.docdoc 9ac3e1dea648ef282333855dbbe7e3746614a2eedfc2dee3678125a6423fc063Virustotal results 27.87% Heodo
2018-09-06Doc516488.docdoc 2ebf78f82fc5214e25fdb8426a40c0d8da384c0dd3bd0a9f723e6919fc8b567fVirustotal results 28.33% Heodo
2018-09-06Doc6775.docdoc 7fbf992a9b4f326625a127f23dcf80b7e4b2302ad73b959a889eba6086088c98n/a Heodo
2018-09-06Doc9332.docdoc ad12b32bee745df9dfb325e78843a3e542c2efb198e7cca0ae4fffb98d0219b9Virustotal results 49.18% Heodo