URLhaus Database

You are currently viewing the URLhaus database entry for https://docsecure.top/xls/003812596.xls which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:703483
URL: https://docsecure.top/xls/003812596.xls
URL Status:Offline
Host: docsecure.top
Date added:2020-10-16 19:14:00 UTC
Last online:2020-10-19 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: p5yb34m
Abuse complaint sent (?): Yes (2020-10-16 19:14:03 UTC to anti-spam{at}list[dot]alibaba-inc[dot]com)
Takedown time:2 days, 16 hours, 7 minutes Poor (down since 2020-10-19 11:21:47 UTC)
Tags:opendir Ostap xls

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-17n/adoc 67621584d2812669d9a210d02c37c01e0c32c06008277e57b0f4e4f788a52c23Virustotal results 13.33% 
2020-10-17n/adoc d3e74e5a08244e8a8fc9aa7b27bcee5815913f0fe156d9ac4022abcedbadbe1cVirustotal results 13.79% 
2020-10-17n/adoc 4e17829a68378e8139dda2cbc637e7642b11c21625869624374542d6b461e0dan/a 
2020-10-17n/adoc 3b200dac68a8990288490c99e57da7a015cab918e8b26dfe78baba77b9b245b0n/a 
2020-10-17n/adoc 612a8d5b1362ff386db72600ca6a8cca06004f03957978ab6c757fd5910b6425Virustotal results 0.00% 
2020-10-16n/adoc 78e2a109025f3f8b2ea9c3f65ac552e606fcdc973211bfe40641fd4b9fade373n/a 
2020-10-16n/axls 10564d2e1d274cd481111bbdcfa4c72ad49e26dc63ffed6b7c32c682bc686fe2n/a Ostap