URLhaus Database

You are currently viewing the URLhaus database entry for https://docsecure.top/xls/00999212.xls which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:703575
URL: https://docsecure.top/xls/00999212.xls
URL Status:Offline
Host: docsecure.top
Date added:2020-10-16 19:26:40 UTC
Last online:2020-10-19 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: p5yb34m
Abuse complaint sent (?): Yes (2020-10-16 23:24:18 UTC to anti-spam{at}list[dot]alibaba-inc[dot]com)
Takedown time:2 days, 11 hours, 54 minutes Poor (down since 2020-10-19 11:18:42 UTC)
Tags:opendir Ostap xls

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-17n/adoc 8fa354ec4b88213acb700e4eb3065bf95a8a8f1b1a0b09c8cc1e0afd114d5039Virustotal results 13.33% 
2020-10-17n/adoc b862e6a61b5437dc608de9b62221c3f0091f3f363d11b5e70b5918b07bb80a43Virustotal results 13.33% 
2020-10-17n/adoc 41c04421fd201dbfadcd55e91d9ac31314e15701f90057fbcd4b9c7a699629edVirustotal results 0.00% 
2020-10-17n/adoc 2032a90966fe2ae7b998345430e2abb47cd0ef10620d29e9ebb50d4c82814aecVirustotal results 13.11% 
2020-10-17n/axls 5dd68ad5c80c141af9ec53397dce5d2312ff9f28a62b45b9d240f547f67afbf3n/a Ostap
2020-10-17n/adoc f4707438eb8ae06d7cc93c9abfe31bd906f746fa23198bc4cbb8109c0897e50an/a 
2020-10-17n/adoc 3b200dac68a8990288490c99e57da7a015cab918e8b26dfe78baba77b9b245b0n/a 
2020-10-17n/adoc 6534660abb2761d564109a6b6031a3a733f808e79e2a69e3f4d7cb1fb526db33n/a 
2020-10-16n/adoc 67621584d2812669d9a210d02c37c01e0c32c06008277e57b0f4e4f788a52c23n/a