URLhaus Database

You are currently viewing the URLhaus database entry for https://docsecure.top/xls/00959707.xls which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:703599
URL: https://docsecure.top/xls/00959707.xls
URL Status:Offline
Host: docsecure.top
Date added:2020-10-16 19:28:59 UTC
Last online:2020-10-19 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: p5yb34m
Abuse complaint sent (?): Yes (2020-10-16 21:10:26 UTC to anti-spam{at}list[dot]alibaba-inc[dot]com)
Takedown time:2 days, 14 hours, 21 minutes Poor (down since 2020-10-19 11:31:47 UTC)
Tags:opendir Ostap xls

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-17n/adoc f55ff051218fee64c1c4105c6a2b6e992e77e26e822d97cd96a184cddeb5c23dVirustotal results 14.75% 
2020-10-17n/adoc 9699ae64f0d71cb6c48926e421f5e3541ec60d006f72944bbcfc0b2021973782Virustotal results 13.11% 
2020-10-17n/adoc f4707438eb8ae06d7cc93c9abfe31bd906f746fa23198bc4cbb8109c0897e50an/a 
2020-10-16n/adoc fdf83258757bd0c46792d593c85a85af7e7314be17d474add841481a8d7a9211n/a 
2020-10-16n/adoc 89e2146a8d62fc25c1d3628fd8697c7118bd8ed83568008b019d11152ad357d5n/a 
2020-10-16n/axls ebdeebee487ea42b7bee36c7f3b9ddd59d5fdc06e7a633492f44a2f08e93b1ecn/a Ostap
2020-10-16n/adoc f25855f5f9ef2ad6e33c1ebb2dd11e8fa648a2ca77628834e493a09047da16e1n/a