URLhaus Database

You are currently viewing the URLhaus database entry for http://dev.probook.com.my/ogretmenevi/lm/gyd7HjHy99/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:722445
URL: http://dev.probook.com.my/ogretmenevi/lm/gyd7HjHy99/
URL Status:Offline
Host: dev.probook.com.my
Date added:2020-10-20 08:29:09 UTC
Last online:2020-10-20 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-20 08:30:07 UTC to abuse{at}shinjiru[dot]com[dot]my)
Takedown time:13 hours, 4 minutes Good (down since 2020-10-20 21:34:50 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-20Doc_20201021_1906.docdoc 14341abb6bb85039d0ec948995c679e60a9addac45920d76c1f148f248aa739bn/aHeodo
2020-10-20Doc-20201020-6911.docdoc 071ab84fd86c494867eb2b92f41e06933f08a09b7185c099275d8b8629c72a2dn/a Heodo
2020-10-20REP_2020_10_20_O22953.docdoc f47a31b24d3f8f56cf2aef128a19c5ffb5a3684c1a183c6b4c59aa7e39477da0Virustotal results 35.59%Heodo
2020-10-203184JH_909941.docdoc f159bae8227ac3d792dfc51b38a1cdf251cc1a507e207b7a49236c7908a01480n/a Heodo
2020-10-20ARC-20201020.docdoc fcc2338ece859e3e1922884428c4bb2744b9789c374094c48fd13ec87346731fn/a Heodo
2020-10-20F282_2020_10_20_3374502.docdoc 7c24ecbd3158a75c284d67df1b1e21fafc77cf6e30ff766138c97165ff448fa0n/aHeodo
2020-10-200823WSF_20201020.docdoc 3990d3ddd544db77ec9f7db002a4003b3fadade6921d821f8fc41fb38c793e14n/aHeodo
2020-10-20MES.docdoc 0b00749d78b513081990655af401c2601f50fce225b7148879646c3c8d68c35cn/aHeodo
2020-10-20File.docdoc b8b0cad2bf62ed1d73b6eeca3a4b7a81478dcceff11ca6bceececdebad5e5237n/aHeodo
2020-10-20UNTITLED 20201020 5149176.docdoc 40ddbb8558a12bb4dfb5cffb37e8a335f825fd392e47ff4c13c5a1fc275da77cVirustotal results 34.62%Heodo
2020-10-207906_2020_10_20.docdoc 3e6c5f430b82245a6dc68c07caea0e4b8e477e848a6c3834105fa4b913e2c1bbn/aHeodo
2020-10-2065969344-20201020-8607.docdoc 2762f9e4fb3fd982938d550c44a28ec54fe08ce9ab7e20c79cc50895e45763a2n/aHeodo
2020-10-20List 20201020 393769.docdoc 065c898b6eb9319d32a4977ffef6b0cf820ea8610803f1b16b429303ee186064n/aHeodo
2020-10-2020392923 2020_10_20 MWE0851.docdoc 5fdf33108d1c18993c46032eda01b6f71879c523d22deb7bbdd1cfd453733097n/aHeodo
2020-10-20300OE CXS187209.docdoc dc3b45f1416ab3f1c9bf6ab1700e98205047906775831c6fc72cf4cde3dbb6ebn/aHeodo
2020-10-20UNTITLED-2020_10_20-98395.docdoc add1cbdbfd93e87805b7590003c94be39ce788ec9060cfc50ff06575ad68b218n/aHeodo
2020-10-20doc 2020_10_20 K672.docdoc 56fff56cca1be3dba8d3e6f406546adf942c8d03666c23d3d352e524e429e4bfVirustotal results 36.67%Heodo
2020-10-20DAT_20201020_004.docdoc 8d475f0afd3041e1209765768042961e075a889b563f9e19bd8344a5503349efn/aHeodo
2020-10-20doc.docdoc 9a2f1d5263c3f7e0728057172230fe567d39bc1affca98ecb30a6e3bd4c0d2fdVirustotal results 37.70%Heodo
2020-10-20MES_JNV11000.docdoc d6f8394123fb448f15334f970c68752ada9b0c7e97a331feff55f235c05be5e5n/aHeodo
2020-10-20arc_2020_10_20_JH3041.docdoc 3484f556c190715caf9e1357b6b11fda15003e8b3d350d3248b6ed04d827d5d0Virustotal results 35.85%Heodo
2020-10-20Arc 2020_10_20 59596.docdoc fe333a9f370254c15b5913f5bac702faddde7990452537d4fe148c25fd3f9a91n/aHeodo
2020-10-20dat-20201020-GO1300.docdoc 253a23db09dd9cf26085981b5fbbb900a9c07a2a4880ee60cdb4233356f78c6an/aHeodo
2020-10-20Doc 20201020 543864.docdoc 51b513cca5a4e90be640d97b66c713c274532ca0da6b3001c9c9bdf5aed5b050Virustotal results 29.82%Heodo
2020-10-20mes 20201020 W700.docdoc cbfac274cba216d5a1ccbcfd45280bd6973869ccbb179a8900b159b14c32fbbfVirustotal results 33.96%Heodo
2020-10-20mes_80021.docdoc 6b0720f74545087c277ae287138f2a1c5aaab67e851bf4fb6e69c3ed5ef18d04Virustotal results 32.26%Heodo
2020-10-20Rep BGX224930.docdoc b60a54ae11a2afb4fe1566bb6444e4518cd638ba7cade354005ca6ac536a9b7eVirustotal results 32.26%Heodo
2020-10-20WSV11805-20201020-5879.docdoc 56b16ce4e1a1857db09af1f4e254fcd7ee8e69a23c1240dde0a0fa457f5240bdn/aHeodo
2020-10-20Dat 2020_10_20 43006.docdoc 2462812480e5804ab1a69d151bc6d95aef35a95e12e92b1fdc38baac4f87d9bfn/aHeodo
2020-10-20mes 2020_10_20 TAJ9605.docdoc 5b3069c3061e3941471dff62687a2a7ccbda231abe76b3f07b58f763abaa6d10Virustotal results 31.15%Heodo