URLhaus Database

You are currently viewing the URLhaus database entry for http://pineislandok.com/cgi-bin/RU0laGseQgcLel2iKOkEBbGXvqalg7JM0k/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:763592
URL: http://pineislandok.com/cgi-bin/RU0laGseQgcLel2iKOkEBbGXvqalg7JM0k/
URL Status:Offline
Host: pineislandok.com
Date added:2020-10-29 04:44:04 UTC
Last online:2020-10-29 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-29 04:46:03 UTC to abuse{at}uk2group[dot]com)
Takedown time:10 hours, 41 minutes Good (down since 2020-10-29 15:27:09 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-29Dat_BJY_100120_UFR_102920.docdoc 1238adf50fa7010276bea39eb50bfd1915d8288181fdc1a10682755abc9b4897Virustotal results 41.27%Heodo
2020-10-29DOC_RT5619398276QQ.docdoc bb6a910117fc42075d0f29a1d7f63f94814e7f787223e3af617ca5018180a77en/aHeodo
2020-10-29INF_KQF_100120_JKL_102920.docdoc 6a727c9f4dd9cbd0b46dfbe10424610f304eed108280c8e6bed80618b45fa65en/aHeodo
2020-10-29DOC_ON6530013541KQ.docdoc 4c8eeccd2a16f80874acd0057d5ec622d3701e32a3198bdb763f39e39ea28982Virustotal results 38.10%Heodo
2020-10-29doc_ZUFGYPGT2CBVDPHC.docdoc 67bf175be626fe3ee59387c2c162c6fe009315964e0d4de581dc1a94daab51c5Virustotal results 37.10%Heodo
2020-10-29DOC_TZ0493081551LB.docdoc ed5a9cf9f1dc54e472bd41658cb3f19ec7eafcb34da7257c6407697b879a0535n/aHeodo
2020-10-29FILE_94039516.docdoc 2bdfb721e168f6ffb5c4608463d3426b3637d3e4af4dc8716ac401e7ab3f4efbn/aHeodo
2020-10-29Mes_41846933981934811338435.docdoc c353f3d728d9ff052a3ee47d7dd1c5e8bcd8813238a8e20f2f2d0a97fe5bd8e0n/aHeodo
2020-10-29MES_85692735.docdoc 17d6d17702d158eda616b2096600e47fe0808914ae353ec5009763a5de5fffe7n/aHeodo