URLhaus Database

You are currently viewing the URLhaus database entry for http://secretariaextension.unt.edu.ar/wp-content/XK1uBZL which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:79255
URL: http://secretariaextension.unt.edu.ar/wp-content/XK1uBZL
URL Status:Offline
Host: secretariaextension.unt.edu.ar
Date added:2018-11-13 16:02:07 UTC
Last online:2018-11-15 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: JayTHL
Abuse complaint sent (?): Yes (2018-11-13 16:04:03 UTC to ipadmin{at}teco[dot]com[dot]ar)
Takedown time:1 day, 21 hours, 52 minutes Poor (down since 2018-11-15 13:56:10 UTC)
Tags:heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-11-157800027.exeexe 7e99ae088fa7c09a5ca32782a99fa54f137b9055e69f81b6c1bfc3f0a6498759n/a Heodo
2018-11-1518556.exeexe 017a38c8b1ea67cc72ade902f1c5551a785f5c5a1f515fb43b5e7d2109225cb5Virustotal results 25.00% 
2018-11-1599459.exeexe fdda316e38ce6f1719183edad2e3c8bce5168e24411176b550b16b0a4064b215Virustotal results 26.15% Heodo
2018-11-15902278.exeexe 42ebc1601b9ac0b38e18b09f48e74bd2aa8f16b097d1493bd09ac9746bdb3eeeVirustotal results 16.42% Heodo
2018-11-1463902.exeexe 96650fb7488f2d2b7c6c88f5b02428cdc5b54a61f513a28b290450d10b24ff08Virustotal results 19.70% Heodo
2018-11-146.exeexe 1ac4ea3234156dc1764b8bde752bd199522548ef4422452fe23dd0174271130aVirustotal results 14.93% Heodo
2018-11-1474.exeexe b2c5e2ce8d94d854f39b418afdbb373e1cf9e40d273046255350366e177156b9Virustotal results 26.87% Heodo
2018-11-144324.exeexe e6c95255a8926b0f99d7b83bd00b7062bea8e815838e7e8cda471edc32253ffbVirustotal results 11.59% Heodo
2018-11-14394602.exeexe 21248a7f14f2159fd4768e64b1c531358a793c558966dca00aefcbb7ed217c67Virustotal results 25.37% Heodo
2018-11-1345943770.exeexe f2cbb164dd9defb79c2bc94f075dfaa84cd9fd285f44b8ea1d7ca1c81a537c22Virustotal results 29.41% Heodo
2018-11-135204780.exeexe c5f167ca3957df9e7c05605924ae519af1b1f24db548d090edf9646d6527a5e8Virustotal results 24.62% Heodo