URLhaus Database

You are currently viewing the URLhaus database entry for http://eurokulture.missouri.edu/wp-content/2cdHNQ5CXMWp4Bcp3aoXWMEV4Vfam2YCVJ8PH/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:945342
URL: http://eurokulture.missouri.edu/wp-content/2cdHNQ5CXMWp4Bcp3aoXWMEV4Vfam2YCVJ8PH/
URL Status:Offline
Host: eurokulture.missouri.edu
Date added:2020-12-30 07:27:06 UTC
Last online:2020-12-30 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-12-30 07:28:08 UTC to dnsmanager{at}missouri[dot]edu)
Takedown time:8 hours, 9 minutes Good (down since 2020-12-30 15:37:39 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-3089CRBABP3.docdoc bd913e9c89867c5d668cbc999e4044f62c9efac8f02e6be4066845c3bd2d7171n/aHeodo
2020-12-306W0FQJOBEBXGF.docdoc 95ba3cf22cb9f5dd117b89e7e485783faf1c1bed03669c0724b71a634990bb5bVirustotal results 28.57%Heodo
2020-12-30FVQUSXJE.docdoc 40862d0b1aafeb508f97893ee74e2b324ec7e1eb96bc924b3248b9174e43c1afVirustotal results 28.57%Heodo
2020-12-30YR1ELJILK798.docdoc 76283689c929908f5d50f086c098143c982d804cceec6b10d530d67f181704ebVirustotal results 28.57%Heodo
2020-12-30JCRW4815P4U.docdoc 39e24a73656d38c94f1c4abc67b93be532659af2fa07966c372424780e54cb24Virustotal results 27.42%Heodo
2020-12-30UVHLFHQO.docdoc 6ae13a12baaf1966a1b672ec45aaff934ef60f13fcd6d0df780ca587955ae5afn/aHeodo
2020-12-301L6HBXBREM.docdoc 3c2ed9471901c2a6ecb559a6af4a9ae579b9e6e93ffd08595f002d8b0ea1afd9Virustotal results 27.87%Heodo
2020-12-30PUAVJJX8DDRNA.docdoc 26eaeed81c06cdcb31127bb193787c4fac6e77fda2c26b984b00ea10f153450bVirustotal results 28.57%Heodo
2020-12-30MQ844OUK3.docdoc 3c5a0e1906eb2a02dc597a235c6ba9b3faccc526ef1aa3b2f34f462257ff7261Virustotal results 30.00%Heodo
2020-12-30OTOCSLQLFQL7C.docdoc dcb7872fbcfd5c4d82665480c0e8995b991d25272fbd21eaf39d7b376421fb95n/aHeodo
2020-12-3001XVZGQ.docdoc 4f7771f7916dab6379a8d67278d7b2e73ea25fa1352afbf2e9bba877cfd31846Virustotal results 28.57%Heodo
2020-12-30A6VOL4UNZ.docdoc de4a09254125ce840b5896e5d3916478c404f565764aed34eb1506ea0cb87402n/aHeodo
2020-12-302MOYLV2N7H16ZE.docdoc 30123f50820037c7241d7a3052aca6a9ebb345b5b4ceccfd1ba9563356e15b50n/aHeodo
2020-12-304MVKZGN1CP.docdoc 689f985fe58887c75bd77a41f8c60cdcfe8d7645f0dc7c324454cf6321a5949dVirustotal results 26.98%Heodo
2020-12-30UJ6YE4CU.docdoc 8559a7c90f40194b1cc0ce4e508db1896ac0bc90e0161c4469176ef0fd1f865an/aHeodo
2020-12-3087WXIRVOOQ.docdoc 130e863a38580cb4113b3a1ac7820638134d6a548115152e3e1bd910d88240e6n/aHeodo
2020-12-30F3L9FR.docdoc 5ff309e15ed409297bf10da249a2d68038b70b8032f305f43310e8930cc7d606n/aHeodo
2020-12-300PRZP0VRPX8P.docdoc 3cf8ba8f690f6ea16120329967cdbaa0a7d30af951bcd991eec00356ebe46301n/aHeodo
2020-12-30PZD98ASGAS353.docdoc 81c53ed228ffde29d71ceab29c0cad80bee160c21b5160091f0d85ef6fe9fa76Virustotal results 24.19%Heodo
2020-12-30G2L4T2EQQQHE.docdoc 6ea37605aea5591d5271248f640a3dbeb9edec2ae1fcef4954213d025a812d4en/aHeodo
2020-12-30G4THHFSW7R7WLO.docdoc 6afddcbf7a8a64702774f4bee529ef01e20567882777318dad0e184eadeb80c2Virustotal results 22.58%Heodo
2020-12-30B2GFH3N2.docdoc c6333efba033ab3aa174d7b6254aa11c1b7c56ae806599e8b9361bf603477a09n/aHeodo
2020-12-30VOCUEWR72ESUP3.docdoc e6e87249794fda1579b1f24987196123620373f600888cba1f2cb3a53b4dd17an/aHeodo
2020-12-30QH4135.docdoc f075b561422f41b4412421cd0aa5bbcb988f960c4c632de46179b64e8467601cn/aHeodo
2020-12-30ZP9NB00E.docdoc 34d114c948d93bbce1a1b9ecc92c641ef3c8ca4ec755ce893e55f8b89f7c4c54Virustotal results 22.22%Heodo
2020-12-304ORNMGWMC8K5RT.docdoc ee3c654155c2ad1cdedb1baa923add0335475dbd69432b7c9ce71e34d2f3c15bVirustotal results 22.22%Heodo