URLhaus Database

You are currently viewing the URLhaus database entry for http://lpgvitarakchayanalimited.in/hts-cache/ozRcoAzSNHssbEHZEl2lcCAGVwn9FLPjkBFS/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:956809
URL: http://lpgvitarakchayanalimited.in/hts-cache/ozRcoAzSNHssbEHZEl2lcCAGVwn9FLPjkBFS/
URL Status:Offline
Host: lpgvitarakchayanalimited.in
Date added:2021-01-13 02:18:07 UTC
Last online:2021-01-13 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-01-13 02:20:03 UTC to CloudFlare Anti-Abuse API)
Takedown time:4 hours, 43 minutes Good (down since 2021-01-13 07:03:24 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-13IT2ZYV9A.docdoc 1b833b967a9b2dc29a4982addef8500c6480991a907be97fdccc799d21dd337bn/aHeodo
2021-01-13RUSRLX08NZ079O.docdoc 866744b3695d0b0c7d2e887aa1d3b2be95583ae6a88f31fbc0f4f6c150477804Virustotal results 29.03%Heodo
2021-01-13J24S3U2S.docdoc a4b2c79223d87bc6523817efc6ae96ddb3a517b509a0907f5aa47ed93cf1bd78Virustotal results 26.98%Heodo
2021-01-13EIF9IRDZ3.docdoc c3b7ff21320580568f7e1b978e5374ccb1a15fe34c35f94eb2463c1570faf385n/aHeodo
2021-01-13FARB1TMI9ATHK02Q.docdoc 274ec03dc6e83bf12177697052207e2413c15948b42bb11df4a4ee110eb84803Virustotal results 26.98%Heodo