URLhaus Database

You are currently viewing the URLhaus database entry for http://lancang.desa.id/aACzS-SiJWodCeFf7UWOe_GweDpwAb-sCr/Ref/170522652INFO/En/Scan/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:97154
URL: http://lancang.desa.id/aACzS-SiJWodCeFf7UWOe_GweDpwAb-sCr/Ref/170522652INFO/En/Scan/
URL Status:Offline
Host: lancang.desa.id
Date added:2018-12-18 13:51:33 UTC
Last online:2019-01-30 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2018-12-18 13:52:02 UTC to abuse{at}jagoanhosting[dot]com)
Takedown time:1 month, 13 days, 1 hours, 41 minutes Bad (down since 2019-01-30 15:33:27 UTC)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-12-24this-site-is-virus.docdoc c2e393ff568f4a87ce48011f10664138e569710f56ddc0462aa7f36bdad5ecadVirustotal results 0.00%
2018-12-19PAY5802125979531.docdoc a1ff2879fd1afa085b10c39e213c55c3534ce0f2b828eab3bff611fac0e38bd4Virustotal results 21.67% Heodo
2018-12-19ATT17213079939.docdoc 12a94b39c4078b5eae317a2de582fa83f1826ef147f818b555d18c7cacbd2caeVirustotal results 28.33% Heodo
2018-12-19PAY47354361389.docdoc c8f6ba6b9e47131d1541a0f169ef1633d91e13bc14fdb57235dcba559d8f523bVirustotal results 30.00% Heodo
2018-12-19US63982636091.docdoc 0aaf85dc89203908fe46acb4c437cc40a27042707eb5b126bc74f65a14503091Virustotal results 24.59% Heodo
2018-12-19US55256269245895597060.docdoc 248b503e7c2ac680d046e3924e0848da7b97de1f2e7fb9b19d6c2c71988aff3bVirustotal results 28.81% Heodo
2018-12-19ATT995929011280.docdoc 2c058c3073e635a11612eb6d27fef735b649045adad61ad29bd40b8ab180d2c0Virustotal results 26.67% Heodo
2018-12-19ATT1991074955225073070.docdoc f183ad6fb5030527b7fe456b3385a6e394938184ea78158535e8c3f4a48460f5Virustotal results 26.67% Heodo
2018-12-19PAY577265224.docdoc 14076c9e56136873a1e774ce709a56ab9775629b74eacb4c46829a7014e1812an/a Heodo
2018-12-195340009679.docdoc aceaca2a5b483f991c93162935025122fc98d3063e213cf95d8d218f4d8c273eVirustotal results 31.67% Heodo
2018-12-19US9137977843045249829.docdoc f9279fb4dd983b2d7384284774bcf5f31f853275aadf124fd235dad382b594fdVirustotal results 24.59% Heodo
2018-12-19PAY9152155853079628.docdoc 4c4ea03c1b30cdf630aeae93eb1abf0a6fc6e5ce103cba65c12d4290b91ecdccVirustotal results 26.67% Heodo
2018-12-19522878764488497930.docdoc b28e8f562bda44771dea997e5faac39f0dc9a0130297ac78f0da2d7186e7cb7an/a Heodo
2018-12-19US05547706199812492.docdoc 38765ee52f16c51b63d15552d0ed10cef2bff4c7040453c8f59897b142db1793Virustotal results 27.12% Heodo
2018-12-1945122096325087559232.docdoc b84b260a78815d9c6d73901cfa8eafc168fb84731b58490aad3eada28d1f7075Virustotal results 23.33% Heodo
2018-12-19ATT969781619373060754.docdoc f2022eaa8c36cb188404c2451f0e16743daea73936d884a7603443031069ed33Virustotal results 25.00% Heodo
2018-12-19ATT1498802966573534.docdoc d053a828911fa34141e6e19cb13d989a3c96932d7d348a3a6d9c94f6b1dcc06eVirustotal results 25.00% Heodo
2018-12-1904417131427439.docdoc 51d70396555367fa60f678873ebc8023bab8833c37eab4770a38b830fcea6360Virustotal results 25.00% Heodo
2018-12-19US23370026604541378059.docdoc c8dcc90e3dafa9333a74350466330a04337a522598076e97fc54a07b62e31d8eVirustotal results 20.00% Heodo
2018-12-19ATT5104000597803.docdoc c8a054e8d0e85dddc5dd88e2bc48fc855f7768d4f8aa1983f7b024382c6ef1baVirustotal results 23.73% Heodo
2018-12-19US023031041.docdoc c2245d89df0a0f4fdd164a942fcc25c93de8b71e0bedbe3ad75d80fa43b85c69Virustotal results 23.33% Heodo
2018-12-19ATT1455261871.docdoc 823a53be0ed235f64f026f94cac492096b7662e410947903a0b9691b5a3b64ean/a Heodo
2018-12-19ATT148500309243205272.docdoc 6eeebfd2c3e7cebfb0ef3cd6c9bd6515e945949d60834ce9db5359d1b2cbd154Virustotal results 32.20% Heodo
2018-12-18US82774037562400652748.docdoc a84d4119fcee573646493b6fc5e610acb339256eb0b68bbea49f5913ea678d32Virustotal results 20.34% Heodo
2018-12-18PAY5390817158792215915.docdoc 3fdefadaa53fffe776fe2084597e6c44ccf2b61c50c1be3d6823c07653e41c97Virustotal results 28.81% Heodo
2018-12-18US23812242320215808.docdoc c8212610730cc6902883eee501e0ba8a2b043b880f7ab374df4a5c585d88ac8bVirustotal results 25.86% Heodo
2018-12-18PAY43240721838972.docdoc 536457cd467025bcbabc35b8466cd70dd739ebc7253a934a2f6705e02b6916c2Virustotal results 27.12% Heodo
2018-12-18ATT713820045276342740.docdoc ba5c74a4b7272eeba7f8797208802fba4c388f7e4e258a8242ed77d96dd86bb8Virustotal results 25.86% Heodo
2018-12-186595476823499.docdoc aca7d5835a662b967ffad94af449e80523bcdaf3b2b8aa60064d597075eb52e8Virustotal results 25.42% Heodo
2018-12-18US52001420577420.docdoc a88d162cd07ca1123e7809cc07844189f6e1c470937113266ec29a4a6b33d26bVirustotal results 25.42% Heodo
2018-12-18ATT251115207.docdoc 53077abaaaef4ea9b2cca0e4895c43e3c6963ad7b9daf246a92440808ba797d3n/a Heodo
2018-12-18ATT00746294386802622.docdoc c5f26ae65f249bba96dd1cfb45cbc6bef35c1908aaeb453244076046a4bc9dean/a Heodo
2018-12-18844118218771241047.docdoc 30f99eb866da4e20026a2f541f58b96653dd762eae7cd2ab779bff82c80c2650Virustotal results 25.86% Heodo
2018-12-18ATT5314828030042.docdoc 6901bc3d2e704e629c5df3084600d9a4db41a3fcd2a1e36eca0dbabbdc80131fVirustotal results 25.42% Heodo
2018-12-18PAY74067976764701.docdoc 62c478564f365a84531c669287f28adf190533cc902158ecdbdee370b7faee6an/a Heodo
2018-12-182032857176075.docdoc 30293b78c5d40f68a8f3bcf798a53cf8575ab96aa9f9c3ac3656abd2be0ff6afVirustotal results 25.42% Heodo