diff --git a/src/URLhaus.csv b/src/URLhaus.csv index 51938f8a..0ddb93c1 100644 --- a/src/URLhaus.csv +++ b/src/URLhaus.csv @@ -1,19 +1,21 @@ ################################################################ # abuse.ch URLhaus Database Dump (CSV) # -# Last updated: 2018-10-11 00:46:03 (UTC) # +# Last updated: 2018-10-11 00:52:33 (UTC) # # # # Terms Of Use: https://urlhaus.abuse.ch/api/ # # For questions please contact urlhaus [at] abuse.ch # ################################################################ # # id,dateadded,url,url_status,threat,tags,urlhaus_link +"66654","2018-10-11 00:52:33","http://uchservers.ga/macdon/mac.exe","online","malware_download","exe","https://urlhaus.abuse.ch/url/66654/" +"66653","2018-10-11 00:52:32","http://crosspointme.com/invoice/bettina.venner@sa.gov.au","offline","malware_download","doc","https://urlhaus.abuse.ch/url/66653/" "66652","2018-10-11 00:46:03","http://uchservers.ga/jeff/jeff.exe","online","malware_download","exe","https://urlhaus.abuse.ch/url/66652/" "66651","2018-10-11 00:46:02","http://uchservers.ga/yugo/yugoz.exe","online","malware_download","exe","https://urlhaus.abuse.ch/url/66651/" "66650","2018-10-11 00:39:02","http://uchservers.ga/fellas/fellas.exe","online","malware_download","exe","https://urlhaus.abuse.ch/url/66650/" "66649","2018-10-11 00:29:07","http://christopherlarry.com/logs/InvoiceAndStatament.doc","online","malware_download","doc","https://urlhaus.abuse.ch/url/66649/" "66648","2018-10-11 00:29:05","http://crosspointme.com/invoice","online","malware_download","doc","https://urlhaus.abuse.ch/url/66648/" "66647","2018-10-10 23:52:03","http://lithi.io/file/f69e.exe","online","malware_download","exe","https://urlhaus.abuse.ch/url/66647/" -"66646","2018-10-10 23:51:04","http://lockoutindia.com/wss/EE.exe","online","malware_download","exe","https://urlhaus.abuse.ch/url/66646/" +"66646","2018-10-10 23:51:04","http://lockoutindia.com/wss/EE.exe","online","malware_download","exe,Formbook","https://urlhaus.abuse.ch/url/66646/" "66645","2018-10-10 23:46:03","http://lithi.io/file/b114.doc","online","malware_download","RTF","https://urlhaus.abuse.ch/url/66645/" "66644","2018-10-10 22:57:03","http://graimmer.com/der/asr.exe","online","malware_download","exe","https://urlhaus.abuse.ch/url/66644/" "66643","2018-10-10 22:29:03","https://wj7hua.by.files.1drv.com/y4mNliFpz_rYG7PDnoyoNvtQ4_ToMty0v4rqtR4v0JaYlVpgzpgk36pwBioqjuVXrLKoMqo0FXe-3TXoYLX7exsrrsMGRs6eArqiqkmTPx5SlDcbOSq3AhCLBZr-wdf3ukYXieR96_ACFxgabTD1fOMCda_JNHwg4CMJroaVnJsP9expXbb7GMa1bR4E4hWQM1O-sOLwEAWUwNzMksOe30T1A/PAYMENT%201010.rar?download&psid=1","offline","malware_download","rar","https://urlhaus.abuse.ch/url/66643/" @@ -503,9 +505,9 @@ "66149","2018-10-09 04:17:11","http://download5.77169.com/soft/hacrktools/attack/200807/20080723hdmqqdd.zip","online","malware_download","rar","https://urlhaus.abuse.ch/url/66149/" "66148","2018-10-09 04:17:08","http://download5.77169.com/soft/hacrktools/other/active.zip","online","malware_download","zip","https://urlhaus.abuse.ch/url/66148/" "66147","2018-10-09 04:17:07","http://download5.77169.com/soft/hacrktools/chat/200603/QQfrnddel.zip","online","malware_download","zip","https://urlhaus.abuse.ch/url/66147/" -"66146","2018-10-09 04:11:10","http://download5.77169.com/soft/hacrktools/attack/200905/20090527webbug-77169.com.zip","offline","malware_download","zip","https://urlhaus.abuse.ch/url/66146/" +"66146","2018-10-09 04:11:10","http://download5.77169.com/soft/hacrktools/attack/200905/20090527webbug-77169.com.zip","online","malware_download","zip","https://urlhaus.abuse.ch/url/66146/" "66145","2018-10-09 04:06:13","http://download5.77169.com/soft/hacrktools/backdoor/200905/20090527blackhole-77169.com.zip","offline","malware_download","zip","https://urlhaus.abuse.ch/url/66145/" -"66144","2018-10-09 04:06:12","http://download5.77169.com/soft/hacrktools/backdoor/200901/20090112downloader-77169.com.zip","online","malware_download","zip","https://urlhaus.abuse.ch/url/66144/" +"66144","2018-10-09 04:06:12","http://download5.77169.com/soft/hacrktools/backdoor/200901/20090112downloader-77169.com.zip","offline","malware_download","zip","https://urlhaus.abuse.ch/url/66144/" "66143","2018-10-09 02:49:05","http://u1.huatu.com/wuhu/fujian/20120814113927927.rar","offline","malware_download","rar","https://urlhaus.abuse.ch/url/66143/" "66142","2018-10-09 01:40:05","http://www.excelbbs.com.au/Invoice_Oct_9.doc","online","malware_download","AUS,DanaBot,doc","https://urlhaus.abuse.ch/url/66142/" "66141","2018-10-09 01:39:33","http://specialtravels.org/CswinmVftV.php","offline","malware_download","AUS,DanaBot,geofenced,headersfenced,Sandiflux","https://urlhaus.abuse.ch/url/66141/" @@ -1197,8 +1199,8 @@ "65451","2018-10-06 08:09:33","http://n.didiwl.com/PC/QSAHDAHDADWDFZ_GR.ZIP","offline","malware_download","zip","https://urlhaus.abuse.ch/url/65451/" "65450","2018-10-06 08:08:02","http://n.didiwl.com/PC3/YYMSHDSDSDRJ_GR.ZIP","offline","malware_download","zip","https://urlhaus.abuse.ch/url/65450/" "65449","2018-10-06 08:07:32","http://n.didiwl.com/PC3/HXJYXICHAOFZ_FR.ZIP","offline","malware_download","zip","https://urlhaus.abuse.ch/url/65449/" -"65448","2018-10-06 08:00:06","http://n.didiwl.com/PC3/CPYHYJMJSRJ_GR.ZIP","offline","malware_download","zip","https://urlhaus.abuse.ch/url/65448/" -"65447","2018-10-06 08:00:04","http://n.didiwl.com/PC3/LYCHDSDHZ_GR.ZIP","online","malware_download","zip","https://urlhaus.abuse.ch/url/65447/" +"65448","2018-10-06 08:00:06","http://n.didiwl.com/PC3/CPYHYJMJSRJ_GR.ZIP","online","malware_download","zip","https://urlhaus.abuse.ch/url/65448/" +"65447","2018-10-06 08:00:04","http://n.didiwl.com/PC3/LYCHDSDHZ_GR.ZIP","offline","malware_download","zip","https://urlhaus.abuse.ch/url/65447/" "65446","2018-10-06 07:59:07","http://n.didiwl.com/PC3/HFCBBFQ_GR.ZIP","online","malware_download","zip","https://urlhaus.abuse.ch/url/65446/" "65444","2018-10-06 07:59:06","http://n.didiwl.com/PC/CFAMJQWSYC_GR.ZIP","online","malware_download","zip","https://urlhaus.abuse.ch/url/65444/" "65445","2018-10-06 07:59:06","http://n.didiwl.com/PC2/2015RBGWBMQD.ZIP","online","malware_download","zip","https://urlhaus.abuse.ch/url/65445/" @@ -1228,7 +1230,7 @@ "65420","2018-10-06 07:27:36","http://leshamcontinentalhotel.com/8Q/PAY/Commercial","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/65420/" "65419","2018-10-06 07:27:32","http://ruralinnovationfund.varadev.com/US/Documents/10_18","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/65419/" "65418","2018-10-06 07:26:42","http://178.128.229.3/bins/hoho.x86","offline","malware_download","None","https://urlhaus.abuse.ch/url/65418/" -"65417","2018-10-06 07:26:41","http://u29sohdos238spkd.com/TOL/nerkom.php?l=foke2.pod","offline","malware_download","Gozi,ursnif","https://urlhaus.abuse.ch/url/65417/" +"65417","2018-10-06 07:26:41","http://u29sohdos238spkd.com/TOL/nerkom.php?l=foke2.pod","online","malware_download","Gozi,ursnif","https://urlhaus.abuse.ch/url/65417/" "65416","2018-10-06 07:26:40","https://idontknow.moe/files/chuagj.jpg","offline","malware_download","HawkEye","https://urlhaus.abuse.ch/url/65416/" "65415","2018-10-06 07:26:38","http://modimedia.in/zom/U.exe","offline","malware_download","AgentTesla","https://urlhaus.abuse.ch/url/65415/" "65414","2018-10-06 07:26:36","http://l1r.org/Aloz%20input.exe","online","malware_download","autorunner,exe","https://urlhaus.abuse.ch/url/65414/" @@ -1236,7 +1238,7 @@ "65412","2018-10-06 07:26:29","http://muchoko.cf/gghhhg/leeee.exe","offline","malware_download","autorunner,exe","https://urlhaus.abuse.ch/url/65412/" "65411","2018-10-06 07:26:24","http://zcop.ru/java12.dat","offline","malware_download","exe","https://urlhaus.abuse.ch/url/65411/" "65410","2018-10-06 07:26:22","http://kr1s.ru/java.dat","online","malware_download","exe","https://urlhaus.abuse.ch/url/65410/" -"65409","2018-10-06 07:26:19","http://u29sohdos238spkd.com/TOL/nerkom.php?l=foke9.pod","offline","malware_download","exe","https://urlhaus.abuse.ch/url/65409/" +"65409","2018-10-06 07:26:19","http://u29sohdos238spkd.com/TOL/nerkom.php?l=foke9.pod","online","malware_download","exe","https://urlhaus.abuse.ch/url/65409/" "65408","2018-10-06 07:26:15","http://aeromodernimpex.com/onlinegoogle/04938832.exe","online","malware_download","Dridex","https://urlhaus.abuse.ch/url/65408/" "65407","2018-10-06 07:26:13","http://15666.online/666/xmrig_x64.exe","offline","malware_download","exe","https://urlhaus.abuse.ch/url/65407/" "65406","2018-10-06 07:26:12","http://15666.online/666/xmrig_nvidia_x64.exe","offline","malware_download","exe","https://urlhaus.abuse.ch/url/65406/" @@ -4266,7 +4268,7 @@ "62318","2018-09-30 05:48:02","http://jwciltd.com/AP3gkt2/","offline","malware_download","emotet,exe,heodo","https://urlhaus.abuse.ch/url/62318/" "62317","2018-09-30 05:28:05","http://www.heikc.com/kb.exe","online","malware_download","exe","https://urlhaus.abuse.ch/url/62317/" "62316","2018-09-30 05:26:03","http://darnellsim.us/doc/lamBODO.exe","offline","malware_download","exe,HawkEye","https://urlhaus.abuse.ch/url/62316/" -"62315","2018-09-30 04:57:29","http://5.fjwt1.crsky.com/201602/LOGKEY-V1.0.ZIP","offline","malware_download","zip","https://urlhaus.abuse.ch/url/62315/" +"62315","2018-09-30 04:57:29","http://5.fjwt1.crsky.com/201602/LOGKEY-V1.0.ZIP","online","malware_download","zip","https://urlhaus.abuse.ch/url/62315/" "62314","2018-09-30 04:57:23","http://5.fjwt1.crsky.com/200901/JPXG-V2.0.RAR","online","malware_download","rar","https://urlhaus.abuse.ch/url/62314/" "62313","2018-09-30 04:22:04","http://d04.data39.helldata.com/b57a056655c0c72293d619bfbdad8985/31152133/microsoft-office-2010-word-x64-exe","offline","malware_download","exe","https://urlhaus.abuse.ch/url/62313/" "62312","2018-09-30 03:08:11","http://58.218.66.210:8080/test","offline","malware_download","elf","https://urlhaus.abuse.ch/url/62312/" @@ -5002,14 +5004,14 @@ "61580","2018-09-27 22:45:14","http://pixelcrush.net/En_us/Documents/092018/","offline","malware_download","doc,heodo","https://urlhaus.abuse.ch/url/61580/" "61579","2018-09-27 22:35:07","http://palfx.info/Document/En/Invoices-attached","offline","malware_download","doc,heodo","https://urlhaus.abuse.ch/url/61579/" "61578","2018-09-27 22:25:05","http://177.132.77.115:17590/.i","offline","malware_download","elf","https://urlhaus.abuse.ch/url/61578/" -"61577","2018-09-27 22:14:06","http://uxz.didiwl.com/PC/NMCQBTFZ.ZIP","offline","malware_download","zip","https://urlhaus.abuse.ch/url/61577/" -"61576","2018-09-27 22:13:11","http://uxz.didiwl.com/pc/dsgjrja.zip","offline","malware_download","zip","https://urlhaus.abuse.ch/url/61576/" +"61577","2018-09-27 22:14:06","http://uxz.didiwl.com/PC/NMCQBTFZ.ZIP","online","malware_download","zip","https://urlhaus.abuse.ch/url/61577/" +"61576","2018-09-27 22:13:11","http://uxz.didiwl.com/pc/dsgjrja.zip","online","malware_download","zip","https://urlhaus.abuse.ch/url/61576/" "61575","2018-09-27 22:13:06","http://baatzconsulting.com/487390VLLB/BIZ/Commercial","offline","malware_download","doc,heodo","https://urlhaus.abuse.ch/url/61575/" -"61574","2018-09-27 22:04:21","http://uxz.didiwl.com/PC/YSDXYQNFZ.ZIP","offline","malware_download","zip","https://urlhaus.abuse.ch/url/61574/" -"61573","2018-09-27 22:03:08","http://uxz.didiwl.com/PC/KEKOUKYKCJ.ZIP","offline","malware_download","zip","https://urlhaus.abuse.ch/url/61573/" +"61574","2018-09-27 22:04:21","http://uxz.didiwl.com/PC/YSDXYQNFZ.ZIP","online","malware_download","zip","https://urlhaus.abuse.ch/url/61574/" +"61573","2018-09-27 22:03:08","http://uxz.didiwl.com/PC/KEKOUKYKCJ.ZIP","online","malware_download","zip","https://urlhaus.abuse.ch/url/61573/" "61572","2018-09-27 22:03:04","http://ruforum.uonbi.ac.ke/wp-content/uploads/En_us/Payments/092018","online","malware_download","doc,heodo","https://urlhaus.abuse.ch/url/61572/" "61571","2018-09-27 22:02:05","http://kantauri.com/Document/En/Past-Due-Invoices","online","malware_download","doc,heodo","https://urlhaus.abuse.ch/url/61571/" -"61570","2018-09-27 22:01:06","http://uxz.didiwl.com/PC/LNBCZCJ.ZIP","offline","malware_download","zip","https://urlhaus.abuse.ch/url/61570/" +"61570","2018-09-27 22:01:06","http://uxz.didiwl.com/PC/LNBCZCJ.ZIP","online","malware_download","zip","https://urlhaus.abuse.ch/url/61570/" "61569","2018-09-27 21:42:45","http://egomall.net/US/Payments/092018","online","malware_download","doc,heodo","https://urlhaus.abuse.ch/url/61569/" "61568","2018-09-27 21:33:08","http://www.dobre-instalacje.pl/logs/recu.exe","offline","malware_download","exe,njRAT","https://urlhaus.abuse.ch/url/61568/" "61567","2018-09-27 21:33:07","http://49.71.118.101:62734/.i","online","malware_download","elf","https://urlhaus.abuse.ch/url/61567/" @@ -5401,7 +5403,7 @@ "61171","2018-09-27 02:02:33","http://marketers24.com/EN_US/Documents/09_18","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/61171/" "61170","2018-09-27 02:02:24","http://clickdeal.us/EN_US/Clients/092018","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/61170/" "61169","2018-09-27 02:02:19","http://intergenstudios.com/doc/US/Invoice-Corrections-for-27/94","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/61169/" -"61168","2018-09-27 02:02:11","http://georgew.com.br/US/Clients/09_18","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/61168/" +"61168","2018-09-27 02:02:11","http://georgew.com.br/US/Clients/09_18","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/61168/" "61167","2018-09-27 02:02:01","http://sweatshop.org/EN_US/Clients/092018","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/61167/" "61166","2018-09-27 02:01:53","http://datamerge-llc.com/En_us/ACH/092018","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/61166/" "61165","2018-09-27 02:01:47","http://conscientia-africa.com/29YA/WIRE/US","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/61165/" @@ -6398,9 +6400,9 @@ "60165","2018-09-25 07:43:46","http://www.alliancelk.com/images/_vti_cnf/amdin.gate.google.update.php","offline","malware_download","AZORult","https://urlhaus.abuse.ch/url/60165/" "60164","2018-09-25 07:43:41","https://mandala.mn/update/three.exe","offline","malware_download","exe,Loki","https://urlhaus.abuse.ch/url/60164/" "60163","2018-09-25 07:43:26","https://mandala.mn/update/bros.exe","online","malware_download","exe,Loki","https://urlhaus.abuse.ch/url/60163/" -"60162","2018-09-25 07:43:09","https://mandala.mn/update/oi.exe","online","malware_download","AZORult,exe,Loki","https://urlhaus.abuse.ch/url/60162/" +"60162","2018-09-25 07:43:09","https://mandala.mn/update/oi.exe","offline","malware_download","AZORult,exe,Loki","https://urlhaus.abuse.ch/url/60162/" "60161","2018-09-25 07:32:09","https://storage.googleapis.com/web-sro/PS219368530BR.zip","offline","malware_download","zip","https://urlhaus.abuse.ch/url/60161/" -"60160","2018-09-25 07:18:14","https://mandala.mn/update/tkk.exe","online","malware_download","AZORult,exe,Loki","https://urlhaus.abuse.ch/url/60160/" +"60160","2018-09-25 07:18:14","https://mandala.mn/update/tkk.exe","offline","malware_download","AZORult,exe,Loki","https://urlhaus.abuse.ch/url/60160/" "60159","2018-09-25 06:59:29","http://195.181.212.33/razdzn","offline","malware_download","elf","https://urlhaus.abuse.ch/url/60159/" "60158","2018-09-25 06:59:18","http://178.62.84.108/AB4g5/Josho.mpsl","online","malware_download","elf","https://urlhaus.abuse.ch/url/60158/" "60157","2018-09-25 06:59:08","http://195.181.212.33/cemtop","offline","malware_download","elf","https://urlhaus.abuse.ch/url/60157/" @@ -6843,11 +6845,11 @@ "59718","2018-09-24 13:03:13","http://patch2.800vod.com/2013/ALI213-Gauntlet.v1.0.+2.Tr-Lingon.rar","offline","malware_download","rar","https://urlhaus.abuse.ch/url/59718/" "59717","2018-09-24 13:01:46","http://mandala.mn/update/z.exe","offline","malware_download","exe","https://urlhaus.abuse.ch/url/59717/" "59716","2018-09-24 13:01:42","http://mandala.mn/update/two.exe","offline","malware_download","exe,Loki","https://urlhaus.abuse.ch/url/59716/" -"59715","2018-09-24 13:01:37","http://mandala.mn/update/tkk.exe","online","malware_download","AZORult,exe,Loki","https://urlhaus.abuse.ch/url/59715/" +"59715","2018-09-24 13:01:37","http://mandala.mn/update/tkk.exe","offline","malware_download","AZORult,exe,Loki","https://urlhaus.abuse.ch/url/59715/" "59714","2018-09-24 13:01:33","http://mandala.mn/update/three.exe","offline","malware_download","exe,Loki","https://urlhaus.abuse.ch/url/59714/" "59713","2018-09-24 13:01:27","http://mandala.mn/update/sop.exe","offline","malware_download","exe","https://urlhaus.abuse.ch/url/59713/" "59712","2018-09-24 13:01:18","http://mandala.mn/update/one.exe","offline","malware_download","exe,Loki","https://urlhaus.abuse.ch/url/59712/" -"59711","2018-09-24 13:01:12","http://mandala.mn/update/oi.exe","online","malware_download","AZORult,exe,Loki","https://urlhaus.abuse.ch/url/59711/" +"59711","2018-09-24 13:01:12","http://mandala.mn/update/oi.exe","offline","malware_download","AZORult,exe,Loki","https://urlhaus.abuse.ch/url/59711/" "59710","2018-09-24 13:01:06","http://blkgg.org/ulpo.exe","offline","malware_download","AgentTesla,exe","https://urlhaus.abuse.ch/url/59710/" "59709","2018-09-24 13:01:04","http://aerodromponikve.rs/n/d.exe","offline","malware_download","exe,RemcosRAT","https://urlhaus.abuse.ch/url/59709/" "59708","2018-09-24 12:46:04","http://ts-prod-assets.tripleseat.com.s3.amazonaws.com/assets/008/092/063/Invoice_No_92172.doc?1537497374","offline","malware_download","doc","https://urlhaus.abuse.ch/url/59708/" @@ -6888,7 +6890,7 @@ "59673","2018-09-24 10:38:24","http://jingtianyanglao.com/Corporation/US/Invoice-for-you","online","malware_download","doc,heodo","https://urlhaus.abuse.ch/url/59673/" "59672","2018-09-24 10:38:21","http://supermercadoyip.com/R","offline","malware_download","emotet,exe,heodo","https://urlhaus.abuse.ch/url/59672/" "59671","2018-09-24 10:38:18","http://www.ultigamer.com/wp-admin/includes/QV0VCt","online","malware_download","emotet,exe,heodo","https://urlhaus.abuse.ch/url/59671/" -"59670","2018-09-24 10:38:11","http://circuloproviamiga.com/wp-content/themes/5Db8XGz","online","malware_download","emotet,exe,heodo","https://urlhaus.abuse.ch/url/59670/" +"59670","2018-09-24 10:38:11","http://circuloproviamiga.com/wp-content/themes/5Db8XGz","offline","malware_download","emotet,exe,heodo","https://urlhaus.abuse.ch/url/59670/" "59669","2018-09-24 10:38:08","http://spectrumbookslimited.com/SawGapld","offline","malware_download","emotet,exe,heodo","https://urlhaus.abuse.ch/url/59669/" "59668","2018-09-24 10:38:02","http://omlinux.com/EjgPh","offline","malware_download","emotet,exe","https://urlhaus.abuse.ch/url/59668/" "59667","2018-09-24 10:26:11","http://jobsupdate.in/wp-content/1965XZY/PAY/Smallbusiness","online","malware_download","doc,heodo","https://urlhaus.abuse.ch/url/59667/" @@ -7266,7 +7268,7 @@ "59295","2018-09-23 20:41:17","http://medicalfarmitalia.it/themes/theme1197/modules/blockcurrencies/translations/new/inf.exe","online","malware_download","exe","https://urlhaus.abuse.ch/url/59295/" "59294","2018-09-23 20:41:10","http://medicalfarmitalia.it/themes/theme1197/modules/blockcurrencies/translations/new/car.exe","online","malware_download","exe","https://urlhaus.abuse.ch/url/59294/" "59293","2018-09-23 20:41:02","http://medicalfarmitalia.it/themes/theme1197/modules/blockcurrencies/translations/new/jiz.exe","online","malware_download","exe","https://urlhaus.abuse.ch/url/59293/" -"59292","2018-09-23 20:40:49","http://soft.duote.com.cn/baohusan_1.4.3.3.exe","offline","malware_download","exe","https://urlhaus.abuse.ch/url/59292/" +"59292","2018-09-23 20:40:49","http://soft.duote.com.cn/baohusan_1.4.3.3.exe","online","malware_download","exe","https://urlhaus.abuse.ch/url/59292/" "59291","2018-09-23 20:25:12","http://medicalfarmitalia.it/themes/theme1197/modules/blockcurrencies/translations/new/joo.exe","online","malware_download","exe","https://urlhaus.abuse.ch/url/59291/" "59290","2018-09-23 20:25:10","http://medicalfarmitalia.it/themes/theme1197/modules/blockcurrencies/translations/new/jizz.exe","online","malware_download","exe","https://urlhaus.abuse.ch/url/59290/" "59289","2018-09-23 20:25:09","http://medicalfarmitalia.it/themes/theme1197/modules/blockcurrencies/translations/new/md.exe","online","malware_download","exe","https://urlhaus.abuse.ch/url/59289/" @@ -8377,7 +8379,7 @@ "58168","2018-09-20 04:46:12","http://xmr-services.net/files/1.dll","online","malware_download","dll,miner,minergate","https://urlhaus.abuse.ch/url/58168/" "58167","2018-09-20 04:46:08","http://sonorambc.org/mo.nkin","offline","malware_download","exe,Trickbot","https://urlhaus.abuse.ch/url/58167/" "58166","2018-09-20 04:46:06","http://adriannfrost.5gbfree.com/mo.nkin","offline","malware_download","exe,Trickbot","https://urlhaus.abuse.ch/url/58166/" -"58165","2018-09-20 04:38:05","http://www.africimmo.com/95416KZS/PAYMENT/Business","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/58165/" +"58165","2018-09-20 04:38:05","http://www.africimmo.com/95416KZS/PAYMENT/Business","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/58165/" "58164","2018-09-20 04:38:02","http://hockeystickz.com/4439DUMCBWNO/ACH/Smallbusiness","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/58164/" "58163","2018-09-20 01:12:15","http://new.feits.co/engl/5899344XHNZTUXC/SWIFT/Business","online","malware_download","doc,heodo","https://urlhaus.abuse.ch/url/58163/" "58162","2018-09-20 01:12:09","http://14.183.202.106:52889/.i","offline","malware_download","elf","https://urlhaus.abuse.ch/url/58162/" @@ -10103,7 +10105,7 @@ "56434","2018-09-14 07:10:10","http://der-saarlooswolfhond.de/bin/NR-3595461081845661174303695.php","offline","malware_download","DEU,Nymaim,zipped-MZ","https://urlhaus.abuse.ch/url/56434/" "56433","2018-09-14 06:56:25","http://pa.cocoonstar.com/76XOIT/PAYMENT/Personal/","offline","malware_download","doc,heodo","https://urlhaus.abuse.ch/url/56433/" "56432","2018-09-14 06:56:17","http://makrocomputo.net/19230ZFFHN/SWIFT/US/","offline","malware_download","doc,heodo","https://urlhaus.abuse.ch/url/56432/" -"56431","2018-09-14 06:56:06","https://xastsblopia.us/order/PO_201809_Pdf.zip","online","malware_download","zip","https://urlhaus.abuse.ch/url/56431/" +"56431","2018-09-14 06:56:06","https://xastsblopia.us/order/PO_201809_Pdf.zip","offline","malware_download","zip","https://urlhaus.abuse.ch/url/56431/" "56430","2018-09-14 06:26:18","http://amatizi.it/j9r7LSGt1s","offline","malware_download","emotet,exe,heodo","https://urlhaus.abuse.ch/url/56430/" "56429","2018-09-14 06:26:05","http://laminateflooringcapetown.com/fGuQWAm","offline","malware_download","emotet,exe,heodo","https://urlhaus.abuse.ch/url/56429/" "56428","2018-09-14 06:25:56","http://goosenet.de/QOkU4uQh","offline","malware_download","emotet,exe,heodo","https://urlhaus.abuse.ch/url/56428/" @@ -10528,7 +10530,7 @@ "55985","2018-09-13 06:43:46","http://sellitti.com/8063779O/PAYROLL/US","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/55985/" "55984","2018-09-13 06:43:45","http://www.demicolon.com/dvrguru_revoerror/image/53LA/SWIFT/Business","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/55984/" "55983","2018-09-13 06:43:42","http://jxbaohusan.com/408019WUPITIGG/PAYROLL/Personal","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/55983/" -"55982","2018-09-13 06:43:36","http://www.africimmo.com/886MIF/SWIFT/Personal","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/55982/" +"55982","2018-09-13 06:43:36","http://www.africimmo.com/886MIF/SWIFT/Personal","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/55982/" "55981","2018-09-13 06:43:35","http://momentsindigital.com/8EGAAMVT/PAYMENT/Business","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/55981/" "55980","2018-09-13 06:43:33","http://bramlvx.com/544VXZXGHZ/PAYROLL/US","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/55980/" "55979","2018-09-13 06:43:32","http://abakus-biuro.net//8539JHLOM/PAYROLL/Business","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/55979/" @@ -11795,7 +11797,7 @@ "54691","2018-09-11 06:58:15","http://novoselica.dp.ua/6Tf3dRT9/","offline","malware_download","exe,heodo","https://urlhaus.abuse.ch/url/54691/" "54690","2018-09-11 06:58:11","http://rollc.com.qa/web/Supply-Installation-Commissioning-Chute-pictures-RFS-DRAWINGS-AndazHotel-JobInHand-doc-jpg.exe","offline","malware_download","exe","https://urlhaus.abuse.ch/url/54690/" "54689","2018-09-11 06:58:05","http://fluorescent.cc/ttQoKkJ4sC/","online","malware_download","exe,heodo","https://urlhaus.abuse.ch/url/54689/" -"54688","2018-09-11 06:53:06","http://azaleasacademy.com/dj7UM8xL/","offline","malware_download","exe,heodo","https://urlhaus.abuse.ch/url/54688/" +"54688","2018-09-11 06:53:06","http://azaleasacademy.com/dj7UM8xL/","online","malware_download","exe,heodo","https://urlhaus.abuse.ch/url/54688/" "54687","2018-09-11 06:50:12","http://space3design.net/wp-content/uploads/XMMFZaM/","offline","malware_download","exe,heodo","https://urlhaus.abuse.ch/url/54687/" "54686","2018-09-11 06:50:07","http://familiekoning.net/YT9gzKUs/","online","malware_download","exe,heodo","https://urlhaus.abuse.ch/url/54686/" "54685","2018-09-11 06:13:03","http://orzhenikingbudoc.website/veneraddoc/dopax.exe","offline","malware_download","exe,ransom","https://urlhaus.abuse.ch/url/54685/" @@ -12153,7 +12155,7 @@ "54333","2018-09-11 05:00:45","http://azcama.org/newsletter/US_us/Past-Due-Invoices/","offline","malware_download","doc,emotet,epoch2,heodo","https://urlhaus.abuse.ch/url/54333/" "54332","2018-09-11 05:00:43","http://azathra.kmfkuii.org/FILE/US/Need-to-send-the-attachment/","offline","malware_download","doc,emotet,epoch2,heodo","https://urlhaus.abuse.ch/url/54332/" "54331","2018-09-11 05:00:39","http://azatamartik.org/73089IPWGO/WIRE/Business","offline","malware_download","doc,emotet,epoch2","https://urlhaus.abuse.ch/url/54331/" -"54330","2018-09-11 05:00:37","http://azaleasacademy.com/Document/EN_en/Invoice-9950844-September/","offline","malware_download","doc,emotet,epoch2,heodo","https://urlhaus.abuse.ch/url/54330/" +"54330","2018-09-11 05:00:37","http://azaleasacademy.com/Document/EN_en/Invoice-9950844-September/","online","malware_download","doc,emotet,epoch2,heodo","https://urlhaus.abuse.ch/url/54330/" "54329","2018-09-11 05:00:36","http://avuk.eu/773250LTZL/PAYMENT/Commercial/","offline","malware_download","doc,emotet,epoch2","https://urlhaus.abuse.ch/url/54329/" "54328","2018-09-11 05:00:35","http://avidity.com.my/2JB/SEP/Personal/","offline","malware_download","doc,emotet,epoch2,heodo","https://urlhaus.abuse.ch/url/54328/" "54327","2018-09-11 05:00:32","http://atuare.com.br/newsletter/EN_en/Invoices-Overdue/","offline","malware_download","doc,emotet,epoch2,heodo","https://urlhaus.abuse.ch/url/54327/" @@ -12471,7 +12473,7 @@ "54005","2018-09-10 15:36:14","http://hasalltalent.com/XKo4ZFqtu","offline","malware_download","emotet,exe,heodo","https://urlhaus.abuse.ch/url/54005/" "54004","2018-09-10 15:36:12","http://mins-tech.com/k9VLuym","offline","malware_download","emotet,exe,heodo","https://urlhaus.abuse.ch/url/54004/" "54003","2018-09-10 15:36:07","http://goldsellingsuccess.com/11Y8LyqQm","offline","malware_download","emotet,exe,heodo","https://urlhaus.abuse.ch/url/54003/" -"54002","2018-09-10 15:36:05","http://azaleasacademy.com/dj7UM8xL","offline","malware_download","emotet,exe,heodo","https://urlhaus.abuse.ch/url/54002/" +"54002","2018-09-10 15:36:05","http://azaleasacademy.com/dj7UM8xL","online","malware_download","emotet,exe,heodo","https://urlhaus.abuse.ch/url/54002/" "54001","2018-09-10 15:28:03","http://auswireless.net/189026LIYWLBNG/PAYROLL/Business/","online","malware_download","doc,heodo","https://urlhaus.abuse.ch/url/54001/" "53999","2018-09-10 15:12:07","http://maplegroveeyecare.com/wp-content/plugins/image-widget/lib/2","offline","malware_download","None","https://urlhaus.abuse.ch/url/53999/" "54000","2018-09-10 15:12:07","http://maplegroveeyecare.com/wp-content/plugins/image-widget/lib/3","offline","malware_download","None","https://urlhaus.abuse.ch/url/54000/" @@ -12967,7 +12969,7 @@ "53509","2018-09-07 12:33:38","http://netsupmali.com/administrator/INFO/En_us/Invoice-59600852-September","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/53509/" "53508","2018-09-07 12:33:36","http://cosmocult.com.br/Download/US_us/Invoice-29359466-September","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/53508/" "53507","2018-09-07 12:33:34","http://npabilliards.com/INVOICES","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/53507/" -"53506","2018-09-07 12:33:32","http://azaleasacademy.com/Document/EN_en/Invoice-9950844-September","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/53506/" +"53506","2018-09-07 12:33:32","http://azaleasacademy.com/Document/EN_en/Invoice-9950844-September","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/53506/" "53505","2018-09-07 12:33:30","http://grupoembatec.com/Corrections","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/53505/" "53504","2018-09-07 12:33:28","http://ahsrx.com/scan/En_us/Invoice","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/53504/" "53503","2018-09-07 12:33:26","http://thedunedinsmokehouse.com/newsletter/EN_en/Important-Please-Read","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/53503/" @@ -13484,7 +13486,7 @@ "52990","2018-09-06 21:54:53","http://thinkahead.eu/48674UWQXA/com/Personal","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/52990/" "52989","2018-09-06 21:54:51","http://pratimspizza.com/payment","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/52989/" "52988","2018-09-06 21:54:47","http://shvidenko.ru/DOC/US/Invoices-attached","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/52988/" -"52987","2018-09-06 21:54:46","http://fidfinance.com/19616V/oamo/Business","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/52987/" +"52987","2018-09-06 21:54:46","http://fidfinance.com/19616V/oamo/Business","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/52987/" "52986","2018-09-06 21:54:44","http://emlakevi.istanbul/xerox/US/Service-Report-9569","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/52986/" "52985","2018-09-06 21:54:43","http://jpro.jiwa-nala.org/6QBPC/PAYROLL/Smallbusiness","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/52985/" "52984","2018-09-06 21:54:40","http://iberias.ge/795570TDL/com/Smallbusiness","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/52984/" @@ -15463,7 +15465,7 @@ "50966","2018-09-03 12:42:03","http://leodruker.com/wp-content/cache/Payments-09-2018/","offline","malware_download","doc,heodo","https://urlhaus.abuse.ch/url/50966/" "50965","2018-09-03 12:27:08","http://185.244.25.176/bins/gemini.x86","online","malware_download","None","https://urlhaus.abuse.ch/url/50965/" "50964","2018-09-03 12:27:07","http://mustardcafeandgrill.com/stard.ust","offline","malware_download","exe,Trickbot","https://urlhaus.abuse.ch/url/50964/" -"50963","2018-09-03 12:27:05","https://u.lewd.se/yobBS6_auSrdjHn.gif","offline","malware_download","AgentTesla,appended","https://urlhaus.abuse.ch/url/50963/" +"50963","2018-09-03 12:27:05","https://u.lewd.se/yobBS6_auSrdjHn.gif","online","malware_download","AgentTesla,appended","https://urlhaus.abuse.ch/url/50963/" "50962","2018-09-03 11:53:08","http://hwy11-17-hwy582tocoughlin.com/wp-includes/images/file/eiz.doc","offline","malware_download","downloader,RTF","https://urlhaus.abuse.ch/url/50962/" "50961","2018-09-03 11:53:07","http://hwy11-17-hwy582tocoughlin.com/wp-includes/images/file/banju.doc","offline","malware_download","AgentTesla,downloader,RTF","https://urlhaus.abuse.ch/url/50961/" "50960","2018-09-03 11:53:06","http://hwy11-17-hwy582tocoughlin.com/wp-includes/images/file/eiz.exe","offline","malware_download","AgentTesla,exe,tesla","https://urlhaus.abuse.ch/url/50960/" @@ -15964,7 +15966,7 @@ "50464","2018-09-01 05:27:05","http://www.stahuj.cz/primo/downloader/3510ae15166efc627853dc93f31a7a37/adobeacrobatreader-seznam-listicka.exe","offline","malware_download","exe","https://urlhaus.abuse.ch/url/50464/" "50463","2018-09-01 05:27:04","http://tnjlgs.loan/","offline","malware_download","None","https://urlhaus.abuse.ch/url/50463/" "50462","2018-09-01 05:27:02","http://robotop.cn/v3G158/","online","malware_download","exe,heodo","https://urlhaus.abuse.ch/url/50462/" -"50461","2018-09-01 05:26:58","http://uebhyhxw.afgktv.cn/1/44278-C01","online","malware_download","zip","https://urlhaus.abuse.ch/url/50461/" +"50461","2018-09-01 05:26:58","http://uebhyhxw.afgktv.cn/1/44278-C01","offline","malware_download","zip","https://urlhaus.abuse.ch/url/50461/" "50460","2018-09-01 05:26:50","http://iuwrwcvz.applekid.cn/1/44217-C01","online","malware_download","zip","https://urlhaus.abuse.ch/url/50460/" "50459","2018-09-01 05:26:44","http://aimmvqsf.ahhxdl.cn/1/42062-C01","offline","malware_download","zip","https://urlhaus.abuse.ch/url/50459/" "50458","2018-09-01 05:26:37","http://xblbnlws.appdoit.cn/1/42046-C01","online","malware_download","zip","https://urlhaus.abuse.ch/url/50458/" @@ -20010,7 +20012,7 @@ "46379","2018-08-23 00:51:46","http://benimdunyamkres.com/890CE/WIRE/Smallbusiness/","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/46379/" "46378","2018-08-23 00:51:45","http://behomespa.com/9livdpHlMC/","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/46378/" "46377","2018-08-23 00:51:10","http://azcama.org/6922335LCPN/PAYMENT/Smallbusiness/","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/46377/" -"46376","2018-08-23 00:51:08","http://azaleasacademy.com/1IFEJ0xD","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/46376/" +"46376","2018-08-23 00:51:08","http://azaleasacademy.com/1IFEJ0xD","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/46376/" "46375","2018-08-23 00:51:07","http://aydinvps.com/40SGG/PAYROLL/US/","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/46375/" "46374","2018-08-23 00:51:05","http://authorsgps.com/697BLZDBXVM/WIRE/Personal/","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/46374/" "46373","2018-08-23 00:51:04","http://alpharockgroup.com/857NMO/com/Personal/","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/46373/" @@ -22147,7 +22149,7 @@ "44224","2018-08-18 12:26:39","http://eversafety.com.tw/0426A/SEP/Personal","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/44224/" "44223","2018-08-18 12:26:37","http://vatlieumoihanoi.com/1HHOXJJCF/biz/Smallbusiness","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/44223/" "44222","2018-08-18 12:26:33","http://theactorsdaily.com/5ZWRXGIND/PAY/Smallbusiness","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/44222/" -"44221","2018-08-18 12:26:32","http://azaleasacademy.com/6502QDV/PAYROLL/Business","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/44221/" +"44221","2018-08-18 12:26:32","http://azaleasacademy.com/6502QDV/PAYROLL/Business","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/44221/" "44220","2018-08-18 12:26:29","http://lindgrenfinancial.com/6247476GW/identity/Commercial","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/44220/" "44219","2018-08-18 12:26:27","http://stmartinscollegecork.com/876DA/biz/Personal","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/44219/" "44218","2018-08-18 12:26:26","http://blog.ruichuangfagao.com/572819ZLNMS/BIZ/Smallbusiness","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/44218/" @@ -24788,7 +24790,7 @@ "41571","2018-08-13 12:48:54","http://access-24.jp/60OCARD/XFN27670QUQYI/Aug-11-2018-06144007/DP-AVSOV","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/41571/" "41570","2018-08-13 12:48:45","http://socopal-immobilier.fr/468KACH/AJTZ616601656MFECA/Aug-10-2018-14523/ES-IKP","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/41570/" "41569","2018-08-13 12:48:44","http://belvedereplantas.com.br/2NRINFO/XAKO9261484012KIJ/46070955/GSR-CVHJ-Aug-11-2018","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/41569/" -"41568","2018-08-13 12:48:40","http://pink99.com/logsite/0LDDOC/TKA1833163913SOXCJH/Aug-11-2018-06005952849/NVS-VJXV","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/41568/" +"41568","2018-08-13 12:48:40","http://pink99.com/logsite/0LDDOC/TKA1833163913SOXCJH/Aug-11-2018-06005952849/NVS-VJXV","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/41568/" "41567","2018-08-13 12:48:37","http://consultoresyempresas.com/53YSPAYMENT/LGE5590822069P/27692/OQ-NGLWP","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/41567/" "41566","2018-08-13 12:48:35","http://akowalska.ecrm.pl/98JXPAYMENT/HJO1258743137B/2202627249/BV-CTWFB-Aug-11-2018","offline","malware_download","doc,emotet","https://urlhaus.abuse.ch/url/41566/" "41565","2018-08-13 12:48:33","http://chovietnhatjp.com/6NANPAY/TKV96049208186BLPXUY/Aug-11-2018-2823498601/TTDV-NAOPT","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/41565/" @@ -24804,7 +24806,7 @@ "41555","2018-08-13 12:48:00","http://eleanta.ru/52GAACH/OLMQ21297THDJPG/Aug-11-2018-41672292436/IH-EANP","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/41555/" "41554","2018-08-13 12:47:58","http://tomas.datanom.fi/testlab/3ERDownload/QK081796146UN/Aug-09-2018-34768306/ZSWM-TXG","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/41554/" "41553","2018-08-13 12:47:56","http://osmanager.com.br/doc/EN_en/INVOICE-STATUS/INV24650790195426540","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/41553/" -"41552","2018-08-13 12:47:53","http://pink99.com/logsite/694JDOC/OLKZ41786YBM/Aug-09-2018-90671945734/SBS-ZOMVI-Aug-09-2018","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/41552/" +"41552","2018-08-13 12:47:53","http://pink99.com/logsite/694JDOC/OLKZ41786YBM/Aug-09-2018-90671945734/SBS-ZOMVI-Aug-09-2018","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/41552/" "41551","2018-08-13 12:47:49","http://redepsicanalise.com.br/72VMULLC/ON82747849953SYQM/92725/ARZ-XVCFU","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/41551/" "41550","2018-08-13 12:47:45","http://sallara.com.br/1HCorporation/ZB250593IFBEQB/742298231/UBPL-UIRDL-Aug-09-2018","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/41550/" "41549","2018-08-13 12:47:42","http://tangoargentinoroma.it/29KOCARD/NV92873589KOYH/Aug-10-2018-0003523/HPC-GZJW-Aug-10-2018","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/41549/" @@ -30431,7 +30433,7 @@ "35860","2018-07-25 12:44:04","http://uploadtops.is/3/T/2rgQuWC","offline","malware_download","AgentTesla,exe","https://urlhaus.abuse.ch/url/35860/" "35859","2018-07-25 12:36:09","http://dataishwar.in/lncs/8.exe","offline","malware_download","exe,Loki","https://urlhaus.abuse.ch/url/35859/" "35858","2018-07-25 12:26:05","http://142.4.9.139/~brazimount/a/b.msi","offline","malware_download","Formbook,msi","https://urlhaus.abuse.ch/url/35858/" -"35857","2018-07-25 12:25:04","http://ngyusa.com/catalog/htarg2.hta","offline","malware_download","hta","https://urlhaus.abuse.ch/url/35857/" +"35857","2018-07-25 12:25:04","http://ngyusa.com/catalog/htarg2.hta","online","malware_download","hta","https://urlhaus.abuse.ch/url/35857/" "35856","2018-07-25 12:24:14","http://zyz-industry.cf/davidq.exe","offline","malware_download","AgentTesla,exe","https://urlhaus.abuse.ch/url/35856/" "35855","2018-07-25 12:24:11","http://zyz-industry.cf/johnqq.exe","offline","malware_download","AgentTesla,exe,Formbook","https://urlhaus.abuse.ch/url/35855/" "35854","2018-07-25 12:24:08","http://zyz-industry.cf/puty.exe","offline","malware_download","exe","https://urlhaus.abuse.ch/url/35854/" @@ -30946,7 +30948,7 @@ "35341","2018-07-24 05:33:10","http://mercurysl.com/sites/EN_en/Client/HRI-Monthly-Invoice/","offline","malware_download","doc,emotet,epoch2,heodo","https://urlhaus.abuse.ch/url/35341/" "35340","2018-07-24 05:33:07","http://mamadance.pl/Jul2018/US_us/Jul2018/INV632749759669493249/","offline","malware_download","doc,emotet,epoch2,heodo","https://urlhaus.abuse.ch/url/35340/" "35338","2018-07-24 05:33:06","http://makaden.com/newfolde_r/files/En_us/Order/Invoice-194428/","offline","malware_download","doc,emotet,epoch2,heodo","https://urlhaus.abuse.ch/url/35338/" -"35339","2018-07-24 05:33:06","http://malbork.joannici.org.pl/pdf/EN_en/INVOICE-STATUS/Invoice-695275/","online","malware_download","doc,emotet,epoch2,heodo","https://urlhaus.abuse.ch/url/35339/" +"35339","2018-07-24 05:33:06","http://malbork.joannici.org.pl/pdf/EN_en/INVOICE-STATUS/Invoice-695275/","offline","malware_download","doc,emotet,epoch2,heodo","https://urlhaus.abuse.ch/url/35339/" "35337","2018-07-24 05:33:03","http://macrospazio.it/Jul2018/EN_en/Jul2018/Invoice-9180266/","offline","malware_download","doc,emotet,epoch2,heodo","https://urlhaus.abuse.ch/url/35337/" "35336","2018-07-24 05:33:02","http://luvverly.com/images/doc/EN_en/FILE/Invoice-0693733/","online","malware_download","doc,emotet,epoch2,heodo","https://urlhaus.abuse.ch/url/35336/" "35335","2018-07-24 05:32:59","http://lutaif.com/Jul2018/En_us/Order/Customer-Invoice-BI-27165885/","offline","malware_download","doc,emotet,epoch2,heodo","https://urlhaus.abuse.ch/url/35335/" @@ -31437,7 +31439,7 @@ "34840","2018-07-21 08:09:07","http://powerall.co.za/Jul2018/En_us/Statement/Please-pull-invoice-575840","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/34840/" "34839","2018-07-21 08:09:05","http://www.mhh.prolivraison.com/pdf/En/FILE/Past-Due-invoice","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/34839/" "34838","2018-07-21 08:09:04","http://nicolaskohen.com/default/US_us/Payment-and-address/Invoice-278001","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/34838/" -"34837","2018-07-21 08:09:03","http://malbork.joannici.org.pl/pdf/EN_en/INVOICE-STATUS/Invoice-695275","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/34837/" +"34837","2018-07-21 08:09:03","http://malbork.joannici.org.pl/pdf/EN_en/INVOICE-STATUS/Invoice-695275","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/34837/" "34835","2018-07-21 08:07:14","http://technoedupreneur.itb.ac.id/giftcard.exe","offline","malware_download","Gozi,ursnif","https://urlhaus.abuse.ch/url/34835/" "34834","2018-07-21 08:07:06","http://ch4energy.co/giftcard.exe","offline","malware_download","Gozi,ursnif","https://urlhaus.abuse.ch/url/34834/" "34833","2018-07-21 08:07:04","http://e-centricity.com/giftcard.exe","offline","malware_download","Gozi,ursnif","https://urlhaus.abuse.ch/url/34833/" @@ -31711,7 +31713,7 @@ "34565","2018-07-19 17:31:43","https://xit4f7sj.xzkkl.com:8585/release/4062.apk","offline","malware_download","apk ","https://urlhaus.abuse.ch/url/34565/" "34564","2018-07-19 17:30:45","http://ak.imgfarm.com/images/nocache/vicinio/installers/v2/224245005.TTAB02.1/nsis/866643-TTAB02.1/180517193804604/msniFunCustomCreations/FunCustomCreations.e414d339d9fe4f889f91320c82d9ab51.exe","online","malware_download","exe","https://urlhaus.abuse.ch/url/34564/" "34563","2018-07-19 17:30:43","http://uploadtops.is/3/T/R3DPwh4","offline","malware_download","trojan","https://urlhaus.abuse.ch/url/34563/" -"34561","2018-07-19 17:29:21","http://aaxrcljp.ahhxdl.cn/1/44278-C01","offline","malware_download","None","https://urlhaus.abuse.ch/url/34561/" +"34561","2018-07-19 17:29:21","http://aaxrcljp.ahhxdl.cn/1/44278-C01","online","malware_download","None","https://urlhaus.abuse.ch/url/34561/" "34560","2018-07-19 17:29:12","http://urbibfvy.yuhong.me/435d9150c43b23a6a86cd251d6685871/vB7A/Hnt6S/xamwgcdpbg10007.apk","offline","malware_download","apk ","https://urlhaus.abuse.ch/url/34560/" "34559","2018-07-19 17:29:07","http://mainlis.pt/files/US/Client/INV91544705432","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/34559/" "34558","2018-07-19 17:29:06","http://www.rssansani.com/pdf/US/OVERDUE-ACCOUNT/Please-pull-invoice-622143","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/34558/" @@ -32567,7 +32569,7 @@ "33702","2018-07-17 21:33:04","http://nrrgarment.com/zmoperes.ri","offline","malware_download","Trickbot","https://urlhaus.abuse.ch/url/33702/" "33701","2018-07-17 21:19:19","http://lglab.co.uk/MIaOipON/","offline","malware_download","emotet,epoch1,heodo,payload","https://urlhaus.abuse.ch/url/33701/" "33700","2018-07-17 21:19:18","http://mrsdiggs.com/J1fxBvdlL/","offline","malware_download","emotet,epoch1,heodo,payload","https://urlhaus.abuse.ch/url/33700/" -"33699","2018-07-17 21:19:15","http://www.eclairesuits.com/oElikDNad/","online","malware_download","emotet,epoch1,heodo,payload","https://urlhaus.abuse.ch/url/33699/" +"33699","2018-07-17 21:19:15","http://www.eclairesuits.com/oElikDNad/","offline","malware_download","emotet,epoch1,heodo,payload","https://urlhaus.abuse.ch/url/33699/" "33698","2018-07-17 21:19:10","http://panbras.com.br/PTDYUD/","offline","malware_download","emotet,epoch1,heodo,payload","https://urlhaus.abuse.ch/url/33698/" "33697","2018-07-17 21:19:05","http://hk5d.com/file/hgWA2l/","online","malware_download","emotet,epoch1,heodo,payload","https://urlhaus.abuse.ch/url/33697/" "33696","2018-07-17 20:24:03","http://23.249.161.109/im.exe","online","malware_download","Boilod,exe,HawkEye,ImminentRAT,NetWire,QuasarRAT","https://urlhaus.abuse.ch/url/33696/" @@ -46193,13 +46195,13 @@ "19792","2018-06-15 15:42:14","http://sp3.com.br/UPS-Ship-Notification/Feb-23-18-06-52-04/","offline","malware_download","heodo","https://urlhaus.abuse.ch/url/19792/" "19791","2018-06-15 15:42:10","http://sobeha.net/Scan/","online","malware_download","heodo","https://urlhaus.abuse.ch/url/19791/" "19790","2018-06-15 15:42:07","http://smarcconsulting.com/VswXLuK/","offline","malware_download","heodo","https://urlhaus.abuse.ch/url/19790/" -"19789","2018-06-15 15:42:05","http://site.listachadebebe.com.br/Tracking-Number-6GEQ03283894606201/Feb-13-18-12-45-24/","online","malware_download","heodo","https://urlhaus.abuse.ch/url/19789/" +"19789","2018-06-15 15:42:05","http://site.listachadebebe.com.br/Tracking-Number-6GEQ03283894606201/Feb-13-18-12-45-24/","offline","malware_download","heodo","https://urlhaus.abuse.ch/url/19789/" "19788","2018-06-15 15:42:03","http://servicomgirona.com/Tracking-Number-1J97910017823948/Feb-23-18-02-38-52/","offline","malware_download","heodo","https://urlhaus.abuse.ch/url/19788/" "19787","2018-06-15 15:42:01","http://sertic.de/Purchase-Order-08680/","offline","malware_download","heodo","https://urlhaus.abuse.ch/url/19787/" "19786","2018-06-15 15:42:00","http://sentraweddingcar.com/DFKC861710/","offline","malware_download","heodo","https://urlhaus.abuse.ch/url/19786/" "19785","2018-06-15 15:41:52","http://scubetmg.com/Your-Card/","offline","malware_download","heodo","https://urlhaus.abuse.ch/url/19785/" "19784","2018-06-15 15:41:28","http://scouthibbs.com/Christmas-Gift-Card/","online","malware_download","heodo","https://urlhaus.abuse.ch/url/19784/" -"19783","2018-06-15 15:41:23","http://schuurs.net/UGVV805795/","online","malware_download","heodo","https://urlhaus.abuse.ch/url/19783/" +"19783","2018-06-15 15:41:23","http://schuurs.net/UGVV805795/","offline","malware_download","heodo","https://urlhaus.abuse.ch/url/19783/" "19782","2018-06-15 15:41:22","http://savingforshelter.com/OEXBP7-09976254485/","offline","malware_download","heodo","https://urlhaus.abuse.ch/url/19782/" "19781","2018-06-15 15:41:20","http://satsantafe.com.ar/Invoice-Corrections-for-94/48/","online","malware_download","heodo","https://urlhaus.abuse.ch/url/19781/" "19780","2018-06-15 15:41:15","http://sashapikula.com/Your-Holidays-eCard/","offline","malware_download","heodo","https://urlhaus.abuse.ch/url/19780/" @@ -51965,7 +51967,7 @@ "13729","2018-05-30 16:04:08","http://roigl.de/Notification-de-facture/","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/13729/" "13728","2018-05-30 16:00:08","http://sarahmpetersonfoundation.org/ups.com/WebTracking/VMN-906711865","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/13728/" "13727","2018-05-30 15:50:09","http://sia-gmbh.de/FILE/Direct-Deposit-Notice/","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/13727/" -"13726","2018-05-30 15:41:11","http://broscam.cl/FILE/Emailing-O851056XU-987164/","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/13726/" +"13726","2018-05-30 15:41:11","http://broscam.cl/FILE/Emailing-O851056XU-987164/","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/13726/" "13725","2018-05-30 15:40:29","http://jameslumgair.com/ups.com/WebTracking/PK-511373298/","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/13725/" "13724","2018-05-30 15:40:24","http://vionero.de/Votre-facture/","offline","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/13724/" "13723","2018-05-30 15:40:15","http://shawktech.com/Facture/","online","malware_download","doc,emotet,heodo","https://urlhaus.abuse.ch/url/13723/" diff --git a/urlhaus-filter.txt b/urlhaus-filter.txt index 67ede3f6..76bd56bd 100644 --- a/urlhaus-filter.txt +++ b/urlhaus-filter.txt @@ -1,5 +1,5 @@ ! Title: abuse.ch URLhaus Malicious URL Blocklist -! Updated: Thu, 11 Oct 2018 00:56:03 UTC +! Updated: Thu, 11 Oct 2018 01:14:45 UTC ! Repo: https://gitlab.com/curben/urlhaus ! License: https://creativecommons.org/publicdomain/zero/1.0/ ! Source: https://urlhaus.abuse.ch/api/ @@ -210,6 +210,7 @@ a1bid.co.kr a46.bulehero.in aa-academy.net aaag-maroc.com +aaxrcljp.ahhxdl.cn abayaparadise.com abcresteconsulting.com abdullahsheikh.info @@ -1093,7 +1094,6 @@ majaratajc.com majasnews.com majeyapi.com makeupartistinmiami.com -malbork.joannici.org.pl malehequities.com malivrxu.lylguys.me mamadha.pl @@ -1358,7 +1358,6 @@ sannangkythuatgiare.com santoshdiesel.com sarana-sukses.com satsantafe.com.ar -schuurs.net scientificwebs.com scottgreeson.com scouthibbs.com @@ -1389,7 +1388,6 @@ sightspansecurity.com signsdesigns.com.au silverlineboatsales.com sinhly16.net -site.listachadebebe.com.br sites.ieee.org sixx.com sjbnet.net @@ -1528,9 +1526,9 @@ tvaradze.com u.coka.la u.lewd.se u2752257.ct.sendgrid.net +u29sohdos238spkd.com ucan.ouo.tw uchservers.ga -uebhyhxw.afgktv.cn uk-novator.ru uksamples.com ultigamer.com @@ -1545,6 +1543,7 @@ ursanne.com us.cdn.persiangig.com usanin.info uwgeboortekaart.nl +uxz.didiwl.com uycqawua.applekid.cn vaastuhomess.com vaatzit.autoever.com @@ -1700,7 +1699,6 @@ www.dreamhomesproject.com www.dropbox.com www.duanvinhomeshanoi.net www.dwarikesh.com -www.eclairesuits.com www.ecuadoresort.com www.ekomaiko.cl www.emmutcorp.com @@ -1894,7 +1892,6 @@ www.yuliamakeev.com www.zjttkj.cn www2.itcm.edu.mx xa.yimg.com -xastsblopia.us xbitestudio.com xblbnlws.appdoit.cn xiazai.xiazaiba.com