URLhaus Database

You are currently viewing the URLhaus database entry for http://jbmshows.com/wp-includes/hKCw-jcL7m3lamEozRp_jeGJEDNTh-stk/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:177966
URL: http://jbmshows.com/wp-includes/hKCw-jcL7m3lamEozRp_jeGJEDNTh-stk/
URL Status:Offline
Host: jbmshows.com
Date added:2019-04-15 17:41:03 UTC
Last online:2019-04-18 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU001240178 created on 2019-04-15 17:42:04 UTC)
Takedown time:3 days, 3 hours, 4 minutes Bad (down since 2019-04-18 20:47:02 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-1763631128435-F-20190417.jsjs 7460accf81db3640d5f7e1e7b430431adfd687918983e78ecc12a0308f95ec47Virustotal results 7.02%
2019-04-179363963701-4-20190417.docdoc 585d16b3fe498ef9234dcef4ee6c7e92b2f59b165d25c9a0fc95fee374fcb75cn/a Heodo
2019-04-1745916295021_K_20190417.docdoc 93f07c6a3a0b543cf0f0bd52504b055c1daf660fca66b2aa63d5ee01f300fb9dn/a Heodo
2019-04-1719565575664_9_20190417.docdoc d9fd36227c89dc75d77c85836aa4bf2e8491c744780c72c1419be606e7c17042Virustotal results 19.30% Heodo
2019-04-179714422220_M_20190417.docdoc dc4692de020475c0ad045174e165c0da23181a448f19c94bd018eb0a36ccdd49Virustotal results 20.00% 
2019-04-1713551719-R-20190417.docdoc 6bdd6d13b63f789ed0c37bca07e57e603c35169c1bf325860b85f4f1ec192d52Virustotal results 23.33% 
2019-04-177963755-Z-20190417.docdoc 013b5f5c344a9e983d5292298090c33863774f984e6eceac326438a35654da2eVirustotal results 22.41% Heodo
2019-04-1761814708_B_20190417.docdoc 711e88edc9265d63d495e812973dc31cf3be389ebea9a16cffb129ff2f0dc18bVirustotal results 23.33% 
2019-04-170865105_X_20190417.docdoc aa504f2ecda07c8fd9cf8099798205914f7254d860bdb3d3ad59dbbe42e284a9Virustotal results 21.67% Heodo
2019-04-17420306719_6_20190417.docdoc f6339ecff9972ad336d7f8205dca001b36969fa1fe9a0096ee6e4e0adc896b61Virustotal results 22.41% Heodo
2019-04-171101868-9H-20190417.docdoc e6536063f41983237a1e7f47ef9a102a604c1ac7ad900cb75165aa7777e14741Virustotal results 22.41% 
2019-04-174002619-9J-20190417.docdoc f6bb74b9cbb5ddf3225d1732f3eeca60fca59ffc53a28dc28d2e4a54a591419cVirustotal results 22.41% Heodo
2019-04-171522504_I_20190417.docdoc 3550884afe09106b97b5b292849c061da9e51cf6c5502e8b80a2bb669de9aa07n/a Heodo
2019-04-1796152563_7F_20190417.docdoc c1b0c4f67991d3ab081a20b0d018ee2bf4d310e751b44625ee47be0f9e9265bfVirustotal results 46.55% Heodo
2019-04-174677992_0_20190417.docdoc 85971fb168e24ef993e45d31ab444c6a9b43d2df4ec1473ecbae42cea63dcfb7Virustotal results 45.76% Heodo
2019-04-1751769917_8D_20190417.docdoc 323153d98abb66d7f847dafa200187b6998dfbec52a13bc8e5db2f22f1cb2240Virustotal results 47.37% 
2019-04-1701678883107-8-20190417.docdoc 6d24d29c50ef972b44f93ef0a4485ac1efde90c14c184aa2867c38a16c538bden/a 
2019-04-172769672610-I2-20190417.docdoc dad7b2ea595c513712858b7af93d5799ba9ea2029568b03ca100e39b48875a26n/a Heodo
2019-04-17463971966_T_20190417.docdoc f630bfbe4b3c8275ad01aa4c5b0cb0997e7af5947b64dad6351672a6aa578c39Virustotal results 42.11% Heodo
2019-04-1763383561688_L_20190417.docdoc 78c7f1c6bd57c9b5fd9deccd6c8eee1d22dbcab88b6093c634c49f50d92d8fe9n/a Heodo
2019-04-173431954809_8_20190417.docdoc 277f3c8d2bebb7ba81bc20c3f884f7ba97fa475595a794b701718526c739aa05Virustotal results 35.71% Heodo
2019-04-173767884-OY-20190417.docdoc 672214a0abbd2153bde3cddb09d46ad3cf5a6a473fa339648ed22fbc4c7ba717Virustotal results 33.90% Heodo
2019-04-1700061297459_79_20190417.docdoc fd6b351aa651a795ccc36478ab92b5fb40497dc6e48bc99f46dcc8ff9ef8fc49Virustotal results 32.76% Heodo
2019-04-1603298112-U1-20190417.docdoc 575dde62d6879599051db95345289d694bf6500cf6e0200fdbd87665498ab758Virustotal results 31.58% Heodo
2019-04-168937240114_V_20190417.docdoc 230bacc1603f28b1d4d085ad5429d0e07d2df7a155eb1d25e42a87e82dfa8268Virustotal results 28.81% Heodo
2019-04-16272108621_ED_20190417.docdoc 938b12f5460469f75a747202beb87f30466c63b9c7ec13a8dce23ab4e38963a4n/a Heodo
2019-04-16338960788-TP-20190417.docdoc f32cbe4ff74b1e382bea6fa729854bef952194a257b1a6a04f3606e2f7baf419Virustotal results 32.20% Heodo
2019-04-1618999996_LX_20190416.docdoc de36dc4b54247a8172cda67b22d570a1b6c67b709c2d0ef6ebd9d3878d87dde2Virustotal results 36.84% Heodo
2019-04-165772446-CB-20190416.docdoc c5fd770032c9c4c15559f6fe81f54b73588ad35bb8907d68a0585ec4f004fb68Virustotal results 34.48% Heodo
2019-04-168636516-K1-20190416.docdoc 3e5a613d76696cb50ffba9d7e6c0fd8fff94b51c9702fdc00548ca08ad03f6e2Virustotal results 33.90% Heodo
2019-04-1674954901609-SN-20190416.docdoc a505fc37d8eb990b3d8567df5fa28f8c217fcbf0ad2b69fbad4d3090b1c3927fVirustotal results 32.20% Heodo
2019-04-163276857_L8_20190416.docdoc 56459d52dd7a5f3045b96edabc33e19ce54b76ecb8c499d406acc77a1823cd91Virustotal results 32.20% Heodo
2019-04-161027182-1D-20190416.docdoc 2d4c184275e72715123f48151daaf96797095b62be433ff2b2942136b8cd0d6cVirustotal results 33.90% Heodo
2019-04-167416080_RT_20190416.docdoc 6b71be316e91d4679de2085f3e1652bdacded4f30630f2351124d1e1387463c9Virustotal results 32.76% Heodo
2019-04-1600596415653-V-20190416.docdoc 6e4b9df22ca8ffd8ff3c913be8bdb59050c810acd69f3b49fe22b96504f16ff9Virustotal results 27.59% Heodo
2019-04-168948952_NA_20190416.docdoc 8a703f09affec429c37d4b1a33713cc14783deb3a11fdc3a9eac96abbe474a7bVirustotal results 26.67% Heodo
2019-04-16956891741-A-20190416.docdoc 93e3eefa3b8a2f13770e7ed9469079af83cb67383c49ba7adb68e5576bc10432Virustotal results 25.86% Heodo
2019-04-1694552149123-DV-20190416.docdoc 40f7c562ff31df5261bedf7fa61b88e172076727367cfaec53493459be662381Virustotal results 24.56% Heodo
2019-04-16813263173-TL-20190416.docdoc 9d9aaa50a40637604a1240aa8364f96c9a0d42c80cac98eb49ff3e26b3d3f86dVirustotal results 31.67% Heodo
2019-04-1692743587908-YR-20190416.docdoc d00d3fc56c4d887eea35bd31cb7faadb791b7c25e3b291740f3eae05c273c5e3Virustotal results 30.51% Heodo
2019-04-164279939_CN_20190416.docdoc eccff22e3acccf381d541fd2ed585e77556c5e873a655be4a4959b2a92ccef25Virustotal results 25.86% Heodo
2019-04-163165169452-S-20190416.docdoc 1cb40c0d41a17288cf5645720efe0dcba20ee2dfa9497ff5a076e2f625c06c93Virustotal results 26.67% Heodo
2019-04-169218215888_45_20190416.docdoc 930075eed943e0734fb332d29c0c8ef19197161c7544416d5b7f281b77c2165aVirustotal results 29.31% Heodo
2019-04-166889565989-D-20190416.docdoc 3f04ef1dd9df1059e69a4884fc4d4298a7371c229b8fd96f2584b12d3763e17aVirustotal results 27.27% Heodo
2019-04-16737644310-E3-20190416.docdoc 3dbf1970151fc3e15063c75535d037c3dc3d8fbf404eb88780af8ae2bec4a346Virustotal results 27.59% Heodo
2019-04-1623797694913-3-20190416.docdoc 61c966fe80e7c16131ffb8c9fc58abad0e89705d575ec1016c4db578c3434a05n/a Heodo
2019-04-150736726-35-20190416.jsjs 7ea187cf42e39c534ce6babd79e121c1a6d78d6277c8894d3952e8e3a7beb6a5Virustotal results 5.56% 
2019-04-1510905692772_AB_20190415.docdoc 9dc484ee309be349fce6e277491a9c2f00010eebd76736de8fa0e6bb1ecf1443Virustotal results 36.21% Heodo
2019-04-1528249187521_F_20190415.docdoc 53b88fe8f153adcb1ec8c8c9531acc197b78974747d18489501c345d4630dfe8Virustotal results 33.87% Heodo
2019-04-156478564-RP-20190415.docdoc 680255ed0b774e2a6fe53742da4c8ba7b86229cf14447ccc0a5fd6eb4abd02b6Virustotal results 35.00% Heodo
2019-04-157166920235-4R-20190415.docdoc 8e59ea782bd44430d17e2df377240b3d2a4a798c5cbaf431edb01cca0601b654Virustotal results 31.58% Heodo
2019-04-1549253246-IJ-20190415.docdoc 2d946a1bb11de8784b1138b4db493f0645748046ebcb112590ad09734446d503Virustotal results 30.00% Heodo
2019-04-155842228775_N_20190415.docdoc af6cec517a12f5cc507c83071fd1b05ad91fa1db6615564a9e913a6fa14b7f9fVirustotal results 26.32% Heodo