URLhaus Database

You are currently viewing the URLhaus database entry for https://dev.apna-foods.com/yzpx/4AfVHnvIiEKASPBblkaOfJ3/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1912718
URL: https://dev.apna-foods.com/yzpx/4AfVHnvIiEKASPBblkaOfJ3/
URL Status:Offline
Host: dev.apna-foods.com
Date added:2021-12-23 04:06:10 UTC
Last online:2022-01-05 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU003872651 created on 2021-12-23 04:08:05 UTC)
Takedown time:13 days, 14 hours, 54 minutes Bad (down since 2022-01-05 19:02:15 UTC)
Tags:emotet link epoch4 heodo link SilentBuilder xls

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-238058028872.xlsxls cfb91f4910d1b97c2d722dbb1d10b841a79af5011be3ee5dbcf47468a6db5083n/a Heodo
2021-12-23153849540.xlsxls 216fa1b1519c963efbe24fd1334d0f367eee2418b8af407da62d6a1132e035d2n/a Heodo
2021-12-232438334018.xlsxls 48fd4140e9773bfc0c3c2699d273e88be581c6d4933ec1966756ada7016d33e8Virustotal results 22.03% Heodo
2021-12-2328402370653.xlsxls e54a42adf2bd8382a494683e1608f6f51b5b6c4f933d5067b506b8c568f9131cn/a Heodo
2021-12-2311193832.xlsxls 081ba0d2825548ebed528cadc5c597819690cbb0a93451d15bfd71aa089f278cVirustotal results 30.00% Heodo
2021-12-235791559.xlsxls 06a7f7a6296b774253c7bc810254dac777e521daaef2ee031849b9194c635529Virustotal results 25.00% Heodo
2021-12-234089569003610.xlsxls 0ad385922a01543568e212cfb1e35edf9089b10809986ef0790cebbb8cea45fan/a Heodo
2021-12-236821583014908.xlsxls 5a0fbb12fe8decf5f45e06300c985441732388cb01067004f14540adddaecf22n/a Heodo
2021-12-2340760462.xlsxls bf9c5da5a619725b7e1236035d41d5bfd7d3aa3d88d0be766d31deafc00bf5b0n/a Heodo
2021-12-232099713897153.xlsxls 6f83a6ead72ff0d14bb2a3d7b8eb3db5f845be37678dc1577f8aa199b4aeab22n/a Heodo
2021-12-23371560157.xlsxls 0e32a98533816d8ab208379bcabce2d48d062e0de5cc36835e883bdf74bfdbe1n/a Heodo
2021-12-233825839480286.xlsxls b5a8e2f5f7fe82dfbf09bbd6509f57d8b93bb81b5ab1a02e066e0cc7e7745a9dn/a Heodo
2021-12-2355394803.xlsxls 4393bf49903e8d699fa450df1c35c2bcaf3d6669c092433f7f788f7214c64f9bn/a Heodo
2021-12-23933640612985.xlsxls 91d4f32d6a37e6013639cd5e523e6328604a95436f8d3b266480f57a97599f2cn/a Heodo
2021-12-231486081.xlsxls 5d04c011401a98e948beccb6839b44c77b81f51f10ed48fdfa37da8bdfcfef01n/a Heodo
2021-12-232948003421.xlsxls cccfc20f200c0af867f7557dcab45bbfd82ffc96adee9277a7aecef0a01282d1n/a Heodo
2021-12-2368139693609644.xlsxls 708baaf025f75fa82c574eb1da9af0b5cc5cc2db4f602eed6f4a976a8bd0d8faVirustotal results 28.07%Heodo
2021-12-230348757869.xlsxls 38b0a1134b4dbc0535e2af788c285b2a9a920118a4c467b12de6841242437041n/a Heodo
2021-12-234667751300.xlsxls 9f16e116a70060507f773bc94da066aed1c061ee297187782804cc292e0bb11dn/a Heodo
2021-12-2374098147126918.xlsxls a830905d19c1b1a262f5b6484dcbf74166b52e6742b363f5049fa03cec849557Virustotal results 25.86%Heodo
2021-12-239313553594.xlsxls 4d8d170d7e4981f57bc7f628b4ac01800a7c97e9edc66396e79bb788781ee407n/a Heodo
2021-12-23644517720.xlsxls 5c294fe562bd01c69bbdbb1437208abf1ef4098c31444af2d32a31056b47fbbfn/a SilentBuilder
2021-12-2324731470053746.xlsxls 2991e95d6d3b92341bd33e2c9dc75dab521b1e38be10120fdc3e542ee4eba881n/a SilentBuilder
2021-12-23738536139841233.xlsxls c8c7b870ad369ca2d82bbde60db56a271583f85d80bb3acd3a6821e966cc49c2n/a SilentBuilder
2021-12-2396581836.xlsxls afdbed432f0ebb3f625b0c3be873ecf66dadcf498552b4fd9bd6e9f2344c268en/a SilentBuilder
2021-12-234238519895.xlsxls f43334acc07f6a013334b7399e0e4ce391fbfd6a73dd40daf68397d1de426731n/a SilentBuilder
2021-12-237338477698920228.xlsxls b4fdc798e4c49df58164144b8bc115b1f9757ee3ca92832554dd921e65ea5e24n/a SilentBuilder
2021-12-23194648253.xlsxls b7c6a3d65ca7c2fe92b81b8271ebf8d781a8e17295133aef89864ff6cc0db08cn/a SilentBuilder
2021-12-2348303060.xlsxls a36fe3a855e95e22df1200bc1678183cf6e56215d765ae39d4e7728cad9971c6n/aSilentBuilder
2021-12-234173879233121587.xlsxls eec031da304539d9cd2d1107b8ac16fb8415662f96b8b979c103d3ea4c780accn/a Heodo
2021-12-23293749245903421.xlsxls 3872c321886be0e22e3063113e957978408eab0ed39b6430dc5b94e0fe7caa5cn/a SilentBuilder
2021-12-2310333995289.xlsxls 70d0d557db77f8eaa47a791d85e5323c02a9e1628fabcaa29836bf3d8b877390Virustotal results 17.54% SilentBuilder
2021-12-2360187671.xlsxls f76190b18d28381afc2abcba75ae59ed1d8f25fcb03df777dbe0da1eaf1d3fe1n/aSilentBuilder
2021-12-239792449.xlsxls a74a6a8140c11fc076d82f4a808994b267aaa839b9076dd2bae14909922e7efdn/a SilentBuilder