URLhaus Database

You are currently viewing the URLhaus database entry for https://footprintllc.net/wp-content/bJluuvzb/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1916851
URL: https://footprintllc.net/wp-content/bJluuvzb/
URL Status:Offline
Host: footprintllc.net
Date added:2021-12-24 10:20:11 UTC
Last online:2021-12-30 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: sugimu_sec
Abuse complaint sent (?): Yes (2021-12-24 10:23:59 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:5 days, 23 hours, 13 minutes Bad (down since 2021-12-30 09:37:26 UTC)
Tags:emotet link epoch4 heodo link SilentBuilder xls

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-29Q78080333210628732.xlsxls 50f8902404ef120c73b668d459057b0d09c9ed38b36b5edcf7c9fe0b9affc678Virustotal results 32.20% Heodo
2021-12-25J0883911785695526276E.xlsxls 8995ae7d4815746fd91ef526c2e91f82d2023c6b6892c39f97cfd5b8d5897716Virustotal results 18.64% Heodo
2021-12-252754185063770X.xlsxls d79f4b9e846d2c382e00d9bc8f4adbd426d83e5cb8a1d126f1d8c588d6fc3076n/a Heodo
2021-12-25M6643839666047280165R.xlsxls b065259b68e96859cdcbb55267d6c383f3c2e8d402bec89dbde0140297f0ca9dn/a Heodo
2021-12-25D90889035236521266.xlsxls dfbc4c8bb0883d7d8c70bdccd293fba0701cf90819a78073f86566551add4cc2n/a Heodo
2021-12-2428955289.xlsxls a63a8d5ee31e984b2751f9553c592129e6e006532bd476938a6ad9194c178929n/a Heodo
2021-12-24497659797547050.xlsxls d246ca804b95e74d2728c863b7a7b33255271a1e9bf0f6b55ead7677f6f97aaan/a Heodo
2021-12-24824635454053728897691N.xlsxls 951d32c00565fc0fd560f3aea25d1c55a627a2a78c7bd7673ed417bd38c1e5a4n/a Heodo
2021-12-24X468630760W.xlsxls 85c87a0fbc0c6b46a7422d7b9fa4e84a1ceec63ab826a992eabe952b34bbd44bn/a Heodo
2021-12-24J4084022387348187M.xlsxls 8b2cc458fbeb8f6ce0df76c909687180384dbf382c721bb32bc178c8d4b9e793n/a Heodo
2021-12-24S01867179294694.xlsxls e328c39a387b685791e2a2de9cf984205118f6a8dc5e3f79e8ae2683152398c3n/aHeodo
2021-12-24Z529009392997.xlsxls 1535007646e477e96afd4d46b9c2e18c8b1bb41f3212e66f983d4b4515734539Virustotal results 16.67%Heodo
2021-12-24267721774782U.xlsxls 0aa21dd3669a403334367fdb2ee09eccfbba59cbaab47c720c34d9a60eefe8e0n/a Heodo
2021-12-248865665714745T.xlsxls 75723df59362d020051f526db842dd7b0d429e0638d7d6ed42a17416f4959c24Virustotal results 13.56% Heodo
2021-12-2451645828.xlsxls a5a0a3d00314f9d797cbb6713ef237158ccbee2ac6fe90e2b0a6454fe267e89fn/a Heodo
2021-12-24V0358257458499773S.xlsxls 046677f440c058c3a9c0e3d3ed46f220337249717c62c213c35ad62fed8efb48n/aHeodo
2021-12-24F094342062721.xlsxls 40325be64d0277f1d44bc5fa218ea5a5acf338b5daf6b5ccad3e39d4dfa3a5a8n/a Heodo
2021-12-24D08457119279874360A.xlsxls 1a2dc996808ab6dce0d21cc842f416586a1f45a1d2513065fe239a48a093c988n/a Heodo
2021-12-2481814104X.xlsxls 90b7cceec2847da6f3d058a594cde1c8a5b723a133b45746f0ee240ef37dd67en/aHeodo
2021-12-24Y2612579886275530Q.xlsxls 2d1a9e680faad9427e7bf65e180a0b666cf952ea1853232e4a4ace7eec43b15aVirustotal results 13.56% Heodo
2021-12-24T00519736H.xlsxls 65afb14e13ca027077a2e59390b0a773b88537c9ec4f6b54bca861dbde8d565an/a Heodo
2021-12-24312004019.xlsxls 4db367392eba26046588a01102f97a3d322054a08a20da2591422d1c18d29056Virustotal results 13.56% Heodo
2021-12-24X524007437A.xlsxls f996e0b743efaea3a433be0deb64a90ab1333b17170819c677f6d91eacba3177n/a Heodo
2021-12-249824903.xlsxls 04f0feee85a82b648c5bf25c4028a9eadacdb9094a05434f4fb657a7bc42d84dn/a Heodo
2021-12-24Q4057008996836306.xlsxls d9da62beafe00f812319b65be0727f29a41730bcbcd82dc873a1f7627db05986n/a Heodo
2021-12-24P2430146.xlsxls 4925c4e6ebfc4a1527aa27571593704e38d106751c517f19677a1bb100a1b7a6n/a Heodo
2021-12-24772494520.xlsxls 52ca2106b29802043f3b5295e65bff2fb7c6e40510bacdf11ad7fb12c194a48cn/a Heodo