URLhaus Database

You are currently viewing the URLhaus database entry for https://kedaiweb.com.my/content/een4p1aXjBd5clbKX7Ln2e/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1919451
URL: https://kedaiweb.com.my/content/een4p1aXjBd5clbKX7Ln2e/
URL Status:Offline
Host: kedaiweb.com.my
Date added:2021-12-25 07:35:10 UTC
Last online:2022-01-04 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2021-12-25 07:37:29 UTC to abuse{at}cloudflare[dot]com)
Takedown time:10 days, 6 hours, 50 minutes Bad (down since 2022-01-04 14:27:52 UTC)
Tags:emotet link heodo link SilentBuilder

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-25115629724187S.xlsxls ad703c5d173ecc9110d797f3272128d0bd21745acd34d207171021b8f448c5b3Virustotal results 31.67%Heodo
2021-12-25J67796251N.xlsxls 8f88a28c7f2df1bd6f098133627ff35d04c6ad34062a69b07d6ec70fb8853752n/a Heodo
2021-12-254801094906788409933F.xlsxls cbaeca578a699a2c7aa325a349f569e260c720895b5fc30be2d664b5b68aec29n/a Heodo
2021-12-251964262356349060174.xlsxls 571372df136c9cfe23cbac165d75e33914ebe3e123c8ee043a56298664002becVirustotal results 27.59% Heodo
2021-12-252452400117.xlsxls 003e371e97f5e772611fa43f1bb3f903f6ebf500b7ba63992672b3b6ff338bf8n/a Heodo
2021-12-25748856080550.xlsxls 50f8902404ef120c73b668d459057b0d09c9ed38b36b5edcf7c9fe0b9affc678n/a Heodo
2021-12-25744050280612528.xlsxls 8b99666a8dcf18891e3e33f1f5e1ebc076e8785ab2341561aef9234363dd1dc2n/a Heodo
2021-12-25545232073206590331Z.xlsxls 9f3333a6cbafd6a265c505220c629a2ed46e1f269fd596827b497649dc729a09n/a Heodo
2021-12-252746617339R.xlsxls acdf5002ec4be1d844d1d4dbfc55f317f00bddf3f5e1be17a1ff9467fe0368acn/a Heodo
2021-12-25J9312652314468474996.xlsxls 93c9d1872130410f0b2764b83aa34d0ed1dc830d63821b3bf58ceacc37b5abc3n/a Heodo
2021-12-25J600136694915373.xlsxls 3dc6314bf81c1578d480aa68e989abddf9709fbf27ade86e145230c920914332n/a Heodo
2021-12-25G973559205049049C.xlsxls dea022b2cad3ac33a46b5238fcd0c6ea0917ff459af0f6b22901f6dcedbb4014n/a Heodo
2021-12-2594003365.xlsxls afe9cf92e6e3688bc09dddad0da3b393a87bdfc99955468b48a6692d9bac1342n/a Heodo
2021-12-25U13074244116841863363J.xlsxls 08ddd0481e5d8832723d76e74f6a28e6e41f0e6da6461e861dd66e026928e9d7n/a Heodo
2021-12-256312198958395699.xlsxls e3be210f600b2f8de1eecf292968405c32eb342697ebd82797347cbea77ec6efn/a Heodo
2021-12-2507364558106H.xlsxls a0a1ca76cc93e67f4ad34d7621759f3e288263fa60e2c01801abf9a10f0fe0c9n/a Heodo
2021-12-2530900629.xlsxls 360d25029702893dd622b095661272c41893845441a5ee85119b97517435c265n/a Heodo
2021-12-25N41521722781.xlsxls ff882bb7e0bddb77d0b6402ceee2fdc1b551521f00d19b5dbc942064261a53d8Virustotal results 33.33% Heodo
2021-12-25241797616602288867712W.xlsxls c3700ae6cb069ec98acd080a0051f4bbe8bf2b869cfe616be4344b9f1506af84n/a Heodo
2021-12-257289769.xlsxls 170efb5d02f483bc5cc17668a2e149137cf12a4b560fc9478adcfb4815de1cf1n/a Heodo
2021-12-25K305906250352159.xlsxls 0014d33e8c71e69c819ad117c82bd13a3eeda011d9323f365e070af2bd9a1ba4n/a Heodo
2021-12-25A513901511269096.xlsxls cde9e69a145f61fe218a57a411829eb69c64da1b02cdd159efbdc096b41159fan/a Heodo
2021-12-25N159936448142918821C.xlsxls 4f53b2aeba2d6f846f1c9a8066efc63aedaf6b213108ad80e27211255a861ba2n/a Heodo
2021-12-25L11166449525E.xlsxls 902dff9778dbf6f370e820bf65763e822c72b1365c8385ee9f2f0bf2434d6265n/a SilentBuilder
2021-12-254600514602365Z.xlsxls 6082f08619d3cb26ff92b4c9c257cce407f4c266c856c28716050be8dc6e7befn/a Heodo
2021-12-25W457372482X.xlsxls 203642f63c7b2d39cc134797070a502a04d76aae58d190c9c6b5437e15774172n/a SilentBuilder