URLhaus Database

You are currently viewing the URLhaus database entry for https://topline36.xyz/wp-includes/css/dist/customize-widgets/JrTm/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1964802
URL: https://topline36.xyz/wp-includes/css/dist/customize-widgets/JrTm/?i=1
URL Status:Offline
Host: topline36.xyz
Date added:2022-01-11 10:38:04 UTC
Last online:2022-01-13 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-11 10:39:07 UTC to abuse{at}amazonaws[dot]com)
Takedown time:2 days, 7 hours, 1 minutes Poor (down since 2022-01-13 17:41:02 UTC)
Tags:emotet link epoch4 heodo link redir-doc SilentBuilder

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-12K_30.xlsmxls aa65a34067b0c50e89c1078d0c7ff08de43e5036241404574f846265de6ff6bdVirustotal results 28.33%Heodo
2022-01-12271-10202.xlsmxls 1e8ed8d61ad3f66e9acac149db12bf6f3db13cef81cbedc8bf9602c391450c43Virustotal results 29.31%SilentBuilder
2022-01-12AFSE_1955.xlsmxls 788c6ae40bf00e27769846c7ab03bfee240d5ee52f765f498918a0333498eb82Virustotal results 31.67% SilentBuilder
2022-01-12g_57.xlsmxls e32f0c4a46eb1839845394810bef1e5fa06054e8372e74ad442da3d8b5325475Virustotal results 28.33%SilentBuilder
2022-01-12S62468.xlsmxls 3f4b1c98cb91608ce0ef51a77efb1ba624e38ff17e01567f9d61747a5e49421dVirustotal results 26.67%Heodo
2022-01-12L0780961.xlsmxls d7638004f7dc1a884abf073a6c04d5d205ba31f4d66800216ddc303dd3f41249Virustotal results 28.33%SilentBuilder
2022-01-12216204668.xlsmxls 769ecd4d91e53cc734ede1b06a3935096e838020e44061032964dd769dda3968Virustotal results 28.81%SilentBuilder
2022-01-121373590759383.xlsmxls 813438ff7ef652ea23e922f8a5e61c7f14ec49b270546d3ce47f66161707cc03n/a SilentBuilder
2022-01-1281342270.xlsmxls 662f993ddf616adf7550191c5036d719e0cb02c2c5e1fb9b0e87d51598b71190Virustotal results 25.42%SilentBuilder
2022-01-12970664_97361876.xlsmxls ee39e88c3c79292adf03f167d3b538ed98543b64a867264a09a9d19b0ac28645n/a Heodo
2022-01-12BAJWZ_219010.xlsmxls 9e0c891bd4b687d10b5c7d8082a2d4c7d24a0c9ea90b1d0aa09dafa6dee22047Virustotal results 23.33%SilentBuilder
2022-01-121431390.xlsmxls 05dc48ca9e5d5feb04a32c1ef3a8d18453a2a679e7257ce24856895a5dea268bn/aSilentBuilder
2022-01-11984748853_2231804.xlsmxls 66f5d61a2c4246c3bc39141c46e41bdc84c3f12a7db0b2ec3090eace070392d6Virustotal results 22.03% SilentBuilder
2022-01-1139928259472770.xlsmxls a7fe36211a0be63df4c3929830b8fc4e21fc0548b5446377ce9c83b3d1fd9339n/aSilentBuilder
2022-01-11asdfaan-848929619.xlsmxls 0174c6534f42113ca8854a6ae91e267fb1915bb32b5760b52bbb551aa1580da2Virustotal results 16.67% Heodo
2022-01-1152_5.xlsmxls 14222deeec10d32091a2947e045833bd25c041a662f4090df26e50381cf922c6n/a Heodo
2022-01-11S7624646N.xlsxls e7065618e785e98792d570656fd412ecf695c45ec5a8123d04cf4ee302d225bfVirustotal results 18.33%SilentBuilder
2022-01-1144835913353.xlsxls 73a93604b31a5b4b301dad4849b63d5e6e48ef8d946f6fbff48b485b1bce7a37n/a Heodo
2022-01-11S0036104950506693.xlsxls 47d359db574e7e651cbf4e0b4d24fe1a2eb3f7b0e3170dbd84c2caae8c0d0a2aVirustotal results 16.95% SilentBuilder
2022-01-11R74560246938313601Q.xlsxls 416e811b6839dbe39092f82dbb62064350da5400ce2e1fd94870f305f5b2b77dVirustotal results 16.95%SilentBuilder
2022-01-11M406259485384735156U.xlsxls f9e789531cb031e9e6767f54a780f6ee8b53a417acb2b2012dbfaf1579aee55fVirustotal results 21.05% SilentBuilder
2022-01-11X290113509797.xlsxls 3f4ddde39dc20ae5a2558fe48b7341187c1bba0dbd1c95a32644b14592a38653n/a SilentBuilder
2022-01-11448450833082167942429P.xlsxls 3d2ad015f60956cee32029cb7d6fee846f34a91d0f6dae2b68cfde31c99b4a77n/aHeodo
2022-01-11353324188572.xlsxls afe04f54612c86612a56bf8a3a228a2aeae275f4730552228f8a4bb6f71c292eVirustotal results 20.69%SilentBuilder
2022-01-110830320171873813.xlsxls b1f305f02b8cf58ae2906c7eed8287d62d121b30f99795c803a124d69b54d363n/a SilentBuilder
2022-01-11N181348898575.xlsxls 0c7c9fae218ad5800f4a59b6ce77b07b9a30a73d24012c2b42cd3814f8a9ecdcn/a SilentBuilder
2022-01-11597996719110L.xlsxls f9dc6d359581da286cc014340d248cea2acedf09a9dc0cf9280641f3393fba35n/aSilentBuilder
2022-01-116718099078620877586.xlsxls ac54419fabe46284edceb8053b9d82d570dc0bdf6c0f0302122329da99c28a12n/a SilentBuilder
2022-01-11680432288.xlsxls a88483cdfd340711d7a65d74a5646e6bc7159a4af250074e0fea6db954177753n/a SilentBuilder
2022-01-11A8212299219574583513.xlsxls 659c21119c192bd5c4c698d0e9c0ef6c5d0ed38bf40907318ccbc4dece45ec76Virustotal results 18.18%SilentBuilder
2022-01-11G8278455.xlsxls 1cdf6133fd1d4138849b8f2b29f199d90ccce54c369b74a88a14e8329e1051c3n/aHeodo
2022-01-11A0430901112278178985P.xlsxls 9e3e47f20134301b475d2d5477000f2ff061b7e2ccf7c02aa892d300c3da3b36n/a SilentBuilder
2022-01-11O46804770U.xlsxls 071d6c9a40d6721f41c7064edb52f46d766703ea2e9bbe033939b6d60f24604bVirustotal results 16.67%Heodo
2022-01-11O731530203289506068R.xlsxls 5b8d0b12d4a393432ef70e1832915b20c0a39b948c524ac301e3ae5f9794b84dVirustotal results 13.33%SilentBuilder
2022-01-110489514.xlsxls 3a3a5f5444557caa3c86b58560956c0a0452818a2349ef7328bb8c948e36d465n/a Heodo
2022-01-11T900832361703805514605.xlsxls b53a3f09073ba4c63f1634b32bc6328f22d9965ebc1384797a886d07959313fan/aSilentBuilder
2022-01-11C66953977073.xlsxls 89224af568d4e29e7836c2961d33045490b337a9d5d40db852137e1f2dbbfbf9Virustotal results 12.50%SilentBuilder
2022-01-11X73188264836645943B.xlsxls 645258c3eec8a24b056403664b65d66c43f78566a0f33270723a6edc4d0c7ed8n/a SilentBuilder
2022-01-11L91133833581M.xlsxls 06b383970ed4fab68a430bc021dd0744b77518ec82ef09f6d167c8edbf50fd53n/a SilentBuilder
2022-01-11Z8035982757655.xlsxls a672f734a98a5b287eb96d134893701f055f20573dd9f9d778b1e7953b00a944n/aSilentBuilder
2022-01-1135248062484B.xlsxls c17cf152edefc6ce2ed0a5fa783f3bbfd6348b41a22f0da9cdd2722311ddfd62n/a Heodo
2022-01-11G47803957236M.xlsxls 6b28b200163448c423b79b68a70f8d07d925445d48edb48526d9dfdbf68d47c1n/aSilentBuilder
2022-01-11Q21775042823711.xlsxls f218c6867a0a060d313d1592c39f606f2193f4d587a404b4372971a6344d0f16Virustotal results 16.67% SilentBuilder
2022-01-11L8886779460474L.xlsxls 25a3e55a8c505687b78fb62ff041db36ed577b17dbd1b9ebf4e8628b9cf7b18en/a SilentBuilder
2022-01-11C1309001248373.xlsxls 5d5960ceec11681300fcf26d61f3e8c614aa21a0eeec555c70a63c4049587756n/a Heodo
2022-01-116811420730.xlsxls 8154d03c9e2276ffa60e6a0cff77239d34b2be27f0728bfbec2a37e59562551fn/a Heodo
2022-01-11C8468364619.xlsxls 014fc0f35570524af821c5eba7c6efd66e8b973be290e6aefcc2b4ba1d56870aVirustotal results 16.67% SilentBuilder
2022-01-11G1239336B.xlsxls 8d553f79df6c325e23d3dbf5395971d1e0e1132eb66d882f365a931e848a6556n/aSilentBuilder
2022-01-11H830339840902677060650M.xlsxls 7443d5335a207cca176825bd774a412e72882c815206c7f59ace1feb111bb4e9n/aSilentBuilder