URLhaus Database

You are currently viewing the URLhaus database entry for https://syapeg.com.br/b/YPks1n6aH4bQU9z/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1967718
URL: https://syapeg.com.br/b/YPks1n6aH4bQU9z/?i=1
URL Status:Offline
Host: syapeg.com.br
Date added:2022-01-11 16:32:04 UTC
Last online:2022-01-16 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: sugimu_sec
Abuse complaint sent (?): Yes (2022-01-11 16:33:08 UTC to abuse{at}cloudflare[dot]com)
Takedown time:4 days, 9 hours, 43 minutes Bad (down since 2022-01-16 02:16:38 UTC)
Tags:doc emotet link epoch4 heodo link SilentBuilder

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-12276799_80814.xlsmxls d3d61558116adba228714e7e660ef421ae85b439fd2224a440e617fdeae70987Virustotal results 27.12%SilentBuilder
2022-01-12BUYWI-07016478.xlsmxls e74813a3530752434c9dae40f5f1cbd367cc16a541547e3a2d5b35295539390dVirustotal results 30.00%Heodo
2022-01-12464169323_267012.xlsmxls ca65e9146957f09c7cdbb479666279a91d9065b309e29fea80fc5e3b7bd49393Virustotal results 28.33% SilentBuilder
2022-01-1225_26565.xlsmxls 662f993ddf616adf7550191c5036d719e0cb02c2c5e1fb9b0e87d51598b71190Virustotal results 25.42%SilentBuilder
2022-01-12OGS-789120.xlsmxls 894ae1ab382fe85d09096d1997f468b8e5f327326c39e15bd1ba47f4c4d2f14fn/a Heodo
2022-01-12OACRE53751415.xlsmxls fb59d08c1c00da6e08768d759d984922ef2726cade6ed27fe5713a79e7b7022en/aSilentBuilder
2022-01-12qcX98360477.xlsmxls 05dc48ca9e5d5feb04a32c1ef3a8d18453a2a679e7257ce24856895a5dea268bn/aSilentBuilder
2022-01-11099015-44870.xlsmxls 66f5d61a2c4246c3bc39141c46e41bdc84c3f12a7db0b2ec3090eace070392d6Virustotal results 22.03% SilentBuilder
2022-01-11QSRM_7953085.xlsmxls 429e0de91bc404f5fc886f0618177f5bc49fe0da3940e98426c5d5cd8aed57cfVirustotal results 16.67%Heodo
2022-01-1117562-40779.xlsmxls 5c5fd037c414e33a6538da72a5ea4ae89c8dac15b396b6a10e8504a0b5a7ee75n/aHeodo
2022-01-1189342.xlsmxls cd8e0110b182d3afd4d91cc9be83efb4de17b54e76e93d861acbd9e981906fb0Virustotal results 18.33%SilentBuilder
2022-01-114179_98821.xlsmxls 15808d5cf09ee4a60ed9e18d0b403cd762cbf7613246e2cdfa6fba88eb654dd8Virustotal results 13.79%SilentBuilder
2022-01-11H606324926961127398547J.xlsmxls 755b4ee15682c5a1e3567c5d710b241e03a8b6ce7080dc3ef0816be9ed6e06f7Virustotal results 15.25%SilentBuilder
2022-01-11865376627867229220H.xlsxls 244f3b421f675868b3b87f562c2b307e3f4c3b914d67008406a8f9ed0594b4c1n/aSilentBuilder
2022-01-119500428242355903168U.xlsxls c7cc8c98988b0b5cdbd103db7c61f01a6e92f96f525c36f15bfaae039bb46cd7n/a Heodo
2022-01-11337890427197200113W.xlsxls 1224a3bcb32b16ac401374219c7e304bcfd5eba23875426fdbb6bd06345e9e9dn/aSilentBuilder
2022-01-11G6328774.xlsxls e8b123fd61bfeabe7b45797f6cceaef77207d8d93d2a2b38065976603120c558Virustotal results 20.00%SilentBuilder
2022-01-1187266514925762428479.xlsxls 03319a0f6c37911983650f91c2a01b29eac84b17bd99133626d11d08952ad9d4Virustotal results 20.69%SilentBuilder
2022-01-11A6191406422829753641.xlsxls a0a6e55d2714273e7c3866776a187cc320e9bfa5086632fc12ed94db2efbfc3dVirustotal results 18.33%SilentBuilder
2022-01-11S456269868914579753009D.xlsxls afe04f54612c86612a56bf8a3a228a2aeae275f4730552228f8a4bb6f71c292eVirustotal results 20.69%SilentBuilder
2022-01-11Z8404347145386668141U.xlsxls 18e24e9b03fde05fa41b9d86aa612dbbd5deabcebbe97ee5b3a3b7fa8fb43f51n/aSilentBuilder
2022-01-117746284.xlsxls 60fdf680c8e0272784588bf87ead2814df683a2fcb697522ddd4ef323166440an/a SilentBuilder
2022-01-11X998294357122.xlsxls e540aa4c8a0a7eb9acf80aa3e76a804c5f492a69e052e33584c0ce432b33de75n/a SilentBuilder
2022-01-1141009942713829261.xlsxls 38b51ee1239079bda9d7d55d94ad241f9595a1bad8a9538a140cd3504ce559c0Virustotal results 21.67%SilentBuilder
2022-01-117052791622597.xlsxls 0c9de24621d73ddfb33b0d2607b84d523a103ff59e318980f134dac1726e11a6Virustotal results 16.67% SilentBuilder
2022-01-11D83816762891821699649.xlsxls 0237b96acc934eba1b920d0b6fa654c22128101417298a9f940ca2e53c85dab9n/aHeodo
2022-01-110498019330639O.xlsxls b68760371e947df68d4f69a1f9b43a56de082932df771b0ef088adaae130931cn/a SilentBuilder
2022-01-11O4526670970874.xlsxls a6854cf37029a39a9a86de7f468e16d520cc046bef6fcd50290cd7c19843cd74n/aHeodo