URLhaus Database

You are currently viewing the URLhaus database entry for http://ammoments.com/NSTIFestival/V-71552/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1967803
URL: http://ammoments.com/NSTIFestival/V-71552/?i=1
URL Status:Offline
Host: ammoments.com
Date added:2022-01-11 17:06:04 UTC
Last online:2022-01-31 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-11 17:07:08 UTC to abuse{at}bluehost[dot]com)
Takedown time:19 days, 17 hours, 24 minutes Bad (down since 2022-01-31 10:31:14 UTC)
Tags:doc emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-12824524892.xlsmxlsm cce90115dbb29f91192ea44a98616dbd6b6f4a74e76c8eefe004edba731635b7Virustotal results 9.68%Heodo
2022-01-124136469-629314.xlsmxlsm 4ad49903ce2436cf77cb3fb133762d3a3d38e8161b3a4c0a0aee2f789f2602f9n/a Heodo
2022-01-12843372419-17.xlsmxlsm 59f05e00efec07cd4974aa3dc7797d632de2a2bca84c94d7a01b930c54e3cb11Virustotal results 8.62% Heodo
2022-01-1275815063_0218.xlsmxlsm 4cf81923aab75fc5428ba11b6f1a4772a4d964de456855f77108a344ca999bf9Virustotal results 9.68% Heodo
2022-01-12GPQKU_455.xlsmxlsm f28bbe346a1043a08f1cdc244ca35bb345e7a7dd491c22e9197cfc449e5a59b4Virustotal results 9.68% Heodo
2022-01-12EY2.xlsmxlsm 67ca0af2f9d86a9291f89a1693b920b0e90902e589e50e8885ac6d378990862an/a Heodo
2022-01-12sYBC_315.xlsmxlsm 79f8dcc976b6b81642c3f1572e6e8fa219d00828b6b9015e969a50bb38cefba8n/aHeodo
2022-01-11RNCU-97.xlsmxlsm c82f282fe8e4c3583e5e4d834ae90565ff0b3fb958513688b442153cc57c82fbn/a Heodo
2022-01-11674767_393.xlsmxlsm 2d1119abba540b363d45b4fb7a3d1eab3a5cde27299f24a2464e6d3c0a56fe03n/a Heodo
2022-01-1115510-35772.xlsmxlsm a03d0922f5ae3961ac53705e244fa39140fce09f93ad516628276035c7310c98n/a Heodo
2022-01-11qbjl444421.xlsmxlsm dd14be16e01e5fe53b7cf8199af830a979dbbbc33593606f3b25d7ea3b32697cVirustotal results 9.84% Heodo
2022-01-114118_92271008.xlsmxlsm 8a9101b7343bf1a4608ae17b84bd290c1e40f510ec792e9c5d3cc5ace4ca5490Virustotal results 9.68% Heodo
2022-01-11IG_27.xlsmxlsm 8ad61be673c186c9cdfb6c6c8d750fbcf80f920d4905742c0ed9d67833026ed7Virustotal results 9.68% Heodo
2022-01-112361882577708.xlsmxlsm 71da6e57fe5adfa0b06f8ba9525e6db95e7c25246179fa8563561d24e79e6c65Virustotal results 9.68% Heodo
2022-01-11G183.xlsmxlsm c4bc03a927a72a21be0b15c8c55124264c456a940a325d8071f5cbcb7032f1c8Virustotal results 9.68% Heodo
2022-01-11emkhln_970809.xlsmxlsm c2cb81db208398e070c47e7d03e76709142dec85ddaa985883536283a0acbb14n/aHeodo
2022-01-111889YAQJSBGT_729307.xlsmxlsm 79a935edd516953713a4d4565e5dfcbbb08f17b9633f31d84e0e042a5de4c178n/a Heodo
2022-01-11kgbywqj-459420.xlsmxlsm 867a5e845a227cfb9fa1988fa078679d6b6fa0bae43ffebfe412f97bba373ddfn/a Heodo
2022-01-11EF_27792.xlsmxlsm feb79a563fb0b9180b8575e4cadda7ef1cb87b85ab987a569113cc27b1feee34n/a Heodo
2022-01-11nhhs_51638.xlsmxlsm c7361097a3fd04904faaab145a9e15e79e0a3f772aa9f0e374e8ecb7e2bca145Virustotal results 10.17% Heodo
2022-01-11021517450_4.xlsmxlsm 9130d8068b2ef10c7127ddbc23715591e0bd026c0ce94a36c26d92b99ee8e524n/aHeodo
2022-01-11XFM-566884.xlsmxlsm 60a2fe4a87a42aef09d57e41fa80f438983821928336d78cd14ce1042e638b6bVirustotal results 9.68% Heodo
2022-01-119432053_09.xlsmxlsm f84d3863143cbe9c97859d10c99e61155092470c08e9aee090365490450a4f00n/a Heodo
2022-01-11X_504368475.xlsmxlsm b0118f2c4a1ae4681d95b8b513b2268ea613ff23d476e806ee7d906f90c8c2fcn/a 
2022-01-112758KMKXEGRB_48694903.xlsmxlsm 6913af2de9271a92bd9c7c9afe4923a08f237459d7e1e03d171e96fa291e39eeVirustotal results 9.68% Heodo
2022-01-11716966-8910.xlsmxlsm 36a7648c572a4d8da08e143b884b12b84c5d8b89aa48d92f7db880a037c8c3b4n/a