URLhaus Database

You are currently viewing the URLhaus database entry for https://alignerpliers.com/er1lrd/792TWAHUC_29/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1977228
URL: https://alignerpliers.com/er1lrd/792TWAHUC_29/?i=1
URL Status:Offline
Host: alignerpliers.com
Date added:2022-01-14 20:24:09 UTC
Last online:2022-01-19 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-14 20:25:11 UTC to admin{at}frantech[dot]ca,fdias{at}frantech[dot]ca)
Takedown time:4 days, 13 hours, 59 minutes Bad (down since 2022-01-19 10:24:13 UTC)
Tags:ArkeiStealer link doc emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-15LWW-8.xlsmxlsm 0592991b1732e1e08398bc9d0d002b8712f5d04c2ccb93bbdc194f100cfe4cd5n/a Heodo
2022-01-154512756QFMB_28.xlsmxlsm 40c5e372942e0b9b1ddd00e203c67676f96fb761373fbe9bf108613a593ee57bn/a Heodo
2022-01-1560231-11763.xlsmxlsm 522526a909c7830228db68321ae6698da4f7d3db52f9056a5d69620954d47b89n/a Heodo
2022-01-15018140731_07.xlsmxlsm cd6f78b09ca63f714facbcfe21b27fd3c031242e28acdd1bcf6156719b76a9f7n/a Heodo
2022-01-15ryuff30.xlsmxlsm 847fbb97e6239c45b156e552f926c3ab3a6b874bebddb606349d8748ab97b4e2n/a Heodo
2022-01-151826698MEYVTHKCRG_419423.xlsmxlsm 5e522b60a9aa3694fe9ff31c028d85daee8a4df5011ebcf7a44ea1661dfcf547n/a Heodo
2022-01-1537555_7.xlsmxlsm 6c4e9288c11bd332eca6874187898648c605529694355f2a945ddfe0aba788a4n/a Heodo
2022-01-15356339GYZDQRL-64623.xlsmxlsm 2e5d9260f3ded87b56eb1a493b09ec187c0deea70d4c32e9e7ba0741b9b37d22n/a Heodo
2022-01-15740300.xlsmxlsm 7bd561959295ba5aad56e198caa95e3b1165906ae704be0dea8874044e92aad4Virustotal results 34.43% Heodo
2022-01-15O-8705.xlsmxlsm 97a7bf62bcd75bff44e2ec53cecbfb4be386b7ef16c983ca0c5ac1733810f284n/a Heodo
2022-01-15EXZ_79938094.xlsmxlsm 7605f72db5b159afe28fb4a8838e86705dc8cf60d780b307eaf0decd7bedd18dn/a Heodo
2022-01-155392194WRRXAKBN_64281696.xlsmxlsm 87a3b24117e7f39be9bcfdce77aeb0bdc0bdd0c7a6b6a508d4252d8d547f68c3n/a Heodo
2022-01-1584XNJATBUDSY-1553.xlsmxlsm 469f990886088f5fbc7cdcf34a1d989fb4a5e311155eb307828b819517009188n/a Heodo
2022-01-150993-99352426.xlsmxlsm be5993172db9a317aa35439a8c21a5ff4c2a5f6ce238a32d71ebbff993a2e7bcn/a Heodo
2022-01-15800980592_54826046.xlsmxlsm 501a67a818729282cb9c1bb2c8060e926bbfc3a4f351c1e11a7f43746bd8b756n/a Heodo
2022-01-15br_43353.xlsmxlsm 100411c1d9d483e285fb39e5aa3a00df0433e418629428d90b9f9a7f9e393735n/a Heodo
2022-01-1568204_8197.xlsmxlsm 62339184034e6ad69c9803d78caf51eb93963736899000a79763942bdb54b751n/a Heodo
2022-01-15DX-360.xlsmxlsm 5be4fdc379541be75fda56d996fd5380b4f68fc14a295a5c39baf258f67636c1n/a Heodo
2022-01-15577-4742590.xlsmxlsm d60a0d354b47db9947cccf869113e1fc3db29e6dd52da4de97e3f597c8413126n/a Heodo
2022-01-150962153126.xlsmxlsm a5060366b1c36dad5149d5a828e1480f4c31bb4e3041796f014eff93e55a322dn/a Heodo
2022-01-15bnaucsa4741.xlsmxlsm e54c7e04ad7a623d9ef4cf30a5c8cd0eaa26f3a162d3e64bb39e9c755d8f839bn/a Heodo
2022-01-1560699762_48521.xlsmxlsm c1a965ede59ecf82604f9e28dea05524ca8c4c5f826c417c629bfbd5cb21602cVirustotal results 33.33% ArkeiStealer
2022-01-15PPCK-63.xlsmxlsm e869f1f1c15fc3635f603c1f201e91c4d4fc67e27d48fa526512922a2dfa61acn/a Heodo
2022-01-156949-4769364.xlsmxlsm d87ab959d62f1eb3345d4933f565c01a1d068976efccba5093401902ab6cd52fn/a Heodo
2022-01-15JlTy0705.xlsmxlsm af4524f85f636f8b929b04a779bee53c82da66d25d3be5a761b49d081af082f9n/a Heodo
2022-01-159536_43336.xlsmxlsm 9f593a4d8c3165dc5052f06fac8f6bc92bfe45012131fc75cf27ec63ce1f3adfn/a Heodo
2022-01-15927587DHNSGOPUM_7461.xlsmxlsm e122abd14608a2f8f418442d0c8d4db849b832d246000e22b23216b64fc5d148n/a Heodo
2022-01-15A-47.xlsmxlsm aa3502e81f27a2ae1486354bd438bb082e23fdd08f5e35defe7a676ea7631c7fn/a Heodo
2022-01-1557364_0.xlsmxlsm 8a87fbe3b9242408d0e31783b71fde98d14e737723758665aff6775a60fd22den/a Heodo
2022-01-15awhc_075.xlsmxlsm e37e5c57c8ee2c0a6920611443300efbaf70d3070a387ad075818f869ca3de35n/a Heodo
2022-01-15489-082.xlsmxlsm 59b33acb84e8dd6d711de8a559541650a6c8ebb01fcf0db0676b1136045bd440n/a Heodo
2022-01-15450620GBYLFACR595871.xlsmxlsm be942d6de6c231e6bc861c1e67b20cf20bde4a7b78751e26f4e779c0a67ca9abn/a Heodo
2022-01-1575426817210.xlsmxlsm dbc67eae8cf5aa397d880b1e61190254bdca1215f2164c56bcde816fc3b25492n/a Heodo
2022-01-15MYtZY_52401939.xlsmxlsm 7b13a221a0b62f54ec6947573c797094f113558c1bc574b6bacdffe3061cf72en/a Heodo
2022-01-15sX-535614.xlsmxlsm 69b7e80cb47b695d05fe1e5816175cd6f3410e6fcf4e2ac79ebe2f96f04695a5n/a Heodo
2022-01-158374UGEA541818387.xlsmxlsm 45196a61f96ae34e0ca6711e70e1412b212242e79d3b0b7a32541cfda6938eeen/a Heodo
2022-01-15327423252.xlsmxlsm 6b905847ed946ae2b8b8e9425995c2ee708464f8c6d0a0c2f5282dbcc79012d8n/a Heodo
2022-01-1597_469.xlsmxlsm d956d51c896100523138bc649194b56fea4da4499f148db37930b4b2aee39101n/a Heodo
2022-01-15ONB-9497964.xlsmxlsm 7036b5af3647086ffe5272a4c48851f215d2faf6205b73c402acdc8f1629e8d3n/a Heodo
2022-01-15JA-98.xlsmxlsm 3eb7ff0ef35d108a0719b6beea7306c849157fc6b8ef972d9d1f4b24696f71c8n/a Heodo
2022-01-15YL-712535.xlsmxlsm 62ee016f8e7b7c66a4b5ce151a267bb09faf53130401252a9f11a024c14f6e13n/a Heodo
2022-01-151358591-9892.xlsmxlsm c8ae806c1fad8007f17331fc0ea71d000140443e4596a430f7cd80332ac3c2cbn/a Heodo
2022-01-15UB1.xlsmxlsm cbabf31062db7ba965fddcf8a0309fd8f045f20c5fd0baf6d086f52878f0ed03n/a Heodo
2022-01-1503098579AAOOUFTTI-697.xlsmxlsm d90488474a115987753f7d96f2810900bd6abfc52ac05aeed67710e18e0314adn/a Heodo
2022-01-1568987017-48021177.xlsmxlsm af74adf2376ab0a8fb16735d44fc3e72bc4480a91b2cf9de85cd2f9ab7fe1fb5Virustotal results 37.10% Heodo
2022-01-15ifzZ6678986.xlsmxlsm 9e6ff25a737baf5b6e837a5adec1a04f237f97615cccdd44c7052878b10ca1ban/a Heodo
2022-01-15BISWI-5990.xlsmxlsm c909891cc6ab3148cc2e5af0f42b18f4fea635079447729eba2203ffdbdf32d4n/a Heodo
2022-01-15hbxlb82889.xlsmxlsm 0c68a7f1d74f3e00c0566eece5ce5825b0d3698dc7f108664e3d9892954062b7Virustotal results 34.43% Heodo
2022-01-157893831_6191.xlsmxlsm cfeafd9e2f4f80535f88ed319fbc467de58ad68746d9839e35bc335e7093386en/a Heodo
2022-01-15E_80693.xlsmxlsm d103b5352273217cc252966b5d072c39b0340845aab3513ec3d17e07e1a5d410n/a Heodo
2022-01-155835031ABDCZ_2670888.xlsmxlsm 0090643800e1f49a41801bb84916471fe71b2778e2cef65930e5b25b3c62fc8dn/a Heodo
2022-01-15041659-847.xlsmxlsm 22f20d029b24272da77ea4b56a36a93a3f837d0d98cc207433d92f7eed14074en/a Heodo
2022-01-15955-18.xlsmxlsm 0400c5d7c8ad85387bca95f3beb4be0b192f8a53aaf64f60e631ac66c60b5504n/a Heodo
2022-01-1529290_801368.xlsmxlsm 3f1cfeef21fce7cf3f2192145362411cc4384115f137db495cb8f6a39785e6adVirustotal results 37.70% Heodo
2022-01-1576202XRXAGTILA-45847728.xlsmxlsm db676ef714ea818edca3ff4a25da38808cbec2a6d7b944a237e44ad29d8932dan/a Heodo
2022-01-15932807946364.xlsmxlsm 7502d81e1850ddeca8f2a9b2b5b986b1402710ac10ba7247fa34dbde1e9f1399n/a Heodo
2022-01-150636046_654.xlsmxlsm d50cee0c37b5505705bfc80ada4886f885ef7a2d9ea5729f811645f9c49ffd01n/a Heodo
2022-01-15991_5367241.xlsmxlsm d6d33e7076e3ff778ea32c349701dc2c599fc78d287883f2ad9c16a820386e37n/a Heodo
2022-01-155641_48434176.xlsmxlsm 77ffacc52c59a0eb5b6b3714889a43cc959b49088f530582dc6481df50f843f1n/a Heodo
2022-01-15834037773.xlsmxlsm ac7bc114197f00db5cdc8220478ccee911aaa8a17481da2be5bd05e884c00b2an/a Heodo
2022-01-15K-54314.xlsmxlsm 0279c45b269370dc573b24043881c52004de70327f21523cf55bba02c4c00ba9n/a Heodo
2022-01-1588598325_7629054.xlsmxlsm 35101e24e0d9b97edc46d35011a21e505ee4b05036998544ad3dad3444e09376n/a Heodo
2022-01-156891497-59547721.xlsmxlsm a59149fcacf8a5c564f48dc446b7cef1203a0ab92fec9dead2b3645bb24d3e51n/a Heodo
2022-01-15W_12.xlsmxlsm de54a7c99135db230ba151e513f7813ccca74b08201d7592958e82c51b152386Virustotal results 36.07% Heodo
2022-01-1599670_34.xlsmxlsm b8121edc6cc2e93b9a7832beca7e11a32f3c0b8214816c8276a2d2eeec251050n/a Heodo
2022-01-15870539_6429628.xlsmxlsm c20613da92dc6c60ccdd38a6c41f069e973921e2e618c3e9b673480e0fdbe172n/a Heodo
2022-01-156073_0795.xlsmxlsm 69dd17d667b01b8c139033215bad8690a13db67dcab99d323edee2a21ad0a44en/a Heodo
2022-01-15ZZSI77.xlsmxlsm df3d1c9f634b214294ffb42adacb58b20d8aa9f35da387af12be4ef35556a1ean/a Heodo
2022-01-1496561727LTP_414028.xlsmxlsm 8f0f2077aa3edcc93ab9afc1a8e9b37a8e2188bd636656b06daedf8135750b73n/a Heodo
2022-01-147049576003092.xlsmxlsm 75712d078cbb9b8fed640595bcd0d600efe6fbf8871c3dc5bc71ab1279addcf5n/a Heodo
2022-01-14GxN-63316355.xlsmxlsm 7b0a79d4567f32c87c170f7f28df91ff107a7d0753d5044a904811b263b93876n/a Heodo
2022-01-14075746453_47037524.xlsmxlsm ab47b86919281732bf2d97a8ba617b7074163ce9a97d6cbe8a808008fa621b68n/a Heodo
2022-01-1497OKC_0828813.xlsmxlsm fe01bc803ce05162ca15cc629939800683a82eece8fa0aee42bcffef3486240dn/a Heodo
2022-01-14NK-452701.xlsmxlsm 67b8bc9b9f613a0e8f643668110c104053b5b703a46252a2445760d716f3af21n/a Heodo
2022-01-14thT_3047.xlsmxlsm 72ace94123093efcc2cc3934fe5a2ad6d05b2f9d2b4145faca7cd3bba5a08012n/a Heodo
2022-01-140316877_8243063.xlsmxlsm 7d85958d90db6b672b606dde34bc7bebac26bab0484fc33b93dcd14a769bf669n/a Heodo
2022-01-149772_53688669.xlsmxlsm dd31658b856327acc38aef012d17ffa817d5b1a966bebdb5ffae466295fbf4e8Virustotal results 37.70% Heodo
2022-01-140763569_5976241.xlsmxlsm d594b280f7c65a809908f22ea58661b721f25ed2c85d6bec36915a9432207170Virustotal results 36.51% Heodo
2022-01-148223230_9173.xlsmxlsm 6e12969453050a6484a89da436261ff8263a6e7785fd2b51e8dc02f1acf46a4an/a Heodo
2022-01-14792TWAHUC_29.xlsmxlsm 7eec4853d57e3ddb72cd60cb01b553f479708fbd392eb45fe86e2f36dcd781f0n/a Heodo