URLhaus Database

You are currently viewing the URLhaus database entry for https://graniteprint.co.uk/derivedness/569392-2976/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1977738
URL: https://graniteprint.co.uk/derivedness/569392-2976/?i=1
URL Status:Offline
Host: graniteprint.co.uk
Date added:2022-01-15 00:55:10 UTC
Last online:2022-01-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-15 00:56:07 UTC to abuse{at}fastly[dot]com)
Takedown time:3 days, 20 hours, 5 minutes Bad (down since 2022-01-18 21:02:04 UTC)
Tags:doc emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-15TULR_5784.xlsmxlsm d8c07f93d53cd970c597ff94a8dc92c5b0e489a7e0489883fc86a4bd6d261f27Virustotal results 33.33% Heodo
2022-01-1584729008_65562.xlsmxlsm 0592991b1732e1e08398bc9d0d002b8712f5d04c2ccb93bbdc194f100cfe4cd5n/a Heodo
2022-01-15Fc_370525.xlsmxlsm 5e522b60a9aa3694fe9ff31c028d85daee8a4df5011ebcf7a44ea1661dfcf547n/a Heodo
2022-01-15A_90.xlsmxlsm b88760806701d31c1def6072265db39908d6ed77beb6f5d60263e8a44a46f120Virustotal results 36.51% Heodo
2022-01-15112-6311.xlsmxlsm 92b75d16d13348770c16fac4253587736d813b5be5efc510d13adbe505c3019dn/a Heodo
2022-01-15DFGCO_170953396.xlsmxlsm 62339184034e6ad69c9803d78caf51eb93963736899000a79763942bdb54b751n/a Heodo
2022-01-15XN_114335.xlsmxlsm e54c7e04ad7a623d9ef4cf30a5c8cd0eaa26f3a162d3e64bb39e9c755d8f839bn/a Heodo
2022-01-15jf94717.xlsmxlsm 88184fd50c3237c5420e39824ef12f6d3ceac1fbd74e9e7875c4649b9a8452bcn/a Heodo
2022-01-15886_466.xlsmxlsm 865eb35199ab84b4cefee238e23662fcde705cdd1f89fa2e8adaeb2cd4fe13a0n/a Heodo
2022-01-15MG2.xlsmxlsm be942d6de6c231e6bc861c1e67b20cf20bde4a7b78751e26f4e779c0a67ca9abn/a Heodo
2022-01-156018144_476801.xlsmxlsm de6733eb50cc7fad43c6861b199e19e9b1c03eb84a214c35008270c9479492bcn/a Heodo
2022-01-156345519-4.xlsmxlsm 0d1d5b1a694a7e274855a52facc4da0bb15b6fd46e19023e232209ccf855e65an/a Heodo
2022-01-15dtj-994.xlsmxlsm fc47084706c46ae94ca1c083194cef43af916b75afb8afef6f9fa59105067001Virustotal results 36.51% Heodo
2022-01-1594_627142.xlsmxlsm 55609e9411de2aa6dca0995747f89cc0b89081e6722e497433da8f8d02e9a2f2n/a Heodo
2022-01-1508-8006802.xlsmxlsm d103b5352273217cc252966b5d072c39b0340845aab3513ec3d17e07e1a5d410n/a Heodo
2022-01-1536_6.xlsmxlsm 5225cb80d26dfdd86adfb738e4bd1db0465b96e113af141c8cbd9d0bf4dc1e45n/a Heodo
2022-01-1574379512_28316.xlsmxlsm 3abfe866becd4133977aa353ac9851353631d67be57d77cd85419f68a31b3f69n/a Heodo
2022-01-1544522_1066.xlsmxlsm 35101e24e0d9b97edc46d35011a21e505ee4b05036998544ad3dad3444e09376n/a Heodo
2022-01-15569392-2976.xlsmxlsm 97915638d0d33dc985f58c3ea1791372760cd75c98b89b983b54706588e61e63n/a Heodo