URLhaus Database

You are currently viewing the URLhaus database entry for https://www.cursossemana.com/wp-content/1441_22420811/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1984691
URL: https://www.cursossemana.com/wp-content/1441_22420811/?i=1
URL Status:Offline
Host: www.cursossemana.com
Date added:2022-01-17 21:58:05 UTC
Last online:2022-05-23 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: sugimu_sec
Abuse complaint sent (?): Yes (2022-05-23 15:02:06 UTC to arin-abuse{at}tucows[dot]com)
Takedown time:4 months, 5 days, 17 hours, 18 minutes Bad (down since 2022-05-23 15:17:42 UTC)
Tags:doc emotet link epoch4 heodo link SilentBuilder

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-188470695104006655.xlsxls 59cb2552a34b231acb92fcee121b13d662ca7f0049a70aae86fe312270f548e5n/a SilentBuilder
2022-01-188924656055723.xlsxls a08e21a9646ed80fd78c00c66e67a24ae0fe62a3b0e7f1f8af0de9e7e5b36fefn/a SilentBuilder
2022-01-185449475376.xlsxls b463abec1dfc612e1ea59fa20ed07f468fbdc69e8694a5af639fa79435ce4f58n/aHeodo
2022-01-182359560989373469.xlsxls 4dd34288d1597de3f5939787b91e85331964708a0f7c73655e6d8239c4688756n/a Heodo
2022-01-1833728102089940223.xlsxls 6cff0fc7ee4e1c70b0fb94ffc68d8939a2c5afc238ecaf0dc9e2a829baa2aaa9n/a SilentBuilder
2022-01-1879301913575.xlsxls ef7820c85bc6c3df2447132bbed914ed101aeb7baf6e6edf25026375f9df3980n/a Heodo
2022-01-181404332724958.xlsxls a35ccc0277367ef2660f2eb7b2c5702b33e04ecabb9e9dc69f0e089d31b24abfn/a SilentBuilder
2022-01-183241781933551626.xlsxls 35da04ff2a62f8c0275a0e10151c69d9cfd7fd35dfc2ef154105492a517023d3n/a Heodo
2022-01-18994545195597635417.xlsxls c1a761edd3badd0226e48b8622372de2feddd9d4ced41445685022600816aa7cn/a Heodo
2022-01-1824223049619348456156.xlsxls 0971b78a1fa100002ec0c3cd1d18af109e56369c4a52b4445f10c30ea8ade7fcn/a SilentBuilder
2022-01-18215466486497.xlsxls fef50521b3110b6efcd1210d87cffcc0912c24b496de185199e0ccd5b5a5c88en/a SilentBuilder
2022-01-1827177474764800876288.xlsxls dab9f48f4ae76936b59d34d7be449dbc15e45ba29d6dd1a861eca70b8ab4c6d1n/a Heodo
2022-01-1883207934742403173.xlsxls 272eb969b7ec9701081101f3a3cc5c1f30907a1b1c46700c2bca288edc9dc15cn/a SilentBuilder
2022-01-184179511617089000.xlsxls 14e06e9395a20e63635c321d4e8f23e03da439bfd81766dab0a621ec1c4627aen/a SilentBuilder
2022-01-18184232594231388588.xlsxls 32eaa4ec7dce492883fce25e20778b8c6b36c2d269d3e55f713977f4ab0618b8n/a SilentBuilder
2022-01-1884040981764423800842.xlsxls bc1172240f277c311e80e1e9149ebab58d1870bc0a9e94f3bd898a025495be3en/a SilentBuilder
2022-01-184817719260122.xlsxls e64f53d96cf4624502733103a45f67cc0635e35e624610cbec57ea9844d43203n/a Heodo
2022-01-18004809497856970499.xlsxls eb7193559a0f423ea0f4c9d50884ff6e053a6cd4b1a81563ac619e72595779ecn/a SilentBuilder
2022-01-18364755949166566993.xlsxls 027a72970eec77e5214269c8f79a87f5f614a1ecee11257b3feac2fbf54740f2n/a SilentBuilder
2022-01-1898772075719244177.xlsxls 6627edac0e7bcc8f7615afe466232eeb380497a02666fed395e330d866dba379n/a SilentBuilder
2022-01-1820646582198.xlsxls ba5cec050921142c70a9666d32ed2689badaae0afbf6105f2c3a570638634d84n/a SilentBuilder
2022-01-18063736964053.xlsxls 5255b0788b382c41d46027fda6dc4e3c717a4cbc46469614299d184bf77037dfn/a SilentBuilder
2022-01-185293815199743.xlsxls 321d80f76297387803acdb4fd4e6a4dc6073d515955445752390767e95884b67n/a SilentBuilder
2022-01-183627820910.xlsxls b933c6fc1ce4b9df0d65fae6724a3053c183cbdf921053873252181bf50ed7a0n/aSilentBuilder
2022-01-188701688699.xlsxls 6d894e2cd1eaad5f13a55f94de79b6dc01a1f37c48b884d488e46003c054eb8bVirustotal results 15.00% Heodo
2022-01-17909593616468.xlsxls b9cf7499338b7ce6d879b0093cddd093f329e54f080335bc602f3b30f055978an/a SilentBuilder
2022-01-177674904516601822539.xlsxls 6c45d08768b929c1e9e51c06e8e11e0f679c9a66a33415a427417ee1a3391ee0n/a Heodo
2022-01-1747160957406622149.xlsxls 63ca712aa3ded137254262b9946785369c094b3e58b186e4ddaf34ba8b5d9e85Virustotal results 16.67%Heodo
2022-01-17290264248492806.xlsxls 01476eaa4b0f7bdde2a764be2f017d11e0a9743bdf0447c63288607ef7437ac1Virustotal results 16.67%Heodo
2022-01-1722901961482.xlsxls f6c6e2de6c48ffc623320a3b19ef24f8dc009d55b9d388b58847ef5008962cc3Virustotal results 16.67%SilentBuilder
2022-01-17hrdjaa7318992.xlsxls 4d8e2810328f7a442cb42a185f4377f8f14a121074116ac6073aca8d60a5b5den/a SilentBuilder
2022-01-1777420-86.xlsxls 89693c1d61a868e13f8341fd6cb0251a7fbdce9ac109560361a86008f548c868n/a SilentBuilder
2022-01-177002_156.xlsxls 8092add62a7a65796c48b9a601703fe6651051749003599227603bc5c039af1bn/a SilentBuilder