URLhaus Database

You are currently viewing the URLhaus database entry for http://highlight.com.ng/-/r5sLaTiHOgefQc2PL7teraoidM3pis/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1987228
URL: http://highlight.com.ng/-/r5sLaTiHOgefQc2PL7teraoidM3pis/?i=1
URL Status:Offline
Host: highlight.com.ng
Date added:2022-01-18 19:19:06 UTC
Last online:2022-01-30 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-18 19:20:10 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:11 days, 13 hours, 32 minutes Bad (down since 2022-01-30 08:52:51 UTC)
Tags:doc emotet link epoch4 heodo link SilentBuilder

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-194882680613340069761.xlsxls cff13f579e3598d9be5b751b75baf9fe837772239567fd22224bce3c6e99e1d0n/a Heodo
2022-01-197274037117077046.xlsxls df9d56fff17a1794b513358377fb433bc923a80bd90821696c276f1c0dc65795Virustotal results 18.64%SilentBuilder
2022-01-198772962401.xlsxls 54c4606892b1fede80e10591041b980262e6a780b2017de3ce6779d96d862a44n/aSilentBuilder
2022-01-1974050346684938.xlsxls ed228873fb44f8cc68edada7c0687dfda287a3ae45fb0c0cb6cf8a58bb2487fcVirustotal results 18.64% Heodo
2022-01-1936604001330273166.xlsxls 6d56c4a60ec2d451673ce2ce76e1fd89e23fa89a05c872736d78e15020cabe71Virustotal results 20.34% Heodo
2022-01-19010644400287472520.xlsxls fa264c33403e70b02a4aa9feedf6328187ad3e3ff96e4b6d3f60dda60f5658f1n/a Heodo
2022-01-19917731472899070.xlsxls f8746c0e7d492357a8f30e424870c4fce49699d165260610a62360668541035an/aHeodo
2022-01-1941735585534.xlsxls dc093bf88a8236753fa3525ba30696c09d38cabf424fe2357c3e329f9606d22fn/a Heodo
2022-01-1946978412847186.xlsxls 14817a3b02e6cb0a22fd6b251c612d2f21ba516c03224741e3ddc24755c424deVirustotal results 17.24%Heodo
2022-01-196651363659796.xlsxls 536fe29b4002bc97dbdb4f89a409168dd8f4166ef7a9d857252fd6e82be07950Virustotal results 17.31% Heodo
2022-01-198523338363405616364.xlsxls c90e7d5d7b914e154dba5a9acde682aea9d957f777039a2eb165926dae35ac35n/a Heodo
2022-01-198712919192367687165.xlsxls 44da779f7768dcf98274fb702fc93b89b7c674a2de24c2547f3a765663092d4cn/a Heodo
2022-01-19591982105005242.xlsxls 33bcc678281337839c7121adf32e1ea0fab2974709ab30d0099e4bbd147916b6n/a Heodo
2022-01-1970562662507918.xlsxls 06f81a0439de4a88bddf3371586a0d0594bfb213bb35e9b00f300d012e4e2691n/a Heodo
2022-01-1935122470599.xlsxls edefd18d0580d8d25297bcddc843c3478c20f650b124224460ca9ae267529878n/aHeodo
2022-01-19829896476419.xlsxls 4ea8a2a5f986391336015695a1f48749ea0956a8874d8ffe17cc4b6c0865c9fan/a Heodo
2022-01-194263938602.xlsxls 92a8df3637b292f2423b78c2fd5969694237c186b90dd2b5a532ce1a65c8dd8cn/a Heodo
2022-01-1953539228442160834757.xlsxls e65457b2422f5bf91f36b2f1a6d12469325b7b580d3d07262777b764230414f0n/a Heodo
2022-01-1926940135812382.xlsxls 45436614d9baa751a6da8b87c9736389801dd8daab1a8f82d73aa96f644da316n/a Heodo
2022-01-194801100711106.xlsxls 8e29493f61aa15b6d8045450c52ede09ff2e5946e88df86409c6a693ce2863can/a Heodo
2022-01-1992662778143.xlsxls b5ca16a64ab14a0b55fc7b71a1591ecbf68a94fa5a2c2d623ee21eb29091df25n/a Heodo
2022-01-193452903472059690442.xlsxls b3f61c413300fc14e38b6ca08af0658891e70a469784a8302a46e5f0a7d91daan/a SilentBuilder
2022-01-19830062319133803.xlsxls f019fca804432459a70c27b9361be7db78f4dcb3754485872c11fdfb1da20e8an/a Heodo
2022-01-1945492219948557521997.xlsxls 76faa078d1f1713f316cf3d152958b0db77d8e9255dd084d902b460fb3ea97cbn/aHeodo
2022-01-19662268130344564.xlsxls 0c4b8e3f9f33c533fb5f6f6aff0802f3fe3f9c0eaeb8bdbf82687c98c999e3ben/a SilentBuilder
2022-01-1905563381718.xlsxls 80eee1c94351d2cf598dc0b19d25ae8ce3898e3420bbb20c67a6e2e09a4a740bn/a Heodo
2022-01-188427740058.xlsxls 95141c557c2da97c647844e7c27133e0f8ba49907e167088ad774ed57e950294Virustotal results 15.52%SilentBuilder
2022-01-1803609062105.xlsxls e944c07dcd112199b08ae1650f64104edba74b93d20e88a5b51e9869c5d43419n/a Heodo
2022-01-182926040687045032455.xlsxls ab1cfc5403e7fd780f3dade25696cc27faeb1bee71ec075940c364687c539e68Virustotal results 15.25%Heodo
2022-01-1823781395051963612241.xlsxls 8524d24ea83c0c48cc594f6b89dd199bbcb2b779386e8c574215517d08fea129Virustotal results 15.25%Heodo
2022-01-188328879624679356.xlsxls d99da3f8ba8f43fe489d430688fc0c98117d58a36c708fc038cbefd530d16e61n/aHeodo
2022-01-1818845053387781844.xlsxls fb22abb24082e16427d328abb43ea2d0c291433f292ae984b641d137d9ebce56n/a Heodo
2022-01-1896398429876285395364.xlsxls b117f7f1b322791ca7c814a7c9003cb57510030294e08c1efd0b1b06f6a3cca3n/a Heodo
2022-01-1839400017546.xlsxls 72c86aa317ab7faa997935b084336233629d3bfd686c0d3b187d9b3817db2219n/a Heodo