URLhaus Database

You are currently viewing the URLhaus database entry for https://thelifelinenews.in/josbudks/bVVFS/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1990376
URL: https://thelifelinenews.in/josbudks/bVVFS/?i=1
URL Status:Offline
Host: thelifelinenews.in
Date added:2022-01-19 20:56:05 UTC
Last online:2022-01-21 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-19 20:57:11 UTC to abuse{at}cloudflare[dot]com)
Takedown time:1 month, 25 days, 15 hours, 15 minutes Bad (down since 2022-03-16 12:12:39 UTC)
Tags:doc emotet link epoch4 heodo link SilentBuilder

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-13n/aunknown e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855Virustotal results 0.00% 
2022-01-2005580169605510.xlsxls a1d4e9c497ec94e9c1182741b7096c47396c0057014747c17e618e82538eae72Virustotal results 17.31%Heodo
2022-01-20071293938952.xlsxls ceafd90b9d8a1fa4ba9b8f81f1c3b138570c8768b75ac1ef0d3bb126cc6d497cn/aHeodo
2022-01-2051458879051299949985.xlsxls ef091c8fd3da5e55d7349f328528de0c8efbadff875a3a2f4d07355acc5a98d9n/a Heodo
2022-01-206509130361214.xlsxls aec8e11077b3155936201e3011ee82bc5f9736383849d3070901ffc60cd62ca6n/a Heodo
2022-01-2079573816679274974651.xlsxls 3683dfe7d6ca0aca155aef7febcaf8434fe6545ad7937b3adaa2fdb2ee22fd80Virustotal results 19.30%Heodo
2022-01-20134227020623532.xlsxls ef8562b363253996a0a2f5902bafc7d8f345d05e3bef28c3791c48e10d14c78bn/a Heodo
2022-01-2064798447736784779254.xlsxls 042d4b59153d75848595e19536f77437dcb1a52e851dfa507596159c99c74adcn/a Heodo
2022-01-2092768981443.xlsxls 3a62645fb0fa509d7ef475480849b1ae216c24ae4868b71e0a9b4cb2e9deaac6n/a Heodo
2022-01-20476850419200.xlsxls 7a7a59440f9c5bb479634e84bd8b2226662e847bf2e87c1d11f476fe6ac55ca2n/a Heodo
2022-01-20503822162738479.xlsxls cb2fc370e9a47d7a55ef8ba2d4752062d8580c4fa8cae3df35655bb736d041ecn/a Heodo
2022-01-2098549021889066434761.xlsxls ea8beb95497e04ecad5f678a9d939ed58200e80b1f79c702d777008f524a0045n/a Heodo
2022-01-2030081280805.xlsxls 89ac9846e80ef313bb3b47ec5d39721a42df0322689ec11f3fddf2ade55504ccn/a Heodo
2022-01-20864886236058.xlsxls ea79275a76b6aae0dd672f7b56b4df776d7a1aecb5304d84f2c4aafa490159a4n/a Heodo
2022-01-203730309306799.xlsxls 9e2f1d0f201f452c51c21d9e00eb6cffc3bbe14d90c4adbf799577dd71c296cfn/a Heodo
2022-01-209549854107568003.xlsxls 8abb9df7dbb7c37ef4298c320074b668493d97486fa893ed0ef7c33001f20966Virustotal results 18.18% Heodo
2022-01-20438393756027.xlsxls 9a67d9ce62f5eaabb79400048ed2c8864f20c79663f0f7c0f3a237ed3c8495ddn/a Heodo
2022-01-2038755991802.xlsxls ffedad564b619c6e6c73bb544d8916e3b58ca40a11c2f97cbefb2fd742c43fe3n/a Heodo
2022-01-208560805755648.xlsxls 5f02e2bb6304106673957714bf9129df79438f98759757524997f8908add231an/a SilentBuilder
2022-01-2068133806811689853.xlsxls e5286287b252f12295efe836725b8d213e3e35a8f0cc9a5d74e2251d43305908n/a Heodo
2022-01-20430497176832.xlsxls 4c3f80d1187f8c8ed466219a7ad4ff851a00a00b84dc6582253fba6415c6f97aVirustotal results 33.90%Heodo
2022-01-201961024174.xlsxls 1721d1176db895601d861e05ef2ca153746eb52ebe309bddf537b2bd9e539b3fn/a Heodo
2022-01-20832903043693.xlsxls 76f8c0c2b92b7b85aa7ef66bd57dc746f07630eb13fbea8ec29b5115701d68d0n/a SilentBuilder
2022-01-2021774782181339311.xlsxls 43a573dc9dd0dc79dcf228467e8e6820f4a4f8bf344660ea43eb11bb7b3c93f7Virustotal results 21.43%Heodo
2022-01-200172890453336848564.xlsxls bdc735ff6181cafca367001ce29ddc5389cfdfd6c2f12957415231a74215f525n/a Heodo
2022-01-194644256036241786.xlsxls 71218d4b13d7c5ab1cd1583b1646b4e495f88b8acedb0376a89e02a11354d674n/a Heodo
2022-01-19251069463692958495.xlsxls cfb445f5bf6f9e73f79134ad0e65b09c75066fded4ba099918cd060e999ae52fVirustotal results 23.73%Heodo
2022-01-192370021879281283.xlsxls 1b56b512e143bf588017e0ef26bea37c85688b638e6b4aa2ca0d7a443ecf95ben/a Heodo
2022-01-1997590868029.xlsxls f74964dbb9ba817e9acbccfc6c081eee34f21cb4d1942c7aafe8ecc867761917n/aHeodo
2022-01-1910330356265018658725.xlsxls 164c4462564895150dfc560f123efd7a59af8c5720ed9937070c77875cc54031Virustotal results 22.03%SilentBuilder
2022-01-19205935432098.xlsxls d0e970149a72b878303b425cbeb058aac6d74f1b94b2c3e150e40ea7da2e9072n/a Heodo
2022-01-19716604274664555.xlsxls b013c24cd6f16d12bf344be771b968ddbcd81c59140bb28ea319119937917953n/a Heodo
2022-01-1963773763931.xlsxls 749d28143a8e6196114391e05083415b6175d6b381de618f1645838825680e4fn/a Heodo
2022-01-198285600395560.xlsxls fff3ac0f2ce35babb7cf736ec26a8374c8babd255489994937c41a8c005e5b46n/aHeodo
2022-01-19063221354400.xlsxls a38227249265731f1e9195e22b2ba517aade08d43d5a67117592cf0a5f8c3b9bn/a Heodo
2022-01-1945955298052545.xlsxls 2d5a3c70a409fb84b624ca4fa23db62caa0b0f972ef20a9a23504b665e10f6a4n/a Heodo
2022-01-19796334086080210553.xlsxls 00483020a11a6d2bf68c198af6be68c437c46aa109ff760fa73070cad4b09de1Virustotal results 18.64% Heodo