URLhaus Database

You are currently viewing the URLhaus database entry for http://ufcmf.fr/stats/JNApdS3/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1990764
URL: http://ufcmf.fr/stats/JNApdS3/?i=1
URL Status:Offline
Host: ufcmf.fr
Date added:2022-01-19 23:58:04 UTC
Last online:2022-01-20 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-19 23:59:09 UTC to abuse{at}ovh[dot]net)
Takedown time:2 hours, 16 minutes Good (down since 2022-01-20 02:15:47 UTC)
Tags:doc emotet link epoch4 heodo link SilentBuilder

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-20768530295766624.xlsxls d715a57325bd00d8e636808ccbde7de3711c27a9277c8daf9063f2aa93ee45den/a Heodo
2022-01-201800328452783360.xlsxls ffedad564b619c6e6c73bb544d8916e3b58ca40a11c2f97cbefb2fd742c43fe3n/a Heodo
2022-01-20736135260732242.xlsxls e5286287b252f12295efe836725b8d213e3e35a8f0cc9a5d74e2251d43305908n/a Heodo
2022-01-2010534702940029003.xlsxls 4c3f80d1187f8c8ed466219a7ad4ff851a00a00b84dc6582253fba6415c6f97aVirustotal results 33.90%Heodo
2022-01-201114715109998908.xlsxls 166c9583cee5c1a75b37bee67af093b43a0016a26e9af41cad9029914cf2a672n/a SilentBuilder
2022-01-209947902607946968776.xlsxls 76f8c0c2b92b7b85aa7ef66bd57dc746f07630eb13fbea8ec29b5115701d68d0n/a SilentBuilder
2022-01-200110417668900.xlsxls 422f5365b485b43216d8738f869ae56092454b998e552919461f20edac0821d4n/a SilentBuilder
2022-01-1955732213675829698.xlsxls 49ca0780b51939c9ec43d2a65398b0d28a9be15761b142ba69e32ace98f102d8n/a Heodo