URLhaus Database

You are currently viewing the URLhaus database entry for http://agrawaljeweller.com/js/752212434_60798799/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1990831
URL: http://agrawaljeweller.com/js/752212434_60798799/?i=1
URL Status:Offline
Host: agrawaljeweller.com
Date added:2022-01-20 00:29:05 UTC
Last online:2023-01-21 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-01-21 13:46:06 UTC to abuse{at}amazonaws[dot]com)
Takedown time:1 year, 0 month, 6 days, 14 hours, 40 minutes Bad (down since 2023-01-21 15:10:33 UTC)
Tags:doc emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-20262114266-968563.xlsmxlsm a793be1725a52c2dd1d2ba69f6654b8eeac0db5740a175fa7a12b185a8f30223Virustotal results 29.03% Heodo
2022-01-20FC-4469.xlsmxlsm 3e1d8a58301390ec349624e2de43757253fc9bdcf31814236dcaa980a8875699Virustotal results 25.81% Heodo
2022-01-203188337_6194.xlsmxlsm 3b4c7690fa48369fdc9a684e697c5ba23a23d5e89955484364a79fc0e74c99den/a Heodo
2022-01-20CGN_906670745.xlsmxlsm 46473d491bc661da90163ce5ed77341a80de9595296e65cacc351343a6b278d9Virustotal results 27.42% Heodo
2022-01-20uekFpj094.xlsmxlsm 645e264c2f657e1f901918767938090cbb4403348a8eb2a6c4eca245175dbd18n/a Heodo
2022-01-205925-09.xlsmxlsm 3429d6a8cfb23e471c568a683d16e627e3797bb2d27a1780d4f6ebfd739bf221n/a Heodo
2022-01-204774777_0.xlsmxlsm 230abd047e39fbdc5ba6a6a1155019bc8028de8c4823ca94a0e0768796124402Virustotal results 26.98% Heodo
2022-01-20JWLO86489148.xlsmxlsm 45f519a4d390f4ba9d3185baec87cde107ac189f10bea414ed41d614f438209eVirustotal results 26.98% Heodo
2022-01-2086775_029471.xlsmxlsm 745d54c9957257622f8009a18c4ecf6d99a2f407ed5dd0cb211649fbfe4d2b90Virustotal results 27.87% Heodo
2022-01-20QJ_3864.xlsmxlsm 45ae174e0c5d865a0e1a2f1831df896eb8e6edd60b0505864baa9a2db811a536n/a Heodo
2022-01-20081046_168.xlsmxlsm dc538d8c326048d59dfae049619e3364ddc87ae4f9db61eaca4f2294fca2fca7n/a Heodo
2022-01-20823835549_442.xlsmxlsm 61321c50b38056096bf8ac1bdefddd03bc9ca518baf59da4d4a8199013877146n/a Heodo
2022-01-2005028797198209.xlsmxlsm a9e6bc506a460667e8a9355d2a6d3b0f32d89124cfa00034e83a314d8c955860Virustotal results 25.40% Heodo
2022-01-20imulpp_509.xlsmxlsm 950477a11af1110ac463d4cd3ffe9770d71810c8e74025df9992e848d9ecb74dn/a Heodo
2022-01-20P3576750.xlsmxlsm 90efaa15b995bb08889711638b146f326ab1c46cdf557b0dff717746481184ccn/a Heodo
2022-01-20PJLKW-95412.xlsmxlsm c36c4073bcd870f0eb879b91b0e818e1dedfb43e5a56250408058d0fc35acca8Virustotal results 26.23% Heodo