URLhaus Database

You are currently viewing the URLhaus database entry for http://meleton.e-dir.gr/wp-content/t61jn9/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1992346
URL: http://meleton.e-dir.gr/wp-content/t61jn9/?i=1
URL Status:Offline
Host: meleton.e-dir.gr
Date added:2022-01-20 12:03:04 UTC
Last online:2022-01-20 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-20 12:05:17 UTC to abuse{at}ovh[dot]net)
Takedown time:10 hours, 25 minutes Good (down since 2022-01-20 22:30:36 UTC)
Tags:doc emotet link epoch4 heodo link SilentBuilder

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-201680504175608435.xlsxls 0aa692cc9abe6360ac72502a9f27fb0e3d401153dfe067524c82c56b7e5f8625n/aHeodo
2022-01-20697917972799421.xlsxls 0f42b20f799c9d1956f810952da2492e135ddaf0c1eb3afeb975a49ae8c784efVirustotal results 22.03%Heodo
2022-01-20811509116801036.xlsxls 94ef78ad1bae59d96e38f0f9e0b1cdfa1533ea531ee1522be6adcb6dcf389548n/a Heodo
2022-01-202547926742611488556.xlsxls cb260a08f074793cbaebd6b8453ae86b77cdf093ee569aaf06670237d1fe16cen/a Heodo
2022-01-2034685002717.xlsxls 67d5e8d2c3fcf5a17f0c7aad1b6f8963102dd00bdb62a3179605c3cdf659ab3cn/a Heodo
2022-01-2068366593474729418129.xlsxls 5ba1e7e7b37d9efbafaaa5049277348349998f11e6252edb0aa7fcc37bf94c99n/aHeodo
2022-01-2067975113059417.xlsxls a36bd9b3119403daabdb28c67733184fa3071008c807a35b8bb29e76152a2cb1n/a Heodo
2022-01-20114585352096050.xlsxls 2dc878cbd56aa3817a893c118a8257f705517f72326c6d5424d2b498fcb0c54bn/aHeodo
2022-01-20880395978603.xlsxls 32efd3dc59a0008dfe321d99b4d86a446a06af1e3b128295b387c235b4751a0bVirustotal results 28.81%SilentBuilder
2022-01-2046535989976426580.xlsxls b12e86184ea506fa554f7e29ee00586c73545c1af7f451eb98f49a2ba215b604Virustotal results 35.59% Heodo
2022-01-200591423929763.xlsxls 1260ff0a2fff2aa76478b723fc979c02f5b051d7edcb19cb4428cbb157bd1a7bVirustotal results 39.29%Heodo
2022-01-203523952081649582232.xlsxls 3ce617ed4d5a78ba123d6463b4c0c6b8e7ea29f0800761e9559c8bf182f21afeVirustotal results 30.51%Heodo
2022-01-2081324243897815862641.xlsxls 1b56b512e143bf588017e0ef26bea37c85688b638e6b4aa2ca0d7a443ecf95beVirustotal results 22.41% Heodo
2022-01-2020995770181.xlsxls ad511015e8c542a03954c1be8721ddcce85dbe997f7b2048bc6e1b35823c5ffcn/aHeodo
2022-01-20645032737554256.xlsxls 039adcca4d205850117d5b2348ceec561c57868668ab822350ef94a9b9467842Virustotal results 41.67%Heodo
2022-01-20958956881136888420.xlsxls c962232ce7c3c2cff3baa81deffa085cab3750504b71d870c81685ca3283dd08n/a Heodo
2022-01-200915962116517160799.xlsxls 33bcc678281337839c7121adf32e1ea0fab2974709ab30d0099e4bbd147916b6Virustotal results 17.31% Heodo
2022-01-209780645822601798.xlsxls 093eb9276d5df2490f9dc0dd324349648f030d92ca6d4ab24d386d1d0eaea799n/a SilentBuilder
2022-01-2061702923181.xlsxls 4627d88cb27d885555625326c40717630dbfc7708869fdde4d0064f2d59e5bb4n/aHeodo
2022-01-2093894928506328529.xlsxls fff3ac0f2ce35babb7cf736ec26a8374c8babd255489994937c41a8c005e5b46Virustotal results 22.03%Heodo
2022-01-202368555872422686158.xlsxls a38227249265731f1e9195e22b2ba517aade08d43d5a67117592cf0a5f8c3b9bVirustotal results 24.14% Heodo
2022-01-20165545233735.xlsxls 687e234c7b54e2590520375221eec756b91e6e03b05bbb313e8765457906c707n/aHeodo
2022-01-2080529606009.xlsxls bcfa7cbaded9c6144689692a9ea193431c16e7bf18e7ab361ef65fce375d93beVirustotal results 43.33%SilentBuilder
2022-01-207778339289.xlsxls 77a20d50ae3ae14a41e424ec176e7d28a9fee2fde14429b5aa256a50bfabbf5cn/a Heodo
2022-01-208733411841669407943.xlsxls f364484e6d3e00f20019e36759be54c6c36fab26ca0d5dbe5819354754423a1cVirustotal results 22.41% Heodo
2022-01-206756121722108202.xlsxls a0214c02c61e1273127963a1df29ecd2db5b7ef4e0fa8f9a878b387c03a5d65cVirustotal results 35.59% Heodo
2022-01-205895131821.xlsxls d0e970149a72b878303b425cbeb058aac6d74f1b94b2c3e150e40ea7da2e9072Virustotal results 22.22% Heodo
2022-01-206581597860119442320.xlsxls 77151a31805014e0dc372a02bdabcbe7cee6ce3eaa1cfe9646290a6969581666n/aHeodo
2022-01-202414862055945.xlsxls 34315a97decc512b1ee8e3f26e5f2ff6ea20bf03d6e8524b970df14e18ecfcb7Virustotal results 46.55%Heodo
2022-01-2086555247423600705.xlsxls 6b65f37d876f38bcc12bc144f25a9674a7461b5500953b5ff8bf02186d82b3b8Virustotal results 19.30%Heodo
2022-01-206512921537124884064.xlsxls eb2f4d9d99c1276b3b2687814ceb4805aa527e17b41fd2b7099d8ac693c2f6b8n/aHeodo
2022-01-20764287281154612938.xlsxls 29a765d282e097a0ddcba25fb078bb0b81fbf9a3e5939f0be8bf41c72c770f83n/aHeodo
2022-01-2080208980611406046819.xlsxls a9e347396807d827c3f8e30902f30d78960aad8712031fd1729637d1fd08f85bn/a Heodo
2022-01-20732127852010.xlsxls cb8ff98fc8e177a504db540af317736d47851af89e06bc763e4e81bb254099adVirustotal results 38.98%Heodo
2022-01-20988461700194.xlsxls 934cbb40fb991a65966c7890bb328974e9779cfac8370eda488b5c72e7b255feVirustotal results 18.64%Heodo
2022-01-20733996418698588099.xlsxls 9d5d0556d9deed253f2b65fc3564578f14916269d9c53359fc4110c8ab1219bbVirustotal results 18.64% Heodo
2022-01-20008954550166784.xlsxls d11993c00af9c1cc42f5cd2fd81eecfce1b5a672781bf5d78e039545baa578b9n/a SilentBuilder
2022-01-202058593860461.xlsxls 69d444a20fe3db424694d33f389abddfbb1a849cab34eee15116487076fe0585Virustotal results 18.64% Heodo
2022-01-2084014567664352939722.xlsxls 140e67de01bdb9514dc5e5c267917b1ed2157fc41be4791ea6e8c02429c5c272n/a Heodo
2022-01-20917466279697918005.xlsxls 7bcc81bd2ed657103d32c3786d4ed067a429f084675d83b1a7b4517c48680820Virustotal results 18.64%Heodo
2022-01-20104564843393499.xlsxls fb72e0875eab51025cc2716a564ff86c414b7f35a78b883b7144c1bcd8c79bf8n/a SilentBuilder
2022-01-20166768900903332.xlsxls 1477850fa35c92df361237f36a47aec448706db0a3f0b0f0ef411a7ceff580daVirustotal results 22.41% Heodo