URLhaus Database

You are currently viewing the URLhaus database entry for http://gorajautomation.com/Fox-C404/0Yu4rviR3soc4brPraTpbjS/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1992921
URL: http://gorajautomation.com/Fox-C404/0Yu4rviR3soc4brPraTpbjS/?i=1
URL Status:Offline
Host: gorajautomation.com
Date added:2022-01-20 15:17:10 UTC
Last online:2022-02-03 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-20 15:18:57 UTC to google-cloud-compliance{at}google[dot]com)
Takedown time:13 days, 20 hours, 38 minutes Bad (down since 2022-02-03 11:57:17 UTC)
Tags:doc emotet link epoch4 heodo link SilentBuilder

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-21291782390918144835.xlsxls 6407591df6ce61f946e24715faa6fba1b1f3221e2baf22f6c4f5a64f1ea98eb5Virustotal results 36.67%Heodo
2022-01-21191044380572854303.xlsxls b443a467b699497e7eabc0c3bdf7bf6a86705a29944ec4ee8e249abb7d17828fn/a Heodo
2022-01-2142009319007942839256.xlsxls b11d267860a7dfa12d415540e8d6b6e4b7813b2a4d633c966ce2c405a20b9a95n/a Heodo
2022-01-212751164761631252855.xlsxls 2f51046242d3bd4fc8a58e9ee765707e09c8efbc4bd58b302262b181e9960bf1n/a Heodo
2022-01-213170801383.xlsxls a012d6c3ff9ac12c39dc7e32fb51008897bf8ec0ea7291f80801a2bcdf195cffn/aSilentBuilder
2022-01-215322559934.xlsxls ce8ed57f03c2c3733b81f29e38332753051c9d5917d62760190dbc6b9dcebf45n/aSilentBuilder
2022-01-21267254800613455.xlsxls 1f8c4b036377f2a61d53cb148ad29e36409e2248ccb66479eea7f3e5eac3cb78Virustotal results 20.00% Heodo
2022-01-2171207460591.xlsxls 595457287262641f193afae7ac66120029ef90f2ba59b310fce3d9335b1cf304Virustotal results 30.51% Heodo
2022-01-2107797170067.xlsxls 7ecf0d5b556f400f2d98ef9f7e90373854ec0bda7732f5300223f9c600405235n/aHeodo
2022-01-2190909912066490116590.xlsxls db8baab6295830de9d3d9a59dc3b8c88a5de601deeaffaaa83bb6aa941e29b6cn/aHeodo
2022-01-2137647118173539.xlsxls ad583c4b877a37dbf913c275e1bce335b8e73817d61039a2a510e28f325d3e6cVirustotal results 31.67%Heodo
2022-01-218924013793.xlsxls dac57112411305935ad4318c4ff4f495b8b39f84f001b64d83ea3ae69a994b02n/a Heodo
2022-01-214983820533.xlsxls 76b99443173be2dec302236f022b468a8f7314de6c460df50dfa9459fed95ba5n/a Heodo
2022-01-218130057766165892700.xlsxls b25424269b681aeaf1aa59f18c0e7a39d6f8e41a76c47fde6377681254a4c440n/a Heodo
2022-01-2105534411073955.xlsxls 9ec21209d6b8b473f19ca78ea762fbaa3a555169ec4462aac5ee5bb1682a27efn/a Heodo
2022-01-213440676930257630.xlsxls f8d6b99d4c2313eca81f477de5763048a8606e5e06adf6e6cd4dc0675f8b891dVirustotal results 32.76% Heodo
2022-01-2134733536768494.xlsxls 901080be2ebddd84578b1c86870709fc36d04777bb2a6baa69234b7aab046a1an/aHeodo
2022-01-2116882174225033387.xlsxls 4f0d506bde4b58d49d13c50470ec44e3cb2d9b084afa1186e857445ea66faccfn/a Heodo
2022-01-218883450759210700.xlsxls eca323ddf5c863072e76cef170025ffcb611946ac3656f641ff0d2a0b17aa382n/a Heodo
2022-01-218205911558606090085.xlsxls d209f6f33da26aefbc9f93e2bb3379d164efbc34f6ed2f38b4c8f19024098971n/a Heodo
2022-01-211591251866321.xlsxls 5d8d1d8cee7bfa315d6091608aaad9d7d72ffe649d9dd9d4583369298b45160cn/a Heodo
2022-01-2196334944027453.xlsxls 176e74f0a464fb21b84f6934aad4baec2610d29e8998c2d8808c45affe7997dcn/a SilentBuilder
2022-01-21251872939093.xlsxls c98dcba86d1537e49d66765a60268850b112fbb98f23aa6d3b91cc5f93c2a232n/a Heodo
2022-01-21177817692378.xlsxls 8aa9a577a3bd2b2fb4b35339f5593a8a3f1c7635247b6fe78fbbb2983a8cdd4fn/a Heodo
2022-01-21709020830935824662.xlsxls 358e8e25ef848f0530a1b2094f471f68415b1b8f84cf21e6f9f1dbb774759140n/a SilentBuilder
2022-01-2192255650624258393.xlsxls 649143ea8e6ec1173106ac1bc3034951327ffc75a1d8324a1b80d280998e2fa2Virustotal results 23.64%Heodo
2022-01-21685221301976.xlsxls 71ef7935e65760f4ec2fc7a2d24246ee5db75c28000b0a7303ec8ac0c9e98634Virustotal results 22.03% Heodo
2022-01-21757602255793.xlsxls f8b8104e17358beef65e6fdff2be55feefca3de5b25cc90d42f3476aa563adf8n/a Heodo
2022-01-206137700455514.xlsxls f968e46bcba287794933061736a68fae19dc3e579e41e54fe2712d4a8b3ed5a0Virustotal results 24.14% Heodo
2022-01-204163150861226975.xlsxls 5d36041450aacaf14696b91009e0d0724695c47586467dfad802076b3dd6adden/a Heodo
2022-01-20356728200783100223.xlsxls 3e36c6f45c9f9361f6c28f811cd2048a727e022281815b02c021811cab7ed01eVirustotal results 22.03% Heodo
2022-01-20948668672745219.xlsxls 514af468cf8a54d3ba4fd08208de3119721d9a9b5e4d2c96373add4d3dd7688dn/a Heodo
2022-01-2081099353749464469662.xlsxls 7758c1ef7b05f4e4e7e283eda2aba34801589c1ed656610c149a5b1a1a0b7fc3Virustotal results 22.03% Heodo
2022-01-2018839744733.xlsxls cc087101e48ffeece56deba54e6da814a6d35e371396b07cc4e10b121aac9907n/aHeodo
2022-01-20501621857273659685.xlsxls 48fee052f0fa5361ddc892d4768321a00e5c80adabc60654488ea8fc1ffa135fVirustotal results 22.03%Heodo
2022-01-204351130664719.xlsxls 26abe8e8297849c2a5721808548030b0abb405538a62e4a4d7bc0bf2a6279476n/a SilentBuilder
2022-01-20766246120235518020.xlsxls 6f95d343a882d6e800379be638a48804dfc956537ffcc06361e1f57fa2938808Virustotal results 22.03%Heodo
2022-01-201569905666197241.xlsxls 51dc452edd7c975ac8f632ad888d6cada4233c19aa061416076abbdb2ac596b4n/aHeodo
2022-01-2004846935509.xlsxls ab4456f73cd0d49bd6c2dc5553a33ff128bc765cb07cd47f8e0619d01735f966n/aHeodo
2022-01-203651114956274.xlsxls 5d372591b1e8b3107e0e57ec3a38f1d2bfd43afef5f04bee85334f46f57d71bdVirustotal results 44.83%Heodo
2022-01-2047782534943651.xlsxls 5c8cb7136b7f89772e79c0a2f6ead69434dbd7cd66ed030ca620de279c9b20a2Virustotal results 50.00%Heodo
2022-01-200994434552.xlsxls 4102ee23d580a34ad9a1790ea81e7d9739cae27b843165e0daa30b9450585db4Virustotal results 23.73% Heodo
2022-01-2018423575684151778.xlsxls 88c52c4d1940f16219506b7c10ded1fa314e5f05e0aa03cf441a7dee30f41aa6Virustotal results 22.41%Heodo
2022-01-2012179769026334.xlsxls 670b10a706a22c6efc34af36bf591688d08eb44be993d5901a66525c6369bd9en/aHeodo
2022-01-205303868196017445.xlsxls e2f274d79ed0c5888801e6ec32ac82d1a083ee48fa511968a3fc435c1b5034den/a Heodo
2022-01-208759397729756.xlsxls ad511015e8c542a03954c1be8721ddcce85dbe997f7b2048bc6e1b35823c5ffcVirustotal results 45.76%Heodo
2022-01-2087575151705529.xlsxls 039adcca4d205850117d5b2348ceec561c57868668ab822350ef94a9b9467842Virustotal results 41.67%Heodo
2022-01-206850164655644.xlsxls 40dd74fb1fba55980387dff7f457cfee8778be09fd503bc397f747bd97d82ffcVirustotal results 43.33%Heodo
2022-01-20078341152412128.xlsxls d0e970149a72b878303b425cbeb058aac6d74f1b94b2c3e150e40ea7da2e9072Virustotal results 22.22% Heodo
2022-01-20851918515781411.xlsxls 909664581c9c1270d91b217c94841e2f6035a12c5f15725c384b2fa746b0b3ddVirustotal results 27.12%Heodo
2022-01-207878040100568964944.xlsxls 1406e7176ae6fb7aba0fb00e8658291ffeb38c2c9d844bdb47a8131c697342a5n/a Heodo
2022-01-202172485965115517.xlsxls 88f602cd8f6b66886acb349720da52c3f5fdb367fe8a72f76812af27347cf32eVirustotal results 22.03%Heodo
2022-01-2081524362974778151.xlsxls d7f2a29fddd8dd58c32e86715969193b8a5760e98aea4208c925324af3a633f4Virustotal results 20.34% SilentBuilder
2022-01-2038713696558608680.xlsxls 687e234c7b54e2590520375221eec756b91e6e03b05bbb313e8765457906c707Virustotal results 41.67%Heodo
2022-01-209052144257.xlsxls b7c12da037688c432bf94d80c88811b29b1a4d379a84ff3d6e6ac95eecf15680Virustotal results 25.86%Heodo
2022-01-207088400134326578541.xlsxls b3973d991b4f3e3870404c40bf59257bd40f4207f10dd5a6c34a8d4e29e0f7eaVirustotal results 24.14%SilentBuilder
2022-01-2073369480338708254884.xlsxls 7f47c50d92a3da634e5e5810bf1d27d35cd110242f9148c1506e2da375a056e8Virustotal results 41.67% Heodo
2022-01-2042403470981685164783.xlsxls fa39e0b7c55be8b0a1237b7757dfb1428554fbca8ae6e2e3f118494033ae6819n/a Heodo
2022-01-20702527942899742.xlsxls db0c4fb5f79fdbf7ce398e64bb3ba349252948448e8062e57fc24c02bc8c136cn/a Heodo
2022-01-20367603173369.xlsxls 626b64eb053b331d97bf169957fd1988e63344984f364b3e6616c48dfdffff22n/a Heodo
2022-01-205713172192128.xlsxls 2bc45370dd6eed0f3059fe82bd82d8aeca954819c9ad8ea823d36a8e01c7e92cn/aHeodo