URLhaus Database

You are currently viewing the URLhaus database entry for http://jameslewis.marketgriddev.co/assets/3iA7ddAcbyJJH9eafPsQ/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1993795
URL: http://jameslewis.marketgriddev.co/assets/3iA7ddAcbyJJH9eafPsQ/?i=1
URL Status:Offline
Host: jameslewis.marketgriddev.co
Date added:2022-01-20 20:45:05 UTC
Last online:2022-01-21 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-20 20:46:12 UTC to abuse{at}digitalocean[dot]com)
Takedown time:8 hours, 34 minutes Good (down since 2022-01-21 05:21:08 UTC)
Tags:doc emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-20797726683761684720.xlsxls 7758c1ef7b05f4e4e7e283eda2aba34801589c1ed656610c149a5b1a1a0b7fc3Virustotal results 22.03% Heodo
2022-01-204728428999848723.xlsxls 280d866121cda0584db9be5b0d2b6299a5963ffc8ce9de55292d203e518f8490n/a Heodo
2022-01-2083278618340814140605.xlsxls 48fee052f0fa5361ddc892d4768321a00e5c80adabc60654488ea8fc1ffa135fn/aHeodo
2022-01-20048119471148.xlsxls 698ac4754c91f79900c81b961534ff29b9a260b82efb690fedc38b0f76ffd278n/a 
2022-01-20214592416810480.xlsxls e099be7b0c6f692f34ca73c32d72d85e9f0465fcf630dc6d929ff4280496c27bn/aHeodo
2022-01-2047007939309.xlsxls 67d5e8d2c3fcf5a17f0c7aad1b6f8963102dd00bdb62a3179605c3cdf659ab3cn/a Heodo
2022-01-2070927306452698647732.xlsxls 5ba1e7e7b37d9efbafaaa5049277348349998f11e6252edb0aa7fcc37bf94c99n/aHeodo
2022-01-20362531250578467501.xlsxls caa57a0d7208775ee50b80b88384a83804e8b132229162b88db9a3a57abb7acbn/aHeodo