URLhaus Database

You are currently viewing the URLhaus database entry for https://fpd.cl/cgi-bin/cOThvxSPqUC0qeAUkhBkOnm/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2117933
URL: https://fpd.cl/cgi-bin/cOThvxSPqUC0qeAUkhBkOnm/?i=1
URL Status:Offline
Host: fpd.cl
Date added:2022-03-28 21:42:05 UTC
Last online:2022-11-06 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-28 21:43:16 UTC to netadmin{at}grupogtd[dot]com,soportetecnico{at}grupogtd[dot]com,abuse{at}grupogtd[dot]com)
Takedown time:7 months, 13 days, 0 hours, 15 minutes Bad (down since 2022-11-06 21:58:45 UTC)
Tags:doc emotet link epoch4 heodo link SilentBuilder

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-30UR-100446970.xlsxls 82be92d18fb73fad9b6f0e90da074abbf2aaffd91c4493491620452f19bd281dVirustotal results 26.67%SilentBuilder
2022-03-30YHY-52248755048253.xlsxls c37ffc0e87ede2e654c4112c8d1b9172041a21bc4174b248ee2c81af738bcaf5n/a Heodo
2022-03-302024119948723755110.xlsxls 3b7de1493be097dcb0cc89361c753b8f43f5de20b45e403c7f809ab2f7d2b03bVirustotal results 24.56% SilentBuilder
2022-03-3040697712094457.xlsxls e6816092d6eb5bec7ab8d5463c45994379e212925e29994c9a28a826b9f0ee92n/a SilentBuilder
2022-03-30588613203254422494.xlsxls dca8eaa3af3959b306af25eed2fa0edff0e0afc2eff8303e02086f3c9e2d24aan/aSilentBuilder
2022-03-3052290363822903.xlsxls 89c9bba23213aec7d1d4ddbe14609b0d215e72dccc6c1d13444ec507d57c142eVirustotal results 25.00% SilentBuilder
2022-03-3050163933002698.xlsxls e7b337819ffbfd0cc64e0da0de7696a062cb134bb00e24dd761e4ce25acc958fVirustotal results 28.81%SilentBuilder
2022-03-301236046656500.xlsxls d98dd9a82151e75194671730ccd38081a04c9a54e596394dd332c12c8723439bVirustotal results 25.00% SilentBuilder
2022-03-30210889928184.xlsxls 7b104224ca183d73b657b9fde19b9889e4c25eed58259d1990bd0feb59f3a740n/aSilentBuilder
2022-03-3098384090874604.xlsxls b77ecd5a267d2c31bae67daf05f8319cd9545fee260ea343ae5b9ed7de7835b6Virustotal results 23.73% SilentBuilder
2022-03-3016770764607111.xlsxls fafb5b78b4090ec62a5226d6f23c69288afa050ae47b4d77365b863b0b65f704n/a Heodo
2022-03-30654235702165261725.xlsxls d4cfb0c8440f63b52a9a6506210f17aa2cbdeac594081472fa3f4c8440fbbc1dn/a SilentBuilder
2022-03-301841948194040.xlsxls 409aac8f35988e5be14f514036a2f7e33085bd3a296d958fc4d1bc4d7836673dn/a SilentBuilder
2022-03-3062484876813838.xlsxls 60e88edf882041b4b5d3d2d44bef62b53fc478dc719df2d61ce6f55771cda593n/a SilentBuilder
2022-03-300992696207684.xlsxls 15b8f817ad756bd04cd33d34f0a4670b25afa33c7ab59f37b322284809532d05n/a SilentBuilder
2022-03-30601409274081466.xlsxls d112303bc3e986da69e4eb915fecfc2077ee2f6738c4a5e79d9875707076483an/a SilentBuilder
2022-03-300810817856771662357.xlsxls 76ed69153d3bac77298a51cc96c08cdcc5df5ee5b55d2cea606449d82bb3efbcVirustotal results 23.33% SilentBuilder
2022-03-30848797748724.xlsxls 0dc349ced3a964c30dbc65e647487d5692c66b5de22baed873d295f384f570f4n/a SilentBuilder
2022-03-30558674303741.xlsxls 905937ee43f2fc5221d18f42e0e1b2514bd1059016ddac70a5fe00c2092cf34an/a SilentBuilder
2022-03-3051872599878.xlsxls 14be76c2452599c49644c9693808999028f286d5c056a31c576ae10d73ef0b0dn/a SilentBuilder
2022-03-30041202230199601668.xlsxls 188aa320f747429f44c222eb0cc80229ee39b8452b8f119c3553f66b9e9d200dn/a SilentBuilder
2022-03-304030863133761427135.xlsxls 077d5f3c90f36e76e1697b778d051790eb2544941b0b5d91647fd7936c658be3n/a SilentBuilder
2022-03-3022996832810133512.xlsxls 46883387d2244511c897fc7382aebfa3edae2a47fd6cb411784956b71b609066n/a SilentBuilder
2022-03-30606843382839170.xlsxls 795d1cb7302f7f2d226a7a50f9a1dfaca81c320aabc71f47113736bc0712a6a7n/a SilentBuilder
2022-03-30480033624015889.xlsxls 18a5aadfb1ade6b05280001f26d457382545510248408bbf0ba6d73aecd59e1en/a SilentBuilder
2022-03-3069885314308523.xlsxls b8d670ca1984f7ecc9e90c4bc0c4c4d96172690aead7080171735f96c11ba21fn/a SilentBuilder
2022-03-306997709276.xlsxls 3cd17e7df9642d09bd3d735e259ca8f9c4ff061f1070a601f3e638df5fbe1647n/a SilentBuilder
2022-03-2913593986753178046.xlsxls cf32dd8b34af56ba98e8e60de33e463349578b7c5f034c6b5394c1de65d8b3bbn/a SilentBuilder
2022-03-2962367186104513414065.xlsxls 3e97f09fc53890ba2d5ae2539b5c8df372ed2506ed217d05ff2cf8899d15b8e6n/aSilentBuilder
2022-03-296696710866.xlsxls 6741b0effa1844c85e25015d8c01ab0330e793dc563cfe2977746f5eb7a37fd3n/a SilentBuilder
2022-03-292391359897537718938.xlsxls bbc1337630f46853905e7fa804eb8bf2b3644f3a16a1911ea1fbd7fe1811c1ecVirustotal results 22.03%SilentBuilder
2022-03-291645292425274322283.xlsxls aa7f8032eea8a66f2a2fcb725bfc16899f61552dfb4e2e7b9c6a4d1bfad9d604n/a SilentBuilder
2022-03-293823356001633201.xlsxls 366adc2e4e00c246f9a2a1098ec0a355f457480203eca3a7402695cef7d6bab3n/a Heodo
2022-03-2995682866873304606.xlsxls 299eef9367c7d46794f985f1653108dff2ea664d29f31b8ba1a08c934e1d42b6n/a SilentBuilder
2022-03-290236854659257273.xlsxls 785f830ec42e6e6de3f29b1037818fa35ba3bf5bdcc06cff94a3bc582927086cn/a SilentBuilder
2022-03-2947125390922239506.xlsxls 4268dc47de4d11bc5cc3876e399602c2904c5903a08e1150763c0534a38a1ffaVirustotal results 23.33% SilentBuilder
2022-03-298863372215.xlsxls e02116cc9438f4fe65649bcadabd2f0427d734b85bd77f212e841f2a9c477c61Virustotal results 28.33% Heodo
2022-03-29505339635938675.xlsxls 81113b572a380caf1d7469e353abb8ea79ec0dfa9c19a9e4add89e0e1cb8fd50n/a SilentBuilder
2022-03-2935754753326670.xlsxls f826114223c99e0d29401b4f95bd67ff825dba627a87a19e2c69a76a93d6773eVirustotal results 26.67%Heodo
2022-03-29998648751273.xlsxls 9b92b0aa30a67a25f8ee8ae9bb23320426963c6f9077a071c068a7ff39168f55Virustotal results 24.14%SilentBuilder
2022-03-291525317336182726127.xlsxls ecaec2f499ad4836dfe1aac750e23ec6ffbfbf997a188a905dca5656976e16a4n/a SilentBuilder
2022-03-2903190862613.xlsxls 5a004200cb6d06164729fd88e5f06276468288808064ce9830f2e5dad73654b5n/a SilentBuilder
2022-03-28594553622580381.xlsxls 6cfd86adfe720a6432fb65748f6d9c8607f6c15fe412f73e1efd964268152bbaVirustotal results 21.67%SilentBuilder
2022-03-282312679859975.xlsxls c9337812b9d996a71cb0b1f7dd134bc65b529f1af4cc8e54c18263af6be49a3cVirustotal results 22.41%SilentBuilder
2022-03-282068327941561.xlsxls 337ee78277daf4f7c28f4a764d468d4e364a6751d2351cbfd0989b4f95bb275dVirustotal results 26.32%SilentBuilder
2022-03-28811854012323503.xlsxls d10f5f2eadc11b0f40c3257b0f33e868537c1b6f4f60577b30ae0fe364bb4dabVirustotal results 21.67% SilentBuilder