URLhaus Database

You are currently viewing the URLhaus database entry for http://usbfund.com/partners/SOSbVaQR8mpcnNCC7CTRNOQr3kxRD/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2117937
URL: http://usbfund.com/partners/SOSbVaQR8mpcnNCC7CTRNOQr3kxRD/?i=1
URL Status:Offline
Host: usbfund.com
Date added:2022-03-28 21:49:04 UTC
Last online:2022-04-06 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-28 21:50:08 UTC to abuse{at}bluehost[dot]com)
Takedown time:8 days, 17 hours, 19 minutes Bad (down since 2022-04-06 15:10:04 UTC)
Tags:doc emotet link epoch4 heodo link SilentBuilder

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-30OD-6600527.xlsxls dd89ded2be5b0a176d6a4d7e4d75f19fd83294a5b0a6da3fcaf12119bbf6f6f2Virustotal results 28.33% SilentBuilder
2022-03-30KTN-6676734069.xlsxls 92a382930844cb9ee7f5e2bcf28d79c298b41e8403d2ed09b09e8559666b2bf2n/a SilentBuilder
2022-03-3025954109731920773.xlsxls c1b66d5e6ba70e29304adc1b00c11de4f638c7ba0ef607d43e7388e2c65b121fn/a SilentBuilder
2022-03-3002525987024079360.xlsxls fa9ff98be2b2014f3459f9e24865c2c062491b891fcf51b2a6b03e208256305cn/a SilentBuilder
2022-03-3082472278732.xlsxls 75d1a3270a08f5dd1a0e2696f52fc44ad9f2ef87bbfabf1393535699a22574e6n/a Heodo
2022-03-305544716074.xlsxls 89c9bba23213aec7d1d4ddbe14609b0d215e72dccc6c1d13444ec507d57c142en/a SilentBuilder
2022-03-306933570590802.xlsxls 77dea27359a2be7c01c50b61207a669dbdcd3449e87e5e2d624318c97357adb4Virustotal results 26.67% Heodo
2022-03-3035378460479.xlsxls 05b7de9ea6dc7fc6aa9bee8c26c08424ecb944f734630f2f5f708dd38c643200Virustotal results 25.42% SilentBuilder
2022-03-3021600012115379.xlsxls b77ecd5a267d2c31bae67daf05f8319cd9545fee260ea343ae5b9ed7de7835b6Virustotal results 23.73% SilentBuilder
2022-03-30441967955584.xlsxls e4b3720702c9e2904b9acc83e65446087d22bc3011dc99987f2f4a373cfc4fe8n/a Heodo
2022-03-300630251095897606766.xlsxls d4cfb0c8440f63b52a9a6506210f17aa2cbdeac594081472fa3f4c8440fbbc1dn/a SilentBuilder
2022-03-3083110898696336407.xlsxls 2ef905f01abe2ecdadcc91e83ef54be4148b6107b44b429ba8fb4885fa3ab159n/a SilentBuilder
2022-03-30123701483484.xlsxls 9446c54eb7a685ed2b0425e43e20af5e527530c1fe26ed9bfc6764c24dc44c8fn/a SilentBuilder
2022-03-30248039601530305288.xlsxls 0ed4a61da5b83e2f6e1f179296534712391f653cad49956df89b1f9af2651d26Virustotal results 25.00% SilentBuilder
2022-03-3081825434240.xlsxls 553da5e4c71464540693e53e16cdb2c9285cfe93168bcc63cddabadaef5504e5n/a SilentBuilder
2022-03-3080450508298189.xlsxls 76ed69153d3bac77298a51cc96c08cdcc5df5ee5b55d2cea606449d82bb3efbcVirustotal results 23.33% SilentBuilder
2022-03-308217288323094.xlsxls 4e9360135bc764d3e1c38b136a67db8939b68992f983c17c2096ee12d028b362n/a SilentBuilder
2022-03-302372732290.xlsxls 6a3046a535a92689c6e5bc58e7a4bc8f4c0edb1646c288ae60283ec9136b1ed4n/a SilentBuilder
2022-03-30370625511863981814.xlsxls 02433320fc429e5501fe74535cacb23e587bfb89e0b364937836f6455883c8f8n/a SilentBuilder
2022-03-3067496740820904032873.xlsxls 572f3c796c65fbb9a53d51fc20f4956df1f7b10b0bafe869f5dd6d6f4182a75an/a SilentBuilder
2022-03-30137380935634.xlsxls 51a8819534ed48bd71579b6e79307358b76ceaae81aafc73cbb8e8b77e977061Virustotal results 25.42% SilentBuilder
2022-03-3039708129313753563389.xlsxls 1b3dcc87c329e9a704c55890eced55298a7fe31f93de0dcbf15924aa87d4b3afn/a SilentBuilder
2022-03-307168322870334558038.xlsxls 8afc3601bdf149acb399f6b30fe3188535845cbd8af7c0cf469d02e7524b2b6an/a SilentBuilder
2022-03-3003939599879849.xlsxls 9e567a344081987a4426f78ec523045fd89cefc8790ccd11bc7c7e84a0816144n/a SilentBuilder
2022-03-30370786263642796932.xlsxls 01409366f137f73a060ee83b1e33ce1812614f9182737ebfa8b621d931f2aef4n/a SilentBuilder
2022-03-302916467689582.xlsxls b07c8759ea0818c38666726de4d94bc5d34ae86ca6f38e3470f4f1bb429fc38eVirustotal results 20.00% SilentBuilder
2022-03-29612520698498.xlsxls 5945c872c336b1839e2d24e8ade8c28cd4bfda3b45281798c978e0989334a219n/a Heodo
2022-03-29670341088975189421.xlsxls b1607ec0f6786f359c81b5a083c3ba60a429a0cc7d89c5d7613b026afa3a1651n/a SilentBuilder
2022-03-2992609398829954.xlsxls cfbd470480b395551fba069c28c84d4c5d8dd4f8f4563166e6cf83e1c6ab0b30n/a Heodo
2022-03-2992036333468.xlsxls cad159477bdcc1a893cefc1b3c89fb0108c077f05f516817b1d9b1c226df132bVirustotal results 21.67%SilentBuilder
2022-03-2952770336994297.xlsxls 5facd7e6e06801b2f98d8622d9dfa7549dc7fbcc4d2f1cd957f193d81a1e7e31Virustotal results 23.33% Heodo
2022-03-291584371632.xlsxls 7afe6200950f155c027ed0e711a8400a4afdc11f99603506b75ffc757658d460n/a SilentBuilder
2022-03-29160039290984612.xlsxls c52e93e91b5d59d300c8514569b22a800531880de8cf3da12f3bf4166ebb3781Virustotal results 23.73%Heodo
2022-03-2992083987384871.xlsxls 395331670bea056193cb6b39c93eb98892b16526c3f8a29d604d65d95288fbfen/a SilentBuilder
2022-03-2987409272787.xlsxls 832e53d262f912675fa5e4d34bae26ffa4fddfe7b80687aa7b36156f912b6fbfn/aSilentBuilder
2022-03-2987563626856302934487.xlsxls 4268dc47de4d11bc5cc3876e399602c2904c5903a08e1150763c0534a38a1ffan/a SilentBuilder
2022-03-292580513237509.xlsxls 4c5383ffd6ae7cdc8f45354d2dca02b8f315980d3baab72da93884ff322c55d4n/aSilentBuilder
2022-03-29170848285714094239.xlsxls 87bbf7daa49a040018ab407bc3c0c3a18004e2f9875b03382a461ff772e96f62n/a Heodo
2022-03-29865347153994.xlsxls fa0b00a97c0fcdee52edad2f04692efa11a8567946cffac17a52cfef6da485a6n/aSilentBuilder
2022-03-2954595997894700.xlsxls cd32e333e92b40b50d7b61743560ab0d277e876a322aec89751f2019638137d8n/aSilentBuilder
2022-03-29625242636049.xlsxls af9bb5756300ab9d303c59eb0df174e3d1072f7c8d7e0104d84a11aa66a3dc7bVirustotal results 27.12% SilentBuilder
2022-03-294261162938416.xlsxls 91bf5b39a9fd2b5a639e410a8125b58bde76924f778912df18496f9d54047000Virustotal results 26.67%SilentBuilder
2022-03-2970289780266.xlsxls c2e94a9ff11f88daa3c2c94a988782e1738059d5e08224b72abcf61bf427d2e8Virustotal results 21.67% Heodo
2022-03-2912548576857596015253.xlsxls 6cfd86adfe720a6432fb65748f6d9c8607f6c15fe412f73e1efd964268152bbaVirustotal results 21.67%SilentBuilder
2022-03-2895094800173285332.xlsxls f12905c984c2c58ec466f9e198a65aba6cdc55062e8028395957a9ac8dc38b81n/aSilentBuilder
2022-03-2817916365849116812.xlsxls 1572e504d33f8102762af2a001743f5beaa9cc406c6ef97eb77374be8cf4089aVirustotal results 20.00% SilentBuilder