URLhaus Database

You are currently viewing the URLhaus database entry for http://filmmogzivota.rs/js/706x1fZeLco0iPhsdPM/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2117980
URL: http://filmmogzivota.rs/js/706x1fZeLco0iPhsdPM/?i=1
URL Status:Offline
Host: filmmogzivota.rs
Date added:2022-03-28 22:44:04 UTC
Last online:2022-03-31 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-28 22:45:06 UTC to abuse{at}oriontelekom[dot]rs)
Takedown time:2 days, 11 hours, 0 minutes Poor (down since 2022-03-31 09:46:04 UTC)
Tags:doc emotet link epoch4 heodo link SilentBuilder

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-30GG-8660937092580.xlsmxlsm d736bc77cb744076e6985c5b54fe1322f0fe2407f1e3e3fabb539ec8bb8d5014Virustotal results 35.48% Heodo
2022-03-30ZX-7484991.xlsmxlsm 51be5ff843565b3e8fe56f303452e018d305cc846181d2d79d435509b2dc578cVirustotal results 35.00% Heodo
2022-03-30RJV-9257427.xlsmxlsm 168a9aa1b5fa37a354fd6ccba71dcd29cbcd503a578504c69feb38bd84a8a691n/a Heodo
2022-03-30QIF-411738647908.xlsxls f3101b6d16751623f8a025bfbf75ae9a32c68b534dccbab4452ee72a9fbe0f5fVirustotal results 28.33%SilentBuilder
2022-03-30ZOC-3188752.xlsxls 2fba5997186a1e4e2da7496bd7a1bca3eaf425971cc76dd7be878f3fd88add07n/a SilentBuilder
2022-03-30272691859511748.xlsxls e6816092d6eb5bec7ab8d5463c45994379e212925e29994c9a28a826b9f0ee92n/a SilentBuilder
2022-03-303408973254287496.xlsxls ee875bfdf282dbcdf5711f1553cefe21d02aa98fff3f24f6802ad8165c34287bn/a Heodo
2022-03-300826692016752865.xlsxls f7b7663c265114d51e5c367ebf89c24f816421f66df3a9ece416a94b0dcd8401n/a SilentBuilder
2022-03-3054629956653502691160.xlsxls 248cd85fd7e892435c33370e5ac93d3fe53595ae7358e2e12af1e9f453697513n/a SilentBuilder
2022-03-3032770667546345856.xlsxls 3e7c9a89e957262b014b07250f015ccefdb050661e9564930d813c033a96b2e9Virustotal results 23.33% SilentBuilder
2022-03-30581558830003053.xlsxls c396cf5dbdb334263abcf5fb94e3f523f758fd97c5cff458e248751ad42c90c3Virustotal results 26.67%SilentBuilder
2022-03-304996674764366961.xlsxls 9b549e9ae691f8b583596b3a513ca77624517277b8ce18a5379e2a75604cd6aaVirustotal results 28.33%SilentBuilder
2022-03-302032549203394.xlsxls fafb5b78b4090ec62a5226d6f23c69288afa050ae47b4d77365b863b0b65f704n/a Heodo
2022-03-302071120062171981030.xlsxls 92b068c533ae97aca8470cdbc6e8d3bf23caaf19f593b462e8352e58cf21c352n/a SilentBuilder
2022-03-309148951681427010202.xlsxls d626ec1f4b0e55088b727d50635b20660f9a213c239b37475ddaa729ac9cf60fn/a SilentBuilder
2022-03-302529747829800233526.xlsxls dbc38c75e54064f7a99465694a4fc3a47c9d667bb87cded0c33ed6c6e22d7260n/a SilentBuilder
2022-03-3067622392033792245.xlsxls 5893e3a3e8b52cfa4d4e333aacdd5758557af03450d4e9054976b573ab556ef9n/a SilentBuilder
2022-03-30612511315248834941.xlsxls 73a7d36de3e4f7ddc7f714ff205b0ccd1660020f04898ec79764150268cc31e5n/a SilentBuilder
2022-03-3036043310908446498644.xlsxls 2ed370e7b10a0832ccc6c51912b84345f0b6b1a0d19f212a86886497ec9bee8fn/a SilentBuilder
2022-03-3056475949959735.xlsxls 19f6caa7a30df844b400ba5f224bd75901e715d328ef9a38903900f0fa773946n/a SilentBuilder
2022-03-3016051437651.xlsxls 905937ee43f2fc5221d18f42e0e1b2514bd1059016ddac70a5fe00c2092cf34an/a SilentBuilder
2022-03-306296533991.xlsxls 0064a9e50d81734b02d6e46a0c7438caaac87d97c3a8d2e252d116c08094820bn/a SilentBuilder
2022-03-30399024020461492.xlsxls 4049f60f0d4b2bde89b6e0f8474744ae0eba1eab4ce2a4e33066e480db5f9105n/a SilentBuilder
2022-03-3054841821622840190.xlsxls fd2ecf04bb4da7241599359cdb7b7f3a79197b33968f784ea57336faf2c84ba9n/a SilentBuilder
2022-03-30869168154230093580.xlsxls 077d5f3c90f36e76e1697b778d051790eb2544941b0b5d91647fd7936c658be3n/a SilentBuilder
2022-03-30269198942448460719.xlsxls 6280ad828511d4eb90c7c03d7f193d8f55f363f130e0c4aacc7481220313b846n/a SilentBuilder
2022-03-303613331759814955477.xlsxls 89136067e996c0c3a8e676d6ce711ab54ecf8a512369eb2075ad4e0fb8eea359n/a SilentBuilder
2022-03-306025473915595.xlsxls c014caec272f00448f32115b18b4c88c92ee9e4601ba0e8a8b6912d62c76ef70n/a SilentBuilder
2022-03-30800832640813474220.xlsxls d7e1234a884f0b483c6d75d0a5a1aff25b77013a00952a217d453e695567d1d5n/a SilentBuilder
2022-03-2947261898816.xlsxls de194184575783e158c569cdb62687aa7e8fbb8472461511e2626db0430fadeaVirustotal results 23.33%SilentBuilder
2022-03-29272127927799.xlsxls bbfd1a6119f3e1a55e92ffce783efd08f462e72b34095a96c3590100fce48077n/a Heodo
2022-03-298263619362237.xlsxls b26329204d4a737b51b710c6fb4ca573291be87a1fb5606f0e0b75987c09908fVirustotal results 23.33% SilentBuilder
2022-03-2952001207529.xlsxls 6ddbab092ea3334218e1a42e8c21dacd63db67a4c382a78095e0712c06d9a667n/a SilentBuilder
2022-03-2978187151112171423.xlsxls 11e85a3bcab8d5d4f43929a8cf0783d612f20f10f38a0d84e702f110e149e565Virustotal results 23.33% SilentBuilder
2022-03-2953360288722085418035.xlsxls c52e93e91b5d59d300c8514569b22a800531880de8cf3da12f3bf4166ebb3781Virustotal results 23.73%Heodo
2022-03-29009441360601191.xlsxls 6121550710d668a4b80ca4f056d91829e4a793dc1a04fd52c9ebd937b02fb685n/aSilentBuilder
2022-03-296794618011884.xlsxls de0451fa84d12094775843b0424bfcc18832943128c01ba088acae9c80a402e3n/a SilentBuilder
2022-03-290411203734727842.xlsxls ff40c595bffcdbabfa3b2770f9339c227458ef9848e8512bca4ff9bfdeecb299n/a SilentBuilder
2022-03-2975218314339974144055.xlsxls 8424515d67b26df9f385d9788de5f818291a2cfe1aac5f2eb95d1ff63bed40daVirustotal results 23.33% Heodo
2022-03-2951991285820.xlsxls f0a0e0ad73a1048724558792263c2848cde8bea8eed20837db9ba1de094ab256n/aSilentBuilder
2022-03-299353115258587935.xlsxls a909791cbe01905c835db3b85c057da505b76e2fa962c0d73ef2af6c817119e2n/a Heodo
2022-03-2981262284882181.xlsxls c916e5aa1aaa92ad2d451734823ef3dc48da2155d8d31dcc902a49ebf84d6a6cVirustotal results 27.12% SilentBuilder
2022-03-29054395089899.xlsxls 9b92b0aa30a67a25f8ee8ae9bb23320426963c6f9077a071c068a7ff39168f55Virustotal results 24.14%SilentBuilder
2022-03-2953719888870499.xlsxls 4acc41e5f6f19304e5950ed83c32909dd4dcc714f4aa05769ccf796313ec7fecn/a Heodo
2022-03-294136012156385213043.xlsxls 5a004200cb6d06164729fd88e5f06276468288808064ce9830f2e5dad73654b5n/a SilentBuilder
2022-03-2840375847021214.xlsxls 6cfd86adfe720a6432fb65748f6d9c8607f6c15fe412f73e1efd964268152bbaVirustotal results 21.67%SilentBuilder
2022-03-28108590712613627451.xlsxls 042e7d2194275029badd62a90462947fc20c3506dca5f6074ae76ba38126b841n/a SilentBuilder