URLhaus Database

You are currently viewing the URLhaus database entry for http://football.g-sports.gr/paok/jkL8M4zza4PwF84/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2119217
URL: http://football.g-sports.gr/paok/jkL8M4zza4PwF84/?i=1
URL Status:Offline
Host: football.g-sports.gr
Date added:2022-03-29 12:56:06 UTC
Last online:2022-06-08 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-29 12:57:06 UTC to abuse{at}pointer[dot]gr)
Takedown time:2 months, 11 days, 2 hours, 17 minutes Bad (down since 2022-06-08 15:14:55 UTC)
Tags:doc emotet link epoch4 heodo link SilentBuilder

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-31CJ-4885297981366.xlsmxlsm 894658b992050ab6d7ee061f083a48264ce56c1b4fbc5ac87c142765405a47f7Virustotal results 36.51% Heodo
2022-03-31IL-40373418419383.xlsmxlsm 162637428037d1f8f3bd675b122e5b830107b9ea7352c8c765e97a3afbce1231Virustotal results 40.98% Heodo
2022-03-31HDG-850416702296.xlsmxlsm b034cfc88c6603dc0f5519ecba2dbba8c5382b26b8c25da23f8d40368ce8e7b5Virustotal results 33.87% Heodo
2022-03-31HDE-62108850.xlsmxlsm 4e313f9f3abefe7d2a05b2d9ce9dae1683f91278ec0ac7cff68b9f232ff656dcn/a Heodo
2022-03-31LC-529021021.xlsmxlsm 3bfd193ea92a687030d7b2fb3354e52980ad28ba1cae92579b53f5473b44f37aVirustotal results 43.55% Heodo
2022-03-31XO-98350412831409.xlsmxlsm eb39b29661d81cbcd7a00f191c61ce9902b80b68e1e03215e56221bfc85863efVirustotal results 39.68% Heodo
2022-03-31CIU-59995421463.xlsmxlsm 41a73a914406df97e2944f7742f48272bab7d25486c9c2a5084a7f158fdb2aafn/a Heodo
2022-03-31RX-358332603605739.xlsmxlsm 00ea616ce33ef49268a2d6046f588bb73c80b7a90ae6e5e5067938d72e858564n/a Heodo
2022-03-31ODM-2038653532.xlsmxlsm 764d8e72174b0666952016caf95096e85219dba6554a8ce6db74b8244b3e7590n/a Heodo
2022-03-31GNE-630872679654680.xlsmxlsm 355981d4c8400968deaa8a13a04a79c90bf9aab795af2ff1b3273b825a477968Virustotal results 38.10% Heodo
2022-03-30PB-07278485034270.xlsmxlsm ccf8147ef96ae47288019a25336c2935e73d2e06b8fe73823e3596fb1596ba8dVirustotal results 39.34% Heodo
2022-03-30NCB-5356431.xlsmxlsm ae3937925f18c7db77b2fd19394cb114cb460741dfa2b7c5bd10de9c5c2e35fdVirustotal results 33.87% Heodo
2022-03-30YN-2121672.xlsmxlsm 9e78d6dc74b334eb5028dc17bee0a1a27fe2636eeefce10ba2adc3244ac9de2bVirustotal results 37.10%Heodo
2022-03-30XUJ-0666026.xlsxls 2fb5d6b4684b1f180fd682f92fc346420c16376d64b8b8ec6b0564247000dc58n/a SilentBuilder
2022-03-3031943281889.xlsxls 6edf2bbc238af34d4d9a013d6ae99ec1a1df41d15caa4bf4e90ec5fd50ac19eeVirustotal results 28.33%SilentBuilder
2022-03-30219228114423068533.xlsxls 47d56d48a9d1124c93c30fceca3e85139262e561196d7e483048f00952a1dfaeVirustotal results 28.81% SilentBuilder
2022-03-306954947669633485652.xlsxls 8a6effb1430c591fa0e6e8ac6f84b1991bf8cc18f70a432ae63e6bda131914c6Virustotal results 28.33% Heodo
2022-03-3087154620920104931.xlsxls f9fb4d5914f4d35aadbdf779dafd269c3581ca7296e7d927d8acdb38b5bf5a2bn/a Heodo
2022-03-3008116292530.xlsxls aa86d1be623622ae373fc9dcfb7365d513d0e273891e34b480ab2d7b10d6a7bbn/a Heodo
2022-03-3075484805924.xlsxls ee62c21812ad75d0a17a1ddf79a52ee84205a1d7f1d63b74f396b80a4ac87c13Virustotal results 26.67%SilentBuilder
2022-03-309511103999.xlsxls 5206671cef156681bda1a374c1140c4dc8e4796b93d323161c15c6767afe3fcfVirustotal results 23.33%SilentBuilder
2022-03-308143433606190373.xlsxls 1c245a21651a8c0b846115b2fd1f0d4486ef0c80522d6d2384ca6ebac23fcc90n/a SilentBuilder
2022-03-30714014098625.xlsxls fafb5b78b4090ec62a5226d6f23c69288afa050ae47b4d77365b863b0b65f704n/a Heodo
2022-03-3049996744097749555.xlsxls 1f4abd57d6305167ea781e255bf801474d77d7415dc16bfa03bcd9c6afb8e977n/a SilentBuilder
2022-03-303590244698426371.xlsxls 15c3921a1259300f19a57085f37881c7348eb58ea2722c2f9228e97063e99f1an/a SilentBuilder
2022-03-305409009875.xlsxls 8962aaa71206d6ab184fd4c5d8d8fc956ad277803b3a33e0519943cb304849a8n/a SilentBuilder
2022-03-300836782135252580.xlsxls b0bb73b26ef4bb7bbfc7a11f9623721be84f3b00cab0c87a0a89597f79cc9be4n/a SilentBuilder
2022-03-307727494650976871397.xlsxls c608ea84421874b786b035d63940ce5c0eb73d5ae08770bffa1fa700bca152dan/a SilentBuilder
2022-03-306861505281509.xlsxls ed919e7317e9edb91eb7468e26cad1b08ecd328cfb669e1fb95bc2f3171b2ec8n/a SilentBuilder
2022-03-30384796647880260681.xlsxls 0dc5fa042e539195dcbb04e6c1655104e9538a9e293e532aed1b9d28e18cfd69Virustotal results 25.00% SilentBuilder
2022-03-30650042933291.xlsxls 17ecc742902925465369b5dc8bb6c8c87d9e16a1cdde0c38c3b4264f73029cd6n/a SilentBuilder
2022-03-3064879648928453.xlsxls 905937ee43f2fc5221d18f42e0e1b2514bd1059016ddac70a5fe00c2092cf34an/a SilentBuilder
2022-03-302443329915.xlsxls cd25c78920a470989476b5b3789caaa91a315b33cdf3e1de20d016a698e9bd1fn/a SilentBuilder
2022-03-308167657234318285453.xlsxls 572f3c796c65fbb9a53d51fc20f4956df1f7b10b0bafe869f5dd6d6f4182a75an/a SilentBuilder
2022-03-301603211524753295972.xlsxls 188aa320f747429f44c222eb0cc80229ee39b8452b8f119c3553f66b9e9d200dn/a SilentBuilder
2022-03-3073472583014322435.xlsxls 7103255e4f3ba04e29134d3d552246d8af73ba82f1cb6443751457974a8471c1Virustotal results 23.33% SilentBuilder
2022-03-30998865931084563970.xlsxls 8d68a2348c7a8e5c21b19f4602a4073af8c4f004aca606dc0bcc1639524e9c65n/a SilentBuilder
2022-03-3095947138354.xlsxls 89136067e996c0c3a8e676d6ce711ab54ecf8a512369eb2075ad4e0fb8eea359n/a SilentBuilder
2022-03-309613847439910066875.xlsxls 50c3d5a37ccc9d63435cb5ed56e8a758234f55c42f3d8a90c12fdde81ae649bfn/a SilentBuilder
2022-03-2936193954784.xlsxls 5945c872c336b1839e2d24e8ade8c28cd4bfda3b45281798c978e0989334a219n/a Heodo
2022-03-292686779971.xlsxls 1dbea40fcbd816ab601a760ef3a43708219096749c335057165212872cf8833dn/a Heodo
2022-03-2908808666600271.xlsxls b1607ec0f6786f359c81b5a083c3ba60a429a0cc7d89c5d7613b026afa3a1651n/a SilentBuilder
2022-03-2977286957553083847695.xlsxls 0d459aa7c1a588a576c7017f7707f991abecb6756d0575dd98a104f900218e31n/a SilentBuilder
2022-03-29978530986731877599.xlsxls bf933a14cec5ea31d34554cd1266b7041c4e340c7979e0a80d4307bfd5567041n/a Heodo
2022-03-297335903063453684448.xlsxls 30c386f8b27cab9ed4525f9123ace697473b0a9c1a5d17ce0267258535926383n/a SilentBuilder
2022-03-29012836767563610932.xlsxls 17be914f3d6a88c006b33cea5ac7e4774eb6c0c57d8ae8b3c7ad07a45d4efa81Virustotal results 23.33%SilentBuilder
2022-03-293345845394901.xlsxls 5f9fa7d4e83fcb1c43adfec5645e4c5c89c9fda111fcc3258eb052aa51eb1206n/a Heodo
2022-03-2947157864895703092.xlsxls de0451fa84d12094775843b0424bfcc18832943128c01ba088acae9c80a402e3n/a SilentBuilder
2022-03-29911047833109507182.xlsxls 4268dc47de4d11bc5cc3876e399602c2904c5903a08e1150763c0534a38a1ffan/a SilentBuilder
2022-03-2920481176358441666.xlsxls 3dc1ecfd1f0d9fe97274513ab0bbaf4b5447f9cc990bba9a95a6ac238116994dVirustotal results 20.34% Heodo
2022-03-2980047813954751164.xlsxls eda7f7e8834bcc66058cf806569b10374127869c38c074ce5b1d6762277d8d71Virustotal results 26.67% Heodo
2022-03-295387576163054960116.xlsxls fa0b00a97c0fcdee52edad2f04692efa11a8567946cffac17a52cfef6da485a6Virustotal results 26.67%SilentBuilder
2022-03-298070684681637660633.xlsxls 8271c0fe9e85c53be37c57736e8d0250caaba5ba1b1ca08bdc1895f5a2607db4n/a SilentBuilder
2022-03-2966554539220740.xlsxls be0e83cd4485c81d79b1d16e60d5e033b23307a80165044655cb6023a6b127caVirustotal results 23.33% SilentBuilder
2022-03-2972805732278024.xlsxls 95afc5a338cfff3bc76c56bb78ea18097e81ae6f976cdd47d5f8a5d3f891d0fdn/aSilentBuilder