URLhaus Database

You are currently viewing the URLhaus database entry for http://laufke.se/bilder/VVpYFaCxKk4fq97ohHMX/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2119419
URL: http://laufke.se/bilder/VVpYFaCxKk4fq97ohHMX/?i=1
URL Status:Offline
Host: laufke.se
Date added:2022-03-29 14:41:05 UTC
Last online:2022-04-28 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-29 14:42:05 UTC to abuse{at}ballou[dot]se)
Takedown time:29 days, 21 hours, 38 minutes Bad (down since 2022-04-28 12:20:45 UTC)
Tags:doc emotet link epoch4 heodo link SilentBuilder

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-31CCU-738546937346417.xlsmxlsm 894658b992050ab6d7ee061f083a48264ce56c1b4fbc5ac87c142765405a47f7Virustotal results 36.51% Heodo
2022-03-31WGE-3813450444415.xlsmxlsm b0fa5dda99558a54917cc9a5f6269d440cd8b30ed825f72c837d6e4044d9f628Virustotal results 42.62% Heodo
2022-03-31ZM-952227642962.xlsmxlsm 5fe0d5c74d36af2db670ba08c72837740a66a82a2e8f0b206468474195578366n/a Heodo
2022-03-31RY-4360832.xlsmxlsm 578e2f6c9e64cb4de6991bae88f0e1e8d38afce9fb954c64d9ed303053647d94n/a Heodo
2022-03-31DV-9043244422369.xlsmxlsm a099f9c9c8eff7049da288a1205f1c0ccd52a4954930cabdd7a00dafbe8bbe6dn/a Heodo
2022-03-31UBO-967672277038.xlsmxlsm f1a59459dc11d8edab701cdd7610dd6310993ddb1aa04ab43f8fc3536040700dn/a Heodo
2022-03-31KPP-1007076563507.xlsmxlsm 52f73166b6afefeb75e3e2459eb3b8a48e0c9309f83620f4fdbcfcbedaff3f66n/a Heodo
2022-03-31WQ-096561561.xlsmxlsm 0c71f0ce426be3dfeacb36cfb08349362327fa6041d1669a1d2ef8b1110bfab3Virustotal results 36.51% Heodo
2022-03-31IW-087164699.xlsmxlsm 08e924859a3a3f17c099cca75fbb3cfd7f8cd726fa2e89fb47ff02f9687143baVirustotal results 34.43% Heodo
2022-03-30VW-686379688303449.xlsmxlsm 2909468da77be7c90d3c57fa66be2e6250afde34bd400f2c815be9bfd89be7ddn/a Heodo
2022-03-30MUL-91194016658.xlsmxlsm 60198b10fd3c8daeeb186be258cdf74b24c18a364638c8b6c6370e0bf4a005e5Virustotal results 33.87% Heodo
2022-03-30WG-7790471388.xlsmxlsm 93629f0e94046fc0c1c1a2779a8e58d101136842695fc4ad3addbde6c7757dcdn/a Heodo
2022-03-30LR-97571517218502.xlsxls bc3aadb828bf8f9442d01bb0a1d6b11b7633b19d2d0f8dc6711897611c0a5c3dn/a SilentBuilder
2022-03-302348740313457664362.xlsxls 6a42829e15c0d59a451f47b85ef79e416f44ffb13c49dd25eac35478c2f5d303Virustotal results 28.33% Heodo
2022-03-30424444727514750924.xlsxls 60c0dad4980aff53d768039fa5b011ca4215035e86e7cd917d6fa9675cecad30n/a SilentBuilder
2022-03-3041886210689.xlsxls b8306f12cba769a95835096ae226b28994cc119a31709ebd123d00f76c5df387n/a Heodo
2022-03-3074844720761224.xlsxls de039f6e79fd46992cc628b03a7ba67a7a5e03bd3e7243c29c255249d8ade1c9n/aSilentBuilder
2022-03-301048670809417991262.xlsxls 494e147f4a06d709805c7816d8f3278c88e1616668c2a8440603286b0dc41024Virustotal results 25.00% SilentBuilder
2022-03-30953380465432430.xlsxls ef3d086b10d8ff1a6b4e0e8d2b12a320f6c5c03623b0cb931acf667cdc77a6b3Virustotal results 23.33% SilentBuilder
2022-03-30349832956406.xlsxls 48d2c47b01e93706dda133adf355e55dd92bfe38a56ccb83ad69afa8328d241fn/aHeodo
2022-03-306973118900174545906.xlsxls b7f5d43b1901da5a003086b8faa4f6f0d1f8af4ed7657fc2d5c74aa5cc621629n/a SilentBuilder
2022-03-3028967445747.xlsxls 05bd11c534ccbcecb257194ae6e0424eb2de9623336ea812dcf0e033a873463cn/a SilentBuilder
2022-03-30471514629072.xlsxls d165b715b1c473df33c059be50a8eec754b9dc819ed59230ab9c74e352584753n/a SilentBuilder
2022-03-3008553956576511111043.xlsxls ee0751444c28714ba1f0d4228dbfcee7ee0d8fe35176d8ab8ad52fe2d0eca562n/a SilentBuilder
2022-03-30478292605849318187.xlsxls b843ea577878798255b88bfe656e9529b93f18fc050ed2d98fd0b678ce2cd743n/a SilentBuilder
2022-03-308341459904977544950.xlsxls c141fae72760b3ea499d3149ccac1732cee2f3c7b9c0a753fc649b91b5b120f2n/a SilentBuilder
2022-03-3039316000068054228555.xlsxls 2ed370e7b10a0832ccc6c51912b84345f0b6b1a0d19f212a86886497ec9bee8fn/a SilentBuilder
2022-03-3099905680238044.xlsxls 9822c8d67fc1931f874b2f4e8677a6eb5492d20aa72d677e4d8309f37108668dVirustotal results 25.00% SilentBuilder
2022-03-30452634927682739.xlsxls 17ecc742902925465369b5dc8bb6c8c87d9e16a1cdde0c38c3b4264f73029cd6n/a SilentBuilder
2022-03-309253309409122605965.xlsxls 905937ee43f2fc5221d18f42e0e1b2514bd1059016ddac70a5fe00c2092cf34an/a SilentBuilder
2022-03-3081668014978327609.xlsxls 385fc2720a678cc5b53d3d58caa225e7fa24e29c86ff6acecb609afb7659caa4n/a SilentBuilder
2022-03-3018129805038856813184.xlsxls c12be159aaffc14d6672e97c280868c12ceadd8a60e48769ddefa0d64313e18an/a SilentBuilder
2022-03-3045886826885385267070.xlsxls 4ced4e7896ad968c7374db631ce235f68656c943a181d06c72f027f9e319d292n/a SilentBuilder
2022-03-301364489011801146.xlsxls 8afc3601bdf149acb399f6b30fe3188535845cbd8af7c0cf469d02e7524b2b6an/a SilentBuilder
2022-03-300656467816433231033.xlsxls c7a30f982cf0763c857f2e0e5b13267783a2764655f5addb8b79305c04db0413Virustotal results 23.33% SilentBuilder
2022-03-3040699624839697.xlsxls de1dce37963bd312b3353cd23393b5c9603ab5a2c969ac420447e9183ad18a47Virustotal results 21.67% SilentBuilder
2022-03-3064011850023463416643.xlsxls 9b7452e408963921f685e25246f5c63af11c407ac04a6fa47ffe38b3325b52bdVirustotal results 22.03% Heodo
2022-03-300487867822222390.xlsxls b8d670ca1984f7ecc9e90c4bc0c4c4d96172690aead7080171735f96c11ba21fn/a SilentBuilder
2022-03-292825608672153463769.xlsxls a7d32a6ad1390861e427965afd7fdab97df7cfc63b6eee10247c5e03d6e83bd1n/a SilentBuilder
2022-03-291052599488843837131.xlsxls b1607ec0f6786f359c81b5a083c3ba60a429a0cc7d89c5d7613b026afa3a1651n/a SilentBuilder
2022-03-290728823017764.xlsxls 877dbc6908c214d0a451b962f01dff21a6b87f149d7ddace0d2a408d39ecfd23n/a SilentBuilder
2022-03-29516334678754635107.xlsxls 3c425e75e8dd55c6300c63fe1dc1c0c60b40aa4586681c6e21d9e5c5e75a8c49Virustotal results 16.98% Heodo
2022-03-2947089138150.xlsxls 295e56484dfbaf568bf0515988c02344e0b4e7112b48f6a7e20424da35e3506bn/a SilentBuilder
2022-03-297359005048460206.xlsxls aa7f8032eea8a66f2a2fcb725bfc16899f61552dfb4e2e7b9c6a4d1bfad9d604n/a SilentBuilder
2022-03-2934667719985009.xlsxls 366adc2e4e00c246f9a2a1098ec0a355f457480203eca3a7402695cef7d6bab3n/a Heodo
2022-03-290869669222839969.xlsxls 4c55eecd256cd070e46b1238ae32febd63f8a2c34df92f3ae5a3bcebd6f1639fn/a SilentBuilder
2022-03-290903941148966.xlsxls 22daeddd01102db47e51040281f74ceb59a25e612288ef7010287a71977a6044n/a SilentBuilder
2022-03-2937850198356094194659.xlsxls 3ae70ca231fc68caf9b069513aeeed261edae36013ed6fe2f2e5d3ced1e80adbn/aSilentBuilder
2022-03-2990933008834.xlsxls 6b3d2c1ffc24b5e4cfa6aa8db1fa34957ddd7aa8a0071b03f577eb902deee079n/a Heodo
2022-03-2927733266143405871.xlsxls 81be8741d8fd657ade4bbab88b1658eeb6ace95b3384f2e6a0c680c2c49928eeVirustotal results 25.42%SilentBuilder
2022-03-2930545126655789662.xlsxls 73baef7a8bc37374ee8275b8aaf5fb16f78627b699d6705a3788eb71bc57aeafVirustotal results 27.12% SilentBuilder