URLhaus Database

You are currently viewing the URLhaus database entry for http://enyx.ch/js/qV22gDJxE6T/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2120072
URL: http://enyx.ch/js/qV22gDJxE6T/?i=1
URL Status:Offline
Host: enyx.ch
Date added:2022-03-29 16:42:03 UTC
Last online:2022-03-30 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-29 16:43:05 UTC to abuse{at}hosttech[dot]eu)
Takedown time:19 hours, 22 minutes Good (down since 2022-03-30 12:05:05 UTC)
Tags:doc emotet link epoch4 heodo link SilentBuilder

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-307370850876.xlsxls 60e88edf882041b4b5d3d2d44bef62b53fc478dc719df2d61ce6f55771cda593n/a SilentBuilder
2022-03-30235004657105.xlsxls 73a7d36de3e4f7ddc7f714ff205b0ccd1660020f04898ec79764150268cc31e5n/a SilentBuilder
2022-03-3082336422373990036309.xlsxls 84e8a5c9e678935ebb0022e67a2160105d3f416ac8ff9118d76b0183acc1e233n/a SilentBuilder
2022-03-300269340708.xlsxls 9822c8d67fc1931f874b2f4e8677a6eb5492d20aa72d677e4d8309f37108668dVirustotal results 25.00% SilentBuilder
2022-03-305197341767161263587.xlsxls 19f6caa7a30df844b400ba5f224bd75901e715d328ef9a38903900f0fa773946n/a SilentBuilder
2022-03-3086220537928983347.xlsxls fb148929566c49a708a683fdd6dc9abc331df812bc9379d7313ecff5fd7a85a0n/a SilentBuilder
2022-03-3029970276356151712.xlsxls 0064a9e50d81734b02d6e46a0c7438caaac87d97c3a8d2e252d116c08094820bn/a SilentBuilder
2022-03-3004718455074.xlsxls 153ed0822091516925dc6d0878a91cce7c48cf3015c7b66490832a19bd11eb4bn/a SilentBuilder
2022-03-3013172724809866572605.xlsxls 1b3dcc87c329e9a704c55890eced55298a7fe31f93de0dcbf15924aa87d4b3afVirustotal results 21.67% SilentBuilder
2022-03-3015286957260497677.xlsxls 4c775dc66dd1e7eefeb86433444c9bbc877514e792cb453c194199333d0aba86n/a SilentBuilder
2022-03-30437823028313609.xlsxls 7750729ac7ac67c70c2263d1795171a4181f7821da3efa5be8a41060489fe24cn/a SilentBuilder
2022-03-30119620862904.xlsxls 795d1cb7302f7f2d226a7a50f9a1dfaca81c320aabc71f47113736bc0712a6a7n/a SilentBuilder
2022-03-30690178524482314.xlsxls 50c3d5a37ccc9d63435cb5ed56e8a758234f55c42f3d8a90c12fdde81ae649bfVirustotal results 22.03% SilentBuilder
2022-03-3015762042409743702.xlsxls b8d670ca1984f7ecc9e90c4bc0c4c4d96172690aead7080171735f96c11ba21fn/a SilentBuilder
2022-03-293513549041222464.xlsxls 97df6ceb1a63712a6b1bf8f40f12d8add7b3a4e7f8191734eaee45dc10aee3ecn/a Heodo
2022-03-29199353069195099803.xlsxls 1dbea40fcbd816ab601a760ef3a43708219096749c335057165212872cf8833dn/a Heodo
2022-03-29131532742306.xlsxls b1607ec0f6786f359c81b5a083c3ba60a429a0cc7d89c5d7613b026afa3a1651n/a SilentBuilder
2022-03-298837921190144.xlsxls 62b094d107529f9d76b6884e278677c794df2144fe1bd7e595e0c4ad181729bbVirustotal results 22.03%Heodo
2022-03-2995381597994.xlsxls 414e74161e81d686fd65dfbe7c32d02dcf41a3fce80ff8a8e9200771eeb387c8n/a SilentBuilder
2022-03-2943956706280.xlsxls 6ddbab092ea3334218e1a42e8c21dacd63db67a4c382a78095e0712c06d9a667n/a SilentBuilder
2022-03-2907098864024952902.xlsxls 5f9d14758b5a858e2e6c71b2f0860e5fd81746643f97a8d765ae0ee314b3425bVirustotal results 23.33% Heodo
2022-03-2917024906890157759008.xlsxls c3d26b7f053fe5f6cb1a65367e25bdb9206d0cfaf03cbaeea2133546673e5c0bVirustotal results 23.33%SilentBuilder
2022-03-2979675122834502729654.xlsxls 5bf968294acfaf7a22762b459f2d1e559de2c77dc3411007d146e8b0b0807399Virustotal results 25.00% SilentBuilder
2022-03-2973281839683797077960.xlsxls 86b13aa1fccdc55676730cebc42451a0b238f65af9d6c2b47d6f91508e4b626eVirustotal results 23.33% SilentBuilder
2022-03-2977809227557367527.xlsxls 5e52d5010670d0cc95397e4999bee49d0366f4267a3c41a3cd4df4c6217a8af2Virustotal results 23.33% Heodo
2022-03-29248016028064697341.xlsxls 902afb7f03df7e3f3edd6d2d4caa7a2ec9530afd4f2a720d9fe66a89b30b5970Virustotal results 23.33%SilentBuilder