URLhaus Database

You are currently viewing the URLhaus database entry for http://dijicom.net/error/HG1y7EgWrBA8fDYUIceqaL2pUqcj/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2120630
URL: http://dijicom.net/error/HG1y7EgWrBA8fDYUIceqaL2pUqcj/?i=1
URL Status:Offline
Host: dijicom.net
Date added:2022-03-29 22:08:04 UTC
Last online:2022-08-29 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-29 22:09:05 UTC to abuse{at}turktelekom[dot]com[dot]tr)
Takedown time:5 months, 2 days, 8 hours, 5 minutes Bad (down since 2022-08-29 06:14:16 UTC)
Tags:doc emotet link epoch4 heodo link SilentBuilder

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-31JHV-35662182.xlsmxlsm 47033d733745aada415882d83566cebcc301505ddbb55d72e84ee221332e812bVirustotal results 34.92% Heodo
2022-03-31UDR-8837674314468.xlsmxlsm 64d92f79a2d87571d428b7b19ef4f5c1680c24c8952a2f46b84f217cfba19766Virustotal results 39.68% Heodo
2022-03-31RX-33653594296229.xlsmxlsm 83a8039af1534f4fc93efcdb7e429c799f144ace1f33b37ca42a57ee7a559499Virustotal results 45.90% Heodo
2022-03-31ZF-5251124471.xlsmxlsm 36b9445ba8e049935f86955d9c9251334fa60c940b28d69da57f97926e54211fn/a Heodo
2022-03-31IDA-46841036594.xlsmxlsm 7ca9c48ab76e34256ebad65fa28f1eb8b3da601b413e19e03a1442046b3aefean/a Heodo
2022-03-31NIL-94001570211.xlsmxlsm 0e92cfd04405b8b597562761080285f19807c04c48c7278fe7632271ded41c3dVirustotal results 40.00% Heodo
2022-03-31RL-953672102125962.xlsmxlsm 894658b992050ab6d7ee061f083a48264ce56c1b4fbc5ac87c142765405a47f7Virustotal results 36.51% Heodo
2022-03-31QO-478298763011971.xlsmxlsm 162637428037d1f8f3bd675b122e5b830107b9ea7352c8c765e97a3afbce1231Virustotal results 40.98% Heodo
2022-03-31CK-73698759044.xlsmxlsm 97f11e4cd509aefb731d8b1a4b299c8ab4096e270f05f52d8e0eb6d2366fa501Virustotal results 38.71% Heodo
2022-03-31YQQ-12581220.xlsmxlsm 08e64e582d9d42f5f3a21eaff52bcb72b4a3abfc761561ff28f40bf937dedb2cVirustotal results 38.10% Heodo
2022-03-30IQ-4935934.xlsmxlsm 4fadf9d0ce08783dd924f9ab1f1691dbdf07251396bb218f92cfef0279739a25Virustotal results 32.26% Heodo
2022-03-30VD-62513515340.xlsmxlsm 96fac13010c22cdd9510ed06c70ed29257b59aa3fc3be17a9515bdcf3596aa51Virustotal results 33.87% Heodo
2022-03-30GID-458862722925991.xlsxls 82be92d18fb73fad9b6f0e90da074abbf2aaffd91c4493491620452f19bd281dVirustotal results 26.67%SilentBuilder
2022-03-302650725229929200820.xlsxls 9adde116bf0bac725d59a9758fe3135672fcf8e2a7d30d3ae41d6df39452d54aVirustotal results 25.00% SilentBuilder
2022-03-30527221973852445.xlsxls 92e238cc61611c6ec0b8765d74e30fd645e7929bdebc5172db8e8777b90214cbVirustotal results 28.33% SilentBuilder
2022-03-309670459527706013452.xlsxls a70944dc8486f8580125d6fc42dc181656aa83f9c9e1917512927e24fa13f69an/a SilentBuilder
2022-03-3036073480849.xlsxls f9fb4d5914f4d35aadbdf779dafd269c3581ca7296e7d927d8acdb38b5bf5a2bn/a Heodo
2022-03-30058231339397.xlsxls aa86d1be623622ae373fc9dcfb7365d513d0e273891e34b480ab2d7b10d6a7bbn/a Heodo
2022-03-307498107909.xlsxls 4744c844f2ac3fb1a611185968f458b2563a408114caf3d89b7e36f341abc2e9Virustotal results 25.00% Heodo
2022-03-30995757380365935494.xlsxls 2d368ee02fde0d0ce77097a1fa96916fbc4ef45ed1887d970b202a1d2ac95b97Virustotal results 14.63% Heodo
2022-03-305093853863169.xlsxls ebfa044ba6f3aeb955776b3c5565296472f0f8f6ed2dbb78c25c87f8107de4f3Virustotal results 22.03% Heodo
2022-03-3011386554811263.xlsxls 28c1994bc596421a111c75b795d98b2192edc5aa92b6d1e3adcefd40bd9d0bdfn/a SilentBuilder
2022-03-300537726185569462.xlsxls d2bbd8120515b265d888b7a8f53e83db7a6b22e79a65a720d69198d989b07a34n/a SilentBuilder
2022-03-302942539229858.xlsxls 2ef905f01abe2ecdadcc91e83ef54be4148b6107b44b429ba8fb4885fa3ab159n/a SilentBuilder
2022-03-307292899874.xlsxls 8962aaa71206d6ab184fd4c5d8d8fc956ad277803b3a33e0519943cb304849a8n/a SilentBuilder
2022-03-30785650568524254.xlsxls 5893e3a3e8b52cfa4d4e333aacdd5758557af03450d4e9054976b573ab556ef9n/a SilentBuilder
2022-03-301057545415745667.xlsxls 06ec7d1a1a19dac000cb1932a8aaf93ab8f9133a5de6800f084df77bd90cba5dn/a SilentBuilder
2022-03-308188773835777440576.xlsxls 3b5fe9b70f66483e2ee405c90f3d6bf6097097057cd5030eb62265a6ae113af3n/a SilentBuilder
2022-03-3041748155847913595126.xlsxls 2c3d9cb5cf7b573583526b209fee07992be32833f0daa21b1d69ce65560a0a58n/a SilentBuilder
2022-03-309162725602.xlsxls 40aa77bbfa6a11b156623be5f84634cfe0e8c07ef8cc481d448102a526c17007Virustotal results 23.33% SilentBuilder
2022-03-30007341987051.xlsxls 64fb06d13278cbe4fb6ab3d09eaaf56ef4f16c48d82da4f164e8b4483358be7dn/a SilentBuilder
2022-03-3043740147895724204560.xlsxls 819611079dfde3e2cc9e397141523bf02a452b44c2775ad9a12edc0baf827ccbn/a SilentBuilder
2022-03-30572604976772.xlsxls b53e7fd809f9e654c0d9d6d4f0aa797529daadc82b205bcecc3b564b45892ac4n/a SilentBuilder
2022-03-3073807562566.xlsxls 3104d47a09c86d04fa246fcabdc6ef69732755446d66d42f19dec29a33d057acn/a SilentBuilder
2022-03-3009815266954.xlsxls 7750729ac7ac67c70c2263d1795171a4181f7821da3efa5be8a41060489fe24cn/a SilentBuilder
2022-03-30702919960784900808.xlsxls 89136067e996c0c3a8e676d6ce711ab54ecf8a512369eb2075ad4e0fb8eea359n/a SilentBuilder
2022-03-3030871348268300.xlsxls 18a5aadfb1ade6b05280001f26d457382545510248408bbf0ba6d73aecd59e1en/a SilentBuilder
2022-03-3055189098004821.xlsxls b8d670ca1984f7ecc9e90c4bc0c4c4d96172690aead7080171735f96c11ba21fn/a SilentBuilder
2022-03-3023062254510880159821.xlsxls 3cd17e7df9642d09bd3d735e259ca8f9c4ff061f1070a601f3e638df5fbe1647n/a SilentBuilder
2022-03-29326796320880.xlsxls 1dbea40fcbd816ab601a760ef3a43708219096749c335057165212872cf8833dn/a Heodo
2022-03-29844384216641264.xlsxls 599d3a3734c82ec0d8e8e0a3f1eec8edb2ebbef17017b14c5127256a06f44923n/a SilentBuilder