URLhaus Database

You are currently viewing the URLhaus database entry for http://maysoc.net/wordpress/sUK55HElKMqPjCQciFOyQe/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2123221
URL: http://maysoc.net/wordpress/sUK55HElKMqPjCQciFOyQe/
URL Status:Offline
Host: maysoc.net
Date added:2022-03-30 20:32:05 UTC
Last online:2022-04-02 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-30 20:33:07 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:3 days, 2 hours, 10 minutes Bad (down since 2022-04-02 22:43:42 UTC)
Tags:emotet link epoch4 heodo link SilentBuilder xls

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-01YJT-352445648.xlsmxlsm 2657e28547c2c155c164a85e77880fe252eadf80b349e890689985543f0ba7a1n/a Heodo
2022-04-01XA-3220094755567.xlsmxlsm 5e318e7afaeff1da0ab8f38c466b9fb4e911da7fae7a6eb58cfbab3175d51263Virustotal results 41.27% Heodo
2022-04-01PUS-425014480146.xlsmxlsm 8d85241fa9e4b815618a159681381b11248ae1d6ebac31af9036814028b205ecn/a Heodo
2022-04-01EI-9571303593914.xlsmxlsm 172069d53028518eba0b857e88be2520acea926685cda54cc456c55d3f94d5f3Virustotal results 42.62% Heodo
2022-04-01ZWE-2448555.xlsmxlsm 23ea7612b95421466f2e06bd8a3ed6e8dd9a410ab8aa026323e63b0ab4991c62n/a Heodo
2022-04-01QKE-043198316839.xlsmxlsm e60bc99d183be33a1787fa2d49cf9ffa132e958a48f6c9f44ae73df878d51ceen/a Heodo
2022-04-01IPQ-0030593770085.xlsmxlsm 2ac3bf7095647237fe3a5bd46c3c7e85f0332e2bd3b8024452aad240a740c064n/a Heodo
2022-04-01WJ-15217065593178.xlsmxlsm 8090d0b6d046091604553a331f669273c32d27943faae06a33b6ffda57479dafVirustotal results 45.16%Heodo
2022-04-01BEV-6694467291139.xlsmxlsm 60833a18e14a8b4eb21cec280bdac63e8a03eeda78c1c5e0e641624b72000be8n/a Heodo
2022-04-01SW-4085459.xlsmxlsm 5a5c8a3d5de13a95ffc29d40c54fe8440d1c84f706e59960f5f1621715b8a1dcn/a Heodo
2022-04-01OBF-710072703794.xlsmxlsm db05585c173bca5c340fd01dffcf23be710be4b482131d5bc16f4eedb265754dVirustotal results 37.70% Heodo
2022-04-01FYR-315329671070673.xlsmxlsm 3390185d81ea6becb7bb5c59f26400a3c75b99da77bd95eb76e9417ca984b4dfn/a Heodo
2022-04-01IN-12937575881.xlsmxlsm a7b2353e3cc7e51e65aae622e1a0f4c8ce1feb70c9a7e385cfbd056528c812a7Virustotal results 41.67% Heodo
2022-04-01EUE-44299215127001.xlsmxlsm cb8b7ab96bb04ee8d5961b315979e71335c048e9eb3a3bfac2f273731544f0fbn/a Heodo
2022-04-01EE-18969610.xlsmxlsm 486f0b5ec22adfb853de19d134c1b622d189a6b833765aab0ae9c0759ff19735n/a Heodo
2022-04-01PK-857219675565382.xlsmxlsm 9e0637c374cea89ea1d76667b2d88b2197ea6cd48c4ffe0d6568c7647e173096n/a Heodo
2022-04-01YQR-1115923.xlsmxlsm b42ac7850efc6c39b4c7db61d4be9a131d78b545eaaa868dab373c45bff2fd72n/a Heodo
2022-04-01RH-84001565209.xlsmxlsm e407f7217907368560ef28caf164f34190a5295c4c75afaaeea21386e8bed99cn/a Heodo
2022-04-01CBX-73067814513.xlsmxlsm 4967f52b4eec67dedea5ef764a47c545db43f04f5b0f1355dfa16c8b8bc6e1e8Virustotal results 41.27% Heodo
2022-04-01BH-296971531.xlsmxlsm 41169580013c884c968404a805765bab464032270676b792b39ae2b521a64dfeVirustotal results 40.32% Heodo
2022-04-01LBU-34393592.xlsmxlsm 764dc9c37da82215bfa8dce451fc0946c901984084015a98478a65bd670835c2Virustotal results 46.77% Heodo
2022-04-01XM-31946651921.xlsmxlsm 9ca7e881cd1e46ca3a73efbad250390fbb3fbc92c6d90d0f25c6a218055f323bn/a Heodo
2022-04-01XGS-232509234331867.xlsmxlsm 83e4fb679d6d1c0567ea98f4800afcb2f1b36a3d0515fa429f17ba52984f6cbdn/a Heodo
2022-04-01IE-42646025435432.xlsmxlsm fd973bcc5e3f03c3c7ac535524d9f26c618eb0e8c7c5551f26e014df2dae0b45n/a Heodo
2022-04-01PMG-075907154828.xlsmxlsm 63a772f7b80157698557665066c82cd930d3b1c75cbe50b72fedce8da477c193Virustotal results 43.55% Heodo
2022-04-01BNS-9791748897883.xlsmxlsm d17e95fb87ae8a3011b050d5c9c089f3bc06fddd1a61feb4812380e96b541e73Virustotal results 46.77% Heodo
2022-03-31VQ-8175099.xlsmxlsm a3daf38a9efabc78999651c2b0f4afd47af19450cb0b3f4492221c20b7590c71n/a Heodo
2022-03-31HP-0601653.xlsmxlsm 65d9f4ae7d90232314fd04917e53e9f4e2a214ec3670daad35bd2f51fe9a45d7n/a Heodo
2022-03-31YI-23205912.xlsmxlsm 394f2586f64eea33aee4936383a906ce8da124dfc3cc0a464897f776bc1d373en/a Heodo
2022-03-31ZL-7317982071.xlsmxlsm 10281dd74601704b43cbce7093951762bfb6cc0402f747ba01250b2ebc438c27Virustotal results 35.48% Heodo
2022-03-31PAB-808224673273.xlsmxlsm c10cd4c9b699a22be539e47e16dbb91c80084b3afa570a9eb66c2206c3096b9aVirustotal results 40.00% Heodo
2022-03-31LTV-704819271.xlsmxlsm 2fa93c2dfef003816d473094a03ffe57ed6fd6cbbd21f22831af88634fc3287dn/a Heodo
2022-03-31MV-340178381603.xlsmxlsm 48f3f48c930933448b555efe67aa364e098504f2273ec2a4792803cb4a21b8bdVirustotal results 40.98% Heodo
2022-03-31AS-388195667867.xlsmxlsm 894658b992050ab6d7ee061f083a48264ce56c1b4fbc5ac87c142765405a47f7Virustotal results 36.51% Heodo
2022-03-31PAC-72318563.xlsmxlsm 2550670f68b05aae7f04bfed13c37b7f3ee48a1677ac9eef2e7c3c0a88aefdffVirustotal results 43.55% Heodo
2022-03-31BME-8612791.xlsmxlsm ccf8147ef96ae47288019a25336c2935e73d2e06b8fe73823e3596fb1596ba8dVirustotal results 43.55% Heodo
2022-03-31EI-635600591.xlsmxlsm 578e2f6c9e64cb4de6991bae88f0e1e8d38afce9fb954c64d9ed303053647d94Virustotal results 38.10% Heodo
2022-03-31QZF-722946111552775.xlsmxlsm a099f9c9c8eff7049da288a1205f1c0ccd52a4954930cabdd7a00dafbe8bbe6dn/a Heodo
2022-03-31JBZ-551690552328.xlsmxlsm a43da1637de01a06d72a9d09981de5132b8bd971844704ee9fc7c5e07450a49dVirustotal results 36.51% Heodo
2022-03-31EK-51170836.xlsmxlsm 6f7875f81192db87ffea6b495f10f68edb22a26f0cbc22b47cc1fbaf1b160cddn/a Heodo
2022-03-31GQJ-47989456595194.xlsmxlsm 0c71f0ce426be3dfeacb36cfb08349362327fa6041d1669a1d2ef8b1110bfab3Virustotal results 36.51% Heodo
2022-03-31DDF-310077501622032.xlsmxlsm b73f04d9f7a2ce5624249871b7f1277fcc2959bfe5abcaa33e1da19e0da9cb08Virustotal results 38.10% Heodo
2022-03-30JWC-90370669664.xlsmxlsm 3bfd193ea92a687030d7b2fb3354e52980ad28ba1cae92579b53f5473b44f37an/a Heodo
2022-03-30WQ-15362951576619.xlsmxlsm 8eb161bd22ea52d987b19953ebebe364df8a0779ed9f42ad96c6dec32f8cce52n/a Heodo
2022-03-30SQ-8258724273158.xlsmxlsm b8a9c6cb2992b99ed3cc0c82c5cc63dc9a4a3c509e8c67399d2d7c864ed83c03Virustotal results 38.33% Heodo
2022-03-30QTM-736854617.xlsxls 2fb5d6b4684b1f180fd682f92fc346420c16376d64b8b8ec6b0564247000dc58n/a SilentBuilder
2022-03-30OLB-84972802449990.xlsxls f0beb35ec05b2573e3690db6e67f03dfd61681549208e49e015a7cd815e86d10Virustotal results 28.33%SilentBuilder