URLhaus Database

You are currently viewing the URLhaus database entry for http://www.federation-sardaniste.fr/calendrier/Y7gy8vFc93EGgNB7d5liwLCiUX/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2123372
URL: http://www.federation-sardaniste.fr/calendrier/Y7gy8vFc93EGgNB7d5liwLCiUX/
URL Status:Offline
Host: www.federation-sardaniste.fr
Date added:2022-03-30 23:04:04 UTC
Last online:2022-06-21 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-30 23:05:06 UTC to abuse{at}lws[dot]fr)
Takedown time:2 months, 22 days, 7 hours, 36 minutes Bad (down since 2022-06-21 06:41:08 UTC)
Tags:emotet link epoch4 heodo link xls

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-01WXC-1371525762.xlsmxlsm 5d31e83b1dda43ba478dbf1bbd5b1ab90021810860493110ac6175f69e58a93dVirustotal results 43.55% Heodo
2022-04-01UX-7939939445554.xlsmxlsm b784d4f4f32d64afab8f413f40ca82365ae3115763bc79d6fa46a5e4ea94f01eVirustotal results 48.39% Heodo
2022-04-01GHU-377816055135287.xlsmxlsm f05bfe09754313735c1939aa2a1a85f904c8bd3fb4deb0a44b70ddb02166b319n/a Heodo
2022-04-01JWO-6848255035819.xlsmxlsm 31438f19fbba72bd65c2ce229f673e686dd8fedf7a755a7599f9ef99526589d1n/a Heodo
2022-04-01LF-54555416582.xlsmxlsm 8d85241fa9e4b815618a159681381b11248ae1d6ebac31af9036814028b205ecn/a Heodo
2022-04-01TL-08496604191.xlsmxlsm 0f6cfe4c94b7444729077741d333e0388edf05a02cd4dc40e515a03f5d4bf01bVirustotal results 40.32% Heodo
2022-04-01LC-2511152.xlsmxlsm 7e96bc74f1eb792d13f6c2f4d32b219833ea235a0ef4802178b44ebd18ef7ce3Virustotal results 47.54% Heodo
2022-04-01SNZ-57554251387787.xlsmxlsm d058072d305f952c54981e50bbd34cf23dd0386a4924a4bdb8a91f46e0498d4fn/a Heodo
2022-04-01SCN-0507704523212.xlsmxlsm 64d236fdcb188d517ddb0fd6ffcaf1759dddd828de26d1cf6b605031589da663n/a Heodo
2022-04-01FIL-77277560.xlsmxlsm 2ac3bf7095647237fe3a5bd46c3c7e85f0332e2bd3b8024452aad240a740c064n/a Heodo
2022-04-01YCD-283875160471625.xlsmxlsm 8f4649ad2259125c87f3339f5e5089f1f425485a0f16ac55a672a31b8ba49c2cVirustotal results 42.86% Heodo
2022-04-01YS-407312993352675.xlsmxlsm f732de85cedc648c0aa6fe976bc90b56fbbd78c9458986d67c94873a64ca035an/a Heodo
2022-04-01MWZ-372763645101.xlsmxlsm d599fc205e5bbcfa02c2eebd6a3005d4959eb00f993bb5642f248a40d557101dn/a Heodo
2022-04-01HFQ-26685677529067.xlsmxlsm 53ba0571642eb8162dba83cbc3390d3483fdc2cc3748ac1bb4cfbe34542f57f5n/a Heodo
2022-04-01KBL-7946925064.xlsmxlsm fa5f3e1ad7a0966fac2a2d091be90b6c0d70c79e258c9b19a2e93c47cd0c4818n/a Heodo
2022-04-01YI-84409646670565.xlsmxlsm 393d4fe454720708127a511564d5d5aab745e714a3e0dedafea5aa94c2d4980en/a Heodo
2022-04-01OL-1662989669.xlsmxlsm 61635512bee4cff899365f4b237bb10933734ba71146cc0cd7f7692508f2b26bn/a Heodo
2022-04-01CZT-830915697168934.xlsmxlsm 027cdc2c1f7a5137ca0fb9585bd5b7b98bb73c9e51073632d4101a1b533eddf8n/a Heodo
2022-04-01SNV-418959745217210.xlsmxlsm 6463322a887744e8e04715bf20b67bc671561c87d8cf5ef5d4791ddfb5f1eb0an/a Heodo
2022-04-01DB-38274728891650.xlsmxlsm b42ac7850efc6c39b4c7db61d4be9a131d78b545eaaa868dab373c45bff2fd72n/a Heodo
2022-04-01YHL-95406255616574.xlsmxlsm 05aecb805762b1c7cae04f8f46d0d43392d1b6e4880c93d82f69ef52d8dd2660n/a Heodo
2022-04-01NQ-07737799.xlsmxlsm c201ae0ab0516a27d14400b4af28d4189bb2c6d8b589c4fadb025c26645f19bfVirustotal results 48.39% Heodo
2022-04-01NFM-47007513000.xlsmxlsm 41169580013c884c968404a805765bab464032270676b792b39ae2b521a64dfeVirustotal results 40.32% Heodo
2022-04-01JE-3516739693.xlsmxlsm e5207cd147b8791ae79d2aad037958c960f6bf8f18c4e4e3749174d0ebd3fb62Virustotal results 47.54% Heodo
2022-04-01OUE-273549714730.xlsmxlsm ff29c4e7acfa113d826b2fcfcc5e8dea43a58a5db3ad37376750c95e58335050n/a Heodo
2022-04-01NV-543705924320.xlsmxlsm a88019c1e8c87847f6816dba7e30475a768da155993e7fa208063dffd2422811n/a Heodo
2022-04-01BRX-56889838319101.xlsmxlsm 3005686dd6b770a4a0af0ba70ec91ea407d32838aa2acea56c5ab75f2a47ff56n/a Heodo
2022-04-01LF-72378066.xlsmxlsm 47b6e78d6a7d4cd13da293ca1246d01543b0da63ccfd3e20830723be355497edn/a Heodo
2022-03-31UC-0520352915356.xlsmxlsm 7b5aca9a82485f669d10db3cd974bd416d8c41f460a1cc9e81eb7a5ec0eb1574Virustotal results 36.51% Heodo
2022-03-31TN-1168874.xlsmxlsm 8ce2a97a8318d629daf6b48ca033dceb8988c32bf5023f8938f354bdfeb5e25bn/a Heodo
2022-03-31SJ-98841625908095.xlsmxlsm c7f63ce6becdd48402150d223d11b5fb003ec48c57f2d856c8d979e5b3da4254n/a Heodo
2022-03-31FOQ-0895766262.xlsmxlsm 73a1d60faa31200f09f2567671137d6b5f9be02a97eec33fc20971d151d5c8f1n/a Heodo
2022-03-31UIK-91195208.xlsmxlsm 0baff6c11648937580735dcff8208034790a0e1ee649431e79b2b6221d825c40Virustotal results 44.26% Heodo
2022-03-31AA-721804271604157.xlsmxlsm 81031ffd3d04d3d3243fd4225a4d6d6f8703fced869c4a43bf7b7fe68e638040Virustotal results 38.10% Heodo
2022-03-31IOB-7763563.xlsmxlsm 9994ef90c3f8b4e8b9bd87003d2709ab3a4ae18d21cf43412e5c138ef7b24013Virustotal results 37.10% Heodo
2022-03-31FRD-28804182.xlsmxlsm 0e92cfd04405b8b597562761080285f19807c04c48c7278fe7632271ded41c3dVirustotal results 40.00% Heodo
2022-03-31PE-29241260720846.xlsmxlsm 896ef5fb12bd10c84fa96213d6a86aa368388e4806b9c882fd601a113482ff74n/a Heodo
2022-03-31CPG-9695739.xlsmxlsm 894658b992050ab6d7ee061f083a48264ce56c1b4fbc5ac87c142765405a47f7Virustotal results 36.51% Heodo
2022-03-31JW-5156662.xlsmxlsm aae715bd593347d4b94a81d9367b35a192014b0d17aa40e05652b3d84e5aedcbn/a Heodo
2022-03-31LBF-7963409002492.xlsmxlsm 9098c46a233798193c0587711f5a9be2a4aa97567db08504452748dde516053an/a Heodo
2022-03-31LPD-95505437903.xlsmxlsm db67f0509c5f982c9eb1fab5a17d14ea07d5a1e13b2f5ee3b35ccf93700588e4Virustotal results 38.71% Heodo
2022-03-31AY-511074924.xlsmxlsm 484ac30b71e02b553efb54dd38ddc6e86610a68995e280411a4b9f30c8630c77n/a Heodo
2022-03-31BU-45193822956034.xlsmxlsm a43da1637de01a06d72a9d09981de5132b8bd971844704ee9fc7c5e07450a49dn/a Heodo
2022-03-31VXH-5148817.xlsmxlsm 6f7875f81192db87ffea6b495f10f68edb22a26f0cbc22b47cc1fbaf1b160cddn/a Heodo
2022-03-31BG-585603125953.xlsmxlsm 70c7353a1e172d428b42bed59b7ddb9a6d1b60c368ec7ae5eb64c0eeed368080Virustotal results 43.55% Heodo
2022-03-31WHC-768033621787551.xlsmxlsm 93e06d8850641586fe31c662da490f8ff442f4f86021f50799e1174dcace1f72n/a Heodo
2022-03-30AL-52446717302311.xlsmxlsm 3bfd193ea92a687030d7b2fb3354e52980ad28ba1cae92579b53f5473b44f37an/a Heodo
2022-03-30XT-361355954050.xlsmxlsm 79ed143e7a4fe1be57c67ad3d5276bef8dfb15a4295749d0ec7225a81698621fn/a Heodo