URLhaus Database

You are currently viewing the URLhaus database entry for http://www.efcballjoint.com/Template/wwvJWgjhLmy8m4k1/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2123389
URL: http://www.efcballjoint.com/Template/wwvJWgjhLmy8m4k1/
URL Status:Offline
Host: www.efcballjoint.com
Date added:2022-03-30 23:14:04 UTC
Last online:2022-04-07 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-30 23:15:07 UTC to noc{at}vt[dot]com[dot]tr)
Takedown time:7 days, 10 hours, 26 minutes Bad (down since 2022-04-07 09:41:40 UTC)
Tags:emotet link epoch4 heodo link xls

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-01MM-7435411053014.xlsmxlsm 5d31e83b1dda43ba478dbf1bbd5b1ab90021810860493110ac6175f69e58a93dn/a Heodo
2022-04-01IAQ-36765471629.xlsmxlsm aadecf7e86b793c65dfa931389fc8d5aa723ab7d07f770d7be9fe09b0be03606n/a Heodo
2022-04-01ZX-1580869.xlsmxlsm 5e318e7afaeff1da0ab8f38c466b9fb4e911da7fae7a6eb58cfbab3175d51263Virustotal results 41.27% Heodo
2022-04-01IO-4072487389051.xlsmxlsm ea8981ffdb13c6d1dd874a5a86e7079bb053c862a92849bc571846a6762dc7d4Virustotal results 45.16% Heodo
2022-04-01HN-5114185355.xlsmxlsm b023e386d641f492de9b4d5bed3205b36c169d9ffe17c13f60c1175cf972fadfVirustotal results 50.00% Heodo
2022-04-01FMR-49023622360.xlsmxlsm 99717c4eea8cfa905a207ea753e12bcd957f480eda47749d5cd5ae2f362a4f7dVirustotal results 40.32% Heodo
2022-04-01ZG-61213896539.xlsmxlsm e60bc99d183be33a1787fa2d49cf9ffa132e958a48f6c9f44ae73df878d51ceen/a Heodo
2022-04-01LZQ-02795993.xlsmxlsm d5e9766c94d91e4da90999a0ea0d9a7b3918973c857c7f9faca5686288b53db2n/a Heodo
2022-04-01WHB-146378887067.xlsmxlsm dec78675ed65ce3c282f1d9d3e4a1da9209c833b7aca7b14647e1a944b002400Virustotal results 40.32% Heodo
2022-04-01UNG-512433170331697.xlsmxlsm 1156447c9afcac33bf71aaeb14978f9e5d3d1e58c9d97e1071fa721bdf338759n/a Heodo
2022-04-01KYU-5428887963578.xlsmxlsm 5a5c8a3d5de13a95ffc29d40c54fe8440d1c84f706e59960f5f1621715b8a1dcn/a Heodo
2022-04-01WDK-2565654381890.xlsmxlsm a2088f01e4a3b55cfbccaa117ef5c9ea67bf766a15d6beec4095f966a9fcc4ddVirustotal results 43.33% Heodo
2022-04-01VO-257344330.xlsmxlsm 8cfdb13bd3fba245b5e3c5a06b90cdab4f8970b13e3ea5262aeb7bd089474bb3Virustotal results 36.67% Heodo
2022-04-01DH-216798790270264.xlsmxlsm e659479a435f37e03d325154ad864519c5a6853aac0f16d605d7560f3a4a0863n/a Heodo
2022-04-01NLW-186451281766740.xlsmxlsm fdaef695835e1a9e056fe2496ef611e4250388f7712102116b6717894e578f50n/a Heodo
2022-04-01HU-2835488.xlsmxlsm 6bd95848c7dd338d7cb29f4887a68746d81e74ea63561e270a676963c64672e8n/a Heodo
2022-04-01TL-45755653.xlsmxlsm 73dc0a16c8430b50b28054c9e0b1e54cc8174554e7b63b4e2fa4be17c3cac1d6Virustotal results 40.32% Heodo
2022-04-01PKT-882489751528689.xlsmxlsm 05aecb805762b1c7cae04f8f46d0d43392d1b6e4880c93d82f69ef52d8dd2660Virustotal results 35.59% Heodo
2022-04-01WZW-373184547.xlsmxlsm 3d3d238ca4765fb46ab4acd05120295ee765c8788700ef65625607b08920bf9fn/a Heodo
2022-04-01SWR-5027859954.xlsmxlsm 9ae3ff917d99c0e0ba1f6dde3bcfebd781ab332d65552b032855ca627606cccbn/a Heodo
2022-04-01BDX-16429393.xlsmxlsm 45a99040aab95ccb6eae75a169ae10f79883e11c53c29bc41ffffd0a329940cen/a Heodo
2022-04-01QX-66105895968.xlsmxlsm 4c7b060bb7b1693ef3943692ce9c62204426393f9af92ca39c4c57e09b03cc25n/a c8fc17ff030feb3383d8889f69abbb
2022-04-01MBB-09870824398.xlsmxlsm a4653047d35b63e4cfb6020be4149b484aa5e68354d53a9da860dcc3cdeef038n/a c8fc17ff030feb3383d8889f69abbb
2022-04-01MC-683708800.xlsmxlsm 68696caf69e14a066ca54423f72a2e7693b03f5ce299e609265a3e72df925abcn/a Heodo
2022-04-01ZPQ-301417019443.xlsmxlsm bad29f90618ce3abdf8296b3212e2b256d0ba9047f64c50681339f93fdc7a729n/a Heodo
2022-03-31PQS-6499130449.xlsmxlsm 172069d53028518eba0b857e88be2520acea926685cda54cc456c55d3f94d5f3n/a Heodo
2022-03-31GND-57926422918.xlsmxlsm 8ce2a97a8318d629daf6b48ca033dceb8988c32bf5023f8938f354bdfeb5e25bn/a Heodo
2022-03-31NZ-31626761164387.xlsmxlsm c7f63ce6becdd48402150d223d11b5fb003ec48c57f2d856c8d979e5b3da4254n/a Heodo
2022-03-31OJO-6500336745.xlsmxlsm dffde7ff06d4b4d38ae8f02750d5c59b2a1a293d05af04210b8e79d0b3fd4043Virustotal results 38.10% Heodo
2022-03-31ALB-87561919.xlsmxlsm 10281dd74601704b43cbce7093951762bfb6cc0402f747ba01250b2ebc438c27Virustotal results 35.48% Heodo
2022-03-31AM-094204783862294.xlsmxlsm 2fa93c2dfef003816d473094a03ffe57ed6fd6cbbd21f22831af88634fc3287dVirustotal results 37.10% Heodo
2022-03-31HS-5440676778.xlsmxlsm 0fd2f733280971461df815cc429114ab59fead1be7490d155eb26848362222d5n/a Heodo
2022-03-31XF-722357282591948.xlsmxlsm 5255a810d7f6ce0a8c496654d7751b05993139ba23432677b64b01c9c44af0fdn/a Heodo
2022-03-31TD-045370165.xlsmxlsm 9c234ce84ff77dfc1466c436eea9d46c50c3055c50f0029b81dba5052864f4ban/a Heodo
2022-03-31CIT-5630880661855.xlsmxlsm fcefa2ebaa9e5cce06f5519640eab5413a9b9f6a53ed3fe2f3754c9a610418ban/a Heodo
2022-03-31YY-1472052.xlsmxlsm 894658b992050ab6d7ee061f083a48264ce56c1b4fbc5ac87c142765405a47f7Virustotal results 36.51% Heodo
2022-03-31AK-48077878.xlsmxlsm b034cfc88c6603dc0f5519ecba2dbba8c5382b26b8c25da23f8d40368ce8e7b5Virustotal results 33.87% Heodo
2022-03-31PGT-4614560.xlsmxlsm 30966974e86a66616cc16777afa85aae655f75123db0418c503c03e389091e69Virustotal results 43.55% Heodo
2022-03-31FZ-87324960972.xlsmxlsm 741ce52756ec7af61733cc38585600581961b56bc885e46393e6e2028bb8efben/a Heodo
2022-03-31OCX-44850578459.xlsmxlsm 00ea616ce33ef49268a2d6046f588bb73c80b7a90ae6e5e5067938d72e858564Virustotal results 38.10% Heodo
2022-03-31KCT-0316899.xlsmxlsm 287f8b49b0107a7e303a4d327d34a8fe117d4696af06bb3bbd73d25e5a39270fVirustotal results 40.98% Heodo
2022-03-31YL-95188630535.xlsmxlsm 17b9fb2a14f219a8533daeb04f710613ccf28ccc51a88e7560e932d296b1a856n/a Heodo
2022-03-31WAZ-47449540338.xlsmxlsm 764d8e72174b0666952016caf95096e85219dba6554a8ce6db74b8244b3e7590n/a Heodo
2022-03-31RED-554396131713313.xlsmxlsm d0e1bf9a8969b0e7856ed1015033cef4c745a120413c76d61b1560e323de2359Virustotal results 38.10% Heodo
2022-03-30BTQ-782367269969.xlsmxlsm 7bd47c2f3e932a049d450f5a54be51e401ea041d669c7df91f71b903358f99d9n/a Heodo
2022-03-30MDR-946887275575834.xlsmxlsm 41f790fa1e0f18e897bdad1de2c9452310c964ab0c50e831d9c1150af849edf4n/a Heodo