URLhaus Database

You are currently viewing the URLhaus database entry for http://saffrontheindiankitchen.com/studyinusa/c9GcsoElVub05Q4iTjI7j53UQCpdSA/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2125192
URL: http://saffrontheindiankitchen.com/studyinusa/c9GcsoElVub05Q4iTjI7j53UQCpdSA/
URL Status:Offline
Host: saffrontheindiankitchen.com
Date added:2022-03-31 17:36:04 UTC
Last online:2022-08-13 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-31 17:37:06 UTC to abuse{at}godaddy[dot]com)
Takedown time:4 months, 14 days, 22 hours, 23 minutes Bad (down since 2022-08-13 16:00:22 UTC)
Tags:c8fc17ff030feb3383d8889f69abbb emotet link epoch4 heodo link xls

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-01AC-595736925921817.xlsmxlsm 5d31e83b1dda43ba478dbf1bbd5b1ab90021810860493110ac6175f69e58a93dVirustotal results 43.55% Heodo
2022-04-01FUJ-206485464.xlsmxlsm e1d34b3be1b2b0399c24d8358a49188e404066b6d8e74df660f0d5f12bc93910n/a Heodo
2022-04-01VO-3660841630727.xlsmxlsm f23c909e93da5046220289a169b11f2e4425e3d46a97ac879fa01d36a223d366Virustotal results 45.90% Heodo
2022-04-01LT-55147691.xlsmxlsm 5e318e7afaeff1da0ab8f38c466b9fb4e911da7fae7a6eb58cfbab3175d51263Virustotal results 41.27% Heodo
2022-04-01LNH-56832644441469.xlsmxlsm 60c4d1f685f36a0120a23c7fd8aa5ca2ae442c84ade6fc63771c5463defd9bd7Virustotal results 45.16% Heodo
2022-04-01LX-921634579927960.xlsmxlsm 54c3e251b39b44ff3627617706251eb6dcfdf0cda812b0a8d18158934414b3afVirustotal results 43.55% Heodo
2022-04-01URZ-529687662891.xlsmxlsm de11fbbfacd6c871dc2033f96f1dacb1815ef7122825f3a2fd1fbcc9459ce4cen/a Heodo
2022-04-01FKH-681913788605.xlsmxlsm e01debc832c8bd1cc77634631d977cbabf9ab55828f7336d6b5219e75549244bn/a Heodo
2022-04-01MJ-9093385141745.xlsmxlsm 3ec7dae29ba24a2e8aff9b38839735a3baa6271f44b7ca46022e04da14b642b1Virustotal results 43.55% Heodo
2022-04-01ATJ-6551587574093.xlsmxlsm b2938e08838301bc90fa07151c54635d779bc503bf82962bf843781326e1de2fVirustotal results 43.55% Heodo
2022-04-01RZ-199266705205940.xlsmxlsm 67761263609b4bd35b14d39f6eddb7e7554a73b9d317d53d533dac64ce3f30d4Virustotal results 44.44% Heodo
2022-04-01VN-9727728.xlsmxlsm f4e10c5743205f55ce4eca43f3741f71ecfdca9391ae883123c3372d5daae4b1Virustotal results 41.94%Heodo
2022-04-01HBD-60225056388870.xlsmxlsm 5ee7da1557872d5aa45f2b0dd720348fa08f31e3b2b3bb5aa5fcac583cc2d9adn/a Heodo
2022-04-01NKU-02131763844.xlsmxlsm 4d52dfe6d7f72aada80362bf080ef49a439b176e7c488de69e8d6cc39feefb9cVirustotal results 48.39% Heodo
2022-04-01EQ-24480522780.xlsmxlsm 8aa66ed1444810a267e6451a6dd5fcad3be51c7da31399d2f0fa96b5499e8806n/a Heodo
2022-04-01EIJ-223321490158238.xlsmxlsm 2b24ae43b66b722398ecdce2eda45ce724f63487f3059dffa976479d26a9f3b7n/a Heodo
2022-04-01ME-93424539.xlsmxlsm 1a8adefa7d083432f592ddc3797611b4e8076869a11177ebbdc1b5b6bc22982fn/a Heodo
2022-04-01WOC-20478495285214.xlsmxlsm 027cdc2c1f7a5137ca0fb9585bd5b7b98bb73c9e51073632d4101a1b533eddf8n/a Heodo
2022-04-01NS-00864167000362.xlsmxlsm 1cef59b0cfd651edd1b587c50988c75a14b39c325a3f41839e3ce51c08f7f753n/a Heodo
2022-04-01JIS-9021537772.xlsmxlsm f44ceacfc82ef479898e80139a379537a6807c7f104c6d71216c269dfa7b02a8n/a Heodo
2022-04-01UL-6169807.xlsmxlsm f3c06e72e6b0cddb3d66545d59bef1288458f9c106ede60b0507f095971e7067n/a Heodo
2022-04-01RKZ-0231271258543.xlsmxlsm 4967f52b4eec67dedea5ef764a47c545db43f04f5b0f1355dfa16c8b8bc6e1e8Virustotal results 41.27% Heodo
2022-04-01EA-532768832423660.xlsmxlsm 41169580013c884c968404a805765bab464032270676b792b39ae2b521a64dfeVirustotal results 40.32% Heodo
2022-04-01HIN-8144521.xlsmxlsm e5207cd147b8791ae79d2aad037958c960f6bf8f18c4e4e3749174d0ebd3fb62Virustotal results 47.54% Heodo
2022-04-01SE-264690540890.xlsmxlsm ff29c4e7acfa113d826b2fcfcc5e8dea43a58a5db3ad37376750c95e58335050n/a Heodo
2022-04-01NJF-880813237407241.xlsmxlsm bf6cb3e6ea1b0a08f1f184f4eef60a5d3382414b293412ec4e24bfc30119aaa7n/a Heodo
2022-04-01GAM-46346048.xlsmxlsm 3005686dd6b770a4a0af0ba70ec91ea407d32838aa2acea56c5ab75f2a47ff56n/a Heodo
2022-04-01AQI-2914032.xlsmxlsm 183a6d5a3ef111869776ad189768e9388b9c069c9da1ba02ff7fe00068819894n/a Heodo
2022-03-31YN-404878749.xlsmxlsm 7b5aca9a82485f669d10db3cd974bd416d8c41f460a1cc9e81eb7a5ec0eb1574Virustotal results 36.51% Heodo
2022-03-31LF-19604754.xlsmxlsm 10ce10aeef8f6d0f3daf5292f589879e748af9adc9d29ad0bf9143c2115cfa23n/a Heodo
2022-03-31YBE-357600332735240.xlsmxlsm e9228653a673fd6de4b3fefe1e1bb7522485198e7553046fe42f97f2f58bc3c6Virustotal results 38.10% Heodo
2022-03-31UU-65927383.xlsmxlsm 441ae7dcf7d20f39dce4201542202d7c62c067457d1476c2bda9c819979879ebVirustotal results 40.98% Heodo
2022-03-31GOQ-2804771144.xlsmxlsm a952453aee7b5d358259b92750c559cdf583f54496aa8a8b81a5aa27d2b18dfaVirustotal results 38.10% Heodo
2022-03-31EVZ-014846887233.xlsmxlsm 0a23b203754e6a043fa99f6cf518c8ffa19a34557a7471edad072d54c4a76dacVirustotal results 42.86% Heodo
2022-03-31XJJ-4276722348.xlsmxlsm 46c4bca622e4ec244f8999280567cf11b73d31d875ea21c347d737e6605992abn/a Heodo
2022-03-31TD-1970872599.xlsmxlsm 0e92cfd04405b8b597562761080285f19807c04c48c7278fe7632271ded41c3dVirustotal results 40.00% Heodo
2022-03-31RI-7844981.xlsmxlsm c477d7314db2e481dc0afaafdc010642699dff0e0b641a374e91754a51fbf094Virustotal results 38.33% Heodo