URLhaus Database

You are currently viewing the URLhaus database entry for https://jamfarmsco.com/cgi-bin/https://sites/s8TliwY5Ko5/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:497057
URL: https://jamfarmsco.com/cgi-bin/https://sites/s8TliwY5Ko5/
URL Status:Offline
Host: jamfarmsco.com
Date added:2020-09-14 14:24:35 UTC
Last online:2020-10-06 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-09-14 14:26:17 UTC to mr[dot]mamoori{at}gmail[dot]com)
Takedown time:21 days, 17 hours, 29 minutes Bad (down since 2020-10-06 07:55:35 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-16list-EZ270203.docdoc 29243f2e1ccc0ad1eecd24bfa2ae83cdb7576da3a14e75a599983e1148139e9aVirustotal results 27.12%Heodo
2020-09-16dat.docdoc 35aed4d6b554a972c9d91773024ddaaf8ca06ccc5b047a073dc51337a14dfd8eVirustotal results 27.12%Heodo
2020-09-16dat_2020_09_16_YCV621734.docdoc 416d955c7b77e7ee1011ae0e23659d733b6deaf33bec98fb7cc5bc08e2ecfa65Virustotal results 25.00%Heodo
2020-09-16File_1274648.docdoc 45af7091348e94523fcf93e8b5a0b895bfb10b778f2af8e04996845c8ee1e1d5Virustotal results 25.86%Heodo
2020-09-16Dat 20200916 HCG81443.docdoc 2df2c1608e75dc3162882ed50ee37c43d174deb4d1ce6fc85fc1386efb6a1b71Virustotal results 22.41%Heodo
2020-09-16LIST-X10331.docdoc 625bba582b51e78a3357c2a0a1a92ff5b0696389a7e3ced3a2ef1200623317d6Virustotal results 20.34%Heodo
2020-09-16ARC-2020_09_16-56126.docdoc 60ebb60bdbd9d062410367b982c74e9f4d3a5a857f4b3cbbfd64f9521d01472cVirustotal results 20.69%Heodo
2020-09-16Attachments-571.docdoc 57c55ce3943b5424de0f259dfd11a755a3fa502bb80433cc12891f1c50694998Virustotal results 33.90%Heodo
2020-09-16dat KUZ4856.docdoc 7504125a6d20afa52bca1888f1402f956e471bc9ba2c4e1c5815536c5631822eVirustotal results 32.20%Heodo
2020-09-15Dat.docdoc 4b15865823d60b49c9db443198a69c3094632109bddf59d81c11760fb94de5f7Virustotal results 33.33%Heodo
2020-09-15dat-20200916.docdoc 36cc514722804312a8769b90cd872196aca9060ba19f2122af1ef9230e9e7850Virustotal results 32.20%Heodo
2020-09-15UQ61922_2020_09_16.docdoc 398b03590995c96a56a346f9882b22caa5fdbd4d9606402c7a6f4bc3675326e1Virustotal results 30.51%Heodo
2020-09-15ARC_INI4889.docdoc d0fba2b098ff90a78440a38e84734c679208cd2f44396b653f818b1e6618c829Virustotal results 31.03%Heodo
2020-09-158613726 20200916 81043.docdoc 998617f6b6d8cb3b0f374f55aa9543cf8a3aa3f07239977fa532f9b0b2b04f5bVirustotal results 30.51%Heodo
2020-09-15doc 9775135.docdoc 4ed3b936d9b0ffb44be013208f756abbca27cca3ee96b46494369f2e82aa430dVirustotal results 27.12% Heodo
2020-09-15mes_20200915.docdoc d8a95a637b66134b8b8f3dd1352f5ade415775fdbaf1c398300c9ae34635b068Virustotal results 32.20%Heodo
2020-09-15DAT_20200915_96050.docdoc 9c1cb53270b551562a51bd5c7d704ff53f077fc07b79ea003b463e0b14853e4aVirustotal results 32.76%Heodo
2020-09-15Attachments-20200915-3060.docdoc c20a8e17553a8a2a2d9430765ac7a7c1405e4736e52058c80e5e81a2ffb4ad00Virustotal results 32.20%Heodo
2020-09-15rep_20200915_774.docdoc 5b372067c1b29b0f14ad42676ac56326898cca6fbe9cb7d6cce703f1e5274c31Virustotal results 32.76%Heodo
2020-09-15LIST_20200915_GNC5538.docdoc bf20b1d165f7e18ddfe016df314d1649ac8d3a6103341e17d22497cb239e03f7Virustotal results 32.20%Heodo
2020-09-15REP-20200915.docdoc 73184ff3bd237911914b6bb6d55791bc76cbeba33b5abe8dd2be566fb6eec3a3Virustotal results 32.20%Heodo
2020-09-15File_2020_09_15_VD4337.docdoc 25022fdedad55927f5a438cc3e58e0442c0343393954f18dcf8b8b35cc062aa3Virustotal results 31.03%Heodo
2020-09-15Doc.docdoc 8f938913a1061dab6a00062bcb70b49c35e323f5a6cf836d1ca77c8d1eb2dab7Virustotal results 30.51%Heodo
2020-09-15FN79036-20200915-812560.docdoc 7dc1af0f8b1add8e2a7b43e7a132612a4f4b48c1392bc42641c1e048a921c9b4Virustotal results 27.59%Heodo
2020-09-15Dat 20200915 I2141.docdoc f1fd07c547c01daac47147d1493401a592c89513e3c1ef5041ff8baf73d2b783Virustotal results 26.67%Heodo
2020-09-15rep 2020_09_15 5663909.docdoc 61b277c90703979b6f26776e18cad637717fb7113ec8fbb277a329621665cfc6Virustotal results 27.12%Heodo
2020-09-15Mes 2020_09_15 6357903.docdoc 02a317ec58094969571a5ff198144a81dfb60daed60f646565d4281f9a268ca9Virustotal results 25.86%Heodo
2020-09-15list_2020_09_15_JWK436.docdoc 6fc669fc25d476c3d7c2cf9ea003a9db92b87a070d75bf30546e5642c1437d9fVirustotal results 24.56%Heodo
2020-09-15Rep O90420.docdoc ca8d28ed383c1c8fd9ec5f80a3b8554ece5bc52ffad7b7fc3b29d8e1ba5b2188Virustotal results 23.73%Heodo
2020-09-15mes-20556.docdoc 445a016e7a9eddbc4e0ae84d64a5ed7c7785b21bdd3503c19cf4d67d75662157Virustotal results 23.73%Heodo
2020-09-15List 2020_09_15 AI1788.docdoc 43cc769c9e7ba0210e0a9c3b22707a1500245a04efb7e3d1faa76536bafba217Virustotal results 48.28%Heodo
2020-09-15inf_2020_09_15_BE321719.docdoc 52a16eb4d0a5916ce64afde8ebd6f617d816671ca29c92b3076ccb8199e01f0fVirustotal results 48.28%Heodo
2020-09-15INF 20200915 953.docdoc e0aad52f9de4512023a6d55564583a80a0c187c213055d7ae3f5c47da8d5d7ddVirustotal results 50.00%Heodo
2020-09-15Inf_6537.docdoc bab404a66237f3796ffc9047bdac95d69e90bc166e8c2838affdd13e0efae9e7Virustotal results 47.46%Heodo
2020-09-15doc-20200915-SPS28719.docdoc e203577dadb325bd364b0a6609b5aa2b4df457ba261810b3e5416950dff54c8fVirustotal results 45.76%Heodo
2020-09-15inf_2020_09_15_06457.docdoc 0b92085e3fef4b9cb196fb9a8e9bf64d4eb8664184ea2bdf46132abfa7f72a3fVirustotal results 38.98%Heodo
2020-09-15732WF-2020_09_15-2612.docdoc 7f270bf002e459e860698dbefae6fed9ece80b03830e5fc6bb156d2c5cd8f65fVirustotal results 40.00%Heodo
2020-09-1553306189 2020_09_15 5098345.docdoc 0e56a212452f8382cc59f8ea56838b188802b56853a868f03a610e633095cda6Virustotal results 38.98%Heodo
2020-09-15576946-20200915.docdoc 95a565fbe3dd58781eef947d31d6de93257032734052f7402be980023742980bVirustotal results 38.98%Heodo
2020-09-14arc_2020_09_15_H19107.docdoc 3797086d291ee004f0fca9dab3efca616b89626f0f0f01ea2db082c63d67d68dVirustotal results 40.35%Heodo
2020-09-14rep-20200915-13579.docdoc 6e10a01cd9dec093dcf1eb9caa2d4a8209d2d6059899c938b397b75bf04efffan/aHeodo
2020-09-14DAT-20200915-F6250.docdoc 061cdd9bf95054729c409879d11d74c56ae0808ee7858234932993776586d315Virustotal results 37.29%Heodo
2020-09-14Dat-20200915-Q847602.docdoc 659eee918658caf613efe868209fc51ff054b39f70d699c5474e5f6ad4684d76Virustotal results 37.29% Heodo
2020-09-14963164-20200915-550499.docdoc b842862b97e1bb3bf480e0edfa445124eb165f8b8c6208cdc3b40a25acd5c103Virustotal results 33.90%Heodo
2020-09-14LIST_2020_09_15_O95785.docdoc 1f937adf2064797622d0c208d379a6afb1be8c34b826068ea42f6433ad2766e7Virustotal results 30.51%Heodo
2020-09-14MES-2020_09_15-OZ493970.docdoc d99f28be1bd88f4eb8efcd54c021f9b248038aa19d71fe399be76813a24c2b25n/aHeodo
2020-09-14mes_AN151719.docdoc ee5bd3d048be89cda7b21ccc887b9a31bd338b0d97a8d34569b26619d759b3b7Virustotal results 27.59%Heodo
2020-09-14list_20200915_166.docdoc 35999c8f653e6bbd10bf305fb984cc3497ffdf8b26af7b53f83dbf7e385f737fVirustotal results 27.59%Heodo
2020-09-14LIST-20200915-4087.docdoc d5aa2a528823144775fd403bccc5cab65060e36da8a9ce8d9ce89e114e777067n/aHeodo
2020-09-14Attachments.docdoc 6c58e04ac46f5f16a638f4f54998b9f162745897f0f79940736c2b572235a2d5Virustotal results 25.42% Heodo
2020-09-14LIST-Y9401.docdoc 6182d411be0d9307e20cc25cf002ae1e861bf4d635a354004699f3e4cb916c34n/aHeodo
2020-09-14doc-20200914-977034.docdoc 6d05fd0835601d3f58f7c6d342cd98e5fe3a9f4a1c2ccbc91fa80fb44c61eec9Virustotal results 25.86%Heodo
2020-09-14File 2020_09_14 653.docdoc e0b4a8200e1aa5f0fb554fec161b466f3d9a6e49b7d5ea436b1c72f7fe9376dfn/a Heodo
2020-09-14MES Z059.docdoc f69d80723388387365060c795e3574955dfe37329979dfb222f64217e4077b63n/aHeodo
2020-09-14Attachment 37438.docdoc d01054cbeb1b74004b1711e8cca1bb9c162c86117e09a0e4110ac90bd1848809Virustotal results 25.42%Heodo
2020-09-14Dat_2020_09_14_MT115.docdoc 3dc5285bec0496d0a4993cc2a0d80e534010b345115320b8b96343b8ab9b10e3Virustotal results 20.34%Heodo
2020-09-14Attachment-2020_09_14-MHK71049.docdoc c97df0581f5b0b143567afac2ce6e6580a80ab58c283cbb27e706dbbc194bbe1Virustotal results 21.05%Heodo
2020-09-14File-2020_09_14-RG298127.docdoc 383354c8056fb386a9af9f40c354846726ff04165ca01390075eeefad8c28faaVirustotal results 20.69%Heodo
2020-09-14Rep_2020_09_14_421368.docdoc 26e06b0ee433f5787420c5246683878c897505c0e3c3815f3045d41ebd28b878Virustotal results 20.34%Heodo
2020-09-145241-20200914-YQA88047.docdoc d7b5b8d15b25865aa074d5b675151232523d6586eced6e28eb98955dbb15a994n/a Heodo
2020-09-14UNTITLED CL0324.docdoc 3c58efa8a1ff50a1c91b091da3d10d88c300e014f0685c2d003132d3aa4b4fedn/a Heodo