URLhaus Database

You are currently viewing the URLhaus database entry for http://britanniacricketleague.com/wp-admin/swift/6g7gsq/r8095504124yiwyqwgnic84a3nxvplxj/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:597085
URL: http://britanniacricketleague.com/wp-admin/swift/6g7gsq/r8095504124yiwyqwgnic84a3nxvplxj/
URL Status:Offline
Host: britanniacricketleague.com
Date added:2020-09-22 13:30:35 UTC
Last online:2020-09-22 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-22 13:32:05 UTC to google-cloud-compliance{at}google[dot]com)
Takedown time:7 hours, 21 minutes Good (down since 2020-09-22 20:53:10 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-2265987732828565261739.docdoc 052552b8940e682ef01c6161f4b074cbcb5dcf412f62b64eafda4e3b304368ccVirustotal results 27.87%Heodo
2020-09-22DOC_70871186.docdoc 770a13e4b2ad169f027bbdb1dbd5317f83cdd7a7b28e6ac67e30614cdd534a29n/aHeodo
2020-09-22G_VJW_090120_JWF_092220.docdoc 04648ce7223361494ad5620c674be88a869710007f672d05721b77af59be70fdVirustotal results 27.87% Heodo
2020-09-22INV_34842022.docdoc 526a3a875236eb66c2fa9894594c30025d794c8ecbe0dde1fd873dedfab79497Virustotal results 21.74%Heodo
2020-09-22FIPU_42581705.docdoc 698748ed65c5d697095b866208160f8b4142e8d3e66a8cf826de1601fb3b080bVirustotal results 27.12%Heodo
2020-09-22FILE_JOZ_090120_GRG_092220.docdoc cc43bfd0ea39a3afc6283e4734d480bf62fbbb227016a5cb42d288a8f5f3c956Virustotal results 27.87%Heodo
2020-09-22RL6946389048PZ.docdoc 0c850e85bc3e92d0551863e1ce5cd03c3c3404ceeb7e38aed586706c4134f4a2n/aHeodo
2020-09-22NBZU_UKR_090120_FPE_092220.docdoc 26df475661d0c478c1fd69028ee3eca341beeb52a8d3a364e0c9d2796718325an/aHeodo
2020-09-22EEO_38609835.docdoc 1d12bc28a0362a431737a2d47cc51541e00538ff36044ed6118651874846c674Virustotal results 30.00%Heodo
2020-09-2282148329.docdoc a264844ab1f216ed35be45d33e87a627daf6c537e39717dd9f009940441da9d0Virustotal results 29.03%Heodo
2020-09-22QKS_090120_PVE_092220.docdoc 50938c1e8bcfd60435f294949bf3b07533f8b5ccf1cf92d08a77f4a222037092Virustotal results 46.77%Heodo
2020-09-22DOC_8ZH61942SLXGCLH.docdoc 8c631ee8db950c9391df61c02b0a50f1bcc096b8a195355ae59f0b8f00a0d3d0Virustotal results 22.95%Heodo
2020-09-22REP_84983221.docdoc 736ee3fb9d2da1d3846fb10b202b3ffd735c822264dce490fe654e4cf63b867dVirustotal results 22.03%Heodo
2020-09-22BAL_45848116.docdoc cb3213e75e68a01ab8325df1ad28ed2ee40a3db14d2c90693f1fad690ad94ff2Virustotal results 25.42%Heodo
2020-09-22T_FFG_090120_DWT_092220.docdoc 651691dcf8a659de6cc317f73356040f9fe108f7afcfcf13f037cb8ca348f061Virustotal results 25.86%Heodo
2020-09-22VEC_QQ4337820894DA.docdoc c644ecae09d26a7e2d91c741f78016ac572f541901955f91642e77b55cdd4f74Virustotal results 33.33%Heodo
2020-09-22DOC_JL2Z3EO2S.docdoc cb99d2925119c09ce6939a5b221b18e51dd3ecc15cb9cae4d15a17b0af74cc3eVirustotal results 25.42%Heodo
2020-09-22BAL_AOK_090120_VHJ_092220.docdoc c3aadd1a33b5eb0dc16b392519c63664865fc13903027c5c7bdbf83f94e08b65Virustotal results 23.73%Heodo