URLhaus Database

You are currently viewing the URLhaus database entry for http://switzersfoodhall.ie/h/9WAHIGhFlzdJJvXtA5XoO5enXmlHuNZL0oAoQIGG0JUbUnCo9EOgZ155oTr6/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:936740
URL: http://switzersfoodhall.ie/h/9WAHIGhFlzdJJvXtA5XoO5enXmlHuNZL0oAoQIGG0JUbUnCo9EOgZ155oTr6/
URL Status:Offline
Host: switzersfoodhall.ie
Date added:2020-12-22 00:27:10 UTC
Last online:2020-12-22 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-12-22 00:28:39 UTC to abuse{at}blacknight[dot]ie)
Takedown time:7 hours, 32 minutes Good (down since 2020-12-22 08:01:29 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-225B84ETCDOL.docdoc 5e7b5f66817d31d512e968c0de66f4f686e74249facf010c218e49ee144c57can/aHeodo
2020-12-22N4293T7XNJXS52GE.docdoc d891344c9d8a55fb3c94ca53e96c96b05a56789cf097d10b30e9f0533abb1665Virustotal results 30.16%Heodo
2020-12-22FY1LOIXBOUVB.docdoc 7184f7e66d9b0566e48729543b3757f4f8ba91165a370d05ff5f9165d59aad8aVirustotal results 47.62%Heodo
2020-12-22OC90FLCC379D.docdoc e7089d2cfc740d86a12a70fd5c0277858daa9ab9083a4b01b2ff7873274b6d17Virustotal results 49.21%Heodo
2020-12-22LFH9GFMAF4J4873.docdoc 16435a7bc02d8c0ebfeab05878d59be715c385a0d646258abd2ddaa498800d30n/aHeodo
2020-12-22NMG4WY9MVDFJ9F.docdoc 99791db1cb487d25ca3160836589adcad5fc57a1dceecd3cdc82ecbee51716beVirustotal results 47.62%Heodo
2020-12-22HI6SHO14U6M3.docdoc 419de57605bb9474687edcff1207a053c0da9c08c58d7ad4671981603cc08743Virustotal results 47.62%Heodo
2020-12-222G775NT.docdoc 2e2845f894af1842a98bb01b55cf68757e6c573d1d97c11cf41818de4a70f82bVirustotal results 46.77%Heodo
2020-12-22YW63JJ9L.docdoc ba2bc32f4daa30fda2e05c5960a6a160167101889384e98690e6abbeff973434n/aHeodo
2020-12-22ZPM2VX3IW.docdoc 716592916c6f39ede3e673f03bfadfc09349bf29a45ad31bdd83faa58b0efc0aVirustotal results 50.79%Heodo
2020-12-22I8L78NPLZZJOKM.docdoc 6c26774c4763bbbc05c970dbe0b96045fefbdffc80c2d7878e8ca8089f0215c9n/aHeodo
2020-12-22H75MUGEKLJ.docdoc cff7b2d4fb395de88b4c8494f75e925c14e735c01f9a79572938f9c6c7f590a3n/aHeodo
2020-12-228FXCOFLBUXM241.docdoc 0c2c97f9c94b970cc23cc8f11be9fcbaf1630395d13060ca289eb0d9284b4a7dn/aHeodo
2020-12-22TL83G1KD.docdoc ba1218e38d9223acf507cfc1a458681e54567ca72f03040901578a63ffc0ba06Virustotal results 42.86%Heodo
2020-12-22JUODF7E8W0F4E3.docdoc 47d01951e8e4d0425373658359ab6e4e764c29adf9f0a674dc51fc859ee31719Virustotal results 38.10%Heodo
2020-12-22KN72LUFQ.docdoc a02591c24d3c86f54be79271c7ec7e679141ae9245b3ac62da5d6f382edc0880Virustotal results 44.44%Heodo