URLhaus Database

You are currently viewing the URLhaus database entry for https://jbshop.shop/proposer-site/ovVyo5rrNLAgd0QxXvkvE2RwbkbKvGXCv/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:939163
URL: https://jbshop.shop/proposer-site/ovVyo5rrNLAgd0QxXvkvE2RwbkbKvGXCv/
URL Status:Offline
Host: jbshop.shop
Date added:2020-12-22 18:18:16 UTC
Last online:2020-12-22 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU003190227 created on 2020-12-22 18:20:05 UTC)
Takedown time:2 hours, 9 minutes Good (down since 2020-12-22 20:29:53 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-22VYPFUV3.docdoc ffce79e8ecfa61f2f82aa9b40d611c100e6cd68cde6fc34b012ebbd21750908dVirustotal results 19.05%Heodo
2020-12-22RDBYJJBBRFM.docdoc fc3124288c2951243570fc0346d03c81f5e7fdddebbe64c0c08a4bfb215426d5n/aHeodo
2020-12-22I5JRYR08FT40KEY.docdoc bb809b30f35c4fd4500f5d4bdf886b079dd8b06b79f7a81ab2cca3ed9ac73af0Virustotal results 19.35%Heodo
2020-12-22UDPEQ7.docdoc 73132ef9149825650cd15e4cc30adc5672a95f12f241a676c2887d1af9d205ecVirustotal results 19.35%Heodo
2020-12-22HZXO31DETZ.docdoc b5cabad4213a8d3f738e1ad1145a3130b3f5fe2739bcb8e5aa1f1ac3fa3fcd7cn/aHeodo
2020-12-22Z66WGGA7VLVLX4A.docdoc 282e189a38374ce617073f353580971897a17a1eae677743234fa85c73cb5225Virustotal results 19.05%Heodo
2020-12-22PESLPG7RM7HH.docdoc 2e0385f5241c415bb29b64085cd40afd6761d486a6c196a29fdc5ba314112960n/aHeodo
2020-12-22XUR5PF.docdoc 424f10f02cae65598b467c5ffdc4eebcc769ffb56ff1dc7e47f50eb7fd31c368Virustotal results 19.35%Heodo
2020-12-2223Z3O96C9715.docdoc fabd2798310f1b90dc1321bffbfa1ee8c41695839459d40fd6e32618d3df7ccbVirustotal results 44.44%Heodo