URLhaus Database

You are currently viewing the URLhaus database entry for http://grafitishoes.com/zohoverify/zdvDi9Prkpn5qTAtW9gRh36yfpF7p4gVjlz1HJMnsVRw1Wrx9QgF45AANmD0fdLtNrRhu/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:949026
URL: http://grafitishoes.com/zohoverify/zdvDi9Prkpn5qTAtW9gRh36yfpF7p4gVjlz1HJMnsVRw1Wrx9QgF45AANmD0fdLtNrRhu/
URL Status:Offline
Host: grafitishoes.com
Date added:2021-01-04 20:44:06 UTC
Last online:2021-01-04 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2021-01-04 20:46:03 UTC to CloudFlare Anti-Abuse API)
Takedown time:1 hour, 47 minutes Good (down since 2021-01-04 22:33:44 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-04HT1KMHKVNCDLK.docdoc f5e030f99b3221f7b2d8b52bce2b0b913b2d183c3f7bd5016bd17ddbfe0be793Virustotal results 31.75%Heodo
2021-01-045IEULRMS.docdoc 7bb94464b3d84793306c5871494ec5b557815c2dee93f5ff5ba01e1fe7c85d88Virustotal results 31.75%Heodo
2021-01-0404SZQNL01LGM2W.docdoc 3d566983c8d1eebeb69ceafa423e493e04f3ca7fa686084e2c2e064a363a9d07Virustotal results 32.79%Heodo
2021-01-0400RBH3C49H.docdoc b10a960e8977a7b70533cbee4eb85803cde6da3e96f6b83f3ed90e1950ca002aVirustotal results 31.75%Heodo
2021-01-04PUGZV0V25.docdoc e9e38a6cb9cb68a769315bfb851f0050c0de6d11eea0e844369970fe0de81ce2Virustotal results 32.26%Heodo
2021-01-04U19UMT7IVCFNA5IJ.docdoc 3d21a5365d2e1f9d0e3d3e86dda15dc5ad052808764acba64fd1bdeb9ec0fcf7Virustotal results 31.75%Heodo
2021-01-041EBXSJBU37.docdoc 5b5a5d832bc2ab16da7304396039c9b4d15d3fabb3bb41386578505f0124b0c4Virustotal results 31.75%Heodo
2021-01-0442V7M752JONHWJ4.docdoc a4ee94729b7d72887bd48e1d2c06d88cdc624f878fd079085fa6713200e712d0n/aHeodo
2021-01-04NDV08T8UWQ0W.docdoc 49a4678f9b33879cb16662dd5d05bc7e7ec713bbf6a85741a81f9e1e0f3c37f4n/aHeodo