URLhaus Database

You are currently viewing the URLhaus database entry for https://caballosshow.com/gta-v-kk6e9/s4RoZ9x5MfODim1ghYAZd9eV/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:974656
URL: https://caballosshow.com/gta-v-kk6e9/s4RoZ9x5MfODim1ghYAZd9eV/
URL Status:Offline
Host: caballosshow.com
Date added:2021-01-23 00:18:07 UTC
Last online:2021-01-23 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2021-01-23 00:18:16 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:4 hours, 58 minutes Good (down since 2021-01-23 05:16:56 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-23LRW500SK.docdoc 22d173bf822ad2a201b67dbe4adffb9e3542bc1e72c408fafd435b91ea6ea799n/aHeodo
2021-01-23NK7REDG8CHOT2RM.docdoc be26736f51aaefad6e9e969237302a4aed11d4990cc40050c7fae379688d1e82Virustotal results 52.46%Heodo
2021-01-23WCU35C.docdoc 24093743cc1b5882bb6b43c3712d06a13dad73e41f2c95f44d71286d515a1120n/aHeodo
2021-01-23RCIGHPZUBDD0BD4Y.docdoc 3e2601aa7c53742f621bec3989a72e0c2db710586817cfc0067b9557e7346935Virustotal results 31.75%Heodo
2021-01-236MDMIAP1HFX.docdoc e7f279ef5b22466bf897b28fa9657446c3b897058314548a19376e0ac3a115efVirustotal results 53.23%Heodo
2021-01-23T9NR6LTEODPD892W.docdoc 422c84eb3c0a25bf5ea4c23eb23b048c1ff8f1dda0510c84362dc30ab3fab6d7Virustotal results 52.38%Heodo
2021-01-23GA1907V2FYEEIK4.docdoc bbefec31ea0c2301e8202d73acf49ca0d72f4a3b80b6a81836e49b1591d3d78cVirustotal results 52.38%Heodo
2021-01-232ZK610KXJ0P7.docdoc 0d95efeb799d69a27255270804aa8efa5e91cd71b55943e37e88e772c961bca2n/aHeodo
2021-01-235Y3WIQVM.docdoc cb4aaffb479ed567e1cca60bdb16fe0ede6ca520f16b1129e28eae589d6f37f6Virustotal results 51.61%Heodo
2021-01-23KYR1SJTJXTN0F4.docdoc 88b4e1657c14287bb263fcb0ed92b0b58b294c9b6e822cc1dcd152e08346dc5fVirustotal results 50.79%Heodo
2021-01-23B8SKEQ9OZEGI.docdoc b5503af31ba54c8572f00098487768ecb885e8b321974aca44c71333d9db1a6bVirustotal results 50.79%Heodo
2021-01-23C1ZBSOR125K.docdoc 843ac5a5070a8f77eeb150cf7963ea5a66dd5763b0e3ac3d775333219fa5b773Virustotal results 49.21%Heodo
2021-01-23JXNQZXCJB77IE0.docdoc 3b8c1a7288a8940c4785141389d323f7949b9639ca7821ebad1fc2182a2acf58Virustotal results 48.39%Heodo
2021-01-23AIQTCY.docdoc 962dce7cc5ed4f64919264917c5f74afd1f8a3710f08274d1b6edd3653e93e2fVirustotal results 50.00%Heodo
2021-01-23LV8IHZ7.docdoc 8e1b421f30c7c20b606e39fe566e57a6dad0bd67736065c6b9b50f66f14a8a9fn/aHeodo
2021-01-23V2JKUNJF69XV8.docdoc 20b1f1c932f9ac88685c65ca2ed2d57ba42e6cc5d643c567fbff933e64e09797Virustotal results 48.39%Heodo
2021-01-2368SMSXOH.docdoc af3194c0b659d352c4c034514492465d714d13af99d02334148600618bfa61dfn/aHeodo
2021-01-237E4HKH7AQ0DADGS.docdoc 65d65b1d65fcab110eca51cb529feca603cc4c5bb9102dd756faa35f157744ccVirustotal results 31.75%Heodo
2021-01-236XG6GD5BK.docdoc 8114e0c0eefcbd0cabff86c033ee3649a76d53c8b9418626c49146a13bfe4deeVirustotal results 46.03%Heodo
2021-01-23HGLFS3CUZES16.docdoc f2f810ac8d53caf7b5ad3fa8566ed61610f1ef80b7a9ef571b9bd112ba745909Virustotal results 31.75%Heodo
2021-01-238GVQLLARK.docdoc 06706618f6fb465f559d7359295a2757c1cfd4311ae5ad13d1b3ed2acac1a2b9Virustotal results 45.16%Heodo
2021-01-23TVO36398.docdoc 04d66ed2d7e82444ce4d2b8227f03b6612a55e843e3ef434c01c93b65f10ff04Virustotal results 44.44%Heodo
2021-01-23T1CMGOGOC1DE.docdoc d5da4dc5a6a3fc416aca8ffbfaa3b6cb18a1efd11b94eb7f40a584fd96813f8eVirustotal results 46.77%Heodo