URLhaus Database

You are currently viewing the URLhaus database entry for https://portalsete.com.br/wp-admin/sec.myacc.resourses.net/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:167632
URL: https://portalsete.com.br/wp-admin/sec.myacc.resourses.net/
URL Status:Offline
Host: portalsete.com.br
Date added:2019-03-28 09:31:03 UTC
Last online:2019-04-15 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-03-28 09:32:03 UTC to abuse{at}embratel[dot]net[dot]br )
Takedown time:17 days, 19 hours, 57 minutes Bad (down since 2019-04-15 05:29:47 UTC)
Tags:doc emotet link epoch1

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-03-28NEW_INVOICE_03_2019_L9_45-25_H056.zipzip 6e96be6fc4708bbd6ec7792d8f6a62b38712512891a6c26eab65a071cc44da61n/a 
2019-03-28INVOICE_DOC_201903_D1_2-93_7081.zipzip 0717d17bfca76f86aeef5141e528e523722d914966ecfb7dc4df149309d39bd6n/a 
2019-03-28inv_num-03_2019_E0_16-05_T4725.zipzip 13d0f68d6b37dbcbf93bc5590c24768968c8e759bb0e552701999f1756d7f641n/a 
2019-03-28invoice_number-03_2019_L4_51-00_G051.zipzip 82489f59a32a196db44e6563f3f92a21e9b1e22429f1a1b220c64388024bcd37n/a 
2019-03-28inv_num-032019_F9_1-72_L8451.zipzip 743cd71a803a698d7e82face6a1cddac9c34b56642a092fcf5bd7854f6dd972en/a 
2019-03-2803_2019_T6_8-72_0489.zipzip 3674db7c9d12a2ee34fc272dee63d8d03b292d275f71801c1d819f7ccf6af3afn/a