URLhaus Database

You are currently viewing the URLhaus database entry for http://granportale.com.br/imagens/KAL37EYHD1.jpg which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:171416
URL: http://granportale.com.br/imagens/KAL37EYHD1.jpg
URL Status:Offline
Host: granportale.com.br
Date added:2019-04-04 13:15:10 UTC
Last online:2020-05-26 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2019-04-04 13:16:02 UTC to abuso{at}guzzo[dot]com[dot]br)
Takedown time:1 year, 1 month, 28 days, 6 hours, 45 minutes Bad (down since 2020-05-26 20:01:23 UTC)
Tags:exe Pony link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-05-24n/aexe 6fcf9145f42d5ff5d3bd6a2aaf36f748c51c4cc656a20cae8c63efd712abf0a5n/a 
2020-05-04n/aexe 3d1bc62314a55927bcbb8bbbf90c8e71fff1d6d2ad0fe32b6d570956c38bfd5cn/a 
2020-04-14n/aexe 1d177093e44647d7c8cd407a01789e7f3352e383b7e870f82cf2abfea20caf03n/a 
2019-12-11n/aexe 8a3dcc4ba24e2b52aaed22fe289cd6a7c6a5429d3aea9cc4f721ac2c21bf1d6en/a 
2019-08-20n/aexe c178f2c7d9b5d543b4277a6df59b14043c5166dafc65b83cfdf84cf971cb7d3en/a 
2019-04-04n/aexe 5ee970db11a1dbfeff58b1f1206045d141022d6d396d50ba571910522a2c106dVirustotal results 63.49%Downloader.Pony