URLhaus Database

You are currently viewing the URLhaus database entry for https://escuro.com.br/ckeditor/aEpH-o1aNwYKz1t0Gn4h_bhQGOoXTi-w74/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:178314
URL: https://escuro.com.br/ckeditor/aEpH-o1aNwYKz1t0Gn4h_bhQGOoXTi-w74/
URL Status:Offline
Host: escuro.com.br
Date added:2019-04-16 05:57:17 UTC
Last online:2019-09-25 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-04-16 05:58:04 UTC to abuse{at}netservicos[dot]com[dot]br,abuse{at}vivax[dot]com[dot]br,virtua{at}virtua[dot]com[dot]br,abuse{at}claro[dot]com[dot]br,contatoregistro{at}claro[dot]com[dot]br,suporterede{at}claro[dot]com[dot]br)
Takedown time:5 months, 12 days, 15 hours, 0 minutes Bad (down since 2019-09-25 20:58:54 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-17Scan_027274567494US_Apr_17_2019.zipzip d1157de35ca5aba2bbb3b3a28f9fd9ab7022f68f9cac13e655a62cc96faa76adn/a 
2019-04-17Document_369492813833US_Apr_17_2019.zipzip cc7cf4983b1174d6b60ebc2ebd23b6f97e61f37f2f91490c9bde85eb943783cfn/a 
2019-04-17LLC_4745535482US_Apr_17_2019.zipzip 8f2c70ecddb72557cd4ee8d597268e939659bf29ee7be73ca2b4fbdd8f862696n/a 
2019-04-17FILE_849385431726US_Apr_17_2019.zipzip f63a9b1b3598d8aabe6c8fd9765777941520ed56d2803c746f942f47ff5b2950n/a 
2019-04-17Document_8372989297US_Apr_17_2019.zipzip dd818f1c820760d26153394099c8f8bc1f724554e3e99b616cc5fcbd3b67c4d3n/a 
2019-04-17LLC_1673353513US_Apr_17_2019.zipzip cb6179456715367fd24e3608138fda5871b20ba1ad586ef0fa43e184028cbe5an/a 
2019-04-17Document_5616238688US_Apr_17_2019.zipzip 350dce02bf1ff9b27f012d7ba6426440657a2b284b20d407076b313a0a66c928n/a 
2019-04-170600433012_Apr_17_2019.docdoc dfd14cdee37ce2e553ccccff81916d88857b9fef88abe657911e59c39d9bce4dVirustotal results 22.41% Heodo
2019-04-1712303790804_Apr_17_2019.docdoc 22b6830432e47e54619e0448c93f699b096e0e73165e051598a82836ab8e38abVirustotal results 22.03% Heodo
2019-04-1760298910949_Apr_17_2019.docdoc af507b0d98ed536a00361562696bcf00caa81b642eee407fdafcf89811f85ff1Virustotal results 22.03% Heodo
2019-04-17983824384702_Apr_17_2019.docdoc 642fe50465ced7e3d59a39e5776dc37e4c500a5cb9363d0c1ca2a7fdd72fa359Virustotal results 22.41% Heodo
2019-04-172509035488_Apr_17_2019.docdoc 3d23b00e234bfe41a182409dfcff847506e09a4cc834f2d54e1d0483a0656391Virustotal results 21.67% 
2019-04-17542307507185_Apr_17_2019.docdoc dc80c7b6ddd24d941654891dfc10cfac301241ee4fc1fa452edba96cd3729045n/a Heodo
2019-04-17841225184872_Apr_17_2019.zipzip 31aac3d030b874b438433e677d586352504f119459466816b04f6740288c1fe6n/a 
2019-04-17203861294858_Apr_17_2019.zipzip 6a6e6748b0e5197908fd8a1fe2b327afc9ffdd7f08fd153337cd85ae128f87ean/a 
2019-04-1716956575306_Apr_17_2019.zipzip 98aa2165d40ca69a2b94c7d77a563be5f999e4c9f6d8ec14576475544d4c1c01n/a 
2019-04-171617609303_Apr_17_2019.zipzip 8c4416c4a7cd6530a5ab411fdb28b8848b7bb195150fad850db855e72514863dn/a 
2019-04-1757852179498_Apr_17_2019.zipzip 83fb756c0a5da89c1e82c59c914abcde42b034836e872c23c0a2ea79f8c77156n/a 
2019-04-1772547634936_Apr_17_2019.zipzip 3f7d08bee334a92bc1f6ed7aa04695ab23476ce4fd27dcaaebf309d0938bfec4n/a 
2019-04-17435730882607_Apr_17_2019.zipzip c425ec5cfd2a0564fe54d1450aab3ad393c88362066721387438dd3c7b29b9dbn/a 
2019-04-171623301043_Apr_17_2019.zipzip 516959b899a68aa6b0f94eb525d75a5e6763d01e120562d32beb276b4d03ebf9n/a 
2019-04-17383800675588_Apr_17_2019.zipzip 0e10d2214591e3f14a56286bfdf0dc158bfbcccd506d3135a67cf0f1d3b79b34n/a 
2019-04-1783227472067_Apr_17_2019.zipzip 9f6ffd7fb02fb3664fd092dcdc4172ab1f1eed4b1fb753c3bff1aaa4d2b779ecn/a 
2019-04-17085281110649_Apr_17_2019.zipzip d7c36acdd617a6e2c0c06ca73b369190e09e0507fb941ba95bed4a284df75066n/a 
2019-04-1769425979429_Apr_17_2019.zipzip 1e7529808e4105d3ebf0921b1d4054ced264df3fbb0cb4789fd104e28f6aa64an/a 
2019-04-1758440716535_Apr_17_2019.zipzip 394e7c3d90dc9309c45785b5cf3121fbed2f65a461d23ee47ff7a3bc0885b83bn/a 
2019-04-1796836021299_Apr_17_2019.zipzip 1ddcc05d223eafe5c0dbe96d83d604eec0eebb6b9e67922729b7745fa36905ebn/a 
2019-04-1749228103027_Apr_17_2019.zipzip 2ce84ca44e16d1a3f27f8186f2cd1ecff073e0843a306e100d69f368d8932216n/a 
2019-04-175121601746_Apr_17_2019.zipzip eba4913f58c3878defbe79352e76519deaedd18f0fae92f515ea591e48087c00n/a 
2019-04-172745625561_Apr_17_2019.zipzip 9e28d195bd232beaded7f20d91b5d70bd82f398d989ebec7bc0347488a4a74c8n/a 
2019-04-17447687826379_Apr_17_2019.zipzip 1223f0b514c01650b1f73f7c8c4f9d5e79631ac9a9b177cc7663cd157921fb1fn/a 
2019-04-16407049159240_Apr_17_2019.zipzip b5cd9de9404377c0be22f830cc26c7e800d9eb176f492a5caf0fecd2457de2ddn/a 
2019-04-16855625118467_Apr_17_2019.docdoc 3828b5d43c9a954b999a9aec7777e8a36b97d8a00de5ac023fbcd09b210cb543Virustotal results 25.42% Heodo
2019-04-16140589794162_Apr_17_2019.docdoc f4057cf66759a43716d9fa6733db73448df6fc66303df5616dcce6496b83b167Virustotal results 25.42% Heodo
2019-04-1625253387129_Apr_17_2019.docdoc 4b1ccb75644b61d0f3c1df18a238066171bf3f3b8ffbdce21a963a032676bb61Virustotal results 24.14% Heodo
2019-04-16235188916134_Apr_16_2019.docdoc 3824b2db3b14d88a11d155d0894a6af22bedb3bc12a029f9563344208354aff6Virustotal results 35.09% Heodo
2019-04-162627235855_Apr_16_2019.docdoc 4f9800723d9da1abd4a9270d2ca1608a8540cbc15ddaa67f2b8a18aa2d75620aVirustotal results 31.03% Heodo
2019-04-16009565680788_Apr_16_2019.docdoc e8a46a8b0686f80f2a59786232894b4a1b299ec8a0a1326a107deb5ee4e7cadeVirustotal results 31.03% Heodo
2019-04-16649856870356_Apr_16_2019.docdoc 33eb8eed7c8660a54e9b99e8b8719fa1a83484d5ba41805f1767cd8605d28fa4Virustotal results 31.03% Heodo
2019-04-167593883438_Apr_16_2019.docdoc 033fa72fe48a853b99e41ed7467c1ccc488d5abe69dff887b8a6b7b2c5a5452fVirustotal results 31.03% Heodo
2019-04-16793254082086_Apr_16_2019.docdoc 7fae139edf9512b5788f271e05878e6d556721b4eddd8f556096824c3b9bec69Virustotal results 31.03% Heodo
2019-04-169794561441_Apr_16_2019.docdoc 7147bcbc0854554068d051c589da76772d019dd8f1d56ee17b6ef90ba54c2706Virustotal results 31.58% Heodo
2019-04-16049653190343_Apr_16_2019.docdoc 304a8542a85af048259d4d87cf12c686d4af0c4ecdbd85b2ec7ccd6ba4284db4Virustotal results 30.51% Heodo
2019-04-16127460608385_Apr_16_2019.docdoc 7a8ac4c603faaee3e2d94f3faed810be8000ac4d4abee4475766ab9111fe67e0Virustotal results 31.15% Heodo
2019-04-162428012403_Apr_16_2019.docdoc cd9387ca69fa3aa30380f5e513313980b26805181f235dea5596a7d9b6c21c41n/a Heodo
2019-04-1619778223836_Apr_16_2019.docdoc f77752556433adc821036db89f24c19cc0178c68fbce62b8840b415f3916c4bdVirustotal results 26.32% Heodo
2019-04-1600850265356_Apr_16_2019.docdoc 05e9d6de0d75faf602a7666ff6287e1e9ee367d57d2abaeac780e14325833dcaVirustotal results 28.33% Heodo
2019-04-162586960085_Apr_16_2019.docdoc eaebef573b834cac77673e625c36f4e363a94a294e37a18e68547a3b19308fdbVirustotal results 27.12% Heodo
2019-04-16183987213559_Apr_16_2019.docdoc 90c260b2469174d1c60fca12bc1a31728a1219a71c5f27a5b1cf21db2271f123Virustotal results 28.81% Heodo
2019-04-16674794889581_Apr_16_2019.docdoc c40f3f595365f71600c24ebe5c2fd245bb7584364c4b2f3f294e1dfe675891bcVirustotal results 27.59% Heodo
2019-04-168044117593_Apr_16_2019.docdoc e0bf4c6aeb567130478fd998b9bb45ca8ce6d76520107e2088d4c6cdcbff90c8Virustotal results 28.33% Heodo
2019-04-168062792875_Apr_16_2019.docdoc eb68fdf25e93c5d896e8b7f3d1216c20545cf2f3b3ecac3c850d4d48dcc853deVirustotal results 27.59% Heodo
2019-04-164511379551_Apr_16_2019.docdoc cf34076fe15384682ff04d5a15a94d36af4ff3dee94d651c33c4b4c60731ed88Virustotal results 26.79% Heodo
2019-04-1618686665573_Apr_16_2019.jsjs e328f1a48cce3e9220c38d847ccea9f81b6135d120bd76b224c4be21405f700eVirustotal results 9.26% Heodo