URLhaus Database

You are currently viewing the URLhaus database entry for http://www.megawindbrasil.com.br/css/bknfx8r-q4h4u-eeqkw/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:178517
URL: http://www.megawindbrasil.com.br/css/bknfx8r-q4h4u-eeqkw/
URL Status:Offline
Host: www.megawindbrasil.com.br
Date added:2019-04-16 09:19:06 UTC
Last online:2019-04-30 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-04-16 09:20:03 UTC to abuse{at}lacnic[dot]net)
Takedown time:13 days, 18 hours, 46 minutes Bad (down since 2019-04-30 04:06:49 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-18826228591526DE_April_18_2019.zipzip f0686faad4d619e879543b54b8e50988f94422b2ef0f72edb7c25915681a6416n/a 
2019-04-18297587300749DE_April_18_2019.zipzip 2280e8694878d80a2dff24fa6006ad787f7730172c270cfbdf5074d96fe791c6n/a 
2019-04-1847442908330DE_April_18_2019.zipzip 940063e114a9e138d92b467b9a56bb2264e8bcdc35eb44386b1c6532520e85a1n/a 
2019-04-18231157114360DE_April_18_2019.zipzip 93baa6ee8616b66e9fe4c557a206d432c940d5febb254ca951dbca37a365561en/a 
2019-04-18988775501568DE_April_18_2019.zipzip ab11860d8fd24e08a9dbbb94c6ff254803c00c7ec090e9b6871ba826f34b15c5n/a 
2019-04-1855249053126DE_April_18_2019.zipzip 33f26a57907be1f07b99090a6b811fb699edbfd17fb2a09ea04d5bfd28cc4927n/a 
2019-04-188110496242DE_April_18_2019.zipzip 1ef4c1e25a6286f7da8222c006b7d0e2c7911b0b4845e53ebb98244d56dada67n/a 
2019-04-1891075218862DE_April_18_2019.zipzip 3857a6f530b0803926c1395d3658861680d3f82ff3f3da51350890977adf373en/a 
2019-04-18732117584759DE_April_18_2019.zipzip fb84e4384c56aaddc14b82e427d4426922cf1fce0e584d4a7033655e473c616dn/a 
2019-04-1890736929706DE_April_18_2019.zipzip c1e1ea5f28a91b303fbbcdd22cab1e5eb53881ef91e6827821e8311d37bd6356n/a 
2019-04-180779900306DE_April_18_2019.zipzip e6d2a25dc81fc3da5e05931c82fb5e6d459407125aedb0ed84e483733e1ad5e8n/a 
2019-04-1859230445193DE_April_18_2019.zipzip e33b6a8e90416c11188698e70cf75f3e48d08a3f2903ca3436ea757d94fe753en/a 
2019-04-1830066714301DE_April_18_2019.zipzip b20aa95140b5c4b3b470f2b3e16ed15995aa0d1176994dec9b22405ce9c675a2n/a 
2019-04-1843269768136DE_April_18_2019.zipzip 955a59e502cf36f59cb4c56cca366581976133a3de0073a4382724c5fc12c3c8n/a 
2019-04-1874055275882DE_April_18_2019.zipzip 9403dbea1a545fbeda3a341aace98c6bcb7904a03585586ed2d2ca39897b34f6n/a 
2019-04-17192321442771DE_April_18_2019.zipzip 6eba5dbedc6430a2e65dce33d80aedf9de04a76614fd001897615897dbe7b1fdn/a 
2019-04-1797142215104DE_April_18_2019.zipzip 6f50c4b0d4639760f5f3408809558463ec35b360d328cb377006f7db5e5003cbn/a 
2019-04-176841872855DE_April_18_2019.zipzip f5c0c0e9e801d3d51fca04aae4535e9b0e5dab06ccedfd2e231dd3054b06b512n/a 
2019-04-1781581228170DE_April_18_2019.zipzip 1c6a3e42fafaf3778e4c45e429bfe8c1f881c3ec6edcfafd8de5dcfff6796780n/a 
2019-04-1787912950187DE_April_17_2019.zipzip 61ee68139184b2814dc051976a15822ba61db427625ac439410118803d06660bn/a 
2019-04-17564670344558DE_April_17_2019.zipzip 3e7d643cd7d7fe24e6b43a7b2e85720b65cf6dfdda9501d5d14ac9ae88819c35n/a 
2019-04-17516702701980DE_April_17_2019.zipzip 097adb3162aeb3fda2f004c23f59cf98041b712875e66c406c37d73bae7593e5n/a 
2019-04-171690714224DE_April_17_2019.zipzip 3033ede0cfa73f9ed9c47b1250407f35012014f19a25f719224eac1603c6c84bn/a 
2019-04-17776321815068DE_April_17_2019.zipzip 79f3f589bf5453049c29b98ae47b76c692fad3ec74b0007d413c48a143ef3891n/a 
2019-04-1774973334275DE_April_17_2019.zipzip 6a1d630e86ae6e1b5ebea0b8bc8b13f73552f2d9c6610f3b910110703c92d839n/a 
2019-04-1769625256717DE_April_17_2019.zipzip 45a4f1a41c3bb6d237f2984309c73984de7c4bb994639a9212809df533c38a92n/a 
2019-04-1765831797838DE_April_17_2019.zipzip bc1db62127cff00b9e2a43c68d2b547b43da95409441b5580a02f71a171fe03dn/a 
2019-04-17076175909445_DE_April_17_2019.docdoc dfd14cdee37ce2e553ccccff81916d88857b9fef88abe657911e59c39d9bce4dVirustotal results 22.41% Heodo
2019-04-175928476111_DE_April_17_2019.docdoc 6a666b0ea6a6a4b716ce7a987827f1abf1822d0e048ac505ff33a87eb25dc189n/a Heodo
2019-04-177242019577_DE_April_17_2019.docdoc 71da59481ca34680c6459f5947bd9e90fc7ecb570e040045c5d200bf313d5e12Virustotal results 22.03% Heodo
2019-04-17755593269600_DE_April_17_2019.docdoc 642fe50465ced7e3d59a39e5776dc37e4c500a5cb9363d0c1ca2a7fdd72fa359Virustotal results 22.41% Heodo
2019-04-17212842119433_DE_April_17_2019.docdoc 3d23b00e234bfe41a182409dfcff847506e09a4cc834f2d54e1d0483a0656391Virustotal results 21.67% 
2019-04-1783333337107_DE_April_17_2019.docdoc dc80c7b6ddd24d941654891dfc10cfac301241ee4fc1fa452edba96cd3729045n/a Heodo
2019-04-178268969425_DE_April_17_2019.zipzip 03c3b19f78f72c372e592caf3bb5e3dd777fffc997599eb52e19e413daf17252n/a 
2019-04-1733039896261_DE_April_17_2019.zipzip 749cf18456eac7488172b70f5985ab26d6dc9683e04a92ec87ecbf328080d41bn/a 
2019-04-17167571081431_DE_April_17_2019.zipzip 2998281cf68d61fed673f015016621e957636d79a2c228b0a36f3b5b023c9eeen/a 
2019-04-17753737463882_DE_April_17_2019.zipzip dcdd57e2b90411029b04674cce2ec78b2d6ab9a278283d341b5b16069e331378n/a 
2019-04-171234411072_DE_April_17_2019.zipzip 017b90568f1c15fc8a17f121cec4b3366275132ddd136dfb00965019c3eb712an/a 
2019-04-179086024289_DE_April_17_2019.zipzip c65d0466f36ff0fd7fb18e56d0f8d1025b302a729d3b9eb556512c3502323e23n/a 
2019-04-179836997275_DE_April_17_2019.zipzip 44a771969624a8ad53f619ee684296fe39cbf205a86632bccf160a0e6a455886n/a 
2019-04-17340936410622_DE_April_17_2019.zipzip a45a4709f1f89550e7fdbebcf2c51f7e870e223fbca120d7f41ede04fc0754fdn/a 
2019-04-1728862296719_DE_April_17_2019.zipzip d4911eba004d80a8d533a2438d764d392c76edf54d32bcd975d00cca682ef3d8n/a 
2019-04-1743039649886_DE_April_17_2019.zipzip 92f1e6afb423977bf3c0de9bad3968f2573245ea7ff2abbc905df1f5217f2982n/a 
2019-04-176319961172_DE_April_17_2019.zipzip c8d58058c69c60a64ad699b632e85363583a109875f61e68aa518abaf8c0e8d3n/a 
2019-04-17099614864431_DE_April_17_2019.zipzip 3ecdcb7e76271b6b781871954f1968d12afe92695d81f1b438b6cdae1bafe5aen/a 
2019-04-17616776113514_DE_April_17_2019.zipzip ff02061c5ec97ba980cde6600d469901399e4f7f5a1938908041c030068c3667n/a 
2019-04-1756053149720_DE_April_17_2019.zipzip 6e95d46fa78a4d0b3f387163417612c3c7dc20c3888dcfbd31549332d7f62863Virustotal results 6.90% 
2019-04-176389401385_DE_April_17_2019.zipzip a39b2bff5373d33883cd1c38e0bdf4456e6176adc531ba6ab255d2e849a3dbcbn/a 
2019-04-17897387896711_DE_April_17_2019.zipzip c09620480e5a943a5aa1624fadd7f695cfe13832a26a8197a78db25506f3a8afn/a 
2019-04-1722760527228_DE_April_17_2019.zipzip ab31b914e9665286e11bd8804ea9bc28b8c9f4787348fbdf124b470db6dd9d2dn/a 
2019-04-1732676802695_DE_April_17_2019.zipzip 13bc8d13ad29f5c9352569ba73662b24c3367bc0eb934bb72c2514d64bb19fd1n/a 
2019-04-16155519187094_DE_April_17_2019.zipzip abfe00d048188c0108aca4667a4c5768eafdeb7c1f98c0febc4b330f7ff5da8bn/a 
2019-04-16129374840838_DE_April_17_2019.docdoc 3828b5d43c9a954b999a9aec7777e8a36b97d8a00de5ac023fbcd09b210cb543Virustotal results 25.42% Heodo
2019-04-165038863967_DE_April_17_2019.docdoc f4057cf66759a43716d9fa6733db73448df6fc66303df5616dcce6496b83b167Virustotal results 25.42% Heodo
2019-04-169276019033_DE_April_17_2019.docdoc 4b1ccb75644b61d0f3c1df18a238066171bf3f3b8ffbdce21a963a032676bb61Virustotal results 24.14% Heodo
2019-04-165147775290_DE_April_16_2019.docdoc a39e96bb339abf98493d3ba90dcfa68795b464fa75de8ac6122d35c28da6a582n/a Heodo
2019-04-16937104023041_DE_April_16_2019.docdoc 8eba23049d725aabd84b63f8cd4b079c78f26cde6f7bb8be1d2477df0c0d5127Virustotal results 32.76% Heodo
2019-04-1664371810048_DE_April_16_2019.docdoc 141e277b2165595334f404edd83397057b2a4ef8a52eb8edba79203f0aba44d9Virustotal results 30.51% Heodo
2019-04-1600234836251_DE_April_16_2019.docdoc fa660e7b9ff937c7e5c479dc9cde90110956fb283453d09e1dfde4853b96296bVirustotal results 30.51% Heodo
2019-04-16415559394429_DE_April_16_2019.docdoc 3a4b689a95d70548cd86ea5280a5ca10220d49290818cf48f5130858ff399b85Virustotal results 30.00% Heodo
2019-04-16213679935232_DE_April_16_2019.docdoc 2424f686781cc0fb887ff5606a77f090dfe38b9539e94e0d5d55b20dcb212041n/a Heodo
2019-04-162203339719_DE_April_16_2019.docdoc 0d6e79a1ce172fd964c9c98a3bc5a94cb5f901e7253f1c2ce14bf30c34747b2aVirustotal results 31.03% Heodo
2019-04-166483193868_DE_April_16_2019.docdoc 020ed32f0c3de6a24817e3326fe676c4e07896c71f9474db5b9948847d8e2873Virustotal results 31.67% Heodo
2019-04-16404100344858_DE_April_16_2019.docdoc ebbd8471022a4d525eb5bd3537e6a1688980bcd861300807f5c4a14ec7ea777fVirustotal results 30.51% Heodo
2019-04-161110281812_DE_April_16_2019.docdoc aea48fc08e1c0ee59879373c140af99229887fd6cc38f32308b4ffa4fe8bb8a8Virustotal results 28.07% Heodo
2019-04-16690655116016_DE_April_16_2019.docdoc 50c3e055e1b4d6030661152172eaa343d011851f2063710c553d6e0cf0c3961an/a Heodo
2019-04-16422587032283_DE_April_16_2019.docdoc 05e9d6de0d75faf602a7666ff6287e1e9ee367d57d2abaeac780e14325833dcaVirustotal results 28.33% Heodo
2019-04-1650494875716_DE_April_16_2019.docdoc eaebef573b834cac77673e625c36f4e363a94a294e37a18e68547a3b19308fdbVirustotal results 27.12% Heodo
2019-04-1660858260107_DE_April_16_2019.docdoc 90c260b2469174d1c60fca12bc1a31728a1219a71c5f27a5b1cf21db2271f123Virustotal results 28.81% Heodo
2019-04-16631291542238_DE_April_16_2019.docdoc de95a51d1056dab1f56d407447c1028fd989fd0aa4ff8aab109f93117bc7c258Virustotal results 28.33% Heodo
2019-04-163400502757_DE_April_16_2019.docdoc 0c42ff307f9831e057e019051253081abc1001fd290feb13f5467ce2c4ad435aVirustotal results 26.32% Heodo
2019-04-1645092508154_DE_April_16_2019.docdoc eb68fdf25e93c5d896e8b7f3d1216c20545cf2f3b3ecac3c850d4d48dcc853deVirustotal results 27.59% Heodo