URLhaus Database

You are currently viewing the URLhaus database entry for https://abafer.com.br/ekmr/sec.accounts.resourses.biz/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:188754
URL: https://abafer.com.br/ekmr/sec.accounts.resourses.biz/
URL Status:Offline
Host: abafer.com.br
Date added:2019-05-01 18:31:09 UTC
Last online:2019-05-03 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-05-01 18:32:04 UTC to abuse{at}ovh[dot]net)
Takedown time:1 day, 23 hours, 36 minutes Poor (down since 2019-05-03 18:08:55 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-03MAY-ACC-4410242616-2348459.zipzip 54be5dbbba90db9bc7715cbe024f001ea1ffac46a058a70a0ebf04cdb244096an/a 
2019-05-03MAY-ACC-161384-766154.zipzip e76dcdcda1cb4e74ebdc6e8ff6dfaf0b87c225466ec7d11c4691cdaf9d869bfan/a 
2019-05-03MAY_AL_9963638_579319.docdoc 3f4c99947e2c6cbf54cbd0af43c3954d5d7bc1d70ad438433860d85035944107Virustotal results 31.67% Heodo
2019-05-03201905_RECH_90756338_0289110897.docdoc acc62ec026cb44a5c3961add0a5a8b4c158ff4cb1245aef9fab8c771353637f7Virustotal results 30.65% Heodo
2019-05-03MAY_REC_910134418_0592478.docdoc 778e9de55075c2419cb7406fa9ce74c0205ba9b2465fa7759ea2e8bc3916e14aVirustotal results 30.00% Heodo
2019-05-0305_XUAVL_22714059_067934.docdoc c0ef556d5f6fd532731338a97e452a68d90300ca2cb75a83e9512c355ca2f39cVirustotal results 30.00% Heodo
2019-05-03201905-DOCS-699368948-537725.docdoc 5bb70d20710dfb8b956c9f3e1bc21a84f4e7cdd1a763396d925c3ab3714b6c50Virustotal results 30.51% Heodo
2019-05-03201905_RECH_2455080993_77115485.docdoc bf95e0d677aca5670e336bd800f591278b523bcef12e018038caa852c601a897Virustotal results 31.15% Heodo
2019-05-0305-BIZ-94183515-319461134.docdoc aee3d47238f43325d1697f6f6fe799855e5911a36b6c4b7772b1e60f7961279fVirustotal results 28.33% Heodo
2019-05-03201905-INSTR-004587-55270692.docdoc 4b507ec53d33911e9be00cf02be247f671c9faf254e77ddc795461ed6e36ebdfVirustotal results 30.00% Heodo
2019-05-03MAY-BIZ-2320874764-815235896.docdoc cf9442b59244eda63c42dc742a2a3f5870ca8d461fa138fb70419005e3ea03e0Virustotal results 30.00% Heodo
2019-05-03201905_ACC_8957779_6366243185.docdoc 0e5366b89fa75014997e5d30a0c3af6e0f314a36916f6ca75fdce43ed7321dcfVirustotal results 30.00% Heodo
2019-05-02MAY-REC-632704-6219483863.zipzip 65e67713e80d851dda059192759a5fe13b8c908bddd57586977fdf12fc24b23aVirustotal results 15.25% 
2019-05-02MAY_PAY_4139584_7712935215.zipzip 9327a07055b7fa7359facf411e571e18435db045c80c407544c31cdbeb260dc5n/a 
2019-05-0205-DOCS-946913-044032.docdoc f6bbc014c60c228d15455feea62338fee9208970a48cce3b3ed7a77ba932454aVirustotal results 35.71% Heodo
2019-05-02201905-ACC-700877-491220.docdoc 20b5c05fd912231f474b6cfb1c82ea1a952d1d835e6c7b39e8dcd38b16edb0e8Virustotal results 31.67% Heodo
2019-05-0205_INSTR_9956453245_37938102.docdoc e004665169889580886ca75a05f8d7a7739a39a94e2eeaa95bab00d9618ad8bfVirustotal results 28.33% Heodo
2019-05-02201905-ACC-0536848594-82558992.docdoc 5cd8f49395d0be8d0495633f2ca6f5f275f5fbb83ddd7e078784220141865029Virustotal results 28.33% Heodo
2019-05-02201905_PAY_758605708_574470.docdoc afc2ac4f3fc0cd3719696f2428c5c615b8bc418b4e7e497ed38babb64b0ed6fcVirustotal results 27.12% Heodo
2019-05-02MAY-REC-662568847-9276954061.docdoc e98d6d03d74c3b122f5a6eb72ddb2c864f825343a68e873179659ec499320532Virustotal results 27.42% 
2019-05-02MAY_PAY_872260295_217519.docdoc e9cc355b9b2c501a852825e354361d39910f68c1be617cd4370d32f2f9d65ebdVirustotal results 25.81%Heodo
2019-05-02MAY_RECH_31690129_948991.docdoc da90642a84ccf0e03150cbce192af56cff8e5ec145fde46e2d41a86989219d28Virustotal results 25.00% Heodo
2019-05-02201905_RMLZ_403027740_2850666707.docdoc 7e5a6e6ecf5554cebd655af3e1db09d80552510bd42af3af1cd364fa84fc788fn/a Heodo
2019-05-0205-ACC-8174909-772645.docdoc 75fbe40d61fa1f15700afa46c21b4626dc159ee772727d0ff492e1e599e21f90Virustotal results 23.73% Heodo
2019-05-02201905_REC_68960522_383522.docdoc 6316788989ab49e76f6ea46f35787128eeba3bb4cb860b36bbff791ffbff9a0eVirustotal results 24.59% 
2019-05-022019_05_REC_121930751_07323008.docdoc 1dd502d8d280a322cb97f2f738a3d731ea48f849c9d75a52300b56e293a09818Virustotal results 28.81% Heodo
2019-05-022019_05_PAY_59853718_853002321.docdoc f9b9b2777dc0ecea0601696230bc2cfcac0452ccff119a84bc86c14b81d02ee9Virustotal results 27.87% Heodo
2019-05-022019_05_X5237481157_7568772599.docdoc 7c26c03904ba19298d89b86815c39fce874013b15fd899a6f92672715da85f66Virustotal results 27.42% Heodo
2019-05-022019_05_PAY_761778_282227268.docdoc c67b5c47df7b5d0346a97a59471c44bb6e71b3b688e19114ce2cce04b2375f9bVirustotal results 25.81% 
2019-05-022019_05_BIZ_069772_9177349.zipzip a1b95a19e382019e07c5e03f8038a24224f1dd4c003fba5be150aa406665cf0fn/a 
2019-05-022019_05_DOCS_097061328_094127145.zipzip 954fd49588e86be5c4d59e188ca790f1763f407af32108d2c1ef830129d66784n/a 
2019-05-022019_05_INSTR_9899291119_09647233.zipzip 9540d82e0954600700cb9d351591c81bfec8fb57e4d8034b50a0cd31ff55eac4n/a 
2019-05-022019_05_ACC_845836107_984479.zipzip 83cc8971d8c851b4491de16f5541f206e2b6c14a41bb74484fd3320e013be734n/a 
2019-05-022019_05_DOCS_651920742_1405493.zipzip 6f1a6b6928271d29547b482bbc8cf13c9a5eb7308f7cae0d86837deb13c237afn/a 
2019-05-022019_05_DOCS_1962311_8038760.zipzip 81a99496494937125ef9e6afaddc73e1dd4b4eda1fc83b21621dc7453f61cd73n/a 
2019-05-022019_05_ACC_32078994_7065531937.zipzip 2d78d6a7f21d3a34bf6c512a37e4f2715ba0391b7252983ce45e976edb47004dn/a 
2019-05-022019_05_INSTR_9532414_54885504.zipzip 03284455942117be8b4b03634066193fc119a1b9558ade6f4e7699bbdd6926ben/a 
2019-05-022019_05_INSTR_11622514_55052160.zipzip 94fc123c2321694d3ae0badc052a0fb0afd05f1f32839d8a46ea43310f2068c9n/a 
2019-05-022019_05_PAY_89727422_218261.zipzip cc4fa38df670f01021110195a30724a081fb8ddd048d4d24fcedbf484df9a7bfn/a 
2019-05-022019_05_ACC_2980083_964299.zipzip 1394d128295a2645db4351005a869e1209066e8593e3312c0f948edc7191d7e0n/a 
2019-05-022019_05_BIZ_31400318_7490879795.zipzip a7db84a579df6c21164b68e1a43d6457c506ad1d711885992be751dda5072ddan/a 
2019-05-012019_05_DOCS_1666920_7216711746.zipzip 473e86669c14d7d60f9a89cae8feedf9312a5de8d9d31f2fe54917ed3bf8b95fn/a 
2019-05-012019_05_ACC_113179704_7823505913.zipzip a6a28d8c3736b53cedfd648d5f7d0901c8f58ff7be15960e97d26ea1a7f08b9fn/a 
2019-05-012019_05_DOCS_778192_9079454.zipzip 64bf8edb2567ed956ff7a09411802af7c1487aa87da2f212dbf6b52c5cecfa86n/a 
2019-05-012019_05_BIZ_5679486907_702967440.zipzip 34d0f813e3e8ffdfdfb2c8ed8b74a36f87bdbae01023127b86030e46162c33a2n/a 
2019-05-012019_05_REC_01496813_685744552.zipzip 074afe9e82be15b41eaf86f5f42d6b6d9bf0397cbcec9be24d82e5ab5a92f378n/a 
2019-05-012019_05_DOCS_535618208_2751761.zipzip 592fa8f386ddf3d2a761a33d0f95dc41af1ea58e0692dca824c1614ef5e7575cVirustotal results 13.33% 
2019-05-012019_05_PAY_8772986587_48501790.zipzip 8a7a59dfc27b6229125e4c4d84e36148a28fe3a79812ff69e7cda8fc200146a8n/a 
2019-05-012019_05_INSTR_778188846_9302748853.zipzip 3b4af73342487cee9cf995acf409952dc5fd0a31ebf2b3c878a4edecbc84d8e3n/a