URLhaus Database

You are currently viewing the URLhaus database entry for https://bloglovers.com.br/wp-content/uploads/2022/02/NF-e09022022br.zip which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2039615
URL: https://bloglovers.com.br/wp-content/uploads/2022/02/NF-e09022022br.zip
URL Status:Offline
Host: bloglovers.com.br
Date added:2022-02-10 11:58:09 UTC
Last online:2022-02-21 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: ffforward
Abuse complaint sent (?): Yes (2022-02-10 11:59:18 UTC to abuse{at}hostgator[dot]com)
Takedown time:11 days, 5 hours, 31 minutes Bad (down since 2022-02-21 17:30:54 UTC)
Tags:MetaMorfo link msi zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-21n/azip 9ebd6aeddfcd3ddc9210cb02498f307a1adc8cc55fe9195e0b298aef8b52b01fn/a 
2022-02-21n/azip 55b10e12ef7b8ab54403f1f49e87d28db1ec521468e9ecc8267740ccf32d6d0bn/a Metamorfo
2022-02-20n/azip 1f77e8ab2491f04ee3888b9ab249d32aa9c86ffc24b38ad0edeb7f8696c91d71n/a 
2022-02-18n/azip 9721d09247de71d417038fe7b6851646af2673a4c37153993f7f0206f2c0473cn/a 
2022-02-16n/azip db8bd7e94c0f61af2ee8a288f072e0a33b85931e22b3f1aaf20a8da8431a3424n/a 
2022-02-15n/azip a20526a1c4d72418d292f143aecd4b68def2affef801d87d15023cb92bc1946bVirustotal results 12.50% 
2022-02-15n/azip 00830482cd882b71090a1cf00afd017cdf8413564bff40f2e2cf3578fd285926n/a 
2022-02-14n/azip 76e132e55d8d8ae04dae7e91661e7bd620bdf7f09b74b6f2cc720d178fbdd940n/a 
2022-02-13n/azip 723221f58bc423f5730430e3937de6d2552819b39767e79dc8a52f10a55bf617n/a 
2022-02-13n/azip 5eb58385843d50acb4c900fdf7dfeaddfe3a8cfac9ccb2b95400e0e3ddd483cbn/a 
2022-02-12n/azip b1e05149c7b1d57c232287d73f0747c93f7f41c69290db856cc3f769028685d7n/a 
2022-02-12n/azip 27d155fd819d115fb8def260385a45a635dd2fba083407f3cda72cf652a91b23n/a 
2022-02-11n/azip 63b3708ccd63b9b56ddd96ad686129d05cb81f331a532d5d627ff269fafaec1bn/a 
2022-02-11n/azip e5b5abd7162866add909ea2faa2052cf4130d4b0ebc142ef6d2307c14219dc3fn/a 
2022-02-11n/azip e843a16a3f95fc6f5fc5ec22dd7d477b88bedb13b96bcaf4b95242f563c618cen/a 
2022-02-11n/azip c06f15f753b480cf0bb97ddad372383f0dad81f1a6cf48b5c3c714085f547f8cn/a 
2022-02-10n/azip 44892117ac6555d082b835ec36bcfd865e8a5cff7c7c4ce38a58d2667da41010Virustotal results 9.84% 
2022-02-10n/azip 8820042e44ac93f1b2ed880eefba019f75ed8b3633bc072bbbaee7ba5ddadb01Virustotal results 9.84% 
2022-02-10n/azip 630e47edc85849e8bce7d7926d7127b6dd6925d28fdaab58dae7e955bd866704n/a