URLhaus Database

You are currently viewing the URLhaus database entry for https://buffetmazzi.com.br/ckfinder/Z6e9n/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2103268
URL: https://buffetmazzi.com.br/ckfinder/Z6e9n/
URL Status:Offline
Host: buffetmazzi.com.br
Date added:2022-03-18 06:46:23 UTC
Last online:2022-07-07 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-18 06:47:19 UTC to hostmaster{at}registro[dot]br)
Takedown time:3 months, 21 days, 6 hours, 51 minutes Bad (down since 2022-07-07 13:38:47 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-209khL9eQPiY.dlldll 5e8f32e5fc137f12fc6188817c7f611822682e339a746cb467afce831d7aecc2n/a Heodo
2022-03-20NW37lTOrSfi1dND.dlldll 273f1e4317fd47c45dd5fd2a800d03844d5cb5fdfedf5e303a8811ae5237a1c1n/a Heodo
2022-03-204tDDjk5tN.dlldll d6d485f87838b555f6471fd07b6e73344c94b8172cc2d7e3d166847691d13a6aVirustotal results 47.06% Heodo
2022-03-204laFBDXIvYT6OBuSYPj.dlldll 85dd1aec19957a0abe3474e667d722db956281f2895c5ce28981bbf2a5c104d6n/a Heodo
2022-03-20YVwTr.dlldll e6789278c14e2203b349080370b6583ced06bdc3599a76014760384dd87fdfc4Virustotal results 44.12% Heodo
2022-03-20wkSjC0F.dlldll 7bcbe06d19b5544c819e66f69704ec8269271c238462766581ed3d4f4631c8f4Virustotal results 46.27% Heodo
2022-03-20D3fhdG2x70l9uqdDDb.dlldll d69e94fb4d3919fe1b4bcfe5d2690ab9943640ddac4cd9a99a3505d9c24c054cVirustotal results 47.06% Heodo
2022-03-20G2d8agpRP9mHB.dlldll 2fc7df21fc415f5e20711a679365de718ec29679df47d8751ab1aa71e0aff2dan/a Heodo
2022-03-20HQZFjNjWan.dlldll 525e07c1bb90aee77a9278e85476abefef560e77a3b98a2b0006b616ed3a2f81n/a Heodo
2022-03-201fQ5583tCVl1K.dlldll 052e1fe8bc04b9934af64938a17f1c8dd2878fc045752afca08d1def95815af1n/a Heodo
2022-03-20NZFKvAs.dlldll 2fa43ed01cc32a58b3a2ea7d56ffd985daedc10236d7fa60ea312e41fdfa7983n/a Heodo
2022-03-20z5QwZRAlMh996T5k.dlldll a6cfa7813a2822ad8012ab236d47c14aefdf9967ea052bef6a29ce3e74ce01d0n/a Heodo
2022-03-200NcRhIccAF0.dlldll 380366e05274e7a9869a94ae669e45a9b1875cd8bfc65d6513a082b9858fd143n/a Heodo
2022-03-20sWXIl2Y1MKZsW1C7KCP.dlldll 4e8860919308f9b91e792ebd82eb0c5860c0305a1102a9b0865adee03c11ad84n/a Heodo
2022-03-20GrDK6aYtTz0.dlldll b18b61e4653e9fec40aeccdf7206e7f249d12d56151e18ff98a74496e4fd46d8n/a Heodo
2022-03-20INr2j0rfiLGPM538ep.dlldll 21d1dae181d98e8ec58656b99f8efbea7083bad4893623e88becf464861cd814n/a Heodo
2022-03-19VjTwjtPPO.dlldll a73b52783de5965df6e40e19fe457e244831b2416831f891e3c5683b0540ae6bn/a Heodo
2022-03-1981gkzXF6B6VM8gkB.dlldll 483643c683138f52ed619ffd311858a5b0b6894722c304b3dc568207b8899b51n/a Heodo
2022-03-19ECbha1c.dlldll 0da7153a17a42445cc748b4c99409e31d12887b2bc4b315c12eee16a8f8f86d1n/a Heodo
2022-03-198ycQLYwSU6D.dlldll bcf1cdd4bda571ee2708e47b9cf3644a55199a8c981a6c6902b18d4b9f8cde75n/a Heodo
2022-03-19QU8pldC2fLdWy.dlldll e846fbc9fbf7fbf10ba9be107f40e3db734fdcaa14be61d86e1806a813de4e9cn/a Heodo
2022-03-190vitCyuIH3bjHHvpbUR.dlldll 8502a3c22509c9a12cea4c12d7a9954ed2a56e9c16017b1502e5ac7eaa99b78en/a Heodo
2022-03-19dyY4pjyf4niBcoJr.dlldll 77e7137e7b3ea0bcadf243111f22e1a54e244058ff1bcec17fb23bc8618b9ccan/a Heodo
2022-03-19goOPUzPB4N2b.dlldll 668fbda156d4af18f8b8aad2a50575399a257378bc5719315a03e9b38dac9fc6n/a Heodo
2022-03-19uewo1JCLu5.dlldll 8321fef4835591f61c24d7e3d7332a7a7973c886d0d7724eb37b818b7b152474n/a Heodo
2022-03-19862rk.dlldll da9bcb8edba3abe140f299afb506b03b3f09e636be79f234d194a747c8fc90f9n/a Heodo
2022-03-19zXrkozjLIKm.dlldll 03960c45f208517efcbff8845e89c152ef1637cdac1527577ccb3a2f49d5a73dn/a Heodo
2022-03-19RJvbf.dlldll 4e15367021bbb166793bbba6a1f1763fb9da684747f11f59110d30666a4f834cn/a Heodo
2022-03-19dL1fO.dlldll 45da207c063fd88b7bbdcd88982b5205cf14e93dae051739f807e9d468609346n/a Heodo
2022-03-19IVwEM4BFN0vnij.dlldll 0e4e348b24a7a3465b52542f565db8790179a478751b871e9a18dbaebdbe60b6n/a Heodo
2022-03-19r5hhbiRqPE.dlldll 46fb64bc72bc328f2f38df93c7564e8f2183babc1421c87eefd230ae31b4ce07n/a Heodo
2022-03-19MDlx92s.dlldll d1969630c8dc6ff06c3637d6281f90c387bf5d8b5d8d37ba6654e23acc667a68n/a Heodo
2022-03-19T1tyu.dlldll 6ba85ddcc389fe993fd843f6e21523bd70d604f199820abfc4f8ad01a4fdb65dn/a Heodo
2022-03-19fm58waD53iCNYUsZdzI.dlldll 0223a9238c057592f3ff88cef3dc02ff3c162b3b640bcf76f79e6d7bfd8c5eb8n/a Heodo
2022-03-19LyQfswQ5unW0.dlldll 055a82c0e7cf96759226e40178a8cd9d63f81c33d31c20feee0774e45a395a44n/a Heodo
2022-03-19vDzMh6mNIOhRbu2.dlldll 61e685f03b0a7c92d07456324493cfa477f722d5a90690b3e61125e7ed639a87n/a Heodo
2022-03-19zLX2xWLhf2.dlldll 90ce386cd419e57c97d8bca56b91d2e8a496ad04826c35a0fa84fab551aa5c94n/a Heodo
2022-03-19O08uR2ArFfdozJf.dlldll 4e6dca5921d54932510b173d8bc753616c2b34257f2179dbcf310389cc6b4a9fn/a Heodo
2022-03-19SbKIqYfbA1WmtmSQPlh.dlldll 5ade52c650d3d8f9873230f130887403d2fe1202e26a56142e0f618340d8800cn/a Heodo
2022-03-19ZoC37R3G06Z0Nz.dlldll 20008365d1589ff25e7068cfdc57b4adf5562bb55a60781aeb2add3934dc26d3n/a Heodo
2022-03-19sM9.dlldll 097c893f508e5ec5f1a29eb68198c5abb7ea8347f803151bfabfff349ee342d9n/a Heodo
2022-03-19CBe8VVjP.dlldll 5243c79cab63d3754c3537b916dfb6320ddb75573afcd89e3a7a9a5f248b045an/a Heodo
2022-03-19OyAHHR3V91tm5Bn1u.dlldll 2916ad6c77e72d9800bb6c1fae0dc033fdce0bf2240a51d964f1b8948d552969n/a Heodo
2022-03-19tHb1AX83ZvwA9z4iYp.dlldll 2dc67f96ec80a3cd25b40f9fcd6a8b1cc1831455e2ad2131a7bd6b1d507bebc4n/a Heodo
2022-03-19WHH.dlldll 2bd66966d367d872698ae9e5c273d187fd281f26a38d331f7e871e735490bcfen/a Heodo
2022-03-19JTKz1.dlldll 34fed8d440a2ed30de92b3f8746e9c321ec027c2adf639892d49e55c453cdb81n/a Heodo
2022-03-19AolBdz74.dlldll 10afe38064c72c4012ca0c58f4cb6682c5e4635abc140b503baf7361543628a3n/a Heodo
2022-03-19FkYY5dODoH.dlldll 2d9b29e67efe103baf5a511b5c8fadc5cb0347c39adf7ad6c1a14a1010bc40ecn/a Heodo
2022-03-19Rco06q3.dlldll ece3e4524d7e6697f40ae4f36501cb29815f7bdcc558a0cefe1084f25c10f5e5n/a Heodo
2022-03-19Z7kLhv7A7Lv1nIq40.dlldll 3f83fa641b8ead1b3dabb934cf2657010ee9e2123804e30141c5853800519621n/a Heodo
2022-03-19RHv6f.dlldll b483ca7952062875ac67d474dee78a39a1b8ac9b2d9e00e72c298308ee1ede3bVirustotal results 30.88% Heodo
2022-03-190kAEppeoTeHPM.dlldll 3b2334671b0929e9849a3df576a3db220799c03053b34005425dd13353cc56c5Virustotal results 34.33% Heodo
2022-03-19HCm.dlldll 1b99534be1328d623b6bfd1b0bfba4c32c674c23bc2eafef61342746c14e97e2n/a Heodo
2022-03-19BA8th.dlldll f958f60ef4be266b7d5be48d5308444f42102cfb30dfa18928d25ac79751e0f5Virustotal results 29.41% Heodo
2022-03-197ux8v.dlldll 91d39c195a5689c72e3beeb9d21516d4234cb5f40a14801afbc0a7ba9736ba6cVirustotal results 28.79% Heodo
2022-03-19GlgkxDh.dlldll ea3c6ac1bc394e27af8a4dab1f4d9808ff3cb5e5c78157451646e733475d1026Virustotal results 29.41% Heodo
2022-03-195Se86g8NOCwcvxA.dlldll ef8b7ab326e1777d6403544dde396b1a4e25ed10d07262da03031a60711a6b76Virustotal results 28.36% Heodo
2022-03-19OrkMYXj4FAH.dlldll 9698e7baa4c2416e64983c1a895eb316d30c61c94a90e231254ae8439dff9043Virustotal results 29.41% Heodo
2022-03-19IrNx.dlldll 5f1572bacb4d3ed10cea9e91ca6767c532adf0150899cacec5d7942f555d5052n/a Heodo
2022-03-19SnztmehV3WoN0t.dlldll 0ca308ccc15a0f6768675f3f92ba05648b476473b208d13c2d3e782d04d1a1edn/a Heodo
2022-03-19J52.dlldll 34d16b9183c60e53d526af892b9ce8e920afdc09b61c57e07a444c0f8ecbae31n/a Heodo
2022-03-19In4QCHbLMBvG8Oy2.dlldll aa2c41be659664834792f87bfb8018ed2fbd776741ae11722e191b11ba9cfc49n/a Heodo
2022-03-19X7dHhPVHrp.dlldll 23b376ab0a5249316a03d7d4dee9122657ce60d480c311e93c8c655fa4c2be34Virustotal results 26.47% Heodo
2022-03-19QpJQ2.dlldll 91cc90c741cdd8e85ef38bf0e3ca1bba9e48aecbb5bb8688c664536a2fedd1f2Virustotal results 26.47% Heodo
2022-03-18vwTXHMkEBXh.dlldll 20315b81abefd4a51504ce342ea44000a97673aefad8c713c6e754f99a9e723bn/a Heodo
2022-03-18kmWzSm6B.dlldll 9896bf01254728b9f40d4e40716d0574f1ecf9c5bd7466977ff4be4569dee92an/a Heodo
2022-03-188ppfjRbraOzisODO.dlldll 91d84e7f61b06bb91991197537e0039542ed212c3eef6b794e01577d28ef323en/a Heodo
2022-03-18DwYYAg7gF8zmieT2g.dlldll 7b2e5ad1ac73dea3cb03c2ba158c07786246e2e9916e40e21ef67c601f2dc423n/a Heodo
2022-03-186Aqj0d.dlldll 21ca3a3965562f7bf44c5af7ab423be95095be54f993f5c7ad13c869cbfddd8fVirustotal results 22.39% Heodo
2022-03-18NzVXqh2r3cpnw.dlldll 58888cd5d4145b6fec755009d5a74080e5c37d1494960322e5fa0867a57d75b8n/a Heodo
2022-03-18lOlmI4FR.dlldll dcf0d935c1f8b0227e0dbf4c3eb40cc130f5842a1af482a7f1b051d990a94df5n/a Heodo
2022-03-183zuCJ.dlldll 0934c6a0621016b7728db8eb761d3e2fa421fe316e7116036aa8fdbb880a61c5n/a Heodo
2022-03-182jOrJnIodYCQZWi8.dlldll 4f8ef4f2a8d1ec9a6ef23603f2ab65fea59b72160254352d6199fa91cdfe8b0dVirustotal results 27.94% Heodo
2022-03-1821C.dlldll 77f2521364c92aa4f7f5611dc1f48b3649d98eca833b6194dc20e9fbdfebe01dVirustotal results 30.88% Heodo
2022-03-1834N.dlldll 45697f6097568aabe9e7f64894cc43fe6ec2d9d1a07c7b25c78e48fb2cb034e7Virustotal results 29.69% Heodo
2022-03-18NgcpIbTx7kT7i.dlldll 9ce2a308e72f66967b2ef24d22ee6362e231d9fc793b00d61ceb44cb8b27a13cVirustotal results 26.87% Heodo
2022-03-18NIS.dlldll effdbac07f1889f4d2832efc92b31c3c6abea7f8da77d5627a537a29423852c4n/a Heodo
2022-03-18laLw1LtSezSSqxVbql.dlldll fe358d71a56169f2c9d3c6fe934583099b77772a0d24d68fee2b23baa3b4b153Virustotal results 25.37% Heodo
2022-03-18U1rr.dlldll e9d4b473b2f1016644fdcc02c47578a536b1a135c278258dde6cd7b4c59c2df2n/a Heodo
2022-03-18GNf4HBp.dlldll 4c0cc3835fc16a363d978981ce85df83aa60ee043d1c5c7e622b7bf7a5bf0db7Virustotal results 25.00% Heodo
2022-03-18B5zFBjha8j4sH.dlldll 1f8d427c89e4baec708d29b54bee39dbd64fb50bf0557d02d3aa1246a8d515eaVirustotal results 23.53% Heodo
2022-03-18G3jBsKlFICyOlvWDX.dlldll 0000622c84905ba6b5ffd4f9e8b773002f2cd1e31600a688317a4a07887951f9n/a Heodo
2022-03-18lzpGMqgwRfbG.dlldll 2a94abf4ecbd5f0b4579c440e923cc75001232a2d7ab4b93af27234394a4ac99Virustotal results 25.37% Heodo
2022-03-186XRVY.dlldll 643e47a4fedfe44d25523b329aa3aded7336600daf6da7b0096a6d96c7940fffVirustotal results 23.53% Heodo
2022-03-18u5jzEHifl.dlldll c388bd8a92f3b414500cd3357afb68ad57ab2e5ee4da5018dc409685d7a7e63cVirustotal results 23.53% Heodo
2022-03-18e4cpRNc3CMCMOI8u1W.dlldll 9ccde2d240d4e8a8fce67f4a8d194575003020c0aa2552420a74abb0f29f591eVirustotal results 21.21% Heodo
2022-03-18L6J.dlldll fa89ea5b2f7a670f565a9f47d97651920bb305c1fa7ba50d96bc48c54e91f789Virustotal results 22.06% Heodo
2022-03-18kum4w0EoKRm.dlldll 672e30a75da84a9b57db868cc464c87ecac2e36fecf7363809c36fad6d6caae7Virustotal results 22.06% Heodo
2022-03-18Bm9Se92xOD0O.dlldll 12cc658d1cd281c3592db968155483d0ef5ffa286d173ae0e3a77fd484e99d94Virustotal results 23.88% Heodo
2022-03-18pNf4PR.dlldll e477094b014524131d526bce41bea0281ec81766129023c9e03d19c1b8856bf4Virustotal results 18.97% Heodo
2022-03-18fHdJApaZ.dlldll 4063e57ff9303383cd33a4ade2c558bd52c253feba6fba1ed99056bc80bd2800n/a Heodo
2022-03-18mYkrX.dlldll 77aeed0d1a6ae9d53a1d2f90d5735019f4edc3666bcb99528421fc3ea6c46046Virustotal results 15.62% Heodo
2022-03-18yux.dlldll b05c7794b9597aa77f207bae3a4332890b1e1313099d11b4585b326ff12a2046n/a Heodo
2022-03-18mAqyYEPEW.dlldll 14b9495fac942812146e8f7d3da4e590edb2adb55e51081b82822462badbf38aVirustotal results 25.37% Heodo
2022-03-18A3L1c6Wh3.dlldll 3dc0816824ed876cc5fa08ba15790ad7b5cc130369a50d24ba513b3bea79a61an/a Heodo