URLhaus Database

You are currently viewing the URLhaus database entry for http://grupobatistella.com.br/wp-content/bV2JMWZz/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2169958
URL: http://grupobatistella.com.br/wp-content/bV2JMWZz/
URL Status:Offline
Host: grupobatistella.com.br
Date added:2022-04-28 13:00:07 UTC
Last online:2022-09-22 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-04-28 13:01:09 UTC to abuse{at}contabo[dot]de)
Takedown time:4 months, 27 days, 1 hours, 31 minutes Bad (down since 2022-09-22 14:32:13 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-30oFs23wYE6x88SnCm.dlldll cb1fbe8d2eed18159487484084030948aa834ffd711ceb4daab13b762aa8e998Virustotal results 36.76% Heodo
2022-04-30vrJSpVBezd5TPTYf3u.dlldll 1eaa8f5e1b63362b3f3788c07ea6c42e88851b50d0405e3f185ac98b50023993Virustotal results 33.82% Heodo
2022-04-30OW566fKEUXrVVEqF5vTiAzN15rFRuu.dlldll ae05d51cccfd4831483d68d818f6768a3ec40fef8c084b508cbeb7e0646cad03Virustotal results 33.82% Heodo
2022-04-300oxwpBVw0WY7xsyIQrHY.dlldll 5475356a8b169f4fd09cb22a97ef656255af18e13bc4820314cfc1ec9fdc6c40Virustotal results 34.33% Heodo
2022-04-302bLeCW0ImX.dlldll 8cb8ffa9df9890c8216a63dffee695862e2324bde2feaa4715b7a9868b21d8afVirustotal results 32.35% Heodo
2022-04-30Ynzv8qiBDnBZr90CRTx4R1FueR.dlldll 73cab81bee44152968013eb38ba11d04851fc2693400d5ec5ffce923ab982fbaVirustotal results 33.82% Heodo
2022-04-302Vkb5OJdTmnIStsy8vKXxl0OsIybuP.dlldll 328c5024726ae08fd012d5642831603a31249f9b853c4420eb2bea2bfb483e29Virustotal results 33.82% Heodo
2022-04-30cYj69XiqlOL.dlldll e2a75f7393c97faef03cf649217ba2247b7441d203fc789c474f18cafa2dd547Virustotal results 34.33% Heodo
2022-04-294HSQTvUmr50HjQvXDEl.dlldll ab9eaf7e6dfd26cc355d0ff941cd884029fca01e3080b012da6784eeb2c22221Virustotal results 27.27%Heodo
2022-04-29UNGeHFmegIyNINBuadpqBn7Ow1e4.dlldll eee228d2bef02c715a454f35675fa9f21a6fe015c18c86cdb6ee5d02312b11b9Virustotal results 27.94% Heodo
2022-04-29xWirJy9d098cM.dlldll 8e8be6037ac1ae2cd33bba06cc4a9bb15ca045dfd32a72ab75dd844487591a7cVirustotal results 32.35% Heodo
2022-04-29kluRVFWkh0Kt6eFOwtv6f0XqYx.dlldll e7c15837bdf24f299efbcf832bf8a3091594c0b860930c612d98bad9f00d1fb2Virustotal results 29.85% Heodo
2022-04-29ztih5xm.dlldll 6437762973fac483fcbb15b275b042c72623ee72a4eab00bc50f799f6aaea246Virustotal results 33.82% Heodo
2022-04-29q1LeGn.dlldll cdabd3a47d14c43a04e8944e3f3dd6069fde56ace11d9a613c84772e15cee428Virustotal results 25.00% Heodo
2022-04-295ryRVHlNGH9IRG6oJXfgBEtWy5Sw.dlldll c54f51fb939ecc9209797fc187591866df0551dcc6e58b0a833a0f7230fa9201Virustotal results 31.34% Heodo
2022-04-291h7RxbTVtgZmjKvNeh8DLZPhQ.dlldll 7c26767802df9518ba4f0c7296eb0fbd0c466606eb427f94605ad934f0ecf339Virustotal results 30.88% Heodo
2022-04-29gcx1ronpJgUzp.dlldll 4f5e0689ed372d86983db60b2f127aa00841a300a3cc21b40540d00b143e5192Virustotal results 29.41% Heodo
2022-04-29yqeBJjaJGxUhFVjFl7fjQ.dlldll 64f4bb7faf18b3a7714e180b7fd535aeb9fc3897c0cf87d2059305ff19594f85Virustotal results 26.47% Heodo
2022-04-2917j45HN.dlldll ac175ed98b529eb27e287c84cd5391e1cec6ea18252d89e5babcf0a6c79e681aVirustotal results 25.00% Heodo
2022-04-29i29Ghqxz3BsdUsNZ2.dlldll da7a3294d8eed2c0829cf9ab93a6fdfaf5cf09e4dd9234255c06d22796dd0cf7Virustotal results 25.00% Heodo
2022-04-29sQn1Vf54NlNHztU8O69J1t0abIoaQHcuka.dlldll ae1c4c1d0655b9b389e05f67558f7099a5316692f414daf4b2971d82edb758adVirustotal results 20.59% Heodo
2022-04-29gY4xUaY8WI4xwuqCpUw.dlldll 0ee8ba5cad643533c37af86b26a4fdcfa0fa1c9ef8e84b9eff3ef315047aec25Virustotal results 19.12% Heodo
2022-04-294hKg0TnHARB5FV.dlldll ea9599498f16fdb4eca0a2828c5b983271429584efe64685b35824fb44d9ed64n/a Heodo
2022-04-29xuEoGRwW1KvD.dlldll 695147e4bf0d39f8aef70dcf5811879524f9bef881142f4ce681227c77d37071Virustotal results 21.54% Heodo
2022-04-29clJtoNaoY9Tl3y.dlldll 50f292115cfe3203e32182b90514f13e6daa2ae9e716f5b923043c7a162ddb38Virustotal results 14.71% Heodo
2022-04-29GpwyGu4T2goSfYS.dlldll 041491488aa8af25d15ca5294ec9fcbcd348794afa6215825a5289a68e7ac41dn/a Heodo
2022-04-29DgiJKpeUC5gX1Y6luc5apC60Pp4P.dlldll 27f13cf332240870929b26845ebc6dc88945bf1c8f3d9e48ba3312c9f9de950aVirustotal results 14.06% Heodo
2022-04-29KlNwBmfCuy8eL.dlldll ade6399fa56afc08b1141cc9f03b1fd9e88b548ffbef06bb6cd2235766e66de3Virustotal results 17.65% Heodo
2022-04-28t0ffijqJX0YDiZ9QjJOO0uTb3.dlldll 6d93b3a5de16dc2f21d2b72c59cd74babb51852b1829b845a1f972717c432bedVirustotal results 19.12% Heodo
2022-04-28aISU7ucCbi6GUNN3a.dlldll bab13c88bbc99588026e04453c1b7988dc3f94f4a3238034ea476101c013a8d8n/a Heodo
2022-04-285gQQkCFycs.dlldll 24eb983ab1a5c50a5e9570868e850b95aeb1dfcb133b3e8668a1866eecb490c2Virustotal results 17.65% Heodo
2022-04-28GjdRSEH1.dlldll e05243ec70891d75bbd33d5ac93a6a4f40adcd1d0f9e3e6f8a9cc2331b5c11c6Virustotal results 19.40%Heodo