🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

URLhaus Database

You are currently viewing the URLhaus database entry for https://grupowcm.com.br/etio/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry



ID:2714342
URL: https://grupowcm.com.br/etio/
URL Status:Offline
Host: grupowcm.com.br
Date added:2023-09-26 15:10:23 UTC
Last online:2023-09-29 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: 0x48215333
Abuse complaint sent (?): Yes (2023-09-26 15:11:28 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 12 hours, 13 minutes Poor (down since 2023-09-29 03:25:13 UTC)
Tags:IcedID link PDF pw341 TR

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-09-28VC.zipzip fc03356362107f9b9675baca59634618d4a286b79f7526e0795e36209db2a47an/a 
2023-09-28Bb.zipzip 6f94080d2c1dc78edf40367845fbce00c25b477c389a0117d7bcbbe671835c11n/a 
2023-09-27Y.zipzip 2b5566c5ad5f2153b92f099a12b5454523c77ab1bbdfce668b7409124c21884fn/a 
2023-09-27Asp.zipzip a83ff30605296a9b6e50a9f4fa2fec0508bb04e01115d6ba8e22c8c46915bc98n/a 
2023-09-26Xf.zipzip 39830b8af9db6b7b0ef8f3c81fe3e4be6c52882f3d92104d08c42c80e3e56198n/a