URLhaus Database

You are currently viewing the URLhaus database entry for http://citrosamazonas.ufam.edu.br/site/6qFtqD/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:303881
URL: http://citrosamazonas.ufam.edu.br/site/6qFtqD/
URL Status:Offline
Host: citrosamazonas.ufam.edu.br
Date added:2020-01-31 10:02:06 UTC
Last online:2020-02-03 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-31 10:04:02 UTC to cais{at}cais[dot]rnp[dot]br)
Takedown time:3 days, 11 hours, 26 minutes Bad (down since 2020-02-03 21:30:38 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-02-01I invite you..docdoc 970df6100d8375af169bb259df2c7bb1ad641294e34ed57dc3ad02a38371b4c7Virustotal results 36.51%Heodo
2020-02-01Greta Thunberg.docdoc c7f8a534675b643449abfdf573e7b23803ecce479e90653ba295ae4d5f82995eVirustotal results 36.51% Heodo
2020-02-01Support Greta - Time Person of the Year 2019.docdoc 068c0fa7ec2b72cc8c87bf99a725b7e44c8a49a5b8461358acd77d6186504229Virustotal results 35.94% Heodo
2020-02-01Support Greta.docdoc 596840343814720213f9ad50272e76d5436f72a30674e560ba88543b854b2fabVirustotal results 37.50% Heodo
2020-01-31Fridays For Future .docdoc 290a9f9806fda3373431d505a536b6df0f072cb8fd1b3f0f0b5e35796c7a71f2n/a Heodo
2020-01-31the instructions.docdoc df3b6aaa924ed3e9a2eba95dac5813980820281a3c2d6d6c1c91c0a0c5294ecfVirustotal results 31.75% Heodo
2020-01-31GRETA.docdoc 7d36bd087bf192b32fc6a40a94b79081e1d7d25d356a9697a158b29bcc1d073aVirustotal results 31.25% Heodo
2020-01-31the instructions.docdoc 6f5b5a3741af81754e65b88c920cfdbfae7c14bd6b8e0200d260b0a71dbb3affVirustotal results 34.92% 
2020-01-31Support Greta.docdoc 1c1ee91ce47a73525fb005c941777860af76c0ce946b7e56c26d920e9cfd2c25n/a Heodo
2020-01-31Please help save the planet.docdoc 3e43537c29e5174e6e982ff2cfa6b7752413a26de10839b58420ceb8a425c316Virustotal results 28.57% Heodo
2020-01-31Save the planet.docdoc b777b2c1bf49b5a05bd8241ae61fbcfa3c3c96cd899ef9ff4215bc6121945da2Virustotal results 22.22% Heodo
2020-01-31Please help save the planet.docdoc a7b7c834a9ba78a0dc99c2464438070f71eaef06ee9c57af57b9b11c4b0e3b2bVirustotal results 20.31% Heodo
2020-01-31the biggest demonstration.docdoc cf5dba5032b0f5bb0d64f3622bfeb7e35d27c6892d6ba1daa6f07cae87b1566eVirustotal results 20.31% 
2020-01-31Save the planet.docdoc 1fdae9fc6aa69ff362c050d3b72b7ea035f4347be47b332d1cf733a6a60ebf62Virustotal results 27.12% Heodo
2020-01-31Support Greta Thunberg.docdoc 322bc97effba52663f35f592be159313057162f0b75287845c440a3971648cb7n/a Heodo
2020-01-31The biggest demonstration.docdoc 21b6e7719a2afa773453d60937aa333af8e41f515ecf2f2f50301c235971e447n/a Heodo
2020-01-31Skolstrejk for klimatet.docdoc ab890c5cab3f0b680f343e5146aed9eb04f739f499342bb2f2679a18651def17n/a Heodo