URLhaus Database

You are currently viewing the URLhaus database entry for http://saladesom.com.br/Pt which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:35584
URL: http://saladesom.com.br/Pt
URL Status:Offline
Host: saladesom.com.br
Date added:2018-07-24 16:46:08 UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: p5yb34m
Abuse complaint sent (?):No
Tags:emotet link exe Fuery heodo link payload

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-07-26339.exeexe 09a42c92a4890acbfd131bd3692b524957cf0aa326ece7a04373dd40274d6873Virustotal results 35.29% Heodo
2018-07-2601128556.exeexe 565a605c83099a8f8f9732790b15573949f9331255d73a9aac913894ccf63b7dVirustotal results 32.84% 
2018-07-26641393.exeexe 8947f0014f51da24d1d7425ed702c282fa92923c96123ad006c5a7808bc11f00Virustotal results 27.94% Heodo
2018-07-2671.exeexe e10f7d35dc25c5f2093a1dc390d70f25f57499c4a6c0b652488b0e9fac8b07afVirustotal results 26.47% Heodo
2018-07-252460.exeexe 2e5a08a0956b5c89adcb29299572ed63d203081f416f6e6a0e560ef861544528Virustotal results 27.94% Fuery
2018-07-259.exeexe c26a1875502bc2c6cf9f9321959db93e32be596c5233393bc4be112d2bb1631dVirustotal results 31.34% Heodo
2018-07-25928939.exeexe 46028cd65ec7b4c8a9d1cf7bb9b339fb939743877e8c56ded4aa9e32c6047377Virustotal results 26.47% Heodo
2018-07-2555924.exeexe ac2fcfdc72afb5622a380436e65a6357c57095d4f2cf509d02da71b27c88af7cVirustotal results 29.85% Heodo
2018-07-25162.exeexe 77d098759f3b498b548d482c7214b6b5677e27520abcf50d2445fc8ade05aad4Virustotal results 28.36% Heodo
2018-07-25028000.exeexe dab36d1eb2816e7c745f4c8e2604b309f21a3d9b35c0cb47d9661e0fd1c665feVirustotal results 30.88% Heodo
2018-07-2527.exeexe 8ee4965787388712d355fb3ea95c02a0d23d2072d563c47352c99b84d7cc3e77Virustotal results 27.27% Heodo
2018-07-2550.exeexe 3303ccbc6fcfbd3259c77eb78bfeaa4d886f0dd93f14ab40a783a3b91ccdd480Virustotal results 23.53% 
2018-07-256921.exeexe a0989578a8b6d5d904fe50eef223d6a7719a06a879b8bc6d322a08fa98e88828n/a Heodo
2018-07-258469.exeexe acca71af44949e0cd13a00c8a1a5cfb2a17a64a359ad7e74695063d296d9e17eVirustotal results 23.53% 
2018-07-250077.exeexe d6165436f66922fa040582b024c9eb4ce90f8dbb76e3cbc9f7ba5ee85f8ca029Virustotal results 20.90% 
2018-07-2582452.exeexe ca87f8bae15f0f6fc826671beba007bc5f507dafafbc26d1f2b32a7d846d35den/a Heodo
2018-07-251184.exeexe 20905342140a5614554596d1219af85bc7085379a24ce61698e2ea108e770258Virustotal results 23.53% Heodo
2018-07-2403135839.exeexe 16b8a5a34391c1ee824a1e4e2551cf92e67b9cd0f6d37c3ebde26c082566a548Virustotal results 22.06% Heodo
2018-07-2450890379.exeexe d9f3f588c3b6d7ed14103f2ca5bcddbcaeaee2fc5dccfecc111588f861b5d882Virustotal results 20.59% Heodo
2018-07-2465816.exeexe d41f5cad9cc0742b3536f87e4cc25ae3fdae0bea6d632b89741bc978cd6b0307Virustotal results 22.06% Heodo
2018-07-2439.exeexe 417c880a895e2f10df6add57d48b6deb97b8bd64d162733eb8edf2c3e5e12295Virustotal results 25.00% Heodo
2018-07-240889.exeexe 83c7c3b1b5ecbc8e157ec9f322c11d5614121110169c2896a8275b099b98f26aVirustotal results 17.65%