URLhaus Database

You are currently viewing the URLhaus database entry for http://infratecweb.com.br/CARD/PGH05412480520JD/75962482/AF-BZNXU-Aug-08-2018 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:39868
URL: http://infratecweb.com.br/CARD/PGH05412480520JD/75962482/AF-BZNXU-Aug-08-2018
URL Status:Offline
Host: infratecweb.com.br
Date added:2018-08-08 05:50:14 UTC
Last online:2018-09-10 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2018-09-07 17:46:08 UTC to abuse{at}hospedagem[dot]net)
Takedown time:3 days, 2 hours, 33 minutes Bad (down since 2018-09-10 20:19:16 UTC)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-08-09WIRE 3AAKS.docdoc df45a5983c2aa39471161f61f5336acaca2c18c552845467f84a8ca7cac84792Virustotal results 32.76% Heodo
2018-08-09PAYMENT 33M Aug-09-2018.docdoc 340f3db26a6b990dfddad4b6685c9b557b7dad1afc6902f1099e90a159753488Virustotal results 33.90% Heodo
2018-08-09PAY 969VXEZA Aug-09-2018.docdoc 432e420e92ea7d24bd6ce29a64e707bb01de7fc178abbe4a1563be91acbce3c9Virustotal results 31.03% Heodo
2018-08-09WIRE 3RFSI.docdoc d325bd08af0075b3605c3497af5cf79214cda511507360b88eaa3e83273d3b8bVirustotal results 29.51% Heodo
2018-08-09PAYMENT 067IZHZX Aug-09-2018.docdoc fde9fe137f4cef20e171def30b5a72122b9278ac4cd94f020b293da84028dcfbVirustotal results 30.51% Heodo
2018-08-09WIRE 2478344D Aug-09-2018.docdoc 95391fbb47f28fdb0266ccb36b064a5e0eaaa6809940f98a70f235a97d82b925Virustotal results 29.51% Heodo
2018-08-09PAY 124082WRJFQHGB Aug-09-2018.docdoc c4417fc19a3e7eda5f143672d412b112c5a2f7c5a5ded0ba0c8f9c1604391756Virustotal results 40.00% Heodo
2018-08-09ACH 2VIRW Aug-09-2018.docdoc 310a2eee356a3bd699e2ece7fb399d0c05182b762eaeebe326ddfdfabab9b0dcVirustotal results 39.34% Heodo
2018-08-09ACH 0477W Aug-09-2018.docdoc 16c52af73c5ae5f2b52196cc111f1b3c924b0dc4514765728826d8c20331e36dVirustotal results 40.00% Heodo
2018-08-09ACH 1294MSEUFC.docdoc 443fd8e200ab67895e82fa035b5539009edfc39d6fb6dff24ec74276bf9a4285Virustotal results 36.07% Heodo
2018-08-09ACH 16DS.docdoc 878d58170dc994cafb826f76d5c7f3fdf3b85b8e9e5173db79b714b7dedb10fen/a Heodo
2018-08-09WIRE 462HYZDL Aug-09-2018.docdoc 482ac73572390a865001ca971dc199ebc7031c5fee9666a689cffcf208233013n/a Heodo
2018-08-08PAYMENT 4S Aug-09-2018.docdoc 7bf95cb34451fbd976f53600341ab9f042cbf4df2502ae49742242a1e83af4b9Virustotal results 36.07% Heodo
2018-08-08ACH 65YPD Aug-09-2018.docdoc 2a1958667f5230e2362380278d69c38a03fbbae21bc0e8135aa035bb81f81eafVirustotal results 32.76% Heodo
2018-08-08PAY 034611HZNTBS.docdoc bdd46d06590aecaebf00b82502cf56d7a54dbc45a736d723a76ad54c702836c2n/a Heodo
2018-08-08ACH 632XEXCD.docdoc 4a016dcd5e8b7c307101b1f263e277197c5d89d51b450ba2678c6885c18e377eVirustotal results 35.00% Heodo
2018-08-08PAYMENT 9614GTIABZS.docdoc 3a28112cb77e2055039365cfbef5b3f829a5a504bc4add97f507f000039041e7Virustotal results 36.07% Heodo
2018-08-08ACH 0753538A.docdoc d484083ae9cd61eb460c9dce2e09a805c15760e6b7f0f96f0863df24aef86b32Virustotal results 36.07% Heodo
2018-08-08PAYMENT 1710120POBDRN Aug-08-2018.docdoc 0140aa6cfbbc6676f2a53f5bb1758dca2b9463528b61b22779eef7a9187c9d54Virustotal results 32.79% Heodo
2018-08-08PAYMENT 603OX Aug-08-2018.docdoc c65994cfd058b0e4258701a0773a89c5b46314d3ef6459d2d12f4e8908c779b6Virustotal results 33.33% Heodo
2018-08-08PAY 65WK Aug-08-2018.docdoc 7c992264716f1dce12b9300dbdb0e278e55a1111afae10c7fed971024e95625dVirustotal results 34.43% Heodo
2018-08-08PAYMENT 873WJU.docdoc 02b1332ca6cb71e1331e3e60551f76ad03abb6107b31ef0a422be490f09cff41Virustotal results 35.59% Heodo