URLhaus Database

You are currently viewing the URLhaus database entry for http://efetiva.net.br/cgi-bin/closed-yZfPU-7aVGSR1/id8b2tvz8m9g-zg95mhv3adnnez6-portal/j56-1y9zzsyt81z64z/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:421130
URL: http://efetiva.net.br/cgi-bin/closed-yZfPU-7aVGSR1/id8b2tvz8m9g-zg95mhv3adnnez6-portal/j56-1y9zzsyt81z64z/
URL Status:Offline
Host: efetiva.net.br
Date added:2020-07-28 22:07:04 UTC
Last online:2020-08-05 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-28 22:08:05 UTC to abuse{at}pt[dot]clara[dot]net)
Takedown time:7 days, 9 hours, 55 minutes Bad (down since 2020-08-05 08:03:53 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-30doc_440.docdoc b5b3b8efc0caf6b9e538fd977433796ff7a0d359645db7348f38ac8fb86c3ce6Virustotal results 50.00%Heodo
2020-07-30MES 2020_07_31 M509.docdoc 0e413dd2b957cba791c4123f0eb442f4796da62e93d2af158e16133c021b00e7Virustotal results 51.85% Heodo
2020-07-30ARC_EG71955.docdoc 4122a94cf3814bd9e32328263e6b981316558b31ce38df659a1853a02274dc00Virustotal results 50.85% Heodo
2020-07-30Inf_2020_07_31_LKM20328.docdoc 9c59614355467ee88c9dd9cde34e35c9b7344c82eb6b01c36ede1aa41923740eVirustotal results 49.18% Heodo
2020-07-30mes_2020_07_30_5506.docdoc de22f3d159bf17825aa2c83805068b8ebe5d690f6981d2e8102613087fd3b6deVirustotal results 47.54% Heodo
2020-07-30ARC-816.docdoc 81aa6e9beeed0b3b39e5fd0fd9b9667fb666a9b5d48b35d1f86447febb5e2053Virustotal results 47.46%Heodo
2020-07-30arc-0230.docdoc 8fa056cca848c61d974a9bbcb5ee31aa9e45987ef15a2589765d61065fa9fc1dVirustotal results 48.33%Heodo
2020-07-30INF-20200730-J09078.docdoc 0ae3792dfb7057e3264b21dd694ca5b3fc93502edf5829ca4797eb57f01170a2Virustotal results 46.67%Heodo
2020-07-30DAT.docdoc dbdabc0245226588757dd5317307e3e4d7307b6948dc4c467a1dbff0231e7e0bVirustotal results 48.33% Heodo
2020-07-30INF_20200730_X46195.docdoc 46815e894a9b6f7e7ad9bcb948b69d2b4847dbfd865ad522641c8d73fac7cbafVirustotal results 49.15% Heodo
2020-07-30mes 20200730 J75793.docdoc ad92d3c3a20bc981d01c9e656562b497f7231f4aae963d83823611086b681496n/a Heodo
2020-07-30MES-219188.docdoc 9aa5ef4cd779c27d0db8683412281e9b128846b846c5cacbc8caada39b2b9394Virustotal results 49.15% Heodo
2020-07-30Dat-2020_07_30-SYM8359.docdoc c7cf836f720de4f6ca197815eb09d5588d630f613b082ead21ca6fcbdf124f3fVirustotal results 47.54% Heodo
2020-07-30MES-20200730-BU944.docdoc 6511b1fde2ef072f82a4de1fe9124c05afea6eee427bb3f6e204d6d8f583bf8bVirustotal results 46.67% Heodo
2020-07-30Doc-O090956.docdoc bac9c05ad42a23e63e36674e1ac6df669ba38b2049e67a3181ffd46b193e4eb9Virustotal results 45.00% Heodo
2020-07-30list 2020_07_30 538.docdoc f4792b0f09cc1c0fba743179a3d4f8f13a6b622a72b977e701e3177412f47eb7Virustotal results 41.67% Heodo
2020-07-30inf-2020_07_30-QO8263.docdoc c7e36ffa2fc469868b5f84cbc690fb72fc1651c4c2163663b4e5344d5d7019ebVirustotal results 39.34% Heodo
2020-07-30Inf 2020_07_30 UC70311.docdoc af6883b14fd8ac025308d08c5e117d1553ef3f4a88594a7098ca8e526840d314n/aHeodo
2020-07-30Arc_2020_07_30_PZ5064.docdoc 7c17f04e0e5e512dcba89bc6caa22241ffae5b239fec8738fad88fca572b3293Virustotal results 40.98% Heodo
2020-07-30Mes-20200730.docdoc e6c998de2f01f9c208d12725ba4817561dfb8ece5eb846d953579db56548c2fen/a Heodo
2020-07-30file.docdoc a3f3d935aabf688d3c996e3e4934caf7d38969ec3c799f0cb80a323a560b2843Virustotal results 40.98% Heodo
2020-07-30dat 031.docdoc 77db2e693cb0030076182c6abf3a6f06c8c907d32c272ee590799dc06e902ca1Virustotal results 45.00% Heodo
2020-07-30LIST 20200730 SKJ11971.docdoc a519f4a916b9ffeae103478589d49ccd40184c70c754dea529c5a7b3e1e07050Virustotal results 45.90% Heodo
2020-07-30file-20200730-BLK19988.docdoc 1aee7f2c8892383d6e1387e4da5f0b0a5a7e91f5dbb8c3b74c758d5e9eb27967Virustotal results 45.16% Heodo
2020-07-30REP-20200730-731.docdoc 5e169b1a209b0f6b23121f95b7ae15f418b58628490d1e178c3b4ff4e34df649n/a Heodo
2020-07-30LIST_417.docdoc d3834bed5c28efe66cc02ef10ba926f1123036f85fad8df717d54cbc61f7f951Virustotal results 45.16% Heodo
2020-07-30DAT LA681976.docdoc 6a503c2796c74213bd005c1a5da096be7c8ab47b4b2e09d23d1d6cbb2416d254Virustotal results 45.90% Heodo
2020-07-30arc_2020_07_30_348.docdoc 01c7f14fb4367ee300ab3215d0b7eba594460a50953efd09dc52c007c05a5e1bVirustotal results 46.67% Heodo
2020-07-30FILE_2020_07_30_VS4927.docdoc 23adc32cc846ad73ccc7bc4e89436f8c6fd8618c7b79dfc85dab24c68f1ffbc5Virustotal results 45.90% Heodo
2020-07-30doc_20200730_9697602.docdoc 5f3ae8d142de20f57a3bc71830bdda9f04c38c1a4fb6f9d2eeccb86c00c047c0n/a Heodo
2020-07-30REP S44869.docdoc 721cc11d186a6415a34e64ea1a20b27395fa2d2e240bb6d8e19d771f0e234769Virustotal results 46.67% Heodo
2020-07-30Dat-2020_07_30-1543.docdoc 71775842208726cdd177ebcc5685f3317566ab37e4a1b45cb7fec9d36933d3deVirustotal results 46.67% Heodo
2020-07-30List-20200730-C805.docdoc ad33ec972d9985244a4cd48a254703fa8164102e2a0065be9e6d9048c4f22e53Virustotal results 45.16% Heodo
2020-07-30Doc-20200730-NX19088.docdoc 48a17d54a2bbde984c983167a5b265e642abfb2492127d957923f96f48847b4dVirustotal results 45.90% Heodo
2020-07-30File_180.docdoc d1e836602a4ccd1ae75b54d657129d3a28c663682c9c82ca747255fd7f61c084n/a Heodo
2020-07-30REP-CDS1701.docdoc 560e3b4e31cb20202815bf8cbad8a1656c68b1ea22f9430cf8c5565df4c90796Virustotal results 46.67% Heodo
2020-07-30REP-2020_07_30.docdoc 7c0e6753e1e3c45107af5efe73d18fc4759a3cb4073d1ad69179ff8a2a5b3d38Virustotal results 45.90% Heodo
2020-07-30INF 20200730 Y646.docdoc 7c571658c742a32cad84172a2ee48d1a7e8787aa13f0d2a9d4514cb8815c9cd7Virustotal results 47.46% Heodo
2020-07-30doc GEF508087.docdoc 3817e9920ed535d977f608a697ce13182db45fdfd54eb64077dbd572a66dd350Virustotal results 43.33% Heodo
2020-07-30List_764691.docdoc 6a26d2f7aa6928173578fa3eb5cfcf85364def1cc8a569a21a263c898014cd7eVirustotal results 44.26% Heodo
2020-07-30FILE 20200730 63965.docdoc ad9587141a231584567ce8270198d925b59239088aed69e3ab7331358f8fcf83Virustotal results 42.62% Heodo
2020-07-30LIST 2020_07_30 839296.docdoc 73338ecd29014046061785c29003c8d2f0cc4a6e05164d026f3eb38eaa8e4df9n/a Heodo
2020-07-30ARC 7201.docdoc 82fece784c2dfb8236c30c5efb2c891f5dd32c6b836bc3c08828a0135526074eVirustotal results 43.55% Heodo
2020-07-30List_20200730_270619.docdoc 020489febefffd2304a280f71f515a70323c405a1dea01213dd8f6834466241fn/a Heodo
2020-07-30Dat-20200730-UX357.docdoc a3bfe95f9b484dd75ec9f3f822edf22b77135b82a47fac0dcfc8c2006643f84fVirustotal results 44.26%Heodo
2020-07-29Inf-20200730-DQN5403.docdoc 8b05e13300b42eae0f8f72fd506a7a5f7c3bcb3ccee3712c8cdc5b829c64f9b4Virustotal results 43.55% Heodo
2020-07-29FILE_QY907.docdoc 1ed9c5e4967acdbb39a9a35da73474e5b3c958d1d8a7519658b33e2765a1f1d4Virustotal results 43.55%Heodo
2020-07-29Dat 20200730 6785935.docdoc c7679d310573a3ac39a832e1becb0c92aa6d15012f67a78e721b17b48c18f21cn/aHeodo
2020-07-29REP-VRP733888.docdoc 414901df75c137388169aef1183ce8b47a5ebe9d48a50a4a1dd4eda519f7c9dbVirustotal results 38.71%Heodo
2020-07-29rep 20200729 DX545.docdoc 862de76653dba450b8330a09dca707bc56c1db7a7ca344086b6ac6eced0f3e98Virustotal results 36.07%Heodo
2020-07-29FILE 2020_07_29 453.docdoc c7f06e29013c41471be4bf8f61f472b9778bf35a6bf7e6aaff3a601f60c557d0Virustotal results 36.07%Heodo
2020-07-29Doc-N059420.docdoc 9dbce8fd3bc06c6f6965bdb0d32cd55ae1f196bc57dc5c0622a0dee787ec66caVirustotal results 35.48%Heodo
2020-07-29file_20200729_766.docdoc 931a3d5bfb1c29aa10a516f09810d05a55e656cd3b05cce6eea7eabea9917453n/a Heodo
2020-07-29dat_4779282.docdoc ac12bfd17290d68dd86ea22a43bf4f6f0ade51e8a38d377c20050add454536ecVirustotal results 35.48%Heodo
2020-07-29Inf-2020_07_29-9309172.docdoc d009612760ad9dba467fc8f4cf70df7525b45c528a2e14a49cedbccd0203cffbVirustotal results 36.07%Heodo
2020-07-29dat-20200729-0222221.docdoc b2e71b233e35e377f0c5c6483cf83a9c2290dfc04760f8bf973cd014e689a742Virustotal results 35.48% Heodo
2020-07-29ARC_2020_07_29_975.docdoc 4ee5376ca1ab5c1f49bddd182e7fc412f36875312a81f11518f81ff52fb166e0Virustotal results 35.48% Heodo
2020-07-29doc_20200729_3149.docdoc 22432edf35d5245c7e5b9613890819c87862cfee69167a8741e4fb2e3867479aVirustotal results 36.67%Heodo
2020-07-29Mes_20200729_YZ158.docdoc 917a1cd7c970524992615c7db0740d3c4f4b2984c657dd7ae29fba01d6768408n/aHeodo
2020-07-29Rep 834222.docdoc 4174168df0202ec0fc0570fc65b4fe9fff2699fd99649dfd8cddb823e8efec6dn/a Heodo
2020-07-29dat_20200729_6304.docdoc ba70e5201cfbce20c6c71c9b53e47e758e4f13da5db46260d3feae0824f1e749n/a Heodo
2020-07-29doc-2020_07_29-M3956.docdoc d076cf496cceee93a7feff09cde2c3debeca7167b511425696cb3a76f3ffc843Virustotal results 35.00% Heodo
2020-07-29Arc-2020_07_29-VB872.docdoc 47482467cc04e69d03d51061b35e629ea671fcfdef9cd16b6beba53c363753a6Virustotal results 33.87%Heodo
2020-07-29File_20200729_79964.docdoc cf42932dde6d129bdedd4e85239538c36cc48ae21f55ca8c9d269cf361636566n/a Heodo
2020-07-29arc EH1578.docdoc 337ff5bad42b25ee7ab31bb784e45ffde10b240213a4bc6d70b1eb8ac83ca73en/a Heodo
2020-07-29LIST-2431499.docdoc 7cbce31cb7b0adf214bfd948d03f36d891140eff92af8f6ba70ef036800a2f7eVirustotal results 34.43% Heodo
2020-07-29FILE_PT71415.docdoc 7002ed23f624161aa746fbf3cf95f9d95f8575af9b016ed41d3b8323f042b112n/a Heodo
2020-07-29list_2020_07_29_544.docdoc cd987bab9d46a89430fb908a81bbdea51ef80e20f184c2e01e32d1bf2ebeee2an/a Heodo
2020-07-29dat_9032.docdoc 7343c560b8027d7d00220e2d5d8e7bdb180699fb5f53e3cdfa8abefcf41a0ba8n/a Heodo
2020-07-29File-20200729.docdoc 15ddca441eaf21ac43c89a89b31df4b31d74f6c4aa8b9be4ce0d7c5e43eb9765Virustotal results 34.43% Heodo
2020-07-29Dat-2020_07_29-XHT9732.docdoc 424bb85c7aeb485a5d5c0a1b73c7fbb050fb9d4c165c7306f43e89b19013c385n/a Heodo
2020-07-29inf 2020_07_29 378764.docdoc 3f629a6878b4ff4383a80723718f32ed1ab5e210433db014412cc12d5d1cdf3dn/a Heodo
2020-07-29MES_130819.docdoc 646437eb438966cf74da4846b38ca3b6bd6378d4ddb17be5e6d525b91b498b1cVirustotal results 30.00% Heodo
2020-07-29DAT 20200729.docdoc a847231d5708cf4fa1bc1eb59123255d08f297856d4f5e46b11e28aae6a8de73Virustotal results 28.33% Heodo
2020-07-29file-2020_07_29.docdoc 9a4098702f77f9c17710381c6420db214a9ddd6bed24413d5e4e316176b2b756n/a Heodo
2020-07-29REP 2020_07_29 L7012.docdoc a89b59d8a373bd1a6d3a393e1b366b156a9d8e7a83d4f8e4d27af65f21967fd1n/a Heodo
2020-07-29List-2020_07_29-469568.docdoc 8fe804416a77bba32e0c65d0aa4b17b862bbe3da25f5e27c7ff8e1685ac961c2n/aHeodo
2020-07-29inf_AUA178904.docdoc 64d8eacc7ad245324f5fd62809614f9e1b6a945c23a63ac502d2417813550b2cVirustotal results 27.42% Heodo
2020-07-29Mes-1232523.docdoc 8bb634c8040c0dbdc8103c0bf90ca21e4ff6d65b9f63ed5a317b6e676ed0c7c5n/a Heodo
2020-07-29rep-X351193.docdoc d80d4a17577b544fa7da9fb2fef8c39d77ebaf839456255a0fb4994148b0f00bVirustotal results 27.87% Heodo
2020-07-29dat 2020_07_29 P1431.docdoc 7f98c9f11196fdb2034a6ef3b9aeffed639a56ece45b202a1fe255c43a349439n/a Heodo
2020-07-29Rep.docdoc 67eef8e781f8a712985d6413f121e8546df018a33aea849f20c2d5095a6994e7n/a Heodo
2020-07-29list-3758.docdoc 4cad41a2c94580e73badd4c35c2282597f7708204d5214f88c3f9972e3d99bbdn/a Heodo
2020-07-29doc 2020_07_29 KO21226.docdoc 89d432c817816f75db9bf20e7515b7bbd355cc542e437cfa67242563879d2bdcn/a Heodo
2020-07-29DAT-LDD626890.docdoc 1d08f0b597c36bdbeff2046fbc31263ea2c4044af0e4040aae479badb1a900b2n/a Heodo
2020-07-29MES_O455.docdoc a71a811fc1e212cf3595d9d66d1e1e6291221fc9a5520eeef7aeabd5bacc683an/a Heodo
2020-07-29FILE 2020_07_29 I9155.docdoc eaa43aeb64928ef82fd61c6979a542c208bc1f50fc986e4a8c33de9e4fbdb4cfVirustotal results 43.55% Heodo
2020-07-29doc 20200729 RQ384.docdoc 3861720e702387ead5b58b98c9d9551a84f794e3ce9c331b7855311604ad2b46Virustotal results 44.26% Heodo
2020-07-29Doc-20200729-H987.docdoc 18eb3a42e22bad4739e7e30656ea54d812b781b53f4bdfb702acc5e440a0b6dcVirustotal results 43.55% Heodo
2020-07-29MES_20200729_43077.docdoc 0a3991096a1362548e6de042c3174a436135be87ffc6fae6a721103ec9642105Virustotal results 40.98% Heodo
2020-07-28file 4514.docdoc 09a27a80f29298f59db9b2486f0d329d65f0ca86e2c0c0eeee22c7e6ce311aa2Virustotal results 40.32% Heodo
2020-07-28Doc-WIX884126.docdoc b08aee092cb3defc671949d65b32da80150ad60e64554f24eb25bea83ade4708Virustotal results 40.32% Heodo
2020-07-28doc PS95767.docdoc 63e8efafd895a3c81e6b57f8df7af0d841c821d7e99b7dc74c82906d3291365bVirustotal results 40.32% Heodo
2020-07-28list_2020_07_29.docdoc 315ad937206a77aa738a45313e4fb57394240e5bc5989c412d817f046008d621Virustotal results 40.98% Heodo