URLhaus Database

You are currently viewing the URLhaus database entry for http://managersoft.com.br/new/wmhf-dy-251/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:422455
URL: http://managersoft.com.br/new/wmhf-dy-251/
URL Status:Offline
Host: managersoft.com.br
Date added:2020-07-30 23:12:07 UTC
Last online:2020-07-31 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-30 23:14:02 UTC to abuse{at}hospedagem[dot]net)
Takedown time:14 hours, 1 minutes Good (down since 2020-07-31 13:15:14 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-31INVOICE JWO5_84311104.docdoc 3d8ef147ca84e9943fdc850171e2de9c05b0db3472cd05901e4f109e7fbe07f1Virustotal results 50.85%Heodo
2020-07-31Inv_X4_928694672.docdoc e8a903f056113a98d231154bc328a622bbfb223b254566bf332fced41f6fffd3n/a Heodo
2020-07-31Invoice TZRS92-294170.docdoc 0154af8049b8a7ec498151777f31d6e971c61bdfc439fe1a8150ad0f69c0e4f8Virustotal results 50.00% Heodo
2020-07-31INVOICE-K1-0667177.docdoc 5399417505ae67bdc2253943f273fe2b69fcdb71294530cbfe0cbe731a251b48Virustotal results 50.00% Heodo
2020-07-31invoice-Z888 898503206.docdoc c8586306addfc533e0c3ee2c72a3a19e28d38b0e41207d72632708e52ee965abVirustotal results 50.00% Heodo
2020-07-31INVOICE-NVEN5_658494.docdoc eae169c0ec808dcf097bfd419bae07e5c001b1157d781d90b037250ea07fd4bcVirustotal results 50.85% Heodo
2020-07-31INVOICEV920 3348361.docdoc b6ffa6767e3b7c53645dc329280108bc5145c28514aad30f28d9b628bb3bed9dn/a Heodo
2020-07-31invoiceES707{:REGEX:.docdoc 48c0326e786deae1ebf50df4773916c79325d15261708cccbc89d2421c639729Virustotal results 51.72% Heodo
2020-07-31Invoice_464_86583119.docdoc dcfb38249b589a264dd4ce2c25853335f1399685fcd68d68c337f308d110a793Virustotal results 50.00% Heodo
2020-07-31Invoice NXBD9 554731.docdoc 105f7c3a68f898a8605a251f25363f508285b8d32b8d6fd1f1e00565dcb4e3fcVirustotal results 50.82% Heodo
2020-07-31Inv-A485_276810.docdoc 468c03e5514c45db80f93d359506f99bcdc95812e5e37680b531dd2fd1cba7f2n/a Heodo
2020-07-31invoiceRMNA5-7044998.docdoc e98facde0dc82a3d26e7ceb7588d41b8a6246e4c74bc9fa68679aa9820ce91b4Virustotal results 50.00% Heodo
2020-07-31invoice-Y1187{:REGEX:.docdoc 2b7c18f73a9ba452d16610a824fc67bec12de4879afddfbada3b9519dd02ef53n/a Heodo
2020-07-30invoice-S1_7823170.docdoc 69f262e3d8a1665878527a0ce7ff0580243687e2802bcad1f7499eeadc4fa87aVirustotal results 50.82% Heodo
2020-07-30INVOICE-0960 436871.docdoc 213e581104ed3930497515d2be67c1c61a9ab1060474d3e43986aff52b418099Virustotal results 51.67% Heodo
2020-07-30invoice-P2_952119.docdoc 881c5ef2385626accbec7572c0b5c5b5cdff760f61e1bb044546983d6c3fbdc4Virustotal results 50.00% Heodo
2020-07-30INVOICE 36 962462.docdoc f2bef647cf5f376c3807d6693d2fcf28cd42e71629fb0cd64847604a0e189081Virustotal results 51.67% Heodo