URLhaus Database

You are currently viewing the URLhaus database entry for http://e-dsm.com.br/www/ZdJCAB/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:422498
URL: http://e-dsm.com.br/www/ZdJCAB/
URL Status:Offline
Host: e-dsm.com.br
Date added:2020-07-31 00:16:06 UTC
Last online:2020-07-31 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-31 00:18:02 UTC to abuse{at}hospedagem[dot]net)
Takedown time:12 hours, 57 minutes Good (down since 2020-07-31 13:15:10 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-31InvoiceAWKK95 529309562.docdoc 3d8ef147ca84e9943fdc850171e2de9c05b0db3472cd05901e4f109e7fbe07f1Virustotal results 50.85%Heodo
2020-07-31Invoice-XBRD56_976847.docdoc 24faef0a3c46f8fdf60a5fff6f323ebd01a0365dde63a55a242ecfa0455183baVirustotal results 50.82% Heodo
2020-07-31Inv_9_80612562.docdoc 98736475243073034ab4507eda664966af3cc2025cc4f026364550e1fb270661Virustotal results 50.85% Heodo
2020-07-31Invoice 912 6524712.docdoc 65ed04daee56dea54218b810fdf6d5699fc5f893be26173334db43e31417fdb6Virustotal results 50.00% Heodo
2020-07-31Inv V119-7408674.docdoc f554d67a1bac2a6fc64ec282706c416190d555857ddf80e8b243366b8b738987Virustotal results 51.67% Heodo
2020-07-31invoice XVK39-3716314.docdoc 9d87ada7dcb70d012d66826ec3f4f26a2f853edce07b15282c119048283a80edVirustotal results 50.00% Heodo
2020-07-31INVOICE_C519-443635.docdoc b6ffa6767e3b7c53645dc329280108bc5145c28514aad30f28d9b628bb3bed9dn/a Heodo
2020-07-31INVOICE-FL56 356491369.docdoc 8e95611645644103d2ab67a6ecba315228abcad85d986852783b1af75477a63dn/a Heodo
2020-07-31invoice_Y38-719593.docdoc a66c8b3ac71836a695c8b180ad8ef6721bbfa4a1ab53b4979fd851ea6bce0908n/a Heodo
2020-07-31INVOICE-A4-19009355.docdoc e5e54d832fa5fb735e145e940936d4fa7a472c5f0de5133cfd4c0581e764c313n/a Heodo
2020-07-31INVOICE_OV3_594072.docdoc ea4ec66d739ec6c93a0e5890743a01a5283b804889147308ba45d35ee1f2247dn/a Heodo
2020-07-31Invoice-NZ66_00592248.docdoc 2239e9dfea333b691ad7931b2f663ce27192aa0bfe9b4c7112e98eeddc00ae38Virustotal results 51.67% Heodo
2020-07-31INVOICE-BF6542 193920364.docdoc 2b7c18f73a9ba452d16610a824fc67bec12de4879afddfbada3b9519dd02ef53Virustotal results 50.00% Heodo