URLhaus Database

You are currently viewing the URLhaus database entry for http://www.weblabor.com.br/avisos/http://LLC/C88xvvtitNO/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:451964
URL: http://www.weblabor.com.br/avisos/http://LLC/C88xvvtitNO/
URL Status:Offline
Host: www.weblabor.com.br
Date added:2020-09-02 21:55:06 UTC
Last online:2020-09-03 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-02 21:56:04 UTC to abuse{at}hospedagem[dot]net)
Takedown time:15 hours, 53 minutes Good (down since 2020-09-03 13:49:47 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-03MES-20200903-39632.docdoc 815168cb370218c44fb6dbfc404707f828fd24638e20cce9bfab49ba4d3fac22n/aHeodo
2020-09-03list 20200903 81827.docdoc 6eb98032bda3588af5fd1d23d7e4d828e56f0c2b63e6ad8423857c96d3571cb1Virustotal results 21.31%Heodo
2020-09-03Inf-2020_09_03-4403731.docdoc e445cc23780034f91248c80336b0845b7d92ae1e82f8f0723e8862942c25d9e5Virustotal results 21.67%Heodo
2020-09-03rep_20200903_54272.docdoc 2fc013c61472c405e551a4dc571b91e8b84c006af60226f6fe170941a04943d5n/aHeodo
2020-09-03UNTITLED-2020_09_03-3653.docdoc 6c01a992fe7958eb1e1b98b000f7c05e660bb11e7b8af632c27e70c0651540b7Virustotal results 20.34%Heodo
2020-09-03dat_2020_09_03_HS76596.docdoc 1799833f25698f38fb404fc7bd8ba550560004a33bc1017f9da81ecf4ae1d869n/aHeodo
2020-09-03rep_2020_09_03_674.docdoc e8bab0b5d5693f8f6dee2a5c4a0e0ea28ce6e5e7c2688a8b412bb73b013b29aeVirustotal results 16.95%Heodo
2020-09-03Dat-W416.docdoc 2f9bf5d35451e037422e2b366dc024aa5461f020c7ea3bda3212b0a354d568e8Virustotal results 18.33%Heodo
2020-09-03inf_20200903_R27895.docdoc a7feb70fc3867ed145a59e051b4869480f6afafbc9436c6fb7fbae07155cad73n/aHeodo
2020-09-03list_2020_09_03_6146.docdoc 3410f86def5e10b6693847d80f4cd14f0cce3e3d61e06e0aa3483be447e14e58n/aHeodo
2020-09-03Doc_460.docdoc 4a5029949cfff6d3fa6b2c99cccc0629409c47ec3c1998fc74c2af39a84fb774n/aHeodo
2020-09-03Dat 2020_09_03 WFE15923.docdoc c0ed199d0bbe902fbe3e9edcb2c1fb18b43cb04112722ae6b9f41d38f0a5f843n/aHeodo
2020-09-03inf_20200903_OFF41972.docdoc 4ea973ca28598a64c32b8e2730d1cd64bd552dae1422638aa0806b7bb527165dVirustotal results 18.64%Heodo
2020-09-03Doc-2020_09_03-Y69771.docdoc 475d8fda613f9584e77724a38a4bbd51bb5b035c5c29016ea7b91ca4bf188865n/aHeodo
2020-09-03Doc T177.docdoc 21b54f9e86f5c5cc7386d77b189b766d1311f69089a12b40813c1d9e5aff9da2Virustotal results 18.33%Heodo
2020-09-03Attachments_2020_09_03_E424.docdoc 6ac4a4c50496e9f35e644ac4e2a2165d19d4e2358d17e01d7c110472dd1dbf40n/aHeodo
2020-09-03Rep-20200903-230.docdoc c0cbde26c26008c28e57c09b3755a36c862bf431e69e8a8c6efa181a5c135343Virustotal results 18.64%Heodo
2020-09-03Untitled-8563.docdoc d7e28dd65d5aab6b17a6509ad8869ce65f0838f59de7b034f9a0ea7775a19c35Virustotal results 18.97%Heodo
2020-09-03mes_394040.docdoc 55225f33095a3abc91e9eb162d30c62a30a71fb6788eb1852007310f69a11be0n/aHeodo
2020-09-031537_2020_09_03_E269.docdoc a8a209effb2906d727d5920fe33e0a7c4203a72b0fbe0649abed26156abf9ec6n/aHeodo
2020-09-03UNTITLED_855.docdoc edd24d1a4d38c00b10ada9eaa24138cdbb5b2d6fcb80ff5350576827cf792494n/aHeodo
2020-09-03REP-2020_09_03.docdoc 3e0be4ed5da1702faca0d2cd0ca1f13267be6c7af90459dd04c5de4478cb9220Virustotal results 35.00%Heodo
2020-09-03Doc-USJ05765.docdoc cacf08dc29380900a46bd3ef7a8d9df051aae704102a5878816183cfe16caf1bVirustotal results 31.67%Heodo
2020-09-03arc HAG528.docdoc 3505f54cbf2ddab863054dc37a1c898cc5ff3f4dc69ef57ca0f8a32a132588e1Virustotal results 32.20%Heodo
2020-09-03inf BW33029.docdoc 45e8b6124baf40d040598548d898861fa405d2e9bf0e88cc8606a16d7a018ca5Virustotal results 30.00%Heodo
2020-09-03rep 2020_09_03 FGH08793.docdoc 3eaff0adaedb721bdcb992b625696f79e232fa822f13b1183b30939b7ed0b4ccVirustotal results 30.51%Heodo
2020-09-03MES_20200903.docdoc c4e63aa4bd93111e81fc78b0cf516be383a95aaa80e1afbed1215283c56ad3adVirustotal results 30.00%Heodo
2020-09-03QY4815 2020_09_03 JY205141.docdoc d1736bb7fba0d5f83c964fd5e9c3d2659a1a1ff6eb178441309a83e9fa00ef5fVirustotal results 30.00%Heodo
2020-09-03Rep 20200903 109.docdoc 34280c447a8ffad5d29899ac71200552e4c648ac215fe6bc47168c2d398bc44dn/aHeodo
2020-09-03File HFF19517.docdoc 10b9c4bca67ace9500467fe62f3f429c09793aad07493bb237def1c168c83000Virustotal results 30.00%Heodo
2020-09-03G18466.docdoc 9f06d52236fee48250887e3c5e7c440f42b4bcba489a3a884e18b7e873a07df5Virustotal results 30.00%Heodo
2020-09-03File_4826.docdoc b9a8cd441d4272f268bfe4f6d07d3e7d847df248f08827b609db5336c4cb8c6an/aHeodo
2020-09-03598 970808.docdoc ed9827a493cf03febb984e81ed9277dd7da365a7d84aeed254f720d8072eadeaVirustotal results 30.00%Heodo
2020-09-03rep.docdoc b17f6dbd78dda9e39cf5507646164cf53f99205fe68b354322f131ceaf81c034Virustotal results 30.00%Heodo
2020-09-03Arc-2020_09_03.docdoc da1132b0bfe7505ba5697d51eeda268a7f7a45a3013adabdc071716ae957d8e7Virustotal results 31.58%Heodo
2020-09-03Attachments 20200903.docdoc 1fd0d748533826575c14cf110f2ba272517b328051ae72c9d397568d05ea93ccn/aHeodo
2020-09-03ARC 512.docdoc 8c2a4d37de43bfa1e37a1800952c60ba9b3f351246cb47066fd446ac568e24c0n/aHeodo
2020-09-03LIST 20200903 6094324.docdoc 2cda8e5f76cf5db89f157f738694792ea3ff19076b27e540a30116add841db9fn/aHeodo
2020-09-0365919KFY_20200903_349.docdoc a1582f8e1726c716984d979e0b2fcdc729c469ff612af372dc5c802f8dcf1419n/aHeodo
2020-09-03arc_2020_09_03_377567.docdoc 433967efefa29b0d97818d4e20329a19d8192755d65023bbb679d96ef4c23004n/aHeodo
2020-09-03REP_20200903_0627.docdoc 331f6f1c7361fec9bc67094b8f722822cd76a5ed5f52d5b84750dfd66410b382Virustotal results 26.67%Heodo
2020-09-0306974 M3429.docdoc a05c6c80c1aed4ef6f7d276ea976bd3a3ebfbf8e80f46273376440eff47bc87bVirustotal results 27.12%Heodo
2020-09-03INF 149897.docdoc dc78c96c7efd7612358790f39c63e33a09e37718776d7f827ec9c7f3c6e5aa36Virustotal results 27.87%Heodo
2020-09-03rep-DTF2815.docdoc 290ed9c24539d01f8be31a788976ceda4646eccf4c0d685d5907a924a0aabf49Virustotal results 26.67%Heodo
2020-09-03Untitled_20200903_5163.docdoc 08461750f88454bb39066eb05f966d9592f736fee04659787314b643da114389Virustotal results 26.67%Heodo
2020-09-03rep F2077.docdoc 99522c539da7ddace0b75678c64242e00a3171bfd46ff591936a1bed34ff407cVirustotal results 26.67%Heodo
2020-09-03Rep 20200903 Z311.docdoc a3e2eb1611caf695f981fe0341b42b3eb3ce6c89d4c5592e3a6f42de7fd61c50Virustotal results 26.23%Heodo
2020-09-03Arc-2020_09_03-AGH226.docdoc 5b27a5e6cdae618e9eb5e14035ea32c95ce43e30a8c36e1402d81e941dbebb03Virustotal results 26.67%Heodo
2020-09-02ARC_20200903_RS952.docdoc b4516e62068c35d8814a1d175c4f1062a9bb15afc1120a5c017d52a0b8b2ab98Virustotal results 27.12%Heodo
2020-09-02LIST_20200903_SW57967.docdoc 599a861ba05b57347331fbb180078cc4074c60d71c1e24c6b1469d18f139c4e7Virustotal results 26.67%Heodo
2020-09-02UNTITLED_20200903_427969.docdoc a9604493990426298f032a099836b353e88a4b5152690b58c6eb87865d2864e8Virustotal results 25.00%Heodo
2020-09-02REP_2020_09_03_PA34279.docdoc a30ce3eeb8ebe159f8397db151192aa8f8796314cded7b0f1625b22f1ebd8d40Virustotal results 25.42%Heodo
2020-09-02Dat-20200903-UGO538.docdoc cbc706330d51abaad2b5aadb0d773e948c1705880c56112529fbffce5009fbe4Virustotal results 23.33%Heodo
2020-09-02Untitled-2020_09_03.docdoc bdb1bca8969343d2a7323c24065f294827f3f79eb047d138c5102bc9a026530eVirustotal results 23.73%Heodo
2020-09-02REP-2020_09_03-015477.docdoc e05bc9c7040864c92426c04f0086bdb8458a6108b5fbb51c3939067c17d368d2Virustotal results 23.33%Heodo
2020-09-0264344V 20200903 F1146.docdoc 13ab456a38769f62874636b17911970ca8c4886474e7b3229d86d0559e50d33aVirustotal results 21.31%Heodo