URLhaus Database

You are currently viewing the URLhaus database entry for http://ferroligasbrasil.com.br/novo/https://2591578120911790/r9M15VuUiOFqUy/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:452343
URL: http://ferroligasbrasil.com.br/novo/https://2591578120911790/r9M15VuUiOFqUy/
URL Status:Offline
Host: ferroligasbrasil.com.br
Date added:2020-09-03 12:00:06 UTC
Last online:2020-09-04 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-03 12:02:05 UTC to abuse{at}softlayer[dot]com)
Takedown time:1 day, 1 hours, 8 minutes Poor (down since 2020-09-04 13:10:26 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-04Doc 20200904 60753.docdoc c27583344f73b13cb65d7c3cd67e313618cc794ef5b48f1db3e39adde0dd90c9n/aHeodo
2020-09-04Attachments-2020_09_04-684250.docdoc 2e6992209a57f96c89556ed36c0e872bf312cc0e79e673c6888fe3b263c1ce06Virustotal results 23.73%Heodo
2020-09-04UNTITLED-2020_09_04-Y957980.docdoc cb6f8268789cd833ce1b0c40a720e8f7b6bb9ae5c3d8cb8ae59e66391c81f606Virustotal results 20.34%Heodo
2020-09-04Untitled_20200904_2891.docdoc 0348b2d84a9245b99853803db4a5d8a6bb6b89ba2b30d2d201dffbe97b718d82n/aHeodo
2020-09-04Attachment 2020_09_04 X67473.docdoc 6b6138015363422437174a3e66d6fe9830722c6af61b695c5bef3200fe97a98bVirustotal results 21.67%Heodo
2020-09-04UNTITLED_2020_09_04_11798.docdoc a6326ff0b5ee0bb1e125460656d05cee7600dd664d68b825b2f27059f5f22906Virustotal results 27.12%Heodo
2020-09-04Inf-2020_09_04.docdoc 8c4a8a1c7d4ddbfd0b727a5f169b6bc78e7997fd2b0947299d663a215bb3a9d9Virustotal results 27.12%Heodo
2020-09-04mes_20200904_226.docdoc 260fbc9e9fe88d706ff79ffa20f96634ba7aecc723f8c8a0aa23b078a16455c4Virustotal results 26.23%Heodo
2020-09-04DAT_96228.docdoc 9896f6412623c9c75887ccf147bc7461f10527fbfb3463272f2086e56cc0b645n/aHeodo
2020-09-04doc_975229.docdoc fe091cf9eba180793119db32fe94d4816c743d95fe73f73f8f8a11df2cd0aadeVirustotal results 27.27%Heodo
2020-09-04Rep-2020_09_04-6672214.docdoc 8025b46a7ad5a9b8f354866d31c2e8c41c319004e2f26825a94dea7c75465df8Virustotal results 27.12%Heodo
2020-09-04LIST-5700773.docdoc e514ee40aaf58363f83b55c5bb9e01e591be5d5fbea0402363bfe659405e331aVirustotal results 25.00%Heodo
2020-09-04FILE-20200904-C6779.docdoc d597b6898060552b878e3f7860261baafee361a89d756cc2e56fe367a3aec042n/aHeodo
2020-09-04Untitled 20200904 303.docdoc 5c3e085b8dc0398471b039b43d850dc0dd50acd421707eb3296026e53b65d5a9Virustotal results 23.33%Heodo
2020-09-04290RHJ-20200904-D97291.docdoc bfc004f7ac8d0c2e241dc8086e3e58fb542fcc47b5114ab614fa893199328acfn/aHeodo
2020-09-04UNTITLED-20200904-RYG2054.docdoc 741df8375c604df23cb9cc5bdbc6373f0b74df334fe2efd60bd6df7c5a398b65Virustotal results 22.95%Heodo
2020-09-04Mes_2020_09_04_76434.docdoc 47942152b879136b37f93a091fdc0995ae8dc63870ec7644620fc97205c8aa51n/aHeodo
2020-09-04LIST-2020_09_04-946.docdoc e265891012d31e17fb6e3c8029d29b874cc7fd9bfd6c0ad065560e291b7eab4dVirustotal results 23.33%Heodo
2020-09-0400646968 T747.docdoc a609f7e20b48bdd41568b99bce2cb2882716da265eb0b2da0207bfdccee6288fVirustotal results 22.41%Heodo
2020-09-04Untitled-2020_09_04-94702.docdoc 1b9de5149166550851ee26d1ff101cb636ab70e0162faf31397c1b3d9efb8ac5Virustotal results 21.67%Heodo
2020-09-04Arc_2020_09_04_RE478560.docdoc b73bf6b8c71126f090ffbab7009d10d3841a42ef4ea96a8c2450a8179a8df736Virustotal results 22.03%Heodo
2020-09-046774610.docdoc a116a068131b7ef0d015c07614c3e6f346f604fd7d9b5b974b9f09a997916732Virustotal results 44.07%Heodo
2020-09-04UNTITLED 2020_09_04 16914.docdoc 425e52461ebc8d48bfd618d18286f0f60b45a26d89da4a25c07ea36cb359aeeeVirustotal results 41.67%Heodo
2020-09-04Rep QU6119.docdoc 44bd0a16a6f05906c4a20b9fdb23d798223e07db04cdbc4a4fb1adc219679627Virustotal results 41.67%Heodo
2020-09-04Attachment-2020_09_04-0243078.docdoc 12faca932c77d851b530ebd1ee39f12e9c7b755904fb11fa61fd7acb92afdf62Virustotal results 40.00%Heodo
2020-09-04Attachment_2020_09_04_W77859.docdoc 933a5acf70c2c8f24a3d359a43ab898e556cdcae740ddcaf33acbc356ae1d9d5Virustotal results 38.33%Heodo
2020-09-04LIST 20200904 602.docdoc ca1b62ba1f6df4e6e7ee6b0ae0cdbf41303c29e916602d32ba15df885ce8d527n/aHeodo
2020-09-04List CQ200.docdoc 2fcecf7ef769ae49ecdf3905e7c5e7aad9a7f0ac4279fe518ed0108f25a0ec79Virustotal results 39.34%Heodo
2020-09-04INF-2020_09_04-678.docdoc ac647d90b3039bce667132dc5186534b23351caaf4e883d9bf6330a66d6d84a2Virustotal results 40.68%Heodo
2020-09-04Rep-2020_09_04-VBV4903.docdoc b928a4ea1aae65b1c3ee2634f0d4d3bba7d8f0d7bd647c3befb30ba0f8b6a1abVirustotal results 40.68%Heodo
2020-09-04Attachment-20200904-M723.docdoc 027746c91762be2cd5ecdd301acedfce96399a7961478130a7c6e26d2e47ea3cn/aHeodo
2020-09-04Attachments_2020_09_04_9278.docdoc 6c3530951ad2bde0a96b5bda4698fb3638e360f5176d3f6aa4f9ea0570a3f45dVirustotal results 40.00%Heodo
2020-09-04Attachment-20200904-S91386.docdoc 886d63b614006458acc2c30f3864476e896c318a90248243fabf63f0e992f712Virustotal results 40.00%Heodo
2020-09-04699655_20200904_83692.docdoc 352ed1583217d011b59331d9df7069fb05bffbee3823ffe2603a5cd74f16b850Virustotal results 41.38%Heodo
2020-09-04CK30002 2020_09_04 914233.docdoc 8d774a00099efb6bf180d96ed66c4cc234169be46bd45261c06dd8500e0a8481Virustotal results 40.98%Heodo
2020-09-04Dat.docdoc 113f271d566b508aed976158e057211703fe30c314960665466fe58d9e08e50bVirustotal results 40.00%Heodo
2020-09-04list_B406991.docdoc cbf75dba4c6b4f8cbcfb647112f9a0a4f8efb293526aea73ffebcd800379e08fn/aHeodo
2020-09-04Doc_20200904_KIF1665.docdoc 1fa1544383bbda2ef984f9c0a8a1e3ec9c37ede4a0e897d8177d7e92d3809ea1Virustotal results 40.68%Heodo
2020-09-04file.docdoc f9cb536060fce2bb170aa95f67947db48d9b7e43e2095dad2337eda509017040Virustotal results 40.00%Heodo
2020-09-04dat-6693.docdoc ed80367a721e5c5ea3048c5688d5b8446bfed75afd70f06932dd66e94a437a93Virustotal results 40.68%Heodo
2020-09-04List_20200904_F095222.docdoc 41b51c9c72e134b6a5183ee31357d58d19e875c56db068adc0b5f8a3d12bdc3eVirustotal results 40.00%Heodo
2020-09-04File 2020_09_04 04691.docdoc 7eba76e504a537e3600311969b0b159744d8f78d48891c9f06dfd9aa9798b9e3Virustotal results 38.98%Heodo
2020-09-04Doc.docdoc ee7586771fa02df0ef18b9f88c3bb45135371e5f7a16f6304b1b500a99a0ca6eVirustotal results 40.00%Heodo
2020-09-04rep 2020_09_04 BIL61162.docdoc c9760ed3a6abb462e2d429280f83f0e912114c2b1923fa1fec74b3ee350afa78Virustotal results 40.98%Heodo
2020-09-04mes_2020_09_04_A8720.docdoc 0bed9ceb6c02ac01c38804705e397d72379abfba81c416c2deca29e08e32bd54Virustotal results 40.00%Heodo
2020-09-04arc-2189456.docdoc d6da8adc7df4680bdfe56aded8385d20e63b8af6ac83ff2abdccf2910232809bVirustotal results 40.00%Heodo
2020-09-04Rep_2020_09_04_4996204.docdoc f5ace8d328883020ed6b37dfb50687886670fba064afbbbbf6e9e695ce35e490Virustotal results 40.00%Heodo
2020-09-04rep-2020_09_04-R8732.docdoc 39f12f314a1431044af9b7061ac6b7b2d68e29927ba8650ecfd4a5a41337922cVirustotal results 36.67%Heodo
2020-09-03Rep_2020_09_04_036697.docdoc 5b1c5637bea570eeef52ff79044a41de92de4e33ddffcde3b3611bee6fc8e5b1Virustotal results 36.67%Heodo
2020-09-03LIST-2020_09_04-GWD6577.docdoc d313ce8483aa86f33b4fb8f8eaf32cc9162fea1ecd980baf5fb9ae5ba1e2024cVirustotal results 33.33%Heodo
2020-09-03Dat-7665372.docdoc 9e3d362ff8dc1daec89813f11f73bac91ac2ee3f97f803fd413522874432ebb4Virustotal results 32.79%Heodo
2020-09-03Attachments_2020_09_04_037192.docdoc 198716bbb4d8d22a81603b2d905312ceae4b0f8df0a17ccda349c44ae024011bVirustotal results 33.33%Heodo
2020-09-03Attachment_20200904_CM022134.docdoc 939b166130d34042d2f4e49e43067b7670e409ae8dfe5e7d675160a838878230Virustotal results 31.67%Heodo
2020-09-03Mes.docdoc 93b78de73040a3429d67f551e6a789cd2a141185e4bdba2cb74d575346b169f8Virustotal results 31.67%Heodo
2020-09-03doc 4455.docdoc 2f9910b3fffce2373726bb19cee907def1ad66df1c9210d955647c7a638ef9edVirustotal results 30.00%Heodo
2020-09-03Attachments F889.docdoc eb96e6409fa3b1e2510201d45d3a629be387c1d50ca84645b13d0614702d7c62Virustotal results 30.51%Heodo
2020-09-03file-20200904-7730.docdoc 184ba331ed727480fd65743bfe0cf1489eca3b4d49b68a31b970ee96288c9484Virustotal results 30.00%Heodo
2020-09-03Attachments_2020_09_04.docdoc 3c9f9e08bf1785b8c6c1fed306eb5e322fb63ea73a8d01a9fc83af4006d64008n/aHeodo
2020-09-03List 2020_09_04 X848398.docdoc eff6ba195fc7d083d41cc3c5d0bf90588ba4de22599bc9adeb053e04f0f4d55cVirustotal results 30.51%Heodo
2020-09-03REP 272773.docdoc 6e09b7ea9721f1af117d11158633cf55d038617f7ac19748f9280bc43c46ecdcVirustotal results 28.33%Heodo
2020-09-03FZV8744.docdoc 42ccf0abf046317f8dd2f1b447cbc691402c7d009419cbaa98148c4812f9fe14Virustotal results 28.33%Heodo
2020-09-03Arc_20200903_962.docdoc a0c7d7125079c31ddaf2b7b1955bf7992183d25c6c03b5d81ce1a17ff8ad612dVirustotal results 28.81%Heodo
2020-09-03Arc-2020_09_03-D121.docdoc 7e4f4220d0928275cb69116e38929352184f121750af357692c93335665fbe02Virustotal results 28.33%Heodo
2020-09-03Doc 7925.docdoc 349cb26e54b95d8b8902d5adcb96d1901780dc4b79c294e28b4c6cba21776a8cn/aHeodo
2020-09-03UNTITLED-20200903-UVI8356.docdoc b16cdb69a8c0fb85792f37b8a979b0e3e9fe8abb6ee2dd5a0d21c50b8400720eVirustotal results 28.81%Heodo
2020-09-03Arc_2020_09_03.docdoc 8271c25e365343d937c375bcf822595d5cc823433d3d01b5a24874d1bcd89f9fVirustotal results 24.14%Heodo
2020-09-03258976-2020_09_03-088.docdoc 83fb2541f76d29c147c40d39da0b2f69076d035dd8f0e17c4e7356cecf98d64aVirustotal results 22.03%Heodo
2020-09-03FILE_20200903_R9966.docdoc 509ecb6a2610738956ebdf8a885bdb413fe84bd8143e1012a1fb4a4e14333d19Virustotal results 22.03%Heodo
2020-09-03File.docdoc dfb1031ce56f9f39a32ed410629d9f46e753b4e0671d121c063d52a7a23785f8Virustotal results 22.03%Heodo
2020-09-03mes_JAS451259.docdoc af81984de14d081c2a5d015a4266dd625fd7eb4153810cb71c2ba3e9dbf382ddVirustotal results 23.33%Heodo
2020-09-03INF VXI8469.docdoc 344e99de41cc160db6473b5ce912cfe060e040f041a213b9f9f65b72e9d62f1fVirustotal results 23.33%Heodo
2020-09-03MES LP09148.docdoc 5df80bddf0952d4068c9d2bdab9045f148de414681c96277199b4b06253b1cacVirustotal results 22.03%Heodo
2020-09-03REP_2020_09_03_JT220257.docdoc 1e8ea370168c58d9ea8d88b67552e2397a879ea142fbb091ab2e258d51db9f69n/aHeodo
2020-09-03FILE 20200903 500.docdoc b66793cda5150365d467a564f89991b5d8c1942368050aeefee9db6fe5c8a107n/aHeodo
2020-09-03Dat-2020_09_03-25070.docdoc b8ba0380a86effc7221fa3321cfab63e2643490bb42ab24cd5e51aefecc9eb46Virustotal results 25.42%Heodo
2020-09-03dat 20200903 TPD516626.docdoc b3e8c0e919099fb81b81d2528d22d103fad4fcab8c2729d0f93419b0718bbaden/aHeodo
2020-09-03LIST-20200903-483080.docdoc 7a10fa5e42ffaf9baddc54567556ebe14f3b6a31b1c4cd39193fc742546d6538Virustotal results 25.00%Heodo
2020-09-03list 20200903 GIR1699.docdoc aaded0705ecee562ec8d51ac4daf7fb1b011e3794d75c0dc394e25d67baeead9Virustotal results 24.59%Heodo
2020-09-03INF-2020_09_03-EQ2003.docdoc d845e116b78d38e2e319a666810c98217ba3feb44363fff0124840dc198f0828Virustotal results 25.42%Heodo
2020-09-03list-20200903-324730.docdoc 4a2ee0cb09dab923da14ab985f65d156e600b82e42b0bb53bf982243bed9400en/aHeodo
2020-09-03DAT 20200903 67666.docdoc 431ec558729a17c71ef7827a20d49d5577d19b03f8ccaa3e0615a8db09ed3c54Virustotal results 21.67%Heodo
2020-09-03Attachment-2020_09_03-39222.docdoc 7d650c5a5d1a7b2b30910fb149d5bf107237170b05f27bf1aee54ec64dc5a07aVirustotal results 20.69%Heodo
2020-09-03Doc-20200903.docdoc a81c183262d600de72ebac1a42b04e70069ef85da3d27ecc03cbd474d8d23717Virustotal results 22.41%Heodo
2020-09-03arc_2020_09_03_FNK946722.docdoc e066308839f458b9477414e501caff74c793580cb0188acb9cc3bd188f5aa215n/aHeodo
2020-09-03Doc_20200903_11124.docdoc bfcddea37eb69c002279eda95dc033b6eb665ceb9b123628e9065222e38d8884Virustotal results 18.97%Heodo
2020-09-03inf-20200903.docdoc 79a7a01467c0ad32b2fc52414d2e0bdfe8146818fbb10a9a3f820293ee36b843Virustotal results 18.97%Heodo
2020-09-03Dat_20200903_6388.docdoc 815168cb370218c44fb6dbfc404707f828fd24638e20cce9bfab49ba4d3fac22n/aHeodo
2020-09-03DAT-2020_09_03-N327.docdoc 9a6f34385dbe97d930ddcc9802f71cb44af38c64df5b40a013d592052de7b0a4Virustotal results 22.03%Heodo
2020-09-03Rep.docdoc e445cc23780034f91248c80336b0845b7d92ae1e82f8f0723e8862942c25d9e5Virustotal results 22.03%Heodo
2020-09-03MES.docdoc c8a71c528548306c663f2b0c7b602a3d23ca301c9a946f6a105bd11ae7f1b8a6Virustotal results 21.67%Heodo
2020-09-0352860UE-20200903-S3000.docdoc 30bbbd21c90e5f4a8afb756e5fcdefe896745ca4dfa74720c96a5e67acc8ac3dVirustotal results 20.00%Heodo