URLhaus Database

You are currently viewing the URLhaus database entry for http://ferroligasbrasil.com.br/novo/https:/2591578120911790/r9M15VuUiOFqUy/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:452392
URL: http://ferroligasbrasil.com.br/novo/https:/2591578120911790/r9M15VuUiOFqUy/
URL Status:Offline
Host: ferroligasbrasil.com.br
Date added:2020-09-03 13:03:08 UTC
Last online:2020-09-04 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-03 13:04:06 UTC to abuse{at}softlayer[dot]com)
Takedown time:23 hours, 55 minutes Good (down since 2020-09-04 12:59:06 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-04rep_20200904_N78746.docdoc beb360bbf4f0bf929e1a8d6e734b006c12269cf4e034909c884cbdd8a9374c65Virustotal results 21.67%Heodo
2020-09-04file 2020_09_04.docdoc c3afd70cc30e60c1fae7b65640d51b7159da05bab6783ad90ee80869abc39d81Virustotal results 21.67%Heodo
2020-09-04dat 668765.docdoc 5e01f376491f37354db3791f6ec1c53893e852d5874971655f2b8c0c9bfa35cdVirustotal results 21.67%Heodo
2020-09-04file_2020_09_04_3074559.docdoc eae2a3c4e7a60e5476ac2c92926540cf3c70568a318f1a20a996ebeb53e8749bVirustotal results 26.67%Heodo
2020-09-04UNTITLED_2020_09_04_11798.docdoc a6326ff0b5ee0bb1e125460656d05cee7600dd664d68b825b2f27059f5f22906Virustotal results 27.12%Heodo
2020-09-0494395AFV-20200904-0638110.docdoc 8f5f4ee85f4ddec3e575c12be4dc7594cb6d941c85bd06c9467e917a9d6a04f4n/aHeodo
2020-09-04mes-JOF154.docdoc 49ec67eefb48b7b1a629efed9521bbe30dfbaea3613d39d4fff12162ea10d59bVirustotal results 26.23%Heodo
2020-09-04DAT_96228.docdoc 9896f6412623c9c75887ccf147bc7461f10527fbfb3463272f2086e56cc0b645n/aHeodo
2020-09-04Untitled 20200904 W611.docdoc b6c9ea0c6311713092b07d9f28b5b798d84789c78cba9ce6f80d967cfec02942Virustotal results 26.67%Heodo
2020-09-04Inf_20200904_JFH266.docdoc 9da9e2af16844a3b0fc49e496b6a88773ebb122ac1471d654d696c4417c6c5d7n/aHeodo
2020-09-04Rep-2020_09_04-6672214.docdoc 8025b46a7ad5a9b8f354866d31c2e8c41c319004e2f26825a94dea7c75465df8Virustotal results 26.67%Heodo
2020-09-04doc 2020_09_04 8556641.docdoc 53919179b57227860a2520ddbfa45a9e7623735668070e5475b5cee6e42311aeVirustotal results 23.33%Heodo
2020-09-04file 20200904 13962.docdoc e730aaa4c7c10e51b95000fba71c2f93b07283c8b658d353dc52ba467c13693eVirustotal results 23.33%Heodo
2020-09-04290RHJ-20200904-D97291.docdoc bfc004f7ac8d0c2e241dc8086e3e58fb542fcc47b5114ab614fa893199328acfVirustotal results 23.73%Heodo
2020-09-04Dat_2020_09_04_RKR18648.docdoc 258bbe0fb661ea9b9d8d8e3c5232cafbd041c38252beb2009fe95c19bfcabe4an/aHeodo
2020-09-04UNTITLED-20200904-RYG2054.docdoc 741df8375c604df23cb9cc5bdbc6373f0b74df334fe2efd60bd6df7c5a398b65Virustotal results 22.95%Heodo
2020-09-04rep-20200904-XH5690.docdoc 47942152b879136b37f93a091fdc0995ae8dc63870ec7644620fc97205c8aa51Virustotal results 23.33%Heodo
2020-09-04DAT_2020_09_04.docdoc 273cf35f21fb5cb9162d3d4a667f96b5f2b93c16327304b5a21c1d51448e0e78n/aHeodo
2020-09-045655MW 2020_09_04 7595499.docdoc 8b8167f9f9f0fb034acba8cfca499300531ee06a2c9ee705d976d007bb636f21Virustotal results 21.31%Heodo
2020-09-04Untitled-2020_09_04-94702.docdoc 1b9de5149166550851ee26d1ff101cb636ab70e0162faf31397c1b3d9efb8ac5Virustotal results 21.67%Heodo
2020-09-04Untitled-QI576.docdoc f757b9a11463c3bb26ef5c9486e4ede7cd2899709fbbf17ba17042e2b75109e5Virustotal results 22.03%Heodo
2020-09-04DAT 2020_09_04 965.docdoc 4e3917d545fe670b0ea8dd1cf91701595c3cbe5ab87b5c53a826514778bad6f6n/aHeodo
2020-09-04file T88017.docdoc be658261ea85360800d4b052f23fd96dbadfe7171d308a38dba22b5fe4efadf0Virustotal results 41.67%Heodo
2020-09-04LIST 2020_09_04 27964.docdoc 12faca932c77d851b530ebd1ee39f12e9c7b755904fb11fa61fd7acb92afdf62Virustotal results 40.68%Heodo
2020-09-04Attachment_2020_09_04_W77859.docdoc 933a5acf70c2c8f24a3d359a43ab898e556cdcae740ddcaf33acbc356ae1d9d5Virustotal results 38.33%Heodo
2020-09-04Untitled_2020_09_04_L06542.docdoc 03cb9a738ad3ba7f5744d092532b2e578e9ade9b376af945fca5faf115b06c4bn/aHeodo
2020-09-04Dat_FW542.docdoc 0ff1c95a7d850d74903fb10610c4d99e54fd900d51cad0f2deda82e1122f403cn/aHeodo
2020-09-04list-2020_09_04-24512.docdoc 05558fbc6250f15d45880b5ebfb3798d415fad3e982b503fd6b61e658d902aaeVirustotal results 40.68%Heodo
2020-09-04Inf-932397.docdoc ede8d998dc31e2c855d01100bae27909e6fad8672e5bb1e7afced120b025c6a4Virustotal results 40.68%Heodo
2020-09-04Doc 461.docdoc b928a4ea1aae65b1c3ee2634f0d4d3bba7d8f0d7bd647c3befb30ba0f8b6a1abVirustotal results 41.38%Heodo
2020-09-04ARC_US2072.docdoc 7f52e258980628fde30f218b911a2e930d0bb7245dbe6093e35eaf7e61c3e688Virustotal results 40.00%Heodo
2020-09-04P5720_2020_09_04_KTB499311.docdoc 4808444c5d5d505fcdfe5814913d92dea2c41dbd68018cff2817cabd134441a6Virustotal results 41.67%Heodo
2020-09-04FILE 20200904.docdoc 352ed1583217d011b59331d9df7069fb05bffbee3823ffe2603a5cd74f16b850Virustotal results 40.00%Heodo
2020-09-04INF.docdoc 90d7013803edb798ee2da7fcf3de07420ccd536dd01c96d0c787a80c0923f08dVirustotal results 40.00%Heodo
2020-09-04Untitled-20200904-M860.docdoc 2f40ae83dd7e6ea630b731213a7f9629565af65eca2bf9990d77114dc2b441e5Virustotal results 41.38%Heodo
2020-09-04MES_S6770.docdoc 3b921395ead4db8129425113780d7d7391058b9a70f1bfadaa36d56c48de30edVirustotal results 40.00%Heodo
2020-09-04UNTITLED-388164.docdoc 595e8a24f2e5e51e56138296f7c6cd58e709e8f532dbacc38ae66f462e0e071dVirustotal results 40.00%Heodo
2020-09-04dat-6693.docdoc ed80367a721e5c5ea3048c5688d5b8446bfed75afd70f06932dd66e94a437a93Virustotal results 40.68%Heodo
2020-09-04MES O85546.docdoc eaab7e71c3da44a79d28d2bef0582eeadb430df7d20febba2eed46323d6dd3een/aHeodo
2020-09-04File 2020_09_04 04691.docdoc 7eba76e504a537e3600311969b0b159744d8f78d48891c9f06dfd9aa9798b9e3Virustotal results 38.98%Heodo
2020-09-04dat_XOC75609.docdoc daa812c082d4d470cfad19c540bfc6ea7adbcd3859273af885dda81d2722e1e1Virustotal results 40.35%Heodo
2020-09-04mes_2020_09_04_A8720.docdoc 0bed9ceb6c02ac01c38804705e397d72379abfba81c416c2deca29e08e32bd54Virustotal results 40.00%Heodo
2020-09-04arc-2189456.docdoc d6da8adc7df4680bdfe56aded8385d20e63b8af6ac83ff2abdccf2910232809bVirustotal results 40.00%Heodo
2020-09-04doc 7684427.docdoc 945f9c6c84eff86e098fcb02268e716fb80f5c6fa8a5e64e08175a306d3c0a2bVirustotal results 40.68%Heodo
2020-09-04Inf-2020_09_04-WZ5850.docdoc 479a6416cfb665d2d0f0b6e39d11282a0d31d799d87898d50f066e8d564808f6Virustotal results 36.67%Heodo
2020-09-03INF_20200904_M1201.docdoc 5b1c5637bea570eeef52ff79044a41de92de4e33ddffcde3b3611bee6fc8e5b1Virustotal results 36.67%Heodo
2020-09-03LIST-2020_09_04-GWD6577.docdoc d313ce8483aa86f33b4fb8f8eaf32cc9162fea1ecd980baf5fb9ae5ba1e2024cVirustotal results 33.33%Heodo
2020-09-03INF-20200904-798419.docdoc 9e3d362ff8dc1daec89813f11f73bac91ac2ee3f97f803fd413522874432ebb4Virustotal results 32.79%Heodo
2020-09-03Attachments_2020_09_04_037192.docdoc 198716bbb4d8d22a81603b2d905312ceae4b0f8df0a17ccda349c44ae024011bVirustotal results 33.33%Heodo
2020-09-03Mes.docdoc 93b78de73040a3429d67f551e6a789cd2a141185e4bdba2cb74d575346b169f8Virustotal results 31.67%Heodo
2020-09-03doc 4455.docdoc 2f9910b3fffce2373726bb19cee907def1ad66df1c9210d955647c7a638ef9edVirustotal results 30.00%Heodo
2020-09-03Attachments F889.docdoc eb96e6409fa3b1e2510201d45d3a629be387c1d50ca84645b13d0614702d7c62Virustotal results 30.51%Heodo
2020-09-03Rep_20200904_VD811128.docdoc 657e6e8ae1d0a5dd81e22e4c5966596510d091f0621e520d9f85c46ddad6f3b2Virustotal results 30.00%Heodo
2020-09-03Untitled_20200904_832.docdoc 3c9f9e08bf1785b8c6c1fed306eb5e322fb63ea73a8d01a9fc83af4006d64008Virustotal results 31.03%Heodo
2020-09-03Dat-20200904-S020686.docdoc 1acd260acd4f2daddcbb52022a1e342445482a1f4fbcec46d0351b82d0eb8d45n/a Heodo
2020-09-03LIST-9193606.docdoc 4eb0ea9ea11d15ca77a809f48e8303d336ce6d204ddc6712cc67164a580a9de5Virustotal results 28.81%Heodo
2020-09-03VOC964.docdoc 8cf9bff9f058b2a79f8e84597c708b0d15b2235c89fd2b63d50c0e25db6090adVirustotal results 29.31%Heodo
2020-09-03Arc_20200903_962.docdoc a0c7d7125079c31ddaf2b7b1955bf7992183d25c6c03b5d81ce1a17ff8ad612dVirustotal results 28.81%Heodo
2020-09-03Arc-2020_09_03-D121.docdoc 7e4f4220d0928275cb69116e38929352184f121750af357692c93335665fbe02Virustotal results 28.33%Heodo
2020-09-03Doc 7925.docdoc 349cb26e54b95d8b8902d5adcb96d1901780dc4b79c294e28b4c6cba21776a8cVirustotal results 27.59%Heodo
2020-09-03MES_2020_09_03_9718.docdoc bbb8481db8d91e443182bfc4898ed75ed829f7120eec1117572bc21d3c7f611bVirustotal results 28.81%Heodo
2020-09-03REP_GA11416.docdoc 83a608a684d531170d1d962a923ec80ff882ad17ac5a24ce4477d634e575c74eVirustotal results 25.00%Heodo
2020-09-03FILE_20200903_R9966.docdoc 509ecb6a2610738956ebdf8a885bdb413fe84bd8143e1012a1fb4a4e14333d19Virustotal results 22.03%Heodo
2020-09-03File.docdoc dfb1031ce56f9f39a32ed410629d9f46e753b4e0671d121c063d52a7a23785f8Virustotal results 22.03%Heodo
2020-09-03rep 20200903 811.docdoc bc4ee7e49e05ab462e199c1a2635de8de23b9ca32d8c7634cc4902f425967e22Virustotal results 23.33%Heodo
2020-09-03INF VXI8469.docdoc 344e99de41cc160db6473b5ce912cfe060e040f041a213b9f9f65b72e9d62f1fVirustotal results 23.33%Heodo
2020-09-03MES LP09148.docdoc 5df80bddf0952d4068c9d2bdab9045f148de414681c96277199b4b06253b1cacVirustotal results 22.03%Heodo
2020-09-03DAT B256044.docdoc 7542089a9b48b8812b9b4746ac6fff006e18134f861730e1c85c4cfadcebd7d5n/aHeodo
2020-09-03mes-20200903-FS546.docdoc 1695d227dfe87081d279c0a10163f9230da66348eda90255188700c874414c8fVirustotal results 21.67%Heodo
2020-09-03dat 20200903 TPD516626.docdoc b3e8c0e919099fb81b81d2528d22d103fad4fcab8c2729d0f93419b0718bbadeVirustotal results 25.00%Heodo
2020-09-03LIST-20200903-483080.docdoc 7a10fa5e42ffaf9baddc54567556ebe14f3b6a31b1c4cd39193fc742546d6538Virustotal results 25.00%Heodo
2020-09-03DAT.docdoc dbc13cd5e6ecadf32014b392f23502deefc834c7eb890da0946c1a50d059aebbVirustotal results 25.00%Heodo
2020-09-03arc_2020_09_03_YA29614.docdoc 95a7e791afc63ee2afec1fb8ed9283881d2afc17110419804e6dad34cf0914ddVirustotal results 25.42%Heodo
2020-09-03INF-2020_09_03-EQ2003.docdoc d845e116b78d38e2e319a666810c98217ba3feb44363fff0124840dc198f0828n/aHeodo
2020-09-03list-20200903-324730.docdoc 4a2ee0cb09dab923da14ab985f65d156e600b82e42b0bb53bf982243bed9400eVirustotal results 23.73%Heodo
2020-09-03inf_20200903.docdoc 74d79a261c4dfc93f6f3c199d88022fe60feb23345414d0054480883e2a4888dVirustotal results 23.33%Heodo
2020-09-03Attachment-2020_09_03-39222.docdoc 7d650c5a5d1a7b2b30910fb149d5bf107237170b05f27bf1aee54ec64dc5a07aVirustotal results 21.67%Heodo
2020-09-03Inf-MTL98932.docdoc d78448b6db249a6ecf36f11026d7ba586a6348ce297651d61e1d7e555e07e60eVirustotal results 21.67%Heodo
2020-09-03LK108_20200903.docdoc 942091684482d678974c9220ad745980d533bda5f758b93ee3cd5fda40373a3fVirustotal results 22.03%Heodo
2020-09-03arc_2020_09_03_FNK946722.docdoc e066308839f458b9477414e501caff74c793580cb0188acb9cc3bd188f5aa215n/aHeodo
2020-09-03VDI90350 2020_09_03.docdoc 6bf13a4c3336165693ab421b3ca13880fc937a17890474837537343be35dc444n/aHeodo
2020-09-03WXY9677 20200903.docdoc 44eafbbe7f5a9a5fee0fe1e414d9add0ca5704db6a49e0c8994ae4bdff845ca6Virustotal results 18.33%Heodo
2020-09-03LIST 2020_09_03 2509.docdoc 2b4be15f0d85e69f6e3af8ff6a07242ceef68ac071cf2c5b71002187354cb1ceVirustotal results 22.03%Heodo
2020-09-03REP-20200903-028.docdoc ba5d47affe10f685d8cbc505b5923e061650d9bce4d07c4083738ad27de2ae53n/aHeodo