URLhaus Database

You are currently viewing the URLhaus database entry for http://laschuk.com.br/Payments/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:50983
URL: http://laschuk.com.br/Payments/
URL Status:Offline
Host: laschuk.com.br
Date added:2018-09-03 13:42:28 UTC
Last online:2018-09-10 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2018-09-07 17:46:20 UTC to abuse{at}hospedagem[dot]net)
Takedown time:2 days, 22 hours, 55 minutes Poor (down since 2018-09-10 16:42:19 UTC)
Tags:doc heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-09-05Doc607876.docdoc 64850c28f4f1bda5d5d325df5c92269eeba272c05a9cbaf7c63779cf4351e5deVirustotal results 46.55% Heodo
2018-09-05Doc7306.docdoc f3c1dc75ee03443ecd62398f57bbf60c192ece7cec91bc3741f5633d3875a995Virustotal results 45.00% Heodo
2018-09-05Doc2211.docdoc fa0119b36302cd7d16eed6c7d2b5898bcd8edcd8cb24668b56fbca129bf07b03Virustotal results 42.62% Heodo
2018-09-05Doc8818.docdoc 5e000175317c89e04774aa60c97162f2e4d59c87a1e49ce8ee7741acfc98a1bbVirustotal results 44.26% Heodo
2018-09-05Doc105537.docdoc 5f144e4bd0ed7e20e208f8642259165047acf67d4387d507a649d82f557909f9Virustotal results 44.07% Heodo
2018-09-05Doc531985.docdoc 5c2a98b6b93ff1ce5493dfb96812e001532bf46ab77e13758dfb63bc21501510Virustotal results 42.62% Heodo
2018-09-05Doc96914.docdoc 18857b2f8abcd993abfd190a99b478d014422140a137546b2058775539ff1665Virustotal results 42.37% Heodo
2018-09-05Doc7973.docdoc 4f879f34fd34658d66ea32ae39254b9cf2fd73a0a94e3e6c3430c12b54a39530Virustotal results 35.00% Heodo
2018-09-05Doc6838.docdoc 9c5b16d65ec2f2384fdea0df797cc5bec1b0be651aff54ff4ba55a0adce8ef14Virustotal results 30.65% Heodo
2018-09-04Doc346846.docdoc 78a2e9738b5c7f05d3ca5e50eca5613e33c2e2fe1023258a4e1e1e82f3f6f50fVirustotal results 33.90% Heodo
2018-09-04Doc3776.docdoc 8410f2acf3c14f18dbeea8ecb7ad060c7e14aac4b2cc49ec6b30cbfa99154a5dVirustotal results 33.33% Heodo
2018-09-04Doc94849.docdoc e60aaaee60ab14bce7a6abcd43f186249a4ec2637d77079b2f78b172f2191232n/a Heodo
2018-09-04Doc8407.docdoc 1c1e2db21c30fe50d3dcb4b4f756bc154d319cf1365afb3962631941b9513859Virustotal results 33.90% Heodo
2018-09-04Doc485408.docdoc d83cbbfb1930aca2869574d5ac707b439152e338d1c6291edd317ce23b4d5539n/a Heodo
2018-09-04Doc0987.docdoc a3b6a827373e4e3aaba9bcfb25f601067d784a2f019903509330e517c0acc8efn/a Heodo
2018-09-04Doc6558.docdoc 16f399a7b58dd736fb4e7e04134464eec34cc8f2a41530a748f8282fb35b3b2an/a Heodo
2018-09-04Doc4814.docdoc f3c5f30a16dc3ed6f45756355926118a620eec335254020ff32e5682b856a2c9n/a Heodo
2018-09-04Doc8873.docdoc d07ce35508f9bfa6dd9bb027b77c075abfc5be5e8b74f8d8836d079bab73e452n/a Heodo
2018-09-03Doc31807.docdoc aef4a5f6f01f97537cc08a6ca927e270fe740b8563c02d90134b44510d51b618Virustotal results 39.34% Heodo
2018-09-03Doc7157.docdoc 1d6f18e12944649854a24eeca3df85737f93520cf14db4fa0b17f75c8ba374c4Virustotal results 39.34% Heodo
2018-09-03Doc0655.docdoc c1ad7b412e059fd58384edd9d4c6a2fd74518b13bd3c92ed3c090eff239e79c7n/a Heodo
2018-09-03Doc03262.docdoc ef3ecf20098ca0ae868939df180cd1e441e68fd043e8e53c4be8b207c573d3acVirustotal results 42.37% Heodo
2018-09-03Doc18687.docdoc da142dcb25695c89df943b338703b126a662fe6531248511042453681e471c24Virustotal results 36.07% Heodo
2018-09-03Doc330014.docdoc 14b8461975d56583ef0a575e6b3edee10da4583d4d9d2959ea5abd99996fe68aVirustotal results 35.00% Heodo