URLhaus Database

You are currently viewing the URLhaus database entry for http://cookingbuffet.com.br/wp-includes/Reporting/na2Jj2w0tbCRYmewsAl/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:583277
URL: http://cookingbuffet.com.br/wp-includes/Reporting/na2Jj2w0tbCRYmewsAl/
URL Status:Offline
Host: cookingbuffet.com.br
Date added:2020-09-21 06:42:06 UTC
Last online:2020-09-22 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-21 06:44:03 UTC to abuse{at}hospedagem[dot]net)
Takedown time:1 day, 12 hours, 33 minutes Poor (down since 2020-09-22 19:17:51 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-22MES-20200922.docdoc 9feac62adca8879c6fb77e71311d55feb8409cc5a2a0929f48934970c404f3dcVirustotal results 29.03%Heodo
2020-09-22UNTITLED W7851.docdoc f9db2998d811b8c5fc0a11e513e628001fc463d8e4c9a44068939c3668f072b6Virustotal results 46.77%Heodo
2020-09-22Attachment 20200922 XA8290.docdoc fee44ec3b333796685007e96f4c1478fc810a6a4549ed0d18c4e26fb91e508f0Virustotal results 46.77%Heodo
2020-09-22XU1244-2020_09_22.docdoc 34ab318455d30759d79e7f3979233661b8995d3510928e85e62ab09af03cbd66Virustotal results 46.67%Heodo
2020-09-22mes_2020_09_22_2675.docdoc c4699bc83e2c480aa53af341f4b67b5dfb27cb5d28fb09a7619b55689b686ae3Virustotal results 45.90%Heodo
2020-09-22file-646235.docdoc 049c2f09d4432715871e11695eb82f68cf63a12f8c5dada07ffcb885725279f6Virustotal results 45.16%Heodo
2020-09-22file_20200922_56728.docdoc 1a1117fee8d79bc4f17cd8256e6f5a71a970665243bac9ee7b6a475271cfb524Virustotal results 44.26%Heodo
2020-09-22Rep-2020_09_22-664.docdoc fec4a3494010371e6a5c7c6422e31e804770c2e9a3980e338181aa32c91f297aVirustotal results 45.16%Heodo
2020-09-22Attachment.docdoc 863c4548ed10a6412c7114ed7032ad3c3520c6546336adf8e93f9cd595ad97feVirustotal results 45.16%Heodo
2020-09-22arc-20200922-L98362.docdoc d83de81a9bb5c00f7dec021f2109de66a4fa5ce8d19e94bfd7f790d1a730a7adVirustotal results 40.98%Heodo
2020-09-22FILE_8354.docdoc 288be7752a470617650f5882ebf631b541951c5c4fc685fffee2de9650e31bdeVirustotal results 38.33%Heodo
2020-09-22inf 20200922.docdoc 2684fb0d066483f383653d701aada35989b0f0115ef080dc1383ddc2afb00240Virustotal results 35.00%Heodo
2020-09-22File CF89047.docdoc 5400939de59ca4b6347dd3647cbbb37cc370502f0674ecd27dda41c9ed57f58bn/aHeodo
2020-09-22ARC_SLA893818.docdoc 8d0bfa85c33d7f8725fb13809780b7a2ca9bf9ccdad1780e4e4a55bc670948a7Virustotal results 22.95%Heodo
2020-09-22FILE-20200922-327270.docdoc 3338fd9bf25dd7170eb3cc7b1cc01e81ddae048274f38721abbd3c2454fcb692Virustotal results 24.19%Heodo
2020-09-22FILE-HWE81338.docdoc ed676d1984afe2994468897be4d014ecdf1337f54785f3f15326015fce700a7bVirustotal results 24.59%Heodo
2020-09-22Attachments-20200922-447603.docdoc 428772573902261190e9661b4cb78fdbc2a7d915f15839f9945683a6a0797202Virustotal results 23.73%Heodo
2020-09-22File-2020_09_22-AD365.docdoc 1b33fd5588d80b112417a71a9cf21e6400a2d1c845333d2dbaf71ee0c5a890cbVirustotal results 23.33%Heodo
2020-09-22Inf.docdoc 094e2a3d577107bbcbee3a5a181971bc5aeac18624bfdf436f85d2d47b1ef697Virustotal results 23.73%Heodo
2020-09-22UNTITLED-2020_09_22-DD00054.docdoc dd39121ba5d3e898c2eb476a46cb2afe029cf388f1265f01ea1293e1c49f6e9eVirustotal results 23.33%Heodo
2020-09-22doc-500117.docdoc db38b0684fc5c658783e193fea82d32d22f660048c059baa6543386bb7a0463eVirustotal results 50.00%Heodo
2020-09-22file 87183.docdoc 0dfaf8162f2566ecc1bf5422761fb45983685e302f75ff87f87b0b3568422ba9Virustotal results 52.54%Heodo
2020-09-22Attachment-20200922-K479.docdoc 6194b93de778c4ed12b833a8a06150e0ff059a8a82ea4089e1f0d35aa73c4ec1Virustotal results 50.82%Heodo
2020-09-22File_2020_09_22_NOS794.docdoc c1c64fe054f9be96a2d05c6e7957db0b63d92542154af8a46ac60bb7d5d5d622Virustotal results 50.00%Heodo
2020-09-22arc_WM6158.docdoc 3a55d135adcf77677eb1ba21e4b5425ff19a8198264e313df904dc6982bf1a80Virustotal results 50.00%Heodo
2020-09-22592_2020_09_22_579.docdoc 3a4fbf0f22071cd991a4eb2507569ee2d1e7d3042ad2b693f2f818c8e895f543n/aHeodo
2020-09-22UNTITLED_2020_09_22_52224.docdoc 5744548adb59f24037bb5500e559b80bc6917502f107b28a16b38ab4e6abfb71n/aHeodo
2020-09-22list-20200922-SOI78392.docdoc 0d70d473dd82d66be63e961914b3fccdaac41677e69ee91706bb0be406144501Virustotal results 45.90%Heodo
2020-09-22Attachment 20200922 RPU331788.docdoc bba3849ec67263bb32327cd4462beff2e001ff9db4a576d683df43961006394fVirustotal results 44.07%Heodo
2020-09-22MES-I773319.docdoc 3d12017589f14be9a98d02b6c5baec7ea82f462d13cdc018cc2fe7b235ca723fn/aHeodo
2020-09-2252237-2020_09_22-L2445.docdoc b3bc13c79571b2cf77ab2ad7a593e512bbaf1bf61f0ac3eacb10e78e840cb9fcVirustotal results 40.98%Heodo
2020-09-22inf 54038.docdoc b3838280203a43fd02a295edbba1ec0ebe08ac22efe3e8e5baed626f3ebe698fn/aHeodo
2020-09-22Doc 2020_09_22 TUB9877.docdoc 050f8c672a68de19be1fc1f6137e6a572d8abc551e67d2477a567dd5f94d4e5aVirustotal results 33.33%Heodo
2020-09-22553332 2020_09_22 8771.docdoc d05527f19cbcca0953e287b0b76194570b3c3e64eaff273f6428446e1a4379dcn/aHeodo
2020-09-22REP_20200922.docdoc 90f5fcbadecf831b2ea1ad31be2ad24a539c2886611a270e23975355d3ba2692Virustotal results 33.33%Heodo
2020-09-22Rep_2020_09_22_838.docdoc 34ac58d19f9561fbc90d00ebe4890258f9cf30d98f4fea91a7f13113e2a30787n/aHeodo
2020-09-22rep_97736.docdoc 3d79182bae912b50a6834604a96ac90b10ca5e1ce72ea2355fc0e9e3b38995feVirustotal results 31.67%Heodo
2020-09-22FILE-2020_09_22-644238.docdoc cbc24d09773cf56460c3a9cda7b497317ec61632c48aaf8615d94fe4a58ac642Virustotal results 32.20%Heodo
2020-09-22ARC_079.docdoc 08eddac7838ced651892ee94e145a639d010807c45f3bd00e9752dbc1590add9n/aHeodo
2020-09-22Dat-2020_09_22-9648.docdoc ba2753c69b06b5198fcc5ab9d75dd5760f634a64845c40f9d1518228e8611079Virustotal results 31.03%Heodo
2020-09-22file 20200922.docdoc cdf5919973d03aa5d92173567d3c3e48098f193247a8c61802af9c5bb0c10852Virustotal results 31.67%Heodo
2020-09-22DAT_655274.docdoc 071213621eabf1fc4875132e9bade6ab8f1b8311427be3fc1fa626449a7db799n/aHeodo
2020-09-21INF 2020_09_22 8581.docdoc 47fc0c61caa3805d7cb0fcc8a8466dbf5cd3f4df9456bfea6583b9ac2d83c0aen/aHeodo
2020-09-21Attachment 20200922.docdoc 0394eebf7602baf22b2e45b390f4aa5854b0179e671b3a2607dbf44a5130870cn/aHeodo
2020-09-2106679P-2020_09_22-RYL8973.docdoc 752cfdd4b5bd5525a1b48d12b73710003b76530b232e19a33add7a21712daa98Virustotal results 30.00% Heodo
2020-09-21dat-H07483.docdoc a71eb1fecb04c956e351274028426fcbb1a65045ab70ec3f73350e15fa439bcaVirustotal results 31.15%Heodo
2020-09-21Rep 10381.docdoc ce9b37abd7ee0050b9d074b7d04a2b2a3e7c18576c690d5859b8053726e0870aVirustotal results 30.00% Heodo
2020-09-21Inf CL878.docdoc 6aaab241dd8288bd9525b1a50b7a9bd3573f1b5574ab80fbac7aeb6813e553ebn/a Heodo
2020-09-2125450M-2020_09_22-PV8519.docdoc b780fd500d7fb2592181acab87281172189878f82ed6ea34f97fad5614203e9en/aHeodo
2020-09-21FILE 9614.docdoc be5f3f383dff8f273492551b54b9226c2bd6326187ccfb87be8556ac0fb5f5b9Virustotal results 26.67%Heodo
2020-09-21Inf-2020_09_21-LT854.docdoc c8ec1b5a11693054c13c42e45d83be353dc88a30205b63b6e820c12c9b38a13fn/aHeodo
2020-09-21INF_2020_09_21_7818566.docdoc cc422106d6dd2c41a70e946a117c310587b1beb090c9366c0122801bdbf0ab0an/aHeodo
2020-09-21Dat_20200921_075624.docdoc 992275c98caf603507117c6a84326bc0f5820f0f29fcf9e129d19a6e45035265Virustotal results 25.42% Heodo
2020-09-21DAT_20200921_Q0165.docdoc 817dfa0131f4686e1849deaf26ff7ffe1f5b2eb30526bc09a6753ce13185f502Virustotal results 26.67%Heodo
2020-09-21DAT-2020_09_21-85868.docdoc 716299f97023ee3e7f0a20ad1843ee7284684da8a503b9031fdaf0aac7e81671n/aHeodo
2020-09-21FILE 085.docdoc 395bb9568da78936c13a412ac5052ef6a015bc0134fcceeddfef1f47fd692b6bVirustotal results 26.67%Heodo
2020-09-21inf-2020_09_21-AD515.docdoc d09bf180c62ff076b690cc1ba7f1848bbcd7aca274fd1350df751593c3d06cfeVirustotal results 26.67%Heodo
2020-09-21DAT_2020_09_21_216.docdoc 400ce9c0043e68540e0e6d31efc1165cd0e4d696ccefb033d77e6f9fe45e0f5dn/aHeodo
2020-09-21doc 2020_09_21 275470.docdoc 1bbe375d43a1851674a41be075244edd766ebcb1e62ca831450f11202cac82d1Virustotal results 27.87%Heodo
2020-09-21doc_2020_09_21_ZI56203.docdoc 66cb8b7e3c4085898b6efb2c9b2d39cb3bd28f6fab85e83e70b4e9a3f441a22fVirustotal results 28.33%Heodo
2020-09-21list-20200921-1153.docdoc 80a8b5600bf204df850aadf7d4e7833263ef3c4771208d62fcb53e662007b5d3n/aHeodo
2020-09-21doc 2020_09_21 W800.docdoc c526bd9559b3c86c8d12821c511d2b8d82545dab3d76087773427d8b98129d5en/a Heodo
2020-09-21LIST-ACL1857.docdoc ba8f9cfdbfa74ffbfceeab42358902638da12396802bd63597b7677f66485494Virustotal results 23.73%Heodo
2020-09-21Untitled_2020_09_21_44283.docdoc f2047aa88b10b376fa4c25df0838bdd2e523b1e7593ef46bd6b460604d5c9505Virustotal results 24.14%Heodo
2020-09-21dat-20200921-96789.docdoc 6351168d14cfa0372803482062882590c98d717dc4f4eb2541fe3a154e8dc40fn/aHeodo
2020-09-21Attachments_F8236.docdoc 012c334db958a84f1f475fe44c1a86195a783c7701b6aadeec5c06b539158fc8Virustotal results 23.73%Heodo
2020-09-2164209583 20200921 8867.docdoc f515aa20198574ad28264b78c6e2e4387697c8d8854080321942c2036133eb53Virustotal results 25.00% Heodo
2020-09-21list 2020_09_21 YEU72782.docdoc dd82c62bce75cfe9cc3d63c50d2108210a4a7307bb05d0155ce6690d326df384n/aHeodo
2020-09-21Inf 2020_09_21 C9041.docdoc 7324fb63ab2862f03f39836b95eac796f953ca27fe0fd545bb8b8fb8c99e3a36n/aHeodo
2020-09-21Rep-2020_09_21-732.docdoc 78087064fd94215cc6a0700120c55c2ec63db11fd810dd5e175bca51ab8975b0Virustotal results 32.20%Heodo
2020-09-21ARC 2020_09_21 6734064.docdoc e4623f09e9fde14e0a87982493d6f2bc7f37d592e16bda57e69eb65541c7e2b4n/aHeodo
2020-09-21File_135.docdoc 155fc45f0849e7a83587aedc0cb028a587bf371a518ceeebbd95492f5ee666ddn/aHeodo
2020-09-21LIST 956576.docdoc 02836be5c9124bd4ba54a0f55a760d8b275599f13e41dd2adb1a1c55a690c80fn/aHeodo
2020-09-21REP 20200921 W26040.docdoc bbd5fa6f8a7f89155f18a2ce58a3c8c5ec96ad3452ac15957567098125fce163n/aHeodo
2020-09-21DAT 2020_09_21 79559.docdoc 7252c4f020cd8fe64a34b006074dec33be448f6e8af40d6c2ac0b89c74bc429bn/aHeodo
2020-09-21List 2020_09_21 B551626.docdoc c011f657db09823eeda192e8f301d95cd0abb5aa4fac1ef4d53c5169e951bbf0Virustotal results 20.00%Heodo
2020-09-21inf 20200921 F927.docdoc f973c445aa69501b46214e3a65d8bd66dfa1abdf5010716989778d844ef32de6Virustotal results 20.34%Heodo
2020-09-21arc-2020_09_21-8787327.docdoc cd31cca5a87d7da0dfeb7b2d75aa559b4c8086a0b3eabefe3e3f8856aab715d6Virustotal results 19.30%Heodo
2020-09-21Doc_20200921_805.docdoc 374523e9d054ba30d59eaaa8686fe97fc74a10882a0b467d52b21de5efddc31an/aHeodo
2020-09-21file_2020_09_21.docdoc e678951168cbafe831fa542da45cb0c6fa43a16d1069e96fbb60fd690f11b5dbn/aHeodo
2020-09-21550_20200921_ABD4346.docdoc 9626311ceb26e4ae1ef6fa70e40bf593f7a2be83d865b6ad393440a049de26e0n/aHeodo
2020-09-2159144S-20200921-813.docdoc 907c8db3d28d5cfa2c716572ec91a289936bc7c70d615e2afdb5d7b5d34a8381n/aHeodo
2020-09-21List-20200921-966.docdoc a3019d963b212893540926b54307b6f2af7f7a30749c0afe950b18ae5ca323e2Virustotal results 17.24%Heodo
2020-09-21MES_20200921_0213556.docdoc 249d6573f4f79e8743e529bdb81be6c11f86e83a53873ab864ed86b5cf603c92n/aHeodo
2020-09-21XYL4436-20200921.docdoc 42bd5694c817a1711d186dcf4dbb1b59c343ad3edf28117ce218fa55fec28bf6n/aHeodo
2020-09-21ARC 974964.docdoc 3f65c040548e19efe04dd82604458f807e138d5d1e406ac4082ae890c5ed2b85n/aHeodo
2020-09-21mes-20200921-579.docdoc 81ab49b690e1bbdc91e690b222a2c7d3bb5edacc027d2db853fc4bff6e68fc2en/aHeodo
2020-09-21Attachments 2020_09_21 5430493.docdoc 9a9fe6ec920f4d8548ed30762fb4046f2b361b06a376859eb680bf6dabc17842n/aHeodo