URLhaus Database

You are currently viewing the URLhaus database entry for https://avozdecamacari.com/wp-includes/Scan/USF6NASsFcox1sF/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:586397
URL: https://avozdecamacari.com/wp-includes/Scan/USF6NASsFcox1sF/
URL Status:Offline
Host: avozdecamacari.com
Date added:2020-09-21 13:39:07 UTC
Last online:2020-09-23 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-21 13:40:04 UTC to CloudFlare Anti-Abuse API)
Takedown time:2 days, 8 hours, 26 minutes Poor (down since 2020-09-23 22:06:20 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-23File_2020_09_23_U7317.docdoc e654ead5a64c1a9508e1824c6e391f25e0dedee6db74de85549d1c8527a359f2Virustotal results 27.87%Heodo
2020-09-22dat 2020_09_23 WF28797.docdoc fa34e83bd47e1cc41bc07924630b547d11a2cb12509838bb422368feb883aeb7Virustotal results 27.42%Heodo
2020-09-22mes_2020_09_23.docdoc ba855ac67ccef2d1b59e693dd98dcf5cdc266adcb47b0f857e22007d1108086aVirustotal results 27.87%Heodo
2020-09-22SP8747 2020_09_23 358876.docdoc a5b7961981d9acbb422832a05d2c07c48361000fb79f1d9e07877821e02e2512Virustotal results 32.26%Heodo
2020-09-22WW153-20200923-YYE364.docdoc e012356e1eab3dfbe537c3011127d4e313ea9515ab04c71150782d4f0f118ba0n/aHeodo
2020-09-22mes 20200923 6746532.docdoc e3187dbe7923459b3ea645a3d68b357927471e14d70aa4e542327ad4ef540637Virustotal results 32.79%Heodo
2020-09-22dat-2020_09_23-ULP02718.docdoc 1dbd5e54a80e0d4965039e9d7c9fe2801300da5081b5167c25329d1f039c8509Virustotal results 29.51%Heodo
2020-09-22LNY3132-20200923-HCT3534.docdoc 9239a6b5f8db1ff1643aec4cf3bf3bb20d07753ffe2b686b091154ba96d97c42Virustotal results 29.03%Heodo
2020-09-22Arc-20200922-5939131.docdoc 6a9f1cb57648fe546a21b732a369353a19405aca026db96bad9dc76a943ff11eVirustotal results 29.51%Heodo
2020-09-22List PV761.docdoc 0c7c1cdece9776edb1cd330e990dcce6733c6d05ed173a4dbb26878c012640b6Virustotal results 29.51%Heodo
2020-09-22Dat_20200922_VK9421.docdoc 20a30f50caef39003bf13e5c0a0b70396e3829e08131ef3c9a807b47852625efVirustotal results 29.03%Heodo
2020-09-22File_2020_09_22_908.docdoc cb244ee23263d4776d7a353173d14fc35fe3c1312615415c70def4cf97744d97Virustotal results 29.03%Heodo
2020-09-22L7577_DE57134.docdoc cdb3771d7860923f6b6e21189718418e65cd17c76577834a2f7f49768778b988Virustotal results 29.63%Heodo
2020-09-22Inf-20200922-774.docdoc 0e33b003b9c1cd0b792da43846113a32d28de0d64477f84d90bbbffa40098016Virustotal results 29.03%Heodo
2020-09-22Dat 20200922 34138.docdoc 955417c2e173ab3f64f91ad4d7921703e936abfc30a3115a22289becd6fb94dbn/aHeodo
2020-09-22Attachments_UTD0674.docdoc 036fc7aec9f1ba2427a7f7afcea4e5189f088cd4aa047635302afb4f9770eccfVirustotal results 46.77%Heodo
2020-09-22list_6643.docdoc 104d2e1471c7993b4d02e8043079b61edd68a9c7744f66779b40d798cc1f8da1n/aHeodo
2020-09-22Doc 2020_09_22 JL31716.docdoc af06636ff1f20f41974598ecce049672f3a6b8e245f80ef60b4c36eeb4c7d5fbn/aHeodo
2020-09-22LIST_DCL827037.docdoc c4699bc83e2c480aa53af341f4b67b5dfb27cb5d28fb09a7619b55689b686ae3Virustotal results 45.90%Heodo
2020-09-21ARC-2950.docdoc e61511eb24b3cf59eacc8ee628d014e14b62fa3e2b8e041dc9a6a342db373472n/aHeodo
2020-09-21TY1488_803.docdoc dd82c62bce75cfe9cc3d63c50d2108210a4a7307bb05d0155ce6690d326df384n/aHeodo