URLhaus Database

You are currently viewing the URLhaus database entry for http://jrvservices.com.br/JRV_ANTIGO/eTrac/JLuNQOfkSDHVVS1/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:602451
URL: http://jrvservices.com.br/JRV_ANTIGO/eTrac/JLuNQOfkSDHVVS1/
URL Status:Offline
Host: jrvservices.com.br
Date added:2020-09-23 03:10:05 UTC
Last online:2020-09-23 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-23 03:12:05 UTC to abuse{at}hospedagem[dot]net)
Takedown time:8 hours, 47 minutes Good (down since 2020-09-23 11:59:57 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-23Dat 2020_09_23 670731.docdoc f45a45fe0b9b279c6941ec5956a271d1e7bf706c54b2a744f1606237721ccbc8Virustotal results 30.00%Heodo
2020-09-23List-20200923-7254362.docdoc 9bd69510e3c43ec7952a8f5468ff9928523e1a435164c281bd3f6b789568e8a3n/aHeodo
2020-09-23Dat 20200923 WF995084.docdoc 013135853714b2a8873f816a10d899512ba749d4ff178cb5322c96677399ba71Virustotal results 29.03%Heodo
2020-09-23arc-2020_09_23-888048.docdoc 1027157b8a3e3b70dd47ea7c0e497544916e9756ff1e3aaafc732eabe77ff26eVirustotal results 28.33%Heodo
2020-09-23Inf-81546.docdoc 66fb0ff0bc019411aae249302066f28d3d4a17f14d79cb2d743b4b3f86cd2e0dVirustotal results 30.00%Heodo
2020-09-23MES.docdoc 8d9264f42739eb272f340990d05b2688263682781551a47e197cf7fd15f54695n/aHeodo
2020-09-23Attachments-HJV5309.docdoc bc8d7a492cc45195a67d8500390b631b8106bfba0c324869264f3a255fb0ccb4Virustotal results 29.51%Heodo
2020-09-23Arc-20200923-DM524.docdoc 352b0eaafd07102686fb7e59059288bd6f527e4190c6700cc5dd1e6f267bda16Virustotal results 29.03%Heodo