URLhaus Database

You are currently viewing the URLhaus database entry for http://vendasdesaude.com.br/erros/browse/GNqMo4FG5i4/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:615890
URL: http://vendasdesaude.com.br/erros/browse/GNqMo4FG5i4/
URL Status:Offline
Host: vendasdesaude.com.br
Date added:2020-09-28 12:11:07 UTC
Last online:2020-09-29 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-28 12:12:12 UTC to abuse{at}hospedagem[dot]net)
Takedown time:19 hours, 36 minutes Good (down since 2020-09-29 07:48:31 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-29Arc SPZ377295.docdoc a721713b9b8dbf3f7afde4ecda5e2161a48cf67c5277c3836c0df121ca2d6b18Virustotal results 41.67%Heodo
2020-09-29DAT 2020_09_29 3928139.docdoc b19337ff283d5e928eb6bc9b902fc02a47f506746ab9fc02955e02d7112f3be5Virustotal results 40.32%Heodo
2020-09-29Inf IF7962.docdoc eec9ef739ef8f2d773dba3cd334596007989d12949c6dd86972257b3117335c9Virustotal results 40.00%Heodo
2020-09-29arc-2020_09_29-2399.docdoc 4dc9418d6c5b851e2985dd79fb58ad409a9442d22dfa9e5c9e2c4b475bd8f02eVirustotal results 38.71%Heodo
2020-09-2978512ZGQ-2020_09_29-AO403282.docdoc 0640443a07a7f6b188d0710e06ad87ade660169f3f7a727d20c62d2797a3ff1cn/aHeodo
2020-09-29MES P98071.docdoc bcc520a7c5542f305e98d2eddf75f362f4771597d4e51101ea9485aac97614e6Virustotal results 37.10%Heodo
2020-09-29Attachments_2020_09_29_WK753002.docdoc 5f87d95e028a5e898dd317d4a0e297434e8b30770d448c4a07687bfc44e9688dn/aHeodo
2020-09-29Attachment_2020_09_29_4049132.docdoc cdb30f8b1460d1b00ba1281cd760fc75bbe2e2ac0d792de594c7f2b3482b386cVirustotal results 35.00%Heodo
2020-09-29LIST-20200929.docdoc 6a4f1212417249a2a041859ef4fcb7c2968111ee6273aaf0fa840e06c7905b52n/aHeodo
2020-09-29dat_20200929_20923.docdoc cbbd7ed4de288e481568bfd404ee416c9654434c90d5453323245df46900c45aVirustotal results 32.79%Heodo
2020-09-29MES E69436.docdoc 54f986a7c4d63bb4318487b8abb982035542b034084b85e68a6f22edbd7d3b01Virustotal results 32.79%Heodo
2020-09-29doc_8987.docdoc 852f47fbed9614eb0e23b991f99bb8169cc0a46a1d4d5907cf021c0f4c89e092Virustotal results 32.26%Heodo
2020-09-29mes-2020_09_29.docdoc a6dce2f62aa3f756e9c553b8a90aa762858a689da483bfcbbac5dd34ea3e57a2Virustotal results 30.65%Heodo
2020-09-29908408_689.docdoc 0debea2deb612b9b45d6c0d5436d8a10523ab340be98ce9c66f2ff4bfba49eb2Virustotal results 31.67%Heodo
2020-09-28Rep 5313602.docdoc 822600fc7c81e8f5a12a4ff52869d121c2adcf36c2b3922a68213f4de2bcc769Virustotal results 27.42%Heodo
2020-09-28doc_5928712.docdoc 87db481003cf7afd6d3cda5e4f25cec1329d666c4238e33a8dcaa986267b1d97Virustotal results 27.42%Heodo
2020-09-28File_20200929_O9593.docdoc 8e516b7c4991161613529ed82d29690b011ae4eba3b41913d917b111215409c8Virustotal results 27.42%Heodo
2020-09-28mes_TU106088.docdoc dadb16f08fe25c42bd7288b792eeb520d80dafb26c05bd0f61eba97663e01971Virustotal results 25.81%Heodo
2020-09-28NG7686 2020_09_29 U384.docdoc 25ba07757eed7d8e7d07336a49141f5ee33fa19b03abf8e4dffdc67175f64b7bVirustotal results 25.81%Heodo
2020-09-28LIST.docdoc 3c1d0bf50cfacd06901d74df5a5a1d557b99340af664176daf14b9ad29172e1dVirustotal results 32.26%Heodo
2020-09-28doc-2020_09_29.docdoc 2dff07391ffdbfc46fc06d06454dee304842ac67ac8374756961c9281f93c57bn/aHeodo
2020-09-28Attachments_Z1173.docdoc 892671eed8cd1e26b5209503d1c9ffed3e3f04ec5760e421662e1b9df31177dan/aHeodo
2020-09-28arc 20200929 235.docdoc e5910fadbe07c6555b9ee8e2cf28cf39660860727162fea3bfb5bd9284124a5dVirustotal results 30.65%Heodo
2020-09-281468_44451.docdoc 3ab1c84503217087f45e8cf1acaef86781dfee20643e93e0d982dba8803fe719n/aHeodo
2020-09-28Attachments_2020_09_28.docdoc c1b317a7d9409c3562857cba0d476809d144e24c1b77023f8f033327e8a98ae8Virustotal results 30.65%Heodo
2020-09-28INF-2020_09_28-GX87199.docdoc ed3abaa21cdc78324276aae5eeb696f7116b15d243ffc9e575c5dc98280b7e50Virustotal results 31.67%Heodo
2020-09-28INF 20200928 452637.docdoc a554046f9441322716488b178a6f0d60e24d3bf9f11071067d2d6d74e0e922f0Virustotal results 30.65%Heodo
2020-09-28Attachment_8197289.docdoc 0a30286f2c6136992c19ec3d8b6d67aeb198133f5e4fd0fd477ffdbd1a3b2c5fVirustotal results 32.79%Heodo
2020-09-28file_2020_09_28_UY781.docdoc 69aab82e57e21f76a74e77351c9e716361e4ed669c1545e0a2676cd7f80b3352Virustotal results 32.26%Heodo
2020-09-28FILE.docdoc a215744f29b8626f66e6ed8c7fd9cfa0fd2c8ccdd853e881058903b3e36a5137Virustotal results 32.26%Heodo
2020-09-28Attachments-V554861.docdoc 672bfbd35877ee7731d1c2044f08adc0c99bb5075a364f5cf2c92a27f1424dabVirustotal results 32.26%Heodo
2020-09-28INF-WC803991.docdoc d7401fb6f98194fe5b2bf4eec6a99bcef41e697a0f56a9ed3f7f790e5108becbVirustotal results 32.26%Heodo
2020-09-28file 20200928 4970307.docdoc 8d949a82a15f90565e204f6710e5c0d0cd258fbfa73248403b9742d0058e0ea5n/aHeodo
2020-09-28list_677.docdoc c1d49e8306477c3202a034af2e62753df8948a2f0c47c6b4d2e7474c77550659Virustotal results 32.26%Heodo
2020-09-28dat JD2730.docdoc 57b450c695580f912c5cb17fc7e8ca1a41f3513ade9a69efc71b9264fa34598eVirustotal results 32.26%Heodo
2020-09-28rep 2020_09_28 617.docdoc f5c4e7494229b6e64743d652267a73b78643768765cdfee8782e5b156fd3a5a5Virustotal results 32.26%Heodo
2020-09-28FILE_6787469.docdoc f02f4cd828c7c1d2144e73e75fc8bae4e303ed68c306f33306efb6b467455c39n/aHeodo
2020-09-28dat_7669.docdoc 322abdb8d8fc57407ba324bd5dbfcac717330d80118b5d0a21023f763ca5d8bfVirustotal results 29.51%Heodo
2020-09-28FILE_2020_09_28.docdoc a3bd205080725ad3e20e6aab3c672e8d19ac2249485569d1db861f68c26ae867n/aHeodo
2020-09-28REP_G37213.docdoc e05094dbdf93719d66a534b044f8b01d55e89a1bb6ffee1f68bf7284b721f062Virustotal results 30.65%Heodo
2020-09-28MES 2020_09_28 FO656.docdoc 75b77dbe974f5881fa3c5321ca387ec5f36654debdfcd17322eb2e1a98f7b17bn/aHeodo
2020-09-28904 20200928 988.docdoc 664c4ce1243076b36c5720a53d168819eaa761a111939bcaf3a619c3dcdf11caVirustotal results 31.15%Heodo
2020-09-28MES_2020_09_28_429.docdoc e2dcc502dbfd89abcc734d23ad35f6b20ebf7fce35ba4cf7aecb716acd5d9c71n/aHeodo
2020-09-28inf 2020_09_28.docdoc e50ac8ad752bf7efab075176be571435f15a55838626de091f726f12cf598590n/aHeodo
2020-09-28REP 20200928 OXF10970.docdoc 90b5f100db7341b2495c748b065e22c02cb9851a35759168f09d015710ac2f1fVirustotal results 32.20%Heodo
2020-09-28Inf_20200928_162831.docdoc 8ed37594d6584e0799753a477d07666bf837b8b655d82f4e66efd1b236209e5fn/aHeodo
2020-09-28Untitled-2020_09_28-33355.docdoc e74ff775a463fd03e3c36f314cc67cdf1889f48b282c5677ac5e891fe11eea2bVirustotal results 30.65%Heodo
2020-09-28DAT 2020_09_28 338686.docdoc 6faacc3cf49f9a89af24182aecb16eb2f49d5f1f7fd9e183746ba0096c99e1f5n/aHeodo
2020-09-28Dat-2020_09_28-0878.docdoc 957985f6aabf67836665e90965b389ac49cbc47768900635a43a86ce6422e464n/aHeodo
2020-09-28Arc_2020_09_28_FIK8568.docdoc c3010940380d80705e12a2d653c4ecbf67c5f27166984743d1a682bbab3ebb96n/aHeodo
2020-09-28Doc-20200928-DGT317.docdoc 66f8513c73d539502d24299e8e516103baa2c1d3bdb23ccba8e29861463f211bVirustotal results 29.03%Heodo
2020-09-28INF-20200928-907.docdoc b993db6027f3ab4a8a0bf84b89deebe50f9b01854a5849be661ca177a6ab6b1dn/aHeodo
2020-09-28doc 4818143.docdoc 0d625f86dc6d7a57f7baf86b84854d00b75520450903af8675546dce9d1d2b66Virustotal results 29.51%Heodo
2020-09-28File-20200928-GG2066.docdoc 2070256c212687473c7fb1b4eddf083250f7c00cfc588d07932bebb52dc362e8n/aHeodo