URLhaus Database

You are currently viewing the URLhaus database entry for http://santacaixola.com.br/wp-content/report/03usg8yuj/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:619486
URL: http://santacaixola.com.br/wp-content/report/03usg8yuj/
URL Status:Offline
Host: santacaixola.com.br
Date added:2020-09-28 23:06:10 UTC
Last online:2020-11-18 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-28 23:08:14 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:1 month, 20 days, 1 hours, 17 minutes Bad (down since 2020-11-18 00:25:52 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-29KN_PO_09292020EX.docdoc 5f8f8f8f2bd286d3f5f76e6ca535978a9eccba49c5fb61817ef1d967a44d0ca5n/aHeodo
2020-09-29FILE_U2ZX7EHZLE3N.docdoc 27442f20eb59b4d209325e6568821d54267357d72c350b9aac8bdbe721e0235cn/aHeodo
2020-09-29FILE_01756293.docdoc 93e49c537d860ec3dbcb23e79f1eb2c52610596ff0dc6e7fedd5e41ade84841fn/aHeodo
2020-09-29FILE_II2835376576DI.docdoc 72cce742afb1793666134468897deb5f7fca3bffec97714f0fa758c704e5d974Virustotal results 47.54%Heodo
2020-09-29FILE_67679041.docdoc 8c9464abb69f16822f7fdec477b8bedee78510faecafd821b00276f0745ed2b6Virustotal results 45.90%Heodo
2020-09-29BAL_VZV_090120_SCN_092920.docdoc 7e85837a8b4971b1014e74d107d5cf4f797470db1b9823a8bca7511a0d991c96Virustotal results 45.90%Heodo
2020-09-29REP_406534508226886795766.docdoc b2e71daf0ebe60a19e0b62852d7198b9e94b1d5cc89227fed97ae2054e7e3d71n/aHeodo
2020-09-29213345553973574.docdoc 760dab7018f626be3c6aaa9e57e0350cea3ae2cb057de45687c1f251aba72f8aVirustotal results 45.16%Heodo
2020-09-29INV_24347909.docdoc 1c97235809cb8431eccb5413864eb8a08ec66dd0fc8d9a12cd8d8da9f8c9d40cn/aHeodo
2020-09-29FILE_R8X2NG1UEXI.docdoc d9589a671bfd282af7368f128a3acecfc91b1128e0fc61e4ff98d967b1cb89d1Virustotal results 43.55%Heodo
2020-09-29TN1446407009ZD.docdoc 944f5b4116e3dc9bcbf8c26f233d0d0a769b5fb7ceddd78587a9963b7d7d0051n/aHeodo
2020-09-29IZ6011003986BC.docdoc 1087155bc18fbbc2413d2ce4a37be877bff2d9d95202b3f9a9c5ba3a9c986e74n/aHeodo
2020-09-29Z_74720114.docdoc 1f05ac51daee57a330e0b2e270a5455a23d6866da5392138b1403ac63e5b4793Virustotal results 45.16%Heodo
2020-09-29INV_85038476.docdoc 18b180a651a5c1f82e1e37fa36fc92e6c0e2516bf788cf33ab3f6f6681be6cc8n/aHeodo
2020-09-29DOC_72973711.docdoc 80c77811d31daab98c1ec0882d3c59b98ad3faadb511c21e4ac662cb9673e1b2n/aHeodo
2020-09-29S_VW2694886748SK.docdoc ad9968f577bb3e7a77855eb05baff1a1b21026b560491c73a378145b74dcb9f8Virustotal results 41.94%Heodo
2020-09-29021945786854869888194430.docdoc d3b204a9a314a83910394cbfc8ce9a3ee143f7dff5fb09a1f17b138bd042f27an/aHeodo
2020-09-2960556499.docdoc ccc18b91da784754f83482778c7bfc1de931b4416de9957b6e7b61b25d8d43caVirustotal results 40.32%Heodo
2020-09-29AA1096860403JU.docdoc 22a6a4e3f1f8a228220e5ee2c90a0eca756a901e6907d3f58ea65edcf5ed01abVirustotal results 40.98%Heodo
2020-09-29INV_OB8503875129PZ.docdoc 5a8be1cc109ff476e4b7ffbd87db95b671cd66eb4482bef8ed076629fc0c0152Virustotal results 39.34%Heodo
2020-09-29BAL_PO_09292020EX.docdoc acbe625125210f292986e1a32b358fc608504c11aee463f05e4ea2b4ecac55acVirustotal results 37.10%Heodo
2020-09-29DOC_18006043.docdoc db4177775b3d67acda4d37398c7eeaafe12a36ca63b028f14b61b515ebee9ee9Virustotal results 37.10%Heodo
2020-09-29DOC_PQB_090120_TQM_092920.docdoc 098fb7d718037b90543175fc964c4fde918746825292005bdca3f6bf33a29360Virustotal results 35.59%Heodo
2020-09-29K_ILG_090120_GKO_092920.docdoc 7cf6bfee34514fc64699f528b75e89bd79fa6f40567cd474844dd861ad118998Virustotal results 37.70%Heodo
2020-09-29FILE_05049265.docdoc 32eb14d8bcd10b68e5d7ad204f2bf73117e211696210f26ced4d233919309506Virustotal results 37.10%Heodo
2020-09-29M_X1KREVM.docdoc f84be91eaa46a92cbd5d01beea7f41b3b0422079aeb425f74b2322266934c301n/aHeodo
2020-09-2998457157452627.docdoc 6f7ac22d800aed7da1b89ca41cf9288d41ca2d701f2bc69f206bed6bf832fa7fVirustotal results 35.48%Heodo
2020-09-29FILE_525288220510748447.docdoc c7bdb1aecdec9b5d905a6b7816b03a2d54d84f0fe256e58fd1a09d738fcacca5Virustotal results 32.26%Heodo
2020-09-28REP_91727467.docdoc 44131c8de1ff671fea937fba153e30d90d47589f2bc9a1c31bba2f8ba1bd4b66Virustotal results 32.26%Heodo
2020-09-28IR_OT1108080998EU.docdoc 5511a4406f3aac11acd3a67d5b5a567088a88e946caf868616b1de1bc329b09fVirustotal results 32.26%Heodo
2020-09-28FGI_WQ9596079411BW.docdoc ca07979b399d505a206ec7c3db9d742e72efee8adcfa6e2c517a553d3102e2adn/aHeodo