URLhaus Database

You are currently viewing the URLhaus database entry for http://menegotto.com.br/wp-content/esp/u6XJNrNlenkgi/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:619884
URL: http://menegotto.com.br/wp-content/esp/u6XJNrNlenkgi/
URL Status:Offline
Host: menegotto.com.br
Date added:2020-09-29 00:43:15 UTC
Last online:2020-10-02 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-29 00:44:02 UTC to abuse{at}redehost[dot]com[dot]br,flavio{at}redehost[dot]com[dot]br)
Takedown time:3 days, 18 hours, 12 minutes Bad (down since 2020-10-02 18:56:24 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-01Inf-2020_10_01-305242.docdoc 750f3ddf6c6bd8e7cf26c3d8103a0dd26becbf4a754fbd78bcb33a8bd165741fVirustotal results 27.42%Heodo
2020-10-01Arc_20201001_8972708.docdoc 40c1adc94c0e2bc34dfb84c1c426ccbf50749fe7b5d367759bb22cb69cdf3764Virustotal results 27.42%Heodo
2020-10-01Attachments_9792.docdoc 1a4225aa9c57fb8c97a5859dc3d004a323c5a31ad17def4ea965f4ed6fb8dd88Virustotal results 26.67%Heodo
2020-09-30Dat_2020_10_01_8138.docdoc 06c7dc1301836c796492d6ca99e8461840a031969bfcaacde4cba2113ac79069Virustotal results 27.42%Heodo
2020-09-30318513.docdoc 4eb0f14ad3f635965ea0fafdae6c9212c194249521cfb39bab99ca8a69751473n/aHeodo
2020-09-30file 2020_10_01 NFU1206.docdoc 8e47a77404dc1b06dfd5021c2deb7c2a7bc7ef7c212f643659615772497a98dbVirustotal results 27.42%Heodo
2020-09-30MES-YP009.docdoc 4775719b443e192325610b1eb79d188314e42c2dbdd27c3d2aaee14a082a5176Virustotal results 25.81%Heodo
2020-09-30Inf-2020_10_01-9411.docdoc bc5bbfab7bd6b38fd204b4c31d13dcdb6cc6e1712b448d5c2e6ff31e858b26ceVirustotal results 25.81%Heodo
2020-09-30mes 20201001 888234.docdoc fec01c1bae4abd3f9440381c855227b0f1482882e766d147e42f80cd257cab3aVirustotal results 25.81%Heodo
2020-09-30dat 2020_10_01 H49395.docdoc fe188a82b959918eac4007d04f619ee4ad081730eaa6da718e8e4e0cd9d594a0Virustotal results 25.81%Heodo
2020-09-3057777FO OL368040.docdoc 9e657e5f3e756ddb72a1f39cd10f7a729a3870660ce4ac1170124a197f9bbfc8Virustotal results 24.19%Heodo
2020-09-30321213-20200930-G736936.docdoc ddf8988ebd5fa555488322ed3fe2302ded38b89794abacdfd52a46ee6b1f0ddcVirustotal results 24.59%Heodo
2020-09-30File 011.docdoc b07454218dcb173160992f388674d654dbbd54eabbb7f2424014f2f837e1d009Virustotal results 24.59%Heodo
2020-09-30mes 2020_09_30 ZNR370.docdoc 19c711da2f6a806744e6257345d8ce2c2e637b13276fe57cc9509ec37f43df0cVirustotal results 24.19%Heodo
2020-09-3079767698.docdoc 6d3070759d62eb8f488c0a3a950b71f92a75f47a9a04d32bfc04321fdc7d4fdaVirustotal results 25.00%Heodo
2020-09-30REP 20200930.docdoc 7521424ad39c54fb6a2092df012b0e506470b78e5a1134c6bcc7aa1115a81bb1n/aHeodo
2020-09-30Rep 872397.docdoc dec24ed6c763f910089034b7692793382148a8918f6a302e9749c3c2746f60e0n/aHeodo
2020-09-30Untitled 2020_09_30 V90199.docdoc dc681f3d1933c88a3830910384602c5c5b3f2f3c0fce741e5becebf377a6ad03n/aHeodo
2020-09-30REP_20200930_A54744.docdoc b03527f06cf23a197a3ed8826c8e376391264fa6bbff6dac29b2ef9af6dfb8c1Virustotal results 24.19%Heodo
2020-09-30inf_2020_09_30_FH7452.docdoc 11b7cce663e70bde75cbf0b81b54ab96d97eac177d58c0abbc44f8c250854a8cVirustotal results 24.19%Heodo
2020-09-30Arc_20200930_872742.docdoc d8001dcb320e9cea74bbfed4d771877abb643b6b5bf9c2718e2ca6dc92fc36e8Virustotal results 22.95%Heodo
2020-09-30doc-2020_09_30-78973.docdoc c70c313c4d53b44a4a795de9cc83dfc9f602e6653bd10bbef302ba54d56d2326Virustotal results 22.58%Heodo
2020-09-30Mes.docdoc c69355e7d2f37fb8a04b2808e24c6abe076f296b1063e2fa5eadb435d4105da3Virustotal results 22.58%Heodo
2020-09-30Mes 2020_09_30 L540.docdoc 1b93f7deb5b93ef4a3a9bd0606358023d2581ce67f73b0dc7ce582f209a2cc87n/aHeodo
2020-09-30UNTITLED 2020_09_30 1449627.docdoc 028661b4068147b441bb85f54020e1a03290adf9a56a2fe4407e68509ec7a812Virustotal results 22.58%Heodo
2020-09-30Doc 2020_09_30.docdoc 9ac40a72e7924e44c504e25d64e72256f0b7003d884c6dd0e77eacdca2cc10a1n/aHeodo
2020-09-30VJI399_20200930_8499.docdoc 56d9f5c6f3b9609d176a3be72d243dac0ac9d0fee05660bd26fcee9d4e2d2b55n/aHeodo
2020-09-30list-20200930-242.docdoc d8e405782c4f5b141b6031715d78b4d56a4b64b6f8f61f6de6af59c7cac4e96cVirustotal results 21.31%Heodo
2020-09-30inf-2020_09_30-JY8277.docdoc 57fb20f374aa64d3dd77c722beeaec44e2b5f77bb194d63fa71b5ea0c18981d5n/aHeodo
2020-09-30774763_2020_09_30_5192.docdoc 90de4105fc91aa76e474d5d94fe9fd26b8d6983986653c2d8592f39376ba5652n/aHeodo
2020-09-30arc 2020_09_30 7905.docdoc 91a469546620eb32a4a831ccf2ee6651ede21e09e291ae9c22a7ba470aaffee6n/aHeodo
2020-09-300583GD SI2158.docdoc 502c99e3159ccd62b7cf8bd487af7e4b2e8ec535a16c734a6927d180e4ed4359n/aHeodo
2020-09-30LIST DQH625496.docdoc ef1cab6554d55bc96a5ba1f706ddd551d20da39b0a5240b4e05a46b348479526Virustotal results 23.73%Heodo
2020-09-30Attachments_2020_09_30.docdoc ce1d7fe9a715dbd5b408b17ff12010a67d3d1d002a9484370931304e35254f12Virustotal results 22.95%Heodo
2020-09-30INF-2020_09_30-Z81496.docdoc 1c19fac3068aaf8a893e43175cf7304a5dc037ad05a31eaec72df3b1f9de9905n/aHeodo
2020-09-30Rep-2020_09_30-01693.docdoc 6532e0b5e7e0a65864bed3ff6ee62581be8b76f1d35bff0e9289fc95b851a992n/aHeodo
2020-09-30dat-20200930-LX858179.docdoc 7517322994d207e75f7e760a7797f433ed016d4d39d3b2cc257e6b05d158c0b8n/aHeodo
2020-09-30dat-Q055938.docdoc ea0313fd5620c355be450cf83271f033601347eed4e661eddef0fbf152e5808an/aHeodo
2020-09-305380QZ-2020_09_30.docdoc fc7d24bb6284f80bb6640b3a456a6407b4af42ef47a1b4811f67c23d45bcbfb9Virustotal results 22.95%Heodo
2020-09-30ARC-2020_09_30.docdoc c00ad151d1825f27639994f1a506ff8fb76d8cf3460cac3eb8351c1caafa8b71n/aHeodo
2020-09-30353781 2020_09_30 094.docdoc a0105d00c8554ccf45329bf8b6f502eb63dd0e844edfcde8e2bd0c6000c9e708n/aHeodo
2020-09-30List 09577.docdoc 25b7f727f0f1e44dc0b90a12f28264418053fc308ea16c0050ae887a1db7d5abn/aHeodo
2020-09-30Dat 2020_09_30.docdoc ae08f6ca3d49c7a6f89007400a01827f8fa1e32ea4d88e4e38ff705f70c810ffVirustotal results 20.97%Heodo
2020-09-3011378-2020_09_30-74343.docdoc 848472a593e725755e8a0b52a61189cab28bedfa9f8d62a7a528790838e7d9acn/aHeodo
2020-09-30Rep_2020_09_30_02925.docdoc 3492fab300b5d411b647ac5b6cc3abd93b7827150f876d1a38d4930e03f16a1fn/aHeodo
2020-09-30LIST_20200930.docdoc 591579fba418bcc6bd1fc4bb4a299348db435c11b203cd049b17c9830f211087n/aHeodo
2020-09-30REP 20200930.docdoc 7464edd6b84b35d71ec4b891bd85c2918da1024f18f49f0e06192b440eb5f364Virustotal results 46.67%Heodo
2020-09-30LIST_2020_09_30_PZ388.docdoc ab29dfeede441ff65801a3bd6e00e12eb35038b0142cfdb133fd029ed7ec4ee9Virustotal results 47.54%Heodo
2020-09-30Dat_YPG0584.docdoc 45fe2fda54ec2b495e927d8205639f79fc95f1de2c7325a84a6651092c11733bVirustotal results 47.54%Heodo
2020-09-30Attachments_20200930.docdoc fe7a953a524746ec38ded3f4aa02efd66cb67e9223f9e01150cdbb36101696d8Virustotal results 45.16%Heodo
2020-09-30MES 2020_09_30 761.docdoc 869911e995bc11a3a2e87a02de6611b59d26ddd5b21c6c77e72f327620f526c2Virustotal results 45.16%Heodo
2020-09-30INF-2020_09_30-LR9859.docdoc b91cb11be0bd9f80cec08a069751a27ef60de586e87e2ba9f8d2a4dc266f879fn/aHeodo
2020-09-30UNTITLED.docdoc 518497541c75a0712da4f0ae8bdae374c0ca32afa934b8bca8ff607618230773Virustotal results 45.16%Heodo
2020-09-30inf-UDH934.docdoc 18c9ca3eaf44c72da3a3b8a071775d824b0c4020005a02f213b248ca246e95f4Virustotal results 45.90%Heodo
2020-09-30INF-20200930-08696.docdoc 892d8f9cfb26bae3277304d3396027dd55d0899e78181a1431bb43e29dd3e857Virustotal results 43.55%Heodo
2020-09-3078803946-EGZ57256.docdoc 643a118d94807a21df75a7aede93130326ac04ce84a10d9fa67b1f5f87d3467aVirustotal results 39.34%Heodo
2020-09-30Attachment_2020_09_30_X7288.docdoc 67d283b362bfdbb0db8f7a103bd5c1c3c7fadbb22b0cccc5b0cea1b48d1bcd16n/aHeodo
2020-09-30inf.docdoc 058c2e8f57729727ed29b3c713fb0147a3b79eb1ca1360453aad3185f45e41c8Virustotal results 35.48%Heodo
2020-09-30Attachments 81001.docdoc 1d44cd8c3d04874dc41108bc844eb637f657064927fc28927f68c95fe596bcaaVirustotal results 32.79%Heodo
2020-09-30MES-20200930-HSV51846.docdoc 1b7ae75c0843e24188c16e98283ae53b2d5d441a3149a30eae0eda9db7781220Virustotal results 32.26%Heodo
2020-09-30FILE_1306818.docdoc b3209c6972bdb3ddba9f14b30f6a49d2ee49d09003fca07ae1f28646011f0a0bn/aHeodo
2020-09-30Untitled-2020_09_30.docdoc e24108e3bfdc205fb409b17e7471d0fa880daa6a6ff8379a3195b0ce9b646d83Virustotal results 32.26%Heodo
2020-09-30rep 2020_09_30 AWM588.docdoc a87836e6fbf70862d74980ad32f16b6dfe157bcea1172817e7235764aae0c4deVirustotal results 32.26%Heodo
2020-09-30INF_20200930_80424.docdoc 02c3c1d0653a24c203ad1bcef154e65e155db910100619634569eed5982b5d26Virustotal results 32.26%Heodo
2020-09-30Rep 2020_09_30 YZW1249.docdoc b89e3c01c95337c6976cfdbc20163b4375eb1a0a76a87335e891fcd932c361d1Virustotal results 30.00%Heodo
2020-09-29DAT_2020_09_30_L33324.docdoc dc873a463b8cbee41eb8683d98db5a331553402391ba1c16e664c7034eb1acafVirustotal results 30.65%Heodo
2020-09-29dat 07681.docdoc 9a24d61f24a1211065b986def505c02b66a94f2b1cbde8fc6ef868391c24d4f3n/aHeodo
2020-09-29INF-2020_09_30-N66004.docdoc 1d742e585ed7b4c237726a945da11795c46da01716e9da561d98fff100ee938fVirustotal results 31.15%Heodo
2020-09-29rep-20200930-6784966.docdoc 2e0fc31a6ff8f20507c6979fa9b5be9e11f13d424e2962ec30f1fc596c069898Virustotal results 19.67%Heodo
2020-09-29LIST.docdoc 32a76ed8013dd82d6e6063013236d7fb37bb205dbd6ff84ab785e5af12e6b3f0Virustotal results 19.35% Heodo
2020-09-29Inf_2020_09_30.docdoc 004d7159e2360d1569de7849fbd5ffa3e63968d011834c565255ade18fcd54cbVirustotal results 19.35%Heodo
2020-09-29rep-20200930-300.docdoc 733396f8631195450342e999f4b7d1e4134dae74cc2ec95438d0c2611e65a6e5n/aHeodo
2020-09-296054 2020_09_30 378.docdoc d7e7f83cf495118b990f97b76a3503b2b33c5b4c8717e17330d8adb8bca470e4n/aHeodo
2020-09-29ARC-20200930-U24966.docdoc dc37c6a8213875ada2f9dbe9a76ae223105ef7407b221f2b9a8741b9a114bedeVirustotal results 21.31%Heodo
2020-09-29file_20200929.docdoc f02b188278d31f5c4bf69da19d42c2dcdc5f9724d5de56c4b6255732d6d6393dn/aHeodo
2020-09-29inf 20200929 P400.docdoc 20c05076ffa992b9810f1c1900121cafbbf5ca6af25b130c2c86ca2ffbdcf47eVirustotal results 19.67%Heodo
2020-09-29UNTITLED 20200929 2428.docdoc 140254a1f60e331ddaaa70ddd79ef03759dd73aa778c4e098be6ee6d8513c08an/aHeodo
2020-09-29Rep-2020_09_29-5588.docdoc 42bb540219be5cfef273134bfd225b2beda1edfcff945b3448e19a7ae8e982c7n/aHeodo
2020-09-29ARC_214103.docdoc 5edbe1ed71b6f09ddce8192cb4e9486cf7fcde8cac4394cc89a313c76c646ad0n/aHeodo
2020-09-29Doc-Z347.docdoc dd1c623f20ca4fdf67cbe53d85b17d13c54f068c21886add6d7295f5dae8aaf6Virustotal results 17.74%Heodo
2020-09-29Doc-20200929-951.docdoc 05b3edeba78db8bffd14a8c4cc8f60c6f9ca6958ad5ff519e410d5eef6a4c555Virustotal results 17.74%Heodo
2020-09-29Mes-2020_09_29-NS194.docdoc ad1b46030e487bf2121ac7ad8bafa5d344299875966e3429fccf826931a7ef2cVirustotal results 17.74%Heodo
2020-09-29DAT_2020_09_29_YZ703677.docdoc f363539a468889742abe35748f7f351c58d42294cf01ec320abf7642d5bed79bn/aHeodo
2020-09-29Mes.docdoc b8c7830a4a2390d6b31f40d0dd0958d1ee0844ac3dc20484bd00a9bc6ca87be7n/aHeodo
2020-09-29INF.docdoc afe621cd44cd689287ad44e9d1728558887078487d74729709bf5e332f7f99d2n/aHeodo
2020-09-29Dat_2020_09_29_Q1693.docdoc 9bb04c3df75b16f4a7aecc01d425a7fb5a8e49198b6b37473f765ba1c108d80dn/aHeodo
2020-09-29file-2020_09_29-RGM67711.docdoc 8ac3720fa4d7bc3692cd224792e4d2e6b2476c99583b43871de0f58c1ab2e4aaVirustotal results 37.10%Heodo
2020-09-29Doc_2020_09_29.docdoc a2983168d457ca0f8dcaa3646efbe123873003af21cc494c8171175df0e0a9ccn/aHeodo
2020-09-29arc FFF933282.docdoc 253cd8373b9fef7b344b345f38bd10c5c6cfa760b422b98092f01d3925a51b47n/aHeodo
2020-09-29Attachments 2020_09_29 7109.docdoc 4730292036a58215d83a817af2dccfd57271fefb607c590ccb33a48b353c449fVirustotal results 32.79% Heodo
2020-09-29INF-7689.docdoc 25dcc3dce3031c258dd8d8b7dc193ff62c9b87b3151f7409948b2d0971d71ee0Virustotal results 32.26%Heodo
2020-09-2966712_2020_09_29_GSK897539.docdoc a9643a8847565b34079c4107d45f5b06f40ac2de0cd8df1c72f040effb1645a3n/aHeodo
2020-09-29MES_Q1823.docdoc c45e98d9c02f898d3f7f7f86e60bb708155c604c1125c3dac174e757bcfeb775Virustotal results 30.65%Heodo
2020-09-29Arc_767377.docdoc 566851504a21da7b10a76ed1c310fd9fd54a664fa4ae91f9067bf8ea15bf83ccVirustotal results 30.00%Heodo
2020-09-29FILE 2020_09_29 726.docdoc 90bbebfb3f41606e87b0e49c89747c7ca24e3ebbddd545016b8c9507390467d0n/aHeodo
2020-09-29LIST 356.docdoc 235c504a271d6c34d21625ff2cea2273944ac5e054666fa3294e69c5d62e6f23n/aHeodo
2020-09-29REP-2020_09_29-95492.docdoc 32092e05020bf5b9068a781d7bb994885d071fc05861e7bdcf3d979fe36437f6n/aHeodo
2020-09-29DAT-2020_09_29-04573.docdoc 741e14a66eb965aae9fcc7da6bc90f096cb91d8492405b53d81e9d13ea0100ean/aHeodo
2020-09-29rep_E18399.docdoc a6ef533329e673aa63f98fddaacbde879cfcf93744a97276cfc81a4afd951526n/aHeodo
2020-09-29doc_20200929_WK032510.docdoc d4070892dbb382addf2108f374b83c284d6dca54228bcf4640949457ee8ea951Virustotal results 22.58%Heodo
2020-09-29inf-74900.docdoc 1ef1e4c64715bfa17c60820cf15f98d2934c38911c568e96b65890caceb71651n/aHeodo
2020-09-29mes_2020_09_29_9058027.docdoc cac06b51ffab60f06e2c63890ef00ee519095bdb694fcbf45f78ee1b0e6607fdVirustotal results 22.58%Heodo
2020-09-29inf 20200929 769656.docdoc 0fecfde61b7f7f3534c0bc1768d898beeef96c53f2ff2aea67835319b4c5fe91n/aHeodo
2020-09-29rep 2020_09_29 721371.docdoc 5c9b61e7c24cc5d8b1dfdced53ee0347071660ed454abca451ec9ef2c1dca7e1Virustotal results 22.92%Heodo
2020-09-29REP-955.docdoc 4d091ba4a73f59285de8614c58ec636232663ec3cbefe997d048e7665cbee478Virustotal results 22.58%Heodo
2020-09-29Inf-0273332.docdoc 8d7aa0754f6cb75c8800dc99f97929a455ae099b93194d99baca1e8d3041e1aan/aHeodo
2020-09-29Untitled-PF175250.docdoc 30490b4f611eb7e7e2458129bda3265befe37d0133dba94e10cf07c5aae28de6n/aHeodo
2020-09-29List 2020_09_29 D520.docdoc d74541eb9ae2e450346919e6c358c3c93aa1e20e164200469e004f4c0362ae02n/aHeodo
2020-09-29doc_2020_09_29.docdoc 737581768b31688c68600715396c62c40e52d4c5cde3e8660a7a63a048aa582an/a 
2020-09-29ARC R918646.docdoc 950e1826d1acdd8daba1b68f52bcae990b7df66b1fa6ad09e9ce8e65a83e84bfn/aHeodo
2020-09-29MES-JLB417.docdoc bd40e03f49d87ba4aa6366400edcdc932f81cc11fe0ddbadf1ba4c64981d421bn/aHeodo
2020-09-29Rep_8814845.docdoc aaae02c00be28a6280b6db90111c8b12ac88885adc40778feec5d53699f62deaVirustotal results 40.32%Heodo
2020-09-29file-2020_09_29-0529.docdoc 3928efa7c8b5593d40342ecd2411be994dc63bcc0a56f74ad10e1602d64cbf5bn/aHeodo
2020-09-29EWE5213-20200929.docdoc 2c16fca27937e2766a07443bf96260808f79450a1e130e0a0fdc2649dd940d7bn/aHeodo
2020-09-29Untitled_20200929.docdoc 2af6ee72c4fc0cd1ff72c28e91edb4b7f854dab317591ca48ff21589c7f65fe6n/aHeodo
2020-09-29doc-2020_09_29-6995028.docdoc 0543a908de650442eb28c0b24cca2680f9d81f997991401a6dfa4c00a5a0d27an/aHeodo
2020-09-29Untitled_20200929_0604.docdoc 1ce10d907f4929d568a03b5336386ce51b7bb4cb3d4814bca951bdcbb11a0930Virustotal results 40.98%Heodo
2020-09-29Inf-Q748.docdoc 95a9108c90532e5441a2a190e4ac948e678c8832f48dded156d4b86b32ac87bbn/a 
2020-09-29list 551608.docdoc 6e47d9d4c5c0c5d99f35c5050daaa60384cc12611008a724b31054a3f8378835Virustotal results 32.26%Heodo
2020-09-29888896-2020_09_29-8337680.docdoc 6204f39e37c6d400ac0f2645485382c118deedd3e22577637227b3ecb0253399Virustotal results 32.26%Heodo