URLhaus Database

You are currently viewing the URLhaus database entry for http://weblabor.com.br/avisos/Scan/88ctHxdvxivd/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:620423
URL: http://weblabor.com.br/avisos/Scan/88ctHxdvxivd/
URL Status:Offline
Host: weblabor.com.br
Date added:2020-09-29 03:12:06 UTC
Last online:2020-09-29 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-29 03:14:31 UTC to abuse{at}hospedagem[dot]net)
Takedown time:13 hours, 33 minutes Good (down since 2020-09-29 16:48:28 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-29ARC_519.docdoc ebe5c60d0f35c3d6f839899e01aef73d251b2ba41e0d7ca848d1302b1c9906ecVirustotal results 37.29%Heodo
2020-09-29INF_20200929_DA244830.docdoc 70be43689fc27aa0f064d7094d74a13f025c25c6174bce02f75c8953a39a661aVirustotal results 37.70%Heodo
2020-09-29REP 20200929 87897.docdoc 1ab6ea3211a635958d00921b5e82738eeb96458411bffc8d670856fb72358019Virustotal results 35.59%Heodo
2020-09-2985956-303.docdoc b9c59ca726a42938b8805f8ea4627b5e74d5311faa900d6281e185b7eb349bc3Virustotal results 37.10%Heodo
2020-09-29Inf-20200929-ZUO772784.docdoc d9037b8ee35fc9032dd2409ffa7ed2ec6c8edec5afc7de5429b4daead9664d45Virustotal results 38.33%Heodo
2020-09-29Rep_20200929_42532.docdoc 040a967bc2dc90348aa95f6df260fa76ccd0ea9904f77ca8c6d49fa3602c50ffn/aHeodo
2020-09-295051205_20200929_1325.docdoc 76b5f9e5cb59fcac0d2e8109a019fc56b03e5a26b1a0406ffc15f63dbd6514ebn/aHeodo
2020-09-29rep_20200929_T887664.docdoc 66bf348e1132fecc6d71e70f931f10bc3525c9c9705b152e16203c24d036e25bn/aHeodo
2020-09-29LIST_2020_09_29_CW11020.docdoc f2aacc65e0ddbd8675ac16dea2a6da55e467167f162561a6a85125616684a431Virustotal results 30.65%Heodo
2020-09-29doc_20200929_Q18004.docdoc cacecb9a3497441868f40dde360118e2651edb458003d9cc250a259213588127n/aHeodo
2020-09-29439IL-2020_09_29-VDO44338.docdoc 648be0aa3c7200ffc546fb744d1cafb15c159dd273a13afc064ce340d02b608fn/aHeodo
2020-09-29mes KCW925637.docdoc 5b1798854e2ba3b74bf2987aca9b603ab1913a6d60f99bb38a660270a2ea9f3aVirustotal results 22.58%Heodo
2020-09-29Doc-2020_09_29-P262224.docdoc 32092e05020bf5b9068a781d7bb994885d071fc05861e7bdcf3d979fe36437f6Virustotal results 22.95%Heodo
2020-09-29Attachments PE612.docdoc 975629f1b32fa30e24838e8b9492eb9f14362356a21e2af08a1fd12a835bc9fen/aHeodo
2020-09-29arc_T365492.docdoc 8f3f64a249482b0a6dd6361950555bb3bee2b9be6a613991d66eb5e221573bban/aHeodo
2020-09-29arc 20200929 70758.docdoc 5f6f6797c37bee110a5304856e2cd815e090fb9b40e67a1392d3a4d7310661d9Virustotal results 24.19%Heodo
2020-09-29doc_335.docdoc 8bd3fd10d74f4f0f7b188cc14cfcd019dd185b74ceae513d0f6e3551984e88aeVirustotal results 24.19%Heodo
2020-09-29UNTITLED_2020_09_29_044.docdoc cac06b51ffab60f06e2c63890ef00ee519095bdb694fcbf45f78ee1b0e6607fdVirustotal results 22.58%Heodo
2020-09-29LIST_20200929_151550.docdoc a093583bd5eb5b721b5ea9b8e639aef021764fbd132bd523a861cfce6a3eeec6n/aHeodo
2020-09-29File 2020_09_29 06474.docdoc 5c9b61e7c24cc5d8b1dfdced53ee0347071660ed454abca451ec9ef2c1dca7e1n/aHeodo
2020-09-29arc_20200929_387746.docdoc 3406b7d18aec4c1ae48b1ea830fe5fb442d480fb1a6a5e3b5121d01f796cedb7n/aHeodo
2020-09-2933367 8010563.docdoc bc70f983f6aa5504724edcc00425cb54b3c6bba19d0e1b9d975107af678f841fn/aHeodo
2020-09-29FILE-2020_09_29-Q353.docdoc 7445b05e7a3c94e1d62297061c4af67e79100fbf39fab821cd62f748684996ecn/aHeodo
2020-09-29Attachment 20200929 943.docdoc 41e163d85fdd54b56a26d8ad9df6c258431dbf5584a1515b5050eba93037416aVirustotal results 22.58%Heodo
2020-09-29file 6659475.docdoc e4d5f99d00e84f5a06038d8f40ce5025786f6bb2c9d618cb12b86359d8acf7d3Virustotal results 24.19%Heodo
2020-09-29Inf 937.docdoc 63a579750829b23e29d7af140f466d2120b814721f7071d50652242ed7c41dddVirustotal results 24.59%Heodo
2020-09-29doc 20200929 C896137.docdoc 7d083b80052d8095b54f8b51ef125ea68f5981c34b0d562843708e46dc40ba8cVirustotal results 42.62%Heodo
2020-09-29list E0244.docdoc bd40e03f49d87ba4aa6366400edcdc932f81cc11fe0ddbadf1ba4c64981d421bVirustotal results 40.98%Heodo
2020-09-29arc 2020_09_29 844975.docdoc 831c896b4d6b4ad14823c8d4b0aba608b79c4198ae79804ef5843c2915dd6881Virustotal results 40.32%Heodo
2020-09-291289SPW.docdoc dffe6b12754772da4ccc5aa7c07425a752a3680f801e0df24fc609e879e83e8cn/aHeodo
2020-09-29UNTITLED_2020_09_29_K9352.docdoc 27be7747d9f1e8080ba29e9d11d4623e75d529133896b0c741ad580a77524be1n/aHeodo
2020-09-29doc-07001.docdoc ddc79b5cef58dfcaaaed830ddccce3755acc13c2ffdedbbf3241cc6b35d3358cVirustotal results 40.98%Heodo
2020-09-29FILE_20200929_745.docdoc b9f2ef3014df3e4b77d60799f13cad1ca487bbba30542ab3ae5f1e7018633c6bn/aHeodo
2020-09-29File-2020_09_29-2845793.docdoc a172322135f760ced398ed29bdc125263aa20fd42391c0ff1db2c8d29a9fd5can/aHeodo
2020-09-29arc_2020_09_29_864.docdoc 1ce10d907f4929d568a03b5336386ce51b7bb4cb3d4814bca951bdcbb11a0930Virustotal results 40.98%Heodo
2020-09-29REP_2020_09_29_FU31451.docdoc d2c7f98bd9ddf170cc94395ee616eee8481b5484e7e1be8648984a357345b673n/aHeodo
2020-09-29UNTITLED 2020_09_29 810466.docdoc 15915a01d4795b2cdd261061864a25011d8856f97865e6538890f9259958392en/aHeodo
2020-09-29mes-20200929-7162.docdoc 0028d5cab5558cff8e7be74cc0522d68dff4b695f5bf9e8067f2b5c61b0c05e8Virustotal results 40.32%Heodo
2020-09-29Untitled 20200929 YOU22006.docdoc 92f8bccca3a1b18424b20a4cde47574b9446c3cc35c59bd7189cfba6b47f6d6dVirustotal results 40.32%Heodo
2020-09-29Inf-2020_09_29-A0679.docdoc 20d036ecef1bdc268854cfbc558d4aa3536c41caf65312445a2c9e779ff04b9fn/aHeodo
2020-09-29ARC 08380.docdoc 4dc9418d6c5b851e2985dd79fb58ad409a9442d22dfa9e5c9e2c4b475bd8f02eVirustotal results 38.71%Heodo