URLhaus Database

You are currently viewing the URLhaus database entry for http://crupie.com.br/CSS/Overview/NGufqE4G0n0W7KD2j/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:622924
URL: http://crupie.com.br/CSS/Overview/NGufqE4G0n0W7KD2j/
URL Status:Offline
Host: crupie.com.br
Date added:2020-09-29 12:43:22 UTC
Last online:2020-09-30 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-29 12:44:14 UTC to abuse{at}hospedagem[dot]net)
Takedown time:1 day, 4 hours, 10 minutes Poor (down since 2020-09-30 16:54:38 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-30Dat-2020_09_30-B302.docdoc 913f98172cbe570c40c669297d3e0fd52e3109a2433467ddbca9e443d7ee438an/aHeodo
2020-09-30INF-2020_09_30-823.docdoc 0dc8b5cefd0791007bbc51f60516c87fd6d938fe4d44c7f7249e47f38cc3c73an/aHeodo
2020-09-30LIST 2020_09_30.docdoc 71982d0bf9cc749ec9a19c977e29cd16ec613b3a2a3305de01a2c0f319de5f52n/aHeodo
2020-09-30MES-2020_09_30-5622954.docdoc ea0313fd5620c355be450cf83271f033601347eed4e661eddef0fbf152e5808an/aHeodo
2020-09-30arc_2020_09_30_7681615.docdoc 256502742604a44a66dbaa6aa7212ceaee9208fb4d81a2bfce33ca99cf8bf91cn/aHeodo
2020-09-30FILE 20200930 FM4861.docdoc 9849bf91ef029b6a492bd6c1b39b888e264d7b14a1574d64502706cc65d51576n/aHeodo
2020-09-30Dat_20200930_4358233.docdoc 7d295d64ccbe51777d0ddead2fa213c37017ce33adfc3ab35ed81d988315f756Virustotal results 20.97%Heodo
2020-09-30doc.docdoc 11d48758db4b97fe1625c9d80fadcb112fc27ad3fc1bf4028fd1e8ff5a3eb9d1n/aHeodo
2020-09-30ARC-20200930-SK449.docdoc c2edb2ad04c0e8b248b53ba0f3cc0abd7942c1ff70d3f3b697af056d6dda904fn/aHeodo
2020-09-3088705N_RZY5302.docdoc 05674b023509b9764ea5b6a44beb92fc22f3e2c6ec3f1e8e96723fb0cf522056n/aHeodo
2020-09-30UNTITLED_2020_09_30_2792.docdoc c150b29360cf15b5be8f3cfba987464841892845367de5fc5985678600998bb3Virustotal results 21.31% Heodo
2020-09-30file_20200930_RC78209.docdoc 740e43567145812a52fc449cd0b44e6aae69157aea605122c661688f820eb440n/aHeodo
2020-09-29UNTITLED 2020_09_29 C43647.docdoc afe621cd44cd689287ad44e9d1728558887078487d74729709bf5e332f7f99d2n/aHeodo
2020-09-29List_2020_09_29_062.docdoc 8002caa170e531cfdab75c3470478f6a2a7e1324b9ae2e13fcb1b3e4e98494cen/aHeodo