URLhaus Database

You are currently viewing the URLhaus database entry for https://hotelunique.com/cardapios/browse/KWtGnB1Zokyf/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:630350
URL: https://hotelunique.com/cardapios/browse/KWtGnB1Zokyf/
URL Status:Offline
Host: hotelunique.com
Date added:2020-09-30 14:59:05 UTC
Last online:2020-09-30 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-30 15:00:05 UTC to abuse{at}hospedagem[dot]net)
Takedown time:2 hours, 46 minutes Good (down since 2020-09-30 17:46:55 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-30List 2020_09_30 GMY6765.docdoc 4b04228efdc9faeab3a76db865b9770cec91902332f6517d3c1de9b188252e7fn/aHeodo
2020-09-30Rep 2020_09_30 J510.docdoc cd4e40d3b639c11b89ee51b90d700ac2d0036337b64bf354c10703b23923e621n/aHeodo
2020-09-30list 2020_09_30 O43684.docdoc c69355e7d2f37fb8a04b2808e24c6abe076f296b1063e2fa5eadb435d4105da3Virustotal results 22.58%Heodo
2020-09-30arc 20200930 EB5441.docdoc 1b93f7deb5b93ef4a3a9bd0606358023d2581ce67f73b0dc7ce582f209a2cc87n/aHeodo
2020-09-30UNTITLED 2020_09_30 N5268.docdoc 028661b4068147b441bb85f54020e1a03290adf9a56a2fe4407e68509ec7a812Virustotal results 22.58%Heodo
2020-09-30Rep_2020_09_30_5671.docdoc 88b3cbf0d3014e9fc3a1a67822f9ecdfe4524c239d65cbaac6cade063e875415Virustotal results 22.95%Heodo