URLhaus Database

You are currently viewing the URLhaus database entry for http://nordestedigitalcert.com.br/megajoule/LLC/kvysKYKh5D4lBdj0I/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:698661
URL: http://nordestedigitalcert.com.br/megajoule/LLC/kvysKYKh5D4lBdj0I/
URL Status:Offline
Host: nordestedigitalcert.com.br
Date added:2020-10-15 21:50:09 UTC
Last online:2020-11-18 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-15 21:52:03 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:1 month, 3 days, 4 hours, 50 minutes Bad (down since 2020-11-18 02:42:17 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-17Inf-20201017-2349652.docdoc 294c6f87d8514072c30988bd55dd643c5c018b9f9ae05b9db1a97d034b31e092Virustotal results 54.84%Heodo
2020-10-17Dat 20201017 82322.docdoc cbabf68dbf69bbc9e13cf1c4decc549416db53379348b45da4b5fedff65152afn/aHeodo
2020-10-17ARC-2020_10_17-YJY8765.docdoc ba1aeafd7f85b7fe6d27c96a0fc87b47c20150c8adb74124716adeb6ef26a98bVirustotal results 53.23%Heodo
2020-10-17file_2020_10_17_192.docdoc adbad3c068d4497ae8a6a18056cfc39fb152c2085f694dcace8e772cc1867f22n/aHeodo
2020-10-17Untitled 20201017 582012.docdoc 90e7a0a9f215c30d103034801a89e4b61554c48bff10a98df0d09257cfc716cen/aHeodo
2020-10-17List.docdoc 971e189c279099a876618c3226ef35e5afc62b91daf3b8bde466a424fdfaa063n/aHeodo
2020-10-17MAA08489-20201017.docdoc 4885a6fe3e6e3cf17f4b9c157b848115b2b51fc4b8e3e478650c6d8401062476Virustotal results 51.61%Heodo
2020-10-175734_2020_10_17_C130.docdoc a2694945dbd5fc7e3bc4801eea70491938e4e9426b60bd80625312d3f3a7962en/aHeodo
2020-10-17rep W587.docdoc ac172c6a7fb2f8004f019c9dd8d7400f660d58187ed3adcf2502c5effc15271bVirustotal results 51.61%Heodo
2020-10-1762356866 20201017.docdoc 73a83fd3188295433015762cab772d1fc554aad7da08da7e0373ba66a0a9ba38n/aHeodo
2020-10-17Mes 2020_10_17.docdoc 1e52bc38ce5e8a3c4da25a7c7e4d8169a31fa22bfdd9e43759ff57d25b40db02n/aHeodo
2020-10-16REP 2020_10_17 158444.docdoc f248106a010a23404bc680541ff725431478f2a3a368efc846d4bee707af6c22Virustotal results 51.61%Heodo
2020-10-16File-G64065.docdoc e6c583d968049b133209f01abf2a46bfb3fdb4abd68b5f0ef3e74881c438d1c5Virustotal results 52.46%Heodo
2020-10-16file-2020_10_17-U568.docdoc 622c685b93473b545637dfeced3852e83ae18b3144058f11856f73eb76b5cdb3n/aHeodo
2020-10-16List.docdoc c5480c5bcd7c9b06e744ebfca49ef98e45da1200c5e3762d6b47d9825189f3eaVirustotal results 51.61%Heodo
2020-10-16File-XC262.docdoc ea0d3c6f16a0b6c751479d44c06e9fc4ee4f7e47803b008c8ac0ea1ae93f5171Virustotal results 52.46%Heodo
2020-10-16785295 ID1015.docdoc 2ad3ea37b37feb3b6b0640be566089ddd917334bf3033b741f48bd508a252530Virustotal results 51.61%Heodo
2020-10-161406OQ_20201017_189966.docdoc 49cdf52f6974aff3348c2c2ddb75be089f05da06c6dbc7f5b28fb6b5ee4cbdfdVirustotal results 51.61%Heodo
2020-10-16dat_975.docdoc 7440c2b0a8f5a75b09af167e9259a5fb5f7f449e9c496ccfad8f5675abcca4acVirustotal results 50.82%Heodo
2020-10-16Arc_JRN887.docdoc b015413e8bcf3517a1c413b7e32d1c689a414890a8158ac80e9d53b759cb488dn/aHeodo
2020-10-1691203QLY 2020_10_16 FKS10400.docdoc a0851102c87a910c627e0d68a5e41dd1b448b75e66fab4bb0623715d71b6a43cn/aHeodo
2020-10-16ARC_5777023.docdoc de085b2aa71406dd284396b50a4931dc24c0648c58b6b5f8dc22b9d7b2d491d7n/aHeodo
2020-10-16Untitled B916331.docdoc c9590b8ccebf3eaca2e64fc27644c7e7a3966d001c3168c1f56c9e943bc18360Virustotal results 43.55%Heodo
2020-10-16inf 5048837.docdoc 0780b14cd45d98e9ea1e46dfb3aaf2ad043e5298642516f4170f4584b3b6273cn/aHeodo
2020-10-16Untitled_2020_10_16_854952.docdoc a4aac0dd8e4cb6d02d7af6f4e360585829d4b18d1c32bb69e09727ec2f0cb8b5n/aHeodo
2020-10-16UNTITLED-880.docdoc ce8eeac08f63bcfb0fe4c6574a73f4cc03efd10f02317b4ea6a191b30a12f53fn/aHeodo
2020-10-16List.docdoc 401d779418c44a615c7af69fc4ae42d2a3c3ed5424abde73650e9ece911cd866n/aHeodo
2020-10-16arc 20201016 601079.docdoc 3b61674adab1cb0ec78733ae1e4c07cefd9023e0295b9a7067e7b38ba35cb107n/aHeodo
2020-10-16Rep G354221.docdoc 108ba2d20137932ffdcb0fe50a0e4c7358b0972b565154ed5b8d661ba21f20b5n/aHeodo
2020-10-16LIST 2020_10_16 QI10036.docdoc 2233585a811938430dc9f44a0211d0c781e120f6945dff7b8644167f39e47769n/aHeodo
2020-10-16Untitled_2020_10_16_J75275.docdoc b94b648b652abff57d8cabcb2221a3a5d9f6415b3e93d79c587d43b3118ebf76n/aHeodo
2020-10-16FILE-2020_10_16-746073.docdoc 64f473a1579450cff494a6513d44604c3b82fbd067bbe73c7883a6874d2d1073Virustotal results 32.26%Heodo
2020-10-16Attachment-MWW3038.docdoc 490f9995f7e3165d9b984a664d107b8cc03f4c9410c67a3ed205f55a6abef911n/aHeodo
2020-10-16inf 2020_10_16.docdoc fd54878ba1ab07b8293894762ac0087df9caab94c768ece743e345eecb287f16n/aHeodo
2020-10-160725907 2020_10_16.docdoc cd682e6d98ec2c8e71a88acdd8883a132f4f20d0eaf1f02b21e878482c181834n/aHeodo
2020-10-16UNTITLED.docdoc 950a860cc010f8e402b3f3cc3aa827a37dac110703b9353d744f0dcc4dac1ee7n/aHeodo
2020-10-16Attachments 20201016 JQ56715.docdoc 23321ef2552ae21809b21f51b4380c31d17917222fe373a59d73500eedd99fdfn/aHeodo
2020-10-16Attachments-20201016.docdoc c7eaa50533057cbdf24f415cb8d041b1f240705fb1962b333ae94ab576f19ec3n/aHeodo
2020-10-1669841-2020_10_16-QL87373.docdoc bdb0f1cdc421b438781b96c48d7679057728f3e3aa13191ed7e4190808678fben/aHeodo
2020-10-1661093SE-A06100.docdoc 15c9b8c96805cb5eec520765084f122d2d992f581b1e885ec67341e7b7954006n/aHeodo
2020-10-16LIST_N95346.docdoc ee4d4e24151aef1b3547baed739100201c846a3dd78876051542eca76835072eVirustotal results 48.39%Heodo
2020-10-16Doc 700.docdoc 5122b41d64f8d986ea881b2cfe34337e9998ba36ae9b854c680c0fdedd28968dn/aHeodo
2020-10-16File_2040991.docdoc a575516d48e96ddfbaa7108fdf2f06fe978074c0a71ff7162c8631b757b8cdc1Virustotal results 45.90%Heodo
2020-10-16UNTITLED-2020_10_16-BE71537.docdoc c29e0628b36f838a071e5cf4bdca821647bdd53dab36d762eb02a680f0bf5d03Virustotal results 41.94%Heodo
2020-10-16LIST-2020_10_16-60944.docdoc 878bb13d04d93f1209ba23990aef838329f86ff7fbd86d5bc6bd24da81dbf0f7Virustotal results 46.67%Heodo
2020-10-16Doc_20201016_OU6436.docdoc e1fa8ab1bc95406a6ca6938a72337e0b9206e90dcd5517bdcf36c487c5a92bd0Virustotal results 41.94%Heodo
2020-10-16arc-KK656.docdoc eecadd7f746afdb1f94c964c104b0bb340a550b78887329ed6a982be9d4455f2n/aHeodo
2020-10-16Dat-20201016-GT431836.docdoc 40c27425399b1c51747bd4ecb6dbea00c530fdfc940f89bebc487d1cc2b810adVirustotal results 41.94%Heodo
2020-10-16UNTITLED 20201016.docdoc 77336efe637e5b6480a97a6764e16c75424a6c44345993fbc87a04fdb1a4437dVirustotal results 42.62%Heodo
2020-10-16MES-JRS154863.docdoc 3be03cd4738ab3f977af3cfea372ba8def5e7c4515743292a9d45f7a39be67edVirustotal results 41.94%Heodo
2020-10-15Dat.docdoc b060160af00ceb90812eb219ac8e72258f487365866f64374c5786171cd6c947n/aHeodo
2020-10-15dat_20201016_03296.docdoc 39f443a944e3114cf6c84fcd6c270f6f8ed42bd1ecf833189fb7e9a96c8fdd2aVirustotal results 38.71%Heodo
2020-10-15Dat 20201016 KBW151.docdoc c18c4a8b5fe16fdf880fce5cb6e6d6fde0c9d494ac8edd7ba5c45a27c708ddbfVirustotal results 42.62%Heodo
2020-10-15List 2020_10_16 UD952391.docdoc 38852b2a879c31c5f6a1cb8ad7874b20c2142d496ad73f9901c2088d2e006ed3Virustotal results 38.71%Heodo
2020-10-15526BX-20201016-RL308.docdoc b6a29fa485514c193ba2a233797415547a50dccb1b774ac2c80ea3809d4dc7aeVirustotal results 39.34%Heodo