URLhaus Database

You are currently viewing the URLhaus database entry for https://www.lvl.com.br/wp-admin/FILE/zc6k6bsf/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:722704
URL: https://www.lvl.com.br/wp-admin/FILE/zc6k6bsf/
URL Status:Offline
Host: www.lvl.com.br
Date added:2020-10-20 09:22:10 UTC
Last online:2020-10-22 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-20 09:24:12 UTC to abuse{at}hospedagem[dot]net)
Takedown time:2 days, 5 hours, 15 minutes Poor (down since 2020-10-22 14:39:52 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-22INV_VI7LL7GZ.docdoc 34b4f674b3fb2522db0c058e836245655b4588f4bd0b35b5c2bbfcc3bc75916dVirustotal results 49.06%Heodo
2020-10-22BAL_13384614592848439410.docdoc 7b89c410abec246746b6cdf315ae9239982f1a31e0a7629d46fa1e0dcbe7329fVirustotal results 46.67%Heodo
2020-10-22PO_10222020EX.docdoc 75c8ade3a5fe3b9731e5581729dd4a6d9c459624b08730109c7be0b42a7bc424Virustotal results 50.00%Heodo
2020-10-2227V76AHQ.docdoc 6f75f81099546304948463f0c2305a97be38e42d347794714ea76831f8f507f4Virustotal results 48.39%Heodo
2020-10-22WQ2291218160NT.docdoc bfcf012480833949d47a52c43762fccfd26a1785b134d1da9a84a2f91bca0778Virustotal results 49.02%Heodo
2020-10-22KVXJ_PO_10222020EX.docdoc a7b558ea557788c16a9c93a7aa0cac42b96b2fe92e02c26f4c5d17c1b1da0291Virustotal results 44.83%Heodo
2020-10-22REP_GCP_100120_EWW_102220.docdoc 4876b24f79e4db4a3df03efb480f32506ce94c7c60c1410d47b6722a66765552Virustotal results 42.00%Heodo
2020-10-22FILE_PMY_100120_STL_102220.docdoc fe681aba1adcf7e82fd0daedeb3af000c89d34693b1dd0022c273e936ed660cdVirustotal results 48.15%Heodo
2020-10-22REP_ZK6LYDQG1H.docdoc 8cf9bf37fe3de456cee48cd50ac6487278290ce4038eee214389512625297016Virustotal results 45.16%Heodo
2020-10-22DOC_82896495710436087036081.docdoc f95fe8963e50544c1592cc934df0110401e6385dd0d6d75e30db56e9fc72e33eVirustotal results 44.26%Heodo
2020-10-22BAL_2KIJO2Z.docdoc dd44fd55293b9113d93ec32356861c6813ad6c23d399625147eb4ad930d71f24Virustotal results 43.33%Heodo
2020-10-2249596552.docdoc 2da1ed7b630f4a606c6c65a41dc9c852015d64174113023eff5a63c64f5eac0dVirustotal results 40.68%Heodo
2020-10-22REP_65828352.docdoc 476b69835ad34811317226c4b0d9c78525fbb9770f4dc6c649da167a65359582Virustotal results 40.38%Heodo
2020-10-21AB9486322960UH.docdoc 0ff220d90538db68f12796da43439ff4b8cfa6fe238bf19c8da81c8463f2c4ebVirustotal results 40.00%Heodo
2020-10-21DOC_ND1586218925QU.docdoc 890535144da2084ee8e9431e6521be9719100cc5bec7679a4d7bdce3763a692cVirustotal results 41.51%Heodo
2020-10-21XE5116212749QY.docdoc d9140a29ffca02355e8b885163a54d58bcc095fafb564a9d8a8689b4ffdfde4fVirustotal results 40.38%Heodo
2020-10-2133138934.docdoc 33e33d42123328ea3e0a1826ed952a84ba6a0972e21c71d6f9b607b1d1fef8c5n/aHeodo
2020-10-21PO_10212020EX.docdoc 0a5d824ca0ad50ddefe5b2ec81f933ffdbcdbe615da5a32ae460f4ae70a85be5Virustotal results 42.31%Heodo
2020-10-21DOC_31270814.docdoc c986e90bb2d441b1ef1a8a5669f5f0ce41463363649532b34e712a86bf62b844Virustotal results 29.03%Heodo
2020-10-21BAL_PO_10212020EX.docdoc 8e07255af4832bb03936bc032f7fd259b6b71374752c924256397c8ab56d2e09Virustotal results 27.42%Heodo
2020-10-21DOC_LWT_100120_BEJ_102120.docdoc 99d7234dc759302b6b38de85547762ca5a46358e93508509b534755c9af8c309Virustotal results 30.19%Heodo
2020-10-21INV_PO_10212020EX.docdoc 05c3a6aa1d912bfb9f1a5d70ed968c16b5e36f90c738ecd3c40756c2b3c48f26Virustotal results 24.59%Heodo
2020-10-21E_GI1526949168TR.docdoc 638d2c28c891f1eb997a450dbdc2f6f1a83b000d7b617d3000cf2b937275de99Virustotal results 20.00%Heodo
2020-10-21REP_13499615609802688827845.docdoc afaa3e615a4cdb709e0914026d5c1d07892391f9e7a2540e8f35da1b810515daVirustotal results 20.97%Heodo
2020-10-21FILE_XLQ_100120_QXW_102120.docdoc a2767289b35cab514b56d67ba9c1c02f16035f42f8a1f65307e71cf9d9175206Virustotal results 22.03%Heodo
2020-10-21P_98193474.docdoc ffe949d9c7b48175007f45137edbfd9aae251ee4e1977a547bbf506434dc8729Virustotal results 33.33%Heodo
2020-10-21PO_10212020EX.docdoc abd94a7b58ada746b22d9d6a4ef2b3847deda4d5569325459951c0c7f3b2a355Virustotal results 33.96%Heodo
2020-10-21DOC_013142420350.docdoc cdf08877df82aef07518f10414f3dc1ec0bca6a662ee6191b7c76105bb51a0b1Virustotal results 31.15%Heodo
2020-10-21REP_IZZ_100120_LKR_102120.docdoc 0ef3eb571df8fcaa4ad2f23f3daabf1bcbc17ee41a42913f623eaaf788f5e04cVirustotal results 30.65%Heodo
2020-10-21ML2777093822KM.docdoc 692404c003439a5b699524594e4e229353b541469c40ff25a67e621c94c64c72Virustotal results 28.33%Heodo
2020-10-21P_FT8MCYU.docdoc 7fd4239f8f25bb0287746f554cbdffc534ced3346467f2a882722772a9d44d34Virustotal results 32.08%Heodo
2020-10-21BAL_KGT_100120_CDG_102120.docdoc 64c0402c0b906a218b1e4c2101145066a57b5a034a16a82957081f8ca15b4763Virustotal results 32.08%Heodo
2020-10-21FILE_91584179834.docdoc 0564c8bd86a30a6d5f73adf8e176a2b82925865e9ab188708c901e865405bc34Virustotal results 27.87%Heodo
2020-10-21DOC_SG6461675627UA.docdoc e88388bec3164944678627db062b753e76b6f7f710a9fabc43dfe69e7df2f366Virustotal results 27.42%Heodo
2020-10-21FILE_PO_10212020EX.docdoc 71e55ad14abd213d5627b65f8f045b2c9337c629a556868c692376c331d9fa58Virustotal results 26.23%Heodo
2020-10-21FILE_SVQ_100120_TWZ_102120.docdoc 3c7b26a013548adeebf30936453b373c34b920df67fb1b135775f0ea8ba32341Virustotal results 48.39%Heodo
2020-10-21FILE_03584106.docdoc b7269623a45db722954c9aa554be08c14fb9b6cad622331bb2d5c35e17ca9be9Virustotal results 50.00%Heodo
2020-10-21REP_WKU_100120_PZQ_102120.docdoc 44ba6008506a7673feb84fe893ea958153dae8b82def146db7f497d3537bfbceVirustotal results 48.33%Heodo
2020-10-21INV_963338780.docdoc 3aeaf837500d4e3ce129a14cbc032effdf4ca020a79228e2c5a90b053c7d8934Virustotal results 48.39%Heodo
2020-10-21FILE_NVS_100120_IUQ_102120.docdoc 1996ba49c1e42e54c8cd2717756d00e05f3290d1be0d606dc11a3ae0f556ffc9Virustotal results 52.83%Heodo
2020-10-21PQD_100120_CDS_102120.docdoc 7f908989bf2f5cff2696b9acfd100b4b53d53710a1ee8b56aff626fbad9ba829Virustotal results 52.54%Heodo
2020-10-21DOC_VXN_100120_ZDW_102120.docdoc 74062d2800c0daf15d47d761483d2279e98ec058f5999f708bef73eee0c514caVirustotal results 47.17%Heodo
2020-10-21YTC_6GYS5B5.docdoc ff560f270317afc9d31e1eae55c277c99bdd45f9fbd3a2dc44e8929a25ff065cn/aHeodo
2020-10-21NAG_FST_100120_FPT_102120.docdoc fe1e5c66a4990cc515e5925db68def9f29f1893d9c6d3fa6b47e05f5c5f618ddVirustotal results 46.55%Heodo
2020-10-21FILE_91189172.docdoc 56074bdd23c71846faa6ab17e8fc8485ce763ae329af8573a9e877dd6ec6513cVirustotal results 49.18%Heodo
2020-10-21INV_QJ8267466810TC.docdoc 230fc1531e7d113ebf83ea8dad03120965c293da08a2ae82305ac9cb61efe7b8Virustotal results 47.46%Heodo
2020-10-21RB_1297962153401.docdoc 7e61ca1b65ed5f86ae7603431d7296593ded64f620465d59ad3a62e0f1bef5cfVirustotal results 45.16%Heodo
2020-10-21BAL_00815166.docdoc 25d12cabe3d39e681a0b8c9ac88206110f66071089e92667ee0fed7bc917e918Virustotal results 36.54%Heodo
2020-10-21OR0415817433QV.docdoc 076c6a22ade8278559bc05b10009c61e2bea31bec02ae5d2b92466600ecbb446Virustotal results 40.35%Heodo
2020-10-21DOC_6970324685326.docdoc 8db61b871aac2949105b26c1ca2a22579e3b3d6e99aab20279c3bbea5dc87b8bVirustotal results 43.55%Heodo
2020-10-21BAL_PO_10212020EX.docdoc 2465db836fb8ce33c72ba9c55528a00a290b770a2bb977ecaed539b453c1211bVirustotal results 40.38%Heodo
2020-10-21FILE_MX7524399363HK.docdoc 7b59e4314d2b1bbefd045815d54be5bd19315bcd13e3de6816a36bfd0930e032Virustotal results 39.62%Heodo
2020-10-215104726836950977688.docdoc fb83f2eec33aadc1229efe5c44276c92fbf59ce6dfab221071a61ca25c694a82Virustotal results 38.98%Heodo
2020-10-21BAL_KPP_100120_RPL_102120.docdoc 17ac0ed02b6127efefaa0cc936604bc12947c394e902bb8bf88e37b6f0829d9fn/aHeodo
2020-10-20INV_3K8KAPJSX.docdoc 4ca0b870975a5eb49d50074ff6d1f7b8481ae723a8aef2ff922accd28ed9a96dVirustotal results 41.38%Heodo
2020-10-20REP_FI7747771883DY.docdoc e84e998b1964b831c52431400e877b852798d9749125555b528ab8a2e17ea5e2Virustotal results 39.62%Heodo
2020-10-20FILE_48322412.docdoc 8cadf5fc31643a1acc9b991d110e039e7e0520e94783c61d9caf5ccb2481915eVirustotal results 44.64%Heodo
2020-10-20INV_XPZ4GSHR.docdoc a22833c512c589e2bd324e3f7287dbb7f27538e8344cac7ec47568883b61bcd5Virustotal results 42.86%Heodo
2020-10-20DOC_67658658.docdoc 6f38eadeaa66f8291d39404657f414c63a1a29aa2a8368ad16f536242f8acc65n/a Heodo
2020-10-20E_EKB_100120_RSZ_102020.docdoc 0cc0e53f93e28f521e6741dd09848e105ecaa03babb51229e44c7bf9bf6676e7Virustotal results 41.94%Heodo
2020-10-20INV_109293746716.docdoc 164a5f81da246ddcc51e8c5902b47c7c000b8210eba8ac783a5ef45aafe22aaaVirustotal results 39.29%Heodo
2020-10-20BAL_19189353.docdoc 621a14c4ff1196a5f40b5abd1aa47738a2855dcb1ac4f16c7e577d6f53935c08Virustotal results 39.62%Heodo
2020-10-20UL1171244082UL.docdoc 61706a00aa6fab85343ed0d7b0505944440912b170374796f8a1df54ff125836Virustotal results 39.62%Heodo
2020-10-20DOC_OJ8439533283SC.docdoc 583d089d846766a56071e1b820a9209dd19ba0db4113c7d65f45171957147297Virustotal results 37.50%Heodo
2020-10-20INV_40421553.docdoc 043ddc738d360fc062c287e155eebb7b7cb64a9cd0cf30ce66cc07990c153e9bVirustotal results 39.62%Heodo
2020-10-20CZZ_100120_UPD_102020.docdoc 73b7efbeee5e1a863951ca7e8732349c122e88572bbd091ac36b23509858bf8eVirustotal results 40.32%Heodo
2020-10-20FILE_NIQ_100120_ITX_102020.docdoc dc4424c660cc882687e934977d90d1e7725602d1d702466653d1968d2ac1a066Virustotal results 38.98%Heodo
2020-10-20L_TD6308366370BC.docdoc bf264f92b0e3ef3f4d9e2796a07576e3fdb22454e3392625248b65a94d5ce99fVirustotal results 36.67%Heodo
2020-10-20BAL_10047236.docdoc 534d9419df41c2350d681ec677b6673e97f1177d08bd6650094fc6dfd010ad6fVirustotal results 39.62%Heodo
2020-10-20FILE_PO_10202020EX.docdoc 6bddc1611da881817b34a7b39326c7a591ff84dad63af3f5865ef4a3a8d189c8Virustotal results 40.68%Heodo
2020-10-20BAL_PO_10202020EX.docdoc 5562a5a261dc5ec8d9d05ae9ecd2b4b15bcecd35d648906f0c1ffc2e85a5d1f9Virustotal results 37.93%Heodo
2020-10-20U_WK2159174580WT.docdoc 55d272b806611b58ec2d9daa68b80036ea1110ee1bcec7406b4c4dc1f311dff2Virustotal results 30.65%Heodo
2020-10-20UOY_100120_ZVV_102020.docdoc 06d3837c55c21a03895793e1e29e56753b8693d83f1229a436289cb8c1f987a5Virustotal results 41.94%Heodo
2020-10-20N_XQD_100120_LSX_102020.docdoc dc2bf19b8783e823415f8820060f32660a8aa7077eac281739eb380f7168886fVirustotal results 34.43%Heodo
2020-10-20REP_7MXRHH41XX2U0.docdoc 8d265b2a1f4f7b4f035d094bb3c7e31a22449709662db50101e76b3088f309bdVirustotal results 26.19%Heodo
2020-10-2075322978.docdoc 8c612654ee12c90cf40bbca45253b76bdb0f372fcdacde4ad9e56d6a9b2d7d51n/aHeodo
2020-10-20W_YH4963241029HQ.docdoc f13dec9c8a43cc6bd379b02b6ac07a0104d180729a7949b4d7d642344c204f0cn/aHeodo
2020-10-20REP_PO_10202020EX.docdoc e2e51a231e8012ef72f1ee4b4bafd8fbfbc6eba2520b75b3f09e8b5ab5b1347cVirustotal results 50.82%Heodo
2020-10-20DMG_866473802.docdoc 0b50109aa3bc171ff9f379afe7a80a952c4255a6ef6c82aa8dfd5f2d988dfe42n/aHeodo
2020-10-20BAL_01751066622685515973.docdoc 49795d33d7c679a6a191590c742647402c2dcc89598c51f466f5e7a50d64f027Virustotal results 50.00%Heodo
2020-10-20REP_PO_10202020EX.docdoc 6ed8baafe6922ca166f88a03248e937ce53a63c5260c3c8942af8a10e5a032a4n/aHeodo
2020-10-20YT3351855265FQ.docdoc 8bbe1f406856f389e692b36a9a8da4626a6db9c8266164dc7443034c1162ea87Virustotal results 50.00%Heodo