URLhaus Database

You are currently viewing the URLhaus database entry for https://www.clinicavivafoz.com.br/wp-admin/public/8r3wexq1-90/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:751270
URL: https://www.clinicavivafoz.com.br/wp-admin/public/8r3wexq1-90/
URL Status:Offline
Host: www.clinicavivafoz.com.br
Date added:2020-10-26 11:16:05 UTC
Last online:2020-10-26 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-26 11:18:02 UTC to abuse{at}amazonaws[dot]com)
Takedown time:3 hours, 33 minutes Good (down since 2020-10-26 14:51:18 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-26Inv. 00873440768.docdoc 0b28aafc9c3a3a6c6108c222626c51b1f5840f4f5fe9484387ea3af62d715537Virustotal results 37.29% Heodo
2020-10-26Inv_0284.docdoc 56e9d528b66a107810602f6a804c1eb55c327a46bdccb3bd6e4e3765edb23622n/a Heodo
2020-10-26October invoice.docdoc 85ef6233fe3651d7b5eaaaad06d0350456e419abe29affb49dfc0cdb2d20e875Virustotal results 34.92% Heodo
2020-10-26T-100120 YRXC-102620.docdoc 4a055994a092719600b24a794ff6bfdaefa68ac418e71f0bec82f1f0514d6a4an/a Heodo
2020-10-26form.docdoc 371b040a51afcedc85741b1a132bd26e2f4f47d381986e2a900893ff0cb64b02n/a Heodo
2020-10-26Payment.docdoc 2ce2349b04071d26f78975046ce8455435523abfb528b5545dffd191c1eae93en/a Heodo
2020-10-26Electronic form.docdoc 8a07a861fdc5ba7fe5b33d79984936f768340b1ec529473a339aeeab7ba0c8ddn/aHeodo
2020-10-26INV_003737.docdoc 944defdcfec039dc542577bd4e4cb65f82589cb8a731403841764a77ddf0186bn/a Heodo
2020-10-2600780921901.docdoc bf8597201d22d0ac4f4f1bfcbfee0c6e114c2795f6db98b47c9e81154a85c871Virustotal results 31.75% Heodo
2020-10-26Form - Oct 26, 2020.docdoc 2e90362549f361c65f023ecb6decce30e24d49f337b7127fdf8a2981b0e48f50Virustotal results 33.96% Heodo
2020-10-26INV_1931.docdoc 628fed623605c3ea52b5697e305dbc0c2e0ddd53dae6711ed1d89873c5e2f831n/a Heodo
2020-10-26October Invoice.docdoc 3b725ba623e1dae28002c8dceb287e878c6146b03304b507fe581d7219d516can/a Heodo
2020-10-26Payment.docdoc 8f4e37b10c0fe7d6f196a866b24850cc8bf7b9834c5f0053964b591529ea556an/a Heodo