URLhaus Database

You are currently viewing the URLhaus database entry for http://www.barrunagro.com/wp-includes/T78mdSZh73l7v3N6YbnrcxVT1ZspmEhsHl/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:756445
URL: http://www.barrunagro.com/wp-includes/T78mdSZh73l7v3N6YbnrcxVT1ZspmEhsHl/
URL Status:Offline
Host: www.barrunagro.com
Date added:2020-10-27 13:32:04 UTC
Last online:2020-10-28 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-27 13:35:03 UTC to abuse{at}hivelocity[dot]net)
Takedown time:17 hours, 10 minutes Good (down since 2020-10-28 06:45:08 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-27I_PO_10272020EX.docdoc 26334b62aa0e9ede3dbb964e4519bfd8864952e21555d976db4332851a0affa5Virustotal results 44.44%Heodo
2020-10-27dat_VFG_100120_VYJ_102720.docdoc 46a3e3abecccb7dab19ff4c6940f0d2b503d409524a59b07bea431da55dac765n/aHeodo
2020-10-27List_PO_10272020EX.docdoc 3f94eb845fb6c83b448be4c49e3f7986ac50723cf267d27367007e51618a6d89n/aHeodo
2020-10-27file_PO_10272020EX.docdoc 962fbbf94c656f8adb7fbc7ea014c1d73a53e89da111f32496bdf5c1cd019738Virustotal results 37.04%Heodo
2020-10-27ARC_9793532899.docdoc e7209fda6a92ab1c1d55690ebcbfa32f2f0dd773e2912bcd0259bb91509a2e94Virustotal results 42.86%Heodo
2020-10-27LIST_270763358597754434.docdoc 859b4eefcb2d29d6d47108ec6fe5463bf11a5345be824a956aaa125ac3bb6372n/a Heodo
2020-10-27Untitled_PX1272203672TK.docdoc 53c15a0758065226ff440e2d77fd9566797ad3e8ab328de743a0fc0e63c54799n/aHeodo
2020-10-27INF_5EQM2NI.docdoc 39b408479c9b71f2255dbb68b69c160ba53dde08fdcf127f2ca2598fefa640ebn/aHeodo
2020-10-27Rep_JM7957273733NY.docdoc 7c1d4014d5f038bcae31a98765f1206deb293bdca40c8776d00f3ff5c1831e84n/aHeodo
2020-10-27FILE_48543408.docdoc f31140483a61bc5bd7a5d3040838aee934eefc7cc47842ef5b55881d29820b62n/aHeodo
2020-10-27Inf_63277459.docdoc fc6174141ba2cab4d8889d6e2597578251658388b14ee0c3dc62aaaf6a379df0n/aHeodo
2020-10-27Attachments_BMG_100120_QUL_102720.docdoc dfba0c0279ce312703161fc36a706210611ed837313ae97396607890e243f668n/aHeodo