URLhaus Database

You are currently viewing the URLhaus database entry for http://icb.ghztecnologia.com.br/de_DE/RLAUGODVU9336094/Rechnungs-Details/Zahlung/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:94975
URL: http://icb.ghztecnologia.com.br/de_DE/RLAUGODVU9336094/Rechnungs-Details/Zahlung/
URL Status:Offline
Host: icb.ghztecnologia.com.br
Date added:2018-12-14 09:46:05 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Not listed
SURBL:Not listed
Reporter:@zbetcheckin
Abuse complaint sent (?): Yes (2018-12-14 09:48:01 UTC to abuse{at}locaweb[dot]com[dot]br)
Takedown time:9 hours, 14 minutes Good
Tags:doc heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2018-12-142018_Dezember_19_39_31_Uhr.docdoc 555d2c8d15d1d8018a56c964ae88148ebffcf5a323d9a1a0c04897a208180692n/aHeodo
2018-12-142018_Dezember.docdoc 4baf9481757e76f949d40c804afbede49575c2517a9beb4cee994dd077597cb9Virustotal results 27.12%Heodo
2018-12-1414_Dezember_2018.docdoc 974a0b97f6830eb924df841ae477878a4fcaa966f91917957e3b215137003f06Virustotal results 28.81%Heodo
2018-12-1414_Dezember_2018_18_42_27_Uhr.docdoc f19ca14cd7dc0ebd1481c5421cc0e2ade8f169cd47fd1a9f093dcc3b1597eb7cVirustotal results 26.23%Heodo
2018-12-1414_Dezember_2018_18_23_22_Uhr.docdoc f2741e27680d340023d43f477334050116bb45c0c6df4be539ab811f424254e8Virustotal results 27.59%Heodo
2018-12-1414_Dezember_2018.docdoc c5062955b084ce13e9c6dcf285f4d664554b3f71de1e35af8238d2f717bb8863Virustotal results 25.42%Heodo
2018-12-142018_Dezember.docdoc bef7cc9f82dbcff9c909436effb08663bc029679dc80256c0bf8f6ba4975bbdaVirustotal results 27.59%Heodo
2018-12-1414_Dezember_2018_0115796722.docdoc 23b78e69ded012de6297325b0c5cf2d85d9dbe99fea70a02b35b70cdd88ffa5dVirustotal results 27.12%Heodo
2018-12-1414_Dezember_2018_3289004653.docdoc 69b8296544f94b5e8593a08000caafeb1c1fda6e0e474bd78ed2494debce1dc5Virustotal results 27.12%Heodo
2018-12-1414_Dezember_2018.docdoc 80eba19beb85477a23ef554320e504cf62fd093812065ab1e4f5fbf9b5b1d61eVirustotal results 26.67%Heodo
2018-12-1414_Dezember_2018.docdoc 1d8a0923f5bcb68d823047f7d12d5d22ffae991208192ef9747803547f32c403Virustotal results 27.12%Heodo
2018-12-1414_Dezember_2018_16_20_57_Uhr.docdoc 77cfe016f2217b4e5d1664271f048bc62f93d92854f9dd296ddd0fa67c142cdfVirustotal results 27.59%Heodo
2018-12-142018_Dezember_6573675697.docdoc 95c206926e1707558d12d1c917a1fc3f089eefce0d17b6720239ccc628f494f1n/aHeodo
2018-12-1414_Dezember_2018_6088584151.docdoc 82b2b4b481149f3145cd77bb5ba321045120306929fb396c907bc7ca81323c40Virustotal results 27.12%Heodo
2018-12-1414_Dezember_2018_5838271743.docdoc d189bfab79bdac3c0dedd42ac7db19350517e3021f946d649c15c400e292546fVirustotal results 23.73%Heodo
2018-12-1414_Dezember_2018_15_02_51_Uhr.docdoc 1cd50ec51df9b1f9bb5a873bc2f46b958238a6dcf5589be377a41b1b33d4a681Virustotal results 23.73%Heodo
2018-12-142018_Dezember_14_47_59_Uhr.docdoc 943c99968422fbe386574e629a7cf0340067d2be57b80ccdc39fb9075f2068e3Virustotal results 23.33%Heodo
2018-12-1414_Dezember_2018.docdoc 20447aee68b284b922661c3b05b4737eeb2441bd68ab7a9768130c91211a1759Virustotal results 23.73%Heodo
2018-12-142018_Dezember_14_17_40_Uhr.docdoc 108652f80de7e0bda0f25e0a0a9db649b0b046afc749c1637466464f66a44af3Virustotal results 23.33%Heodo
2018-12-142018_Dezember_14_01_18_Uhr.docdoc 68d358bc2b12994380c2211be7b700d9ab3bdeb39d782ed78eda61c3a669aca8Virustotal results 22.95%Heodo
2018-12-142018_Dezember_9253824645.docdoc efdc9e05b7112cc8449dd9ed955da17924482efde13f19306f73b8e4e1ed812cVirustotal results 23.33%Heodo
2018-12-1414_Dezember_2018.docdoc 6a8e91c84b67d3c070019d610402c88db1f6f3d6fa4fb179c676eef6f06e7c9cVirustotal results 25.00%Heodo
2018-12-1414_Dezember_2018_4991678084.docdoc 003bb09ffd1eef4d2ff23ba90afe6fe55d02960936e1bd03ad4aa75abe816246Virustotal results 23.73%Heodo
2018-12-142018_Dezember.docdoc 582e8e6c805a2fb1a8f75c8b8f7c310b8ffd3572768d1bd84130635c390cefeaVirustotal results 23.33%Heodo
2018-12-142018_Dezember_0052987569.docdoc 028d04372fc99a66e61234e06e4ba08a42f57338444ddd78cd31a0479a28314aVirustotal results 23.33%Heodo
2018-12-142018_Dezember_4322187692.docdoc 9cffb7cf99bd07e0cb762ddc6021862afd77e72fb2887ccb6acfc07a409779f6Virustotal results 23.73%Heodo
2018-12-142018_Dezember_12_06_15_Uhr.docdoc 7d36dd78fb33048fd3b52c7177420a23a3a1ace5a5e716d37ca27932fb71f51dVirustotal results 25.00%Heodo
2018-12-1414_Dezember_2018.docdoc 771702eb42fbef279f2a82779da6e968e34fad0112841eb2c2c619a100e12ed1Virustotal results 24.14%Heodo
2018-12-1414_Dezember_2018_11_32_01_Uhr.docdoc c64c9681fc869828defc73b861a4c2803c55ce2d27486fef7a1a02bdaa50cf73Virustotal results 23.33%Heodo
2018-12-142018_Dezember_10_49_28_Uhr.docdoc ad97a254605f59ab8049ff8810ab20b61bc699ec71df9b430c88a4e515f18595Virustotal results 23.73%Heodo
2018-12-142018_Dezember_10_33_14_Uhr.docdoc b3eeec43946b36891a2a205221e746d2980812261475ca1ef0af3f08bd4c956eVirustotal results 23.73%Heodo