URLhaus Database

You are currently viewing the URLhaus database entry for http://brizboy.com/US/corporation/GnyV-4zV_o-YG/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:117913
URL: http://brizboy.com/US/corporation/GnyV-4zV_o-YG/
URL Status:Offline
Host: brizboy.com
Date added:2019-02-05 21:05:17 UTC
Last online:2019-02-05 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-02-05 21:06:23 UTC to abuse{at}bluehost[dot]com)
Takedown time:2 hours, 7 minutes Good (down since 2019-02-05 23:14:04 UTC)
Tags:heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-02-057401585589843252735.docdoc ffeb18dea86de1a445b54681c47ea3eb08b9eddcc1989d808202f8497a518435Virustotal results 20.00% 
2019-02-05SXB07665933041889325743.docdoc 141cf249c587ef27abc645fca581d40e992226dc4f448da5d0a995b8080d5ef3n/a Heodo
2019-02-05US5398481279559254.docdoc 20c4b74d691e7216888545d3393eca6661998c455b340fcb3a89d045ff2193a4Virustotal results 22.03% 
2019-02-05AMZ638143863169.docdoc 6038c03c5a2f937de49b0e78c86dd25cc0c2b9677c8b824fa0a71d66b700b881Virustotal results 21.67% Heodo
2019-02-05V85471751455409916.docdoc dd1a0e90d5325ab61aa89aa2ac9c3feede1528e85e992f948e29f79432870995Virustotal results 28.81% Heodo
2019-02-05GVH7992321074.docdoc ff692bd89f3c7abd82ec69e961279fdbee61eb27dc38e051aba4a954b2c4b7edVirustotal results 27.12% Heodo