URLhaus Database

You are currently viewing the URLhaus database entry for http://jimbrashear.com/downloads/Reporting/1xkor79915729116201642hw8honlznv86cctm/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:421890
URL: http://jimbrashear.com/downloads/Reporting/1xkor79915729116201642hw8honlznv86cctm/
URL Status:Offline
Host: jimbrashear.com
Date added:2020-07-30 10:15:14 UTC
Last online:2020-08-03 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-07-30 10:16:03 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:4 days, 5 hours, 7 minutes Bad (down since 2020-08-03 15:23:26 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-0153283212.docdoc cb4e15916a5eccb7eeebd965ef5c25ad59c2cf541d06f81487325cf95ead2c73Virustotal results 54.10%Heodo
2020-08-01INV_ONS_080120_GMD_080120.docdoc 7b6a76a3a932265f067c2751c8bd6647327d0ec5bd95563dc3dc38d797a1469eVirustotal results 54.10%Heodo
2020-07-31U_DF6790517473OU.docdoc 3d313d6dc6fa20a7e7637af1c94de520d97a71eb8fb1e68a5f6f69054d801469Virustotal results 48.39% Heodo
2020-07-31INV_MCH_080120_EDC_080120.docdoc 9456039c364736bdf22944149b090434a866653ea7d35b78376b4b84c9150cc2Virustotal results 47.54%Heodo
2020-07-31FILE_49651672.docdoc 4834d43a503e5a10693dcc514692016c26b9084f17b258a3505a4e44ac893db7Virustotal results 47.54% Heodo
2020-07-31JYOUQSMO.docdoc 1e4b706d611f935dd5aaac2b97e921c9c1df152d9dcf98127840b7c0e60348eeVirustotal results 47.54% Heodo
2020-07-31PO_08012020EX.docdoc 2424b6bc4cc386a52cf8e25acb12b1364237bfbac52a7a04e0eabc53c686ef8fVirustotal results 48.33% Heodo
2020-07-3137373516.docdoc 4729c94988f1431882f66a3126870a8fdd805e89e1ebf38ca3740db1b7920fecVirustotal results 47.54% Heodo
2020-07-31CKU_DL5789152059FB.docdoc 0f82fa89509f62163237c5a0eaa8b4ae31b25ca0df9a1a39b7c30328b6101e82Virustotal results 47.54% Heodo
2020-07-31FILE_27665181.docdoc 1fb47e6f82f631e677d6380ad07189b514c6783860b7a0785ad02f10f4622820Virustotal results 47.46% Heodo
2020-07-31DOC_UC4266719044KG.docdoc 53b0406efd3043bb9a82034aad1061ca92952b9d1a9111ba31afbc95d47076c6n/a Heodo
2020-07-31REP_YKS_070120_OKR_073120.docdoc c99d29a720a02f4d759c1b02ad533deeddb74851d9703831b9ff236c9c87d21aVirustotal results 45.76% Heodo
2020-07-31OX0602271169BW.docdoc 3ed464d25607db10ccd4f5a04d729d377cee89b03d7dbb17b9cd0ba4bd4ec2ceVirustotal results 47.46% Heodo
2020-07-31CYRFYJZP7CU.docdoc 87a3224fa89663f53a2114b2db0c6140013d1f5ea825037d85290190c0081e44Virustotal results 45.76% Heodo
2020-07-3101623942.docdoc cfa6624b88ef3814f55f48c574834fb7e6bd4c5102043a9b1568f571201d6a49Virustotal results 44.07% Heodo
2020-07-31Z_M1RF5K9J34R.docdoc 080138d1e0b1b30c9251e6aa2467689804143563243d0fedf4f60f5065e7e1a3n/aHeodo
2020-07-31FILE_00774570.docdoc 66e9380acc03aa90e855320b6090e72cc9e0fd7c72f1fd005f08a0b3e5aeda0cn/a Heodo
2020-07-31OTG_070120_NBJ_073120.docdoc 628a4059b2b1433fae9cd2e40f5e6c8dc2528d5269c48dfcd20ee92378809e66Virustotal results 43.33% Heodo
2020-07-3134391803.docdoc f8c08709b04ec9e95d8f36c1b99b4ad75eb823d513d3f7dc020c3fc96ebfd770n/a Heodo
2020-07-31BAL_593637640790999591.docdoc cfff60f6938778198175a6d8a3bf888e554ac46c2b6db4fd4e3fe452472ba24cn/a Heodo
2020-07-31INV_40HQUOAK1CK.docdoc 33cc5ac87a9b8a4bceb717df74b6cf6b1162ff33a67dac529744e3f81c55636cVirustotal results 45.00% Heodo
2020-07-31INV_HIY_070120_PHK_073120.docdoc 98ee1381f134eaedefa2baef746295a547b2a4b7468ffbf5a9834e65a71c7c8en/a Heodo
2020-07-31INV_RN1532129980SU.docdoc e67adff7743f84cab7c2746afcb4224fff6bd59c88cac50ede6d37683a2ec358Virustotal results 41.67% Heodo
2020-07-31REP_PO_07312020EX.docdoc 9c184a50a28234ea058519a136d7e474a3e8fa0d75828d3b5167ff02cbf87b8fVirustotal results 40.68% Heodo
2020-07-31183OVCGI.docdoc 522b63a0d190f96b3d7e635d7431958b68f94c8f95a44594318d0e382b17bad5Virustotal results 41.67%Heodo
2020-07-31PO_07312020EX.docdoc 3a41d6d1c8f3a6cc5c8df663c33ac3854169a275bed3731c2fa2536de9aae6d3Virustotal results 43.33%Heodo
2020-07-31DOC_2755538227682083268.docdoc 531a54cecd82f675e621ce2f67ba66cb0025850920c8aa66cc370bdf2789957aVirustotal results 41.67% Heodo
2020-07-31IQ8970165155ZY.docdoc da59a26f771c7a720ed7c690852b971068c090d3fbad6c755e62526acff9dd89Virustotal results 42.62% Heodo
2020-07-31REP_36181554.docdoc 7689cf53f260808946f1b53dd444210423a975b7fc7754c1fe6b04960286f9a3Virustotal results 48.33%Heodo
2020-07-31A_HDC_070120_ZVS_073120.docdoc 1f9f58c960de2626df423819723cd568c625e97f72f166029e3d3ecb071bbc57Virustotal results 49.18% Heodo
2020-07-31DOC_PO_07312020EX.docdoc 8d7f5cd06bb06193bf56a6084659355f3087b32118304efa7f736950c5c3224dVirustotal results 48.33% Heodo
2020-07-30INV_HYRRQGLX9E.docdoc 226d9689fcf84f7cf9decb14e3b58a86f7f82df4ad2646632444f63095544015n/a Heodo
2020-07-30ABLV_PO_07312020EX.docdoc 14d0abac86898ba38672ae6e6392b4fadf7cb0692a8a445e1f7debef4e7e101aVirustotal results 48.33% Heodo
2020-07-30MNAK_PO_07312020EX.docdoc 7c27fc12153685ebfa853201b4b71b6183b994f0bee705daf6d52db0f1062747Virustotal results 50.00% Heodo
2020-07-30FILE_YCMQV4IBP.docdoc 2479f0c202e0b1e1af6e349625250c5e8433d8c2971ba1cb5325402e1ca70e54Virustotal results 48.33% Heodo
2020-07-30PO_07312020EX.docdoc fa9ebbddf93bf0bde73a7e62692c9a2ba07478ad334b60810862fe795384032en/aHeodo
2020-07-30DOC_YS5254678212SK.docdoc 2f335817434e148eb3306ec99d29a3947f89ff9e3aee56f76f227d5894334abdn/a Heodo
2020-07-30FILE_10827849.docdoc b920bae96043cfc55017d7a67bb6c5caac098cfce2620c6348e63cf4f7842378Virustotal results 50.00%Heodo
2020-07-30BKG_070120_LNK_073020.docdoc 8706e7c86b87c282f47ef4c70c7eb9d536fe1d5c82acc211851f2443190a4a59Virustotal results 48.33% Heodo
2020-07-30BAL_50669474089325417701431.docdoc b3c476526978c5ce2f22627e47f21fdd3a16f03b166965bac3be05ca29b80575n/a Heodo
2020-07-30AXQR_PO_07302020EX.docdoc e36e626e95cc4e2feb34bfba30b423f08786bde39a1ddda5fa65ce1abc18bdb7n/a Heodo
2020-07-30REP_4069889998557876739189.docdoc 044a931e427040bddbe572ff16a3bc688cd83e8796727a0df74491157ba7d1f5Virustotal results 47.54% Heodo
2020-07-3062038329.docdoc 3ec0cda0966fdfac5059b61d8b718eb7dc9e4454c370aa8260f34a3c759d43c2Virustotal results 48.33%Heodo
2020-07-30B_PTY_070120_GUK_073020.docdoc b7c80485c06d98376a33061daffa3a5da0b493251d67b50832d2dff57354ff87n/aHeodo
2020-07-30BAL_B9TSBAH8HR.docdoc 21670c1b2f6bd3739bdf6a11f4edc5cf70af68046eb16b6a392cffccb2cdaf84n/a Heodo
2020-07-30INV_73391993.docdoc e44fc7d94a825e4d43a775fa247ddca6f4f8593e3605289e79eb4a8210025864Virustotal results 43.33%Heodo
2020-07-30LJQN_IW5164326608MJ.docdoc 1460e8d0ac636b3af0e01a282bd5be1286d0b25f0d7f003bb770aad9980dae20n/a Heodo
2020-07-30REP_PO_07302020EX.docdoc bae631a4bcfb6f64cb01a26d307ddcfa85d0d63f8765a7020242e2e5b7ba979eVirustotal results 45.00% Heodo
2020-07-30FILE_66808575321410162.docdoc a1e1a7050d516befe59fdb7381ea2c2c7fe49f9764cfcc1345c5b84dc471c145Virustotal results 43.55%Heodo
2020-07-30BAL_IQ0586518716VA.docdoc 5aca4b2c9a231b560e0375a292defe35147afbfd61d77863c69ae2b1bfb1d544Virustotal results 39.34%Heodo
2020-07-30BAL_OFH_070120_ECX_073020.docdoc bfbc2dece9d59d199e8c074f033ad489801bebd636122beb7fa62328d326eb90n/aHeodo
2020-07-30BAL_019049473.docdoc 4e19a40400b659e85d29579ef73d26b68f233b36c95955e2133c2d7f11e6eb3dn/aHeodo
2020-07-30N_PO_07302020EX.docdoc f9c857f1d02b888132701287d6fc5d889e60e79417855c5b5a70e210328e7131n/a Heodo
2020-07-30REP_EC7042972894CU.docdoc ccffd1057a0198494234050b71333c4cb0411d6c9fb3fdb730043076797c6fbcn/a Heodo