URLhaus Database

You are currently viewing the URLhaus database entry for http://praxis3d.com.br/rvsincludefile/open_zone/guarded_d8maglyag6mi_9xow9xjj1f6e7t/lbrv3faafzn0q_9739wx2/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:428343
URL: http://praxis3d.com.br/rvsincludefile/open_zone/guarded_d8maglyag6mi_9xow9xjj1f6e7t/lbrv3faafzn0q_9739wx2/
URL Status:Offline
Host: praxis3d.com.br
Date added:2020-08-10 13:32:05 UTC
Last online:2020-08-11 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-08-10 13:34:02 UTC to registro{at}homehost[dot]com[dot]br)
Takedown time:12 hours, 50 minutes Good (down since 2020-08-11 02:24:46 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-11rep 2020_08_11.docdoc 1d6d7c0058e45499315faa839a5d61667865f8b11c4ae4038f23e60cbfa8a8efVirustotal results 43.55% Heodo
2020-08-11Mes_20200811_28325.docdoc 493101a81b243bc896303e65c73263b1664d1887fd631666fbf895c875db3dccVirustotal results 43.55% Heodo
2020-08-11file-20200811-L761.docdoc e4790d41e27c6978baf5ccf9461b74b1e9606fdc7edcb4d2022edafc3d8a6fd6Virustotal results 41.38% Heodo
2020-08-11Arc_2020_08_11_2750365.docdoc 13c77da9bbdaea66303dfe4cfcb8b5a9f8eae8d46f1e710ab6574c73b2c1d91eVirustotal results 44.07%Heodo
2020-08-11List 20200811 RTY79434.docdoc ce70fba1cd6c71bfbc91162f8e5d6f99e03ffba2db898e1088139f06cef9c304Virustotal results 44.26% Heodo
2020-08-11inf-DZY459067.docdoc bda55acb649535e7d61133cf076b1604f3da829aa4d7b45a7bf3ba27466d9c3aVirustotal results 45.76% Heodo
2020-08-10LIST-20200811-Z064.docdoc 1ff50f088800028624af3ad83890529e6cd409d4c797d27b35f77e33fe36793eVirustotal results 40.00% Heodo
2020-08-10Dat_9064035.docdoc a685d179f34dc5fcb9fdb968d93826a1931f9e729bd7fa6491dc6cacf4ca0c68Virustotal results 40.00% Heodo
2020-08-10INF-2020_08_11-331274.docdoc 230cc48c70942780ddd2cc9327ac6c9b96bd8c1272c1ad0ccde75cced629204aVirustotal results 40.98% Heodo
2020-08-10file 20200811 JF7679.docdoc ab0306c2455e32e50062bce1ae1e34c69f5b6b90faf1e02827ea1333ef8d6df2Virustotal results 40.98% Heodo
2020-08-10List M3645.docdoc d1995ed56b0d8d1b1696cf696e047d70dd9f86f9ba8dfeb1903fa84aa82f3e94Virustotal results 41.67% Heodo
2020-08-10File_D916990.docdoc 73c17caafafa44d5ebd7a8d48e34c9bb754001950b197e63c5c97996246be9beVirustotal results 40.00% Heodo
2020-08-10Dat_3727237.docdoc 8bac60fe9c581db6206a5ca49fc3fc76df934a47006c8effcd145a6ab3c70cc8Virustotal results 40.98% Heodo
2020-08-10arc 20200811 280.docdoc 69a6b1c09608f190a59315faa99814cad90c3eda1f938f379415adb9ce80d7fdVirustotal results 40.68% Heodo
2020-08-10REP-20200811-11624.docdoc 3708962d8333f33b8ca2229ccdf932d5f06c2e380b5634afb33c2b29e209e269Virustotal results 41.67% Heodo
2020-08-10list-20200811.docdoc 8f9e5cbc1eaf541061e1c1fd545d23d12c9af3e75781e353cb46b9de8dfd728eVirustotal results 41.67% Heodo
2020-08-10rep-20200811-105881.docdoc 6fdba2a3c021e527cc4d508e143f075fee286280cbb58cc759f2c7968248b1c6Virustotal results 41.67% Heodo
2020-08-10List_2020_08_11.docdoc 47c81bf4ef434b2d8dcc344dd6d8bb166138e0df39808d51dc12f319eb134129n/a Heodo
2020-08-10FILE 3971492.docdoc b07e6b18d82a1b8730658e479cec7e7a91bd8f23f429e34de9f652065da22b4dn/a Heodo
2020-08-10ARC_20200810.docdoc b5184411717b5186e80a521f6b70c47091f21c4e9c586d2f565438dfaba70d7dn/a Heodo
2020-08-10Inf.docdoc 21d305c97502379abad7f15c44454ff18239806f9839d1e72f83028893df2fa4Virustotal results 41.67% Heodo
2020-08-10Arc-SIJ6169.docdoc 6d218e558b2cf4b5f4564d9bbfe8feb68602b363228a53f9c7e7aba48ae19d1dVirustotal results 41.67% Heodo
2020-08-10Arc-KA347.docdoc 098876500a634aa472d3871b18a4ad318ee13f16787cd4abc0f17172bd7a9b6bVirustotal results 41.94% Heodo
2020-08-10rep-2020_08_10.docdoc a183ad4b8a0e9fb7dca68946fd71e2382b7d6818ea27d5aeeee1eccb0c15ede7Virustotal results 44.83% Heodo
2020-08-10File_543528.docdoc 8641d44f1d6d745099cee15a65f849a2cdc8f197bbd3b6ab628908ac967af7baVirustotal results 40.98% Heodo
2020-08-10LIST 2020_08_10 4123087.docdoc 03c3b83396d5866a19b8173b63e93341e1fb76a16e082ec63d43b8db44d2b9beVirustotal results 41.67% Heodo
2020-08-10Doc_MX116986.docdoc cc150d98c77467413cca20e24af2ba69870168fa8a7793d89a2ca28cf926323dVirustotal results 40.98% Heodo
2020-08-10list_2020_08_10_7466883.docdoc 17e64d4370b3832c6f833e6dda968f88a53e39acd56665e1511d8efeafc4c978Virustotal results 40.98% Heodo
2020-08-10LIST-20200810-5435547.docdoc 26c0eda17c5ff7c88858beb7a132b30d9075607bdf525019481fd9db5b8cb158Virustotal results 40.00% Heodo
2020-08-10List-20200810-WFL29506.docdoc 17d98dbfc17369c1682f83dd9af21acb340af79d94f5b1cd0d774bca229b57aeVirustotal results 40.32% Heodo
2020-08-10rep_ERR6927.docdoc 89e6528d812e9c5ebd232efc41db376df49a2e62f631d7bc6687ce1e4505f900Virustotal results 40.32% Heodo
2020-08-10Dat 2020_08_10 5102.docdoc 0d7254d03f1bc024880861da0e91b0d9ffa356e6f9ac24a4361b453f4ca5d770Virustotal results 40.00% Heodo
2020-08-10Dat-20200810-K14375.docdoc a911b368b94dc3e0fb269c4d07d39d833670469f5a55427786035059cb194a67Virustotal results 37.10% Heodo
2020-08-10DAT 2020_08_10 LD9371.docdoc 45c4190948b0c2820d9f66648aa3c78b09071303b6dbbba413464384ce5d5f72Virustotal results 33.87%Heodo
2020-08-10mes_2020_08_10_O921.docdoc 89d64653ee0c99479f754d1fab19c2f114a1e7bfa9a9b56962605cd4cd4dc7e3n/a Heodo
2020-08-10File 20200810 396.docdoc 2f6abd814edf90dc3b6a9ba219026dc50275f5b7044cac72e184c63539e383f8Virustotal results 31.15% Heodo