URLhaus Database

You are currently viewing the URLhaus database entry for http://freedownloadbravebrowser.com/F0xAutoConfig/paclm/574944/f3h89qy2p-43979/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:440765
URL: http://freedownloadbravebrowser.com/F0xAutoConfig/paclm/574944/f3h89qy2p-43979/
URL Status:Offline
Host: freedownloadbravebrowser.com
Date added:2020-08-25 06:51:34 UTC
Last online:2020-08-25 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-25 06:52:05 UTC to abuse{at}choopa[dot]com)
Takedown time:5 hours, 23 minutes Good (down since 2020-08-25 12:15:07 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-25Copy invoice #9523.docdoc 09360e0d6cf0bf595ddb818a5684506d6fb1ec5b23faf35d8fa2baabecf93bbdVirustotal results 27.59%Heodo
2020-08-25INV #00718127 FOR PO #001011006.docdoc e01d4f623fbc91163ac7e1467b706e62ca7d95dd55163f9cdfd8f9d297ccbe84Virustotal results 27.12%Heodo
2020-08-25Payment status.docdoc ce0d9a38622cd500c47b8abf0f739db8b9247dd7c5e430d0606955fbfcb5b919n/aHeodo
2020-08-25Electronic form.docdoc 52b6c67df2a895a98d3cde7dd664e2fa6ccf834e9efe8ce45666b2cf3ef79594n/aHeodo
2020-08-25Invoice #275.docdoc aa82e8b60d6b43fb494d39d8377b7f650a9947c940fbcc492d47f4c56a2e0afen/aHeodo
2020-08-2500215519822.docdoc 34fa72d4ff57cb8e628c79afd9156da3004c48c500775b4acfdbb3eef2ba14ccn/aHeodo
2020-08-25Payment status.docdoc 2360a5b64d75b53079b00f4123168708c44db6aabb5c4b9ee3cd5b48d58355cbn/aHeodo
2020-08-25Inv. 0014541502788.docdoc b46cc1bfb059dc378f47df8545de72f37dbd093f0db9f445278a91e7616f2194Virustotal results 27.12%Heodo
2020-08-25004881697.docdoc 9811fc7224ac578359229ed16dfd3d799a3e667abfaa33174358809d588d04ecn/aHeodo
2020-08-25Invoice.docdoc 39ab82b299fe466e775d32f90ca2f59b3d3d1aa1d3b17000b5995f26f07f774dVirustotal results 25.86%Heodo
2020-08-25Invoice.docdoc 08ec07404760c8108a8894205f49ad39ad40cd92f69cbaf890a1de3f509eefcfn/aHeodo
2020-08-25Invoice 015496.docdoc becb4682875b202e9813d9180fd5ad10d85cb7f93cd3a865ea6dd01cace4ef7cn/aHeodo
2020-08-25CZ7432328924JW.docdoc c24383a38bc551ab44546118aae0103bee945e1973a2273948e1b7c872a13dbdVirustotal results 25.86%Heodo
2020-08-25Invoice #9191883.docdoc 1df9df819ad7c5cd36928c1cc5f000a9bd5ef7521a4d75b2eb3dbed61e08272aVirustotal results 25.42%Heodo
2020-08-25Invoice 008097141.docdoc 78bc6cabaa47d29e51c90d06c18246e932a123f9f8f73a71f588c969f1a5d551n/aHeodo