URLhaus Database

You are currently viewing the URLhaus database entry for http://newbrandscollection.com/config/301830912054892/Nc3IdMKbaR7ehGj/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:698318
URL: http://newbrandscollection.com/config/301830912054892/Nc3IdMKbaR7ehGj/
URL Status:Offline
Host: newbrandscollection.com
Date added:2020-10-15 18:56:07 UTC
Last online:2020-10-16 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-15 18:58:04 UTC to abuse{at}contabo[dot]de)
Takedown time:15 hours, 36 minutes Good (down since 2020-10-16 10:34:05 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-16ARC_2020_10_16_VK73856.docdoc c6be8d125f6dccc62a17537a3a547063304f338cde4c9e36b1d612316e94798aVirustotal results 32.26%Heodo
2020-10-16Dat_20201016_Z7583.docdoc 451edf5ac24f8ffa0c4421fef0c7d9544bcbd31cdbd072af9f1d14dc65f28185n/aHeodo
2020-10-16100NNS_3285865.docdoc 6a089a7df35eeb01c1847b3ea416d218facf9f0a2165aff4b4fbd265b64d20abn/aHeodo
2020-10-16doc-2020_10_16-6048818.docdoc 45b94301676c268b2aa347fec7e8246327a834f27087b06c3a9d3d01068bf2e7n/aHeodo
2020-10-16DAT_2020_10_16_TQ30999.docdoc c5e7a769d554364fbf131980e6285aee1a4ef18fe11a28e97042d79c0422adccVirustotal results 32.79%Heodo
2020-10-16file 9045.docdoc 37c21f0f578d3c63515c63f95541e4b9415878dbcdd420e28a57ad221d118f2en/aHeodo
2020-10-16UNTITLED-2020_10_16-519368.docdoc bdb0f1cdc421b438781b96c48d7679057728f3e3aa13191ed7e4190808678fben/aHeodo
2020-10-16FILE_20201016_JSQ3542.docdoc 15c9b8c96805cb5eec520765084f122d2d992f581b1e885ec67341e7b7954006Virustotal results 50.00%Heodo
2020-10-16List-2020_10_16-6482.docdoc 8d55bfa88aac7102ed41f043d7266e85bfd3e83d0d8f7d298876419eb1bde683n/aHeodo
2020-10-16REP 756.docdoc c85e897e957fa44b137c35917ea9886343ba4b8d4fbc13668515d382ed874555Virustotal results 46.77%Heodo
2020-10-16LIST-RF9620.docdoc ef15c47fd8dcd129ee3580f45ef2062281b18b7410002a2631200043b9d170aen/aHeodo
2020-10-16Untitled-20201016-531157.docdoc 9347c2db740afe55d4fcd6c9346d63d399d3456bdfa1f8413ade5b083f64f0eeVirustotal results 40.98%Heodo
2020-10-16mes 20201016 932.docdoc c7cf5a3d5d7fa1c15561e9ae23236bca356132e283a8651ce8f9257bdf79f77eVirustotal results 42.62%Heodo
2020-10-16Attachments_2020_10_16.docdoc 8ca596c47a7c3f64989bdd6cd89f70123d1edd290b90213073d63af492531845Virustotal results 45.16%Heodo
2020-10-16DAT 20201016 6543909.docdoc 77336efe637e5b6480a97a6764e16c75424a6c44345993fbc87a04fdb1a4437dVirustotal results 42.62%Heodo
2020-10-16Doc-S277.docdoc 3be03cd4738ab3f977af3cfea372ba8def5e7c4515743292a9d45f7a39be67edVirustotal results 41.94%Heodo
2020-10-15arc_2020_10_16_2480827.docdoc d1fea8b66cd1bf042820cc0c454cdbc6863c24dc54b90afec02b4b0c51394734Virustotal results 39.34%Heodo
2020-10-15Attachments_2020_10_16_1841.docdoc 39f443a944e3114cf6c84fcd6c270f6f8ed42bd1ecf833189fb7e9a96c8fdd2aVirustotal results 38.71%Heodo
2020-10-15Inf 2020_10_16 2739772.docdoc c18c4a8b5fe16fdf880fce5cb6e6d6fde0c9d494ac8edd7ba5c45a27c708ddbfVirustotal results 42.62%Heodo
2020-10-15ARC 20201016 RXQ1042.docdoc 9224f06c0199e984b9bc5e2cfc12af8d8ea1d1022db475a557a1e93221030f76Virustotal results 39.34%Heodo
2020-10-15Doc.docdoc b6a29fa485514c193ba2a233797415547a50dccb1b774ac2c80ea3809d4dc7aeVirustotal results 39.34%Heodo
2020-10-15Attachments-2020_10_16-IGD27430.docdoc 90923af5471dd2510549874d9dee40644d43e8648cbb15123c877670ec80ca80Virustotal results 38.71%Heodo
2020-10-15DAT 2020_10_16 BV756344.docdoc 17c3d1b520a527f0b3b908b6107db6d0fccac8f66a9c5308cfd02bda68d814fcVirustotal results 38.71% Heodo
2020-10-15MES 20201015.docdoc 087d4ce4b2eda3a5b3163a35e16fd76ec394796385ba25d0fe279bf11b725571Virustotal results 38.71% Heodo
2020-10-15Attachment-20201015-HC001605.docdoc be2d72ee1a4da699026d47683395cd063bc94662a384bc7352e9596f63f6c843Virustotal results 37.10%Heodo
2020-10-15List 20201015 UJ405056.docdoc f87aa36136250cba6491845979dbaf69e6d7527ad00380feddba160052d2e034Virustotal results 36.67%Heodo
2020-10-1566875266-Q529.docdoc 4592fc6669f3ce4767529ddbba3492a11a28bf8bab3e2e11f6fa03d5c0893773n/a Heodo
2020-10-15Doc 20201015 2055.docdoc 23c0bd17639633e42565f9f04b0cc21cbbcad29cd6f92af5057e2062046b84een/aHeodo
2020-10-15Attachments-2020_10_15-O7062.docdoc 435a2ca546fdda7541c354c38a268a1072584264ffba883f1cb0b1284c661bccVirustotal results 37.10% Heodo