URLhaus Database

You are currently viewing the URLhaus database entry for https://britocapelo.com/morgan-stanley/report/660917227716827/xaFFgkL/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:721518
URL: https://britocapelo.com/morgan-stanley/report/660917227716827/xaFFgkL/
URL Status:Offline
Host: britocapelo.com
Date added:2020-10-20 04:14:06 UTC
Last online:2020-11-05 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-20 04:16:02 UTC to abuse{at}hivelocity[dot]net)
Takedown time:16 days, 9 hours, 4 minutes Bad (down since 2020-11-05 13:20:20 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-20INV #02300 FOR PO #291951011.docdoc a67d3d825a05eae828eb68703949b29ce211f2873a8c91c7875b89ea9577a817Virustotal results 49.06% Heodo
2020-10-20PO# 10202020.docdoc f75ad4f83ba06b713679c42a55a1b4def77266dc5574330e418d629288877848Virustotal results 46.67% Heodo
2020-10-20form.docdoc 9274f1cccd6ac0af51801682a093404e9f2f3453120e01d07f4e2086d73606eeVirustotal results 49.02% Heodo
2020-10-20form.docdoc 775679d5aaee59d4fca6fbf59e84b48cfc8c975b4b5f57e5638a67885a2012b0n/a Heodo
2020-10-20Form - Oct 20, 2020.docdoc 544ff4b94e4f7afb43e2c47a07cffc8162ca9d60b804e0d7203ec85fc2ef81c5Virustotal results 53.33% Heodo
2020-10-20Inv. 023034117.docdoc 7c78e9a0268425f2bff9e8fdf80e9bef5210401291ab9d1f251a97849f2711c7Virustotal results 49.06% Heodo
2020-10-20Invoice.docdoc a7a71a8db9345289a21c62edb7085cbff3e0dfcbaf3b66e6e17506a60af10fd2Virustotal results 45.00% Heodo
2020-10-20Copy invoice #76838.docdoc 9fe84df0e721c3be3f87b18797064adf7294d5fc84605bdd396e1d7492e85c0aVirustotal results 50.91% Heodo
2020-10-20XL2904907084QY.docdoc 29b284995c7be9561c22f89c9c4d4ed2f4abad490ff34aafd2fb0cc7c0312b90Virustotal results 50.00% Heodo
2020-10-20Invoice.docdoc 477afd6f4a7fed4b0886e1d509e130c736c6f2203be85ed8c18d40bc6db385f0Virustotal results 51.61% Heodo
2020-10-20invoice.docdoc b53ae43743c6308bc894bdee9df0745d8c360217f26cf37ceda3a979b519969bVirustotal results 48.39% Heodo
2020-10-20invoice.docdoc b52f4d01a0ab4d1cc721d51d83479234dda82213536075936f096f0d1203552eVirustotal results 45.16%Heodo