URLhaus Database

You are currently viewing the URLhaus database entry for http://lolligirl.com/VK9wU/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:13033
URL: http://lolligirl.com/VK9wU/
URL Status:Offline
Host: lolligirl.com
Date added:2018-05-29 08:01:34 UTC
Last online:2018-09-08 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: JAMESWT_MHT
Abuse complaint sent (?): Yes (2018-06-11 10:31:36 UTC to abuse{at}isc[dot]org)
Tags:heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-05-304218.exeexe ba39ee7a3e54d2a58cc280720aafef796e24cdbff120a41cbb3ff1d008ee2e7dVirustotal results 15.38% Heodo
2018-05-307345.exeexe 9ed9cbb903c5d8e85754e2278f931a8ea1b511c32cef5c47b79e30401847a225Virustotal results 27.69% 
2018-05-308212.exeexe 5cff6d2250c72764418c681acb739c0b660a3e4409000d7e5771e65404dbbda3Virustotal results 37.88% Heodo
2018-05-3002894.exeexe 6cd85e39bb2c10f34dbf9fff28b39ea6290dc972f56b362ccc48b8d87d9bca32n/a Heodo
2018-05-299748.exeexe 99c446539fcfcb1077787e4f9459719ddcc660d3b34333e73f672c670184c70cVirustotal results 35.38% Heodo
2018-05-2901497.exeexe a4594becc32020e329dad2972680904db8247688e55cac1801cdb00c5e163f1cVirustotal results 28.79%