URLhaus Database

You are currently viewing the URLhaus database entry for http://waterdamagerestorationashburn.com/ERC/EIC.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:168812
URL: http://waterdamagerestorationashburn.com/ERC/EIC.exe
URL Status:Offline
Host: waterdamagerestorationashburn.com
Date added:2019-03-30 00:54:10 UTC
Last online:2019-04-10 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?):mail Yes (Ticket DCU001147394 created on 2019-03-30 00:56:04 UTC)
Takedown time:11 days, 20 hours, 3 minutes Bad (down since 2019-04-10 20:59:16 UTC)
Tags:exe NanoCore link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-02n/aexe a999eac1f9f632d0b52d322008354a2007868d3e81254f17faad0e42bf06c931n/a NanoCore
2019-04-01n/aexe 88dc3241cbb6d4ded0f049cb6444eaa61bd669f5c82d2264c4decf31b2470ee6n/a NanoCore
2019-04-01n/aexe cc6f6dc06e63e7e0a50e1272b72268624b3cd20e21814fcb0526e8b42d1bb25en/a NanoCore
2019-03-30n/aexe a110b56bb62ee758ceca8b3870e8e4e46f7dab64494a78ef461ecbc7560f7f35Virustotal results 36.36% NanoCore