URLhaus Database

You are currently viewing the URLhaus database entry for http://ejeana.co.ug/m1/cc1.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2096943
URL: http://ejeana.co.ug/m1/cc1.exe
URL Status:Offline
Host: ejeana.co.ug
Date added:2022-03-14 19:25:09 UTC
Last online:2022-03-24 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-03-23 13:20:06 UTC to ceo{at}baxetgroup[dot]com)
Takedown time:9 days, 12 hours, 21 minutes Bad (down since 2022-03-24 07:47:37 UTC)
Tags:dofoil link exe min-headers Smoke Loader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-22n/aexe 6fd395a53eff705deee9fd917263e308150d95f9fb50800b1b6a814af05f6265n/aSmoke Loader
2022-03-22n/aexe b5e990fd96324cbcf4891370a925918a4c764088ec45261dcac76d4c599780d0n/a Smoke Loader
2022-03-22n/aexe db9b3a46ebd96ddaee658452b53485563ed91a21122b1ce5591715d5aad469acn/a Smoke Loader
2022-03-22n/aexe 464aa01047344dd86861ffa1f70dd7a1ecaddac375a3bb5f434a314f06795a22n/a Smoke Loader
2022-03-22n/aexe 1340f0921f67ef32a294b9afd469295a42e94221cba43bc5261b4b5f527777aan/a 
2022-03-22n/aexe 7d9c1c45b6726aacb7fdf9510bbd3f0f400c8cb9cdd215c115ea85ea4ae94e36Virustotal results 20.63% Smoke Loader
2022-03-19n/aexe 3d8af6fe6ca94dfae2031f79a345cdd6ccfd7f65423e5e27ec5ea2be007eed3bn/a Smoke Loader
2022-03-18n/aexe d66702a76e30339e6f157b482ce1fd8a54013fecc33baef7dd12c2db270ef76fn/aSmoke Loader
2022-03-17n/aexe 4784947f56f271e8b0e96cc03941d515029134c51b6cb40f0c9db9d59f2ce6b5n/a Smoke Loader
2022-03-17n/aexe 97f78b644a666d13b713ab6149147c84532e662c5a8b4f59bfde0cbf4e77a7ccn/a Smoke Loader
2022-03-16n/aexe efe40f2a29e620df2de6929ba116e22c3f94174eb1ee8191d4af8ce7fa00a212n/aSmoke Loader
2022-03-16n/aexe e7dd82589e3180b01cb7b0e3b4a217c643ce5ba889969a8a905d5d29f176c880n/a Smoke Loader
2022-03-15n/aexe caceb4c568320158ccb095b50a3434f71ac58bd6c16542edcd34a99593c59ad4n/aSmoke Loader
2022-03-15n/aexe 8b9d5dccf5768c3dc966965bc1c95064ab8b4322921fe3fe8a2286b68928ca88n/aSmoke Loader
2022-03-15n/aexe 330beb2f0ad0a32cac38c3c10ffcc52d185402723a2dd78f96ee864457d50c7an/a Smoke Loader
2022-03-15n/aexe a26a9bc9ccf57336679fa059e5239f8f360a949f3a707af2ccc84269bfee7259n/aSmoke Loader
2022-03-15n/aexe d8b8cd0eb42a3b6fed49810aa818d24ce5d69f59e576711b61529ab19ba1725an/a Smoke Loader
2022-03-15n/aexe 8399abb9cfd9138a2cdefa0870bc47d5992bb59e7d3fac78a1d50fba0df5caafn/a 
2022-03-14n/aexe e32a6751ec994ba114bc9f7b5802ccb7db09d60d70e41d937c17553b42ed2e5aVirustotal results 12.70%Smoke Loader
2022-03-14n/aexe 6d50ddbe0c17b43d28febfb5b67ba20eb4bf59e0a34cee818a6e05a9d271fa37n/a Smoke Loader