URLhaus Database

You are currently viewing the URLhaus database entry for http://onholyland.com/JUN/JOJ.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:217576
URL: http://onholyland.com/JUN/JOJ.exe
URL Status:Offline
Host: onholyland.com
Date added:2019-07-17 11:43:06 UTC
Last online:2019-08-11 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2019-07-17 11:44:03 UTC to abuse{at}cloudwm[dot]com)
Takedown time:25 days, 0 hours, 14 minutes Bad (down since 2019-08-11 11:58:30 UTC)
Tags:exe NanoCore link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-08-08n/aexe 107bfc6fa7c3bacc2ba03c74187390c780db957c159acc50fa4873689d827fe3n/a NanoCore
2019-08-07n/aexe 83f5d06d92c173977ab8d606d4d0636caa287ecd2be5ef6c8df31e3383d24de1n/a NanoCore
2019-08-05n/aexe b8737b52b02470e58bbcb3e35173954af70ba545d4f8d6b78c728ed227befaa7n/a NanoCore
2019-08-04n/aexe 6d48054b6f8933e969822c64d1311afc3fdfb9a2e091a954864ad8e581e70df4n/a 
2019-08-01n/aexe e44b4f088879d0b88674dd379ae95f462b432516a5bd71805324e3d15b0b3d03n/a 
2019-07-31n/aexe 592b2a76aa494b986484bcbd34c289f9ea2f5324132ce475a80063e00598ce97n/a NanoCore
2019-07-31n/aexe 6ed9246372c2291f67a1fb032809e1bc8903dc8801393744301375a47e2c76f5n/a NanoCore
2019-07-30n/aexe 4385f0184ade76736fd3050d2d4223c1f71d44739c96261ebba96f337ae62369n/a 
2019-07-29n/aexe d5e495c9dff86624073f88a25ec0a83a9b8536267bef77638f98f72b8382c7adn/a NanoCore
2019-07-29n/aexe 4f322935d2ed8875996fb5c38f99329fc106a00c2d8dab8ae27ff07643307ce2n/a NanoCore
2019-07-26n/aexe 12a029d1ce1e41364c47662365109a655be940642e70e3f7d0e8a8f25b72a1a4Virustotal results 20.00% NanoCore
2019-07-24n/aexe ca51b01a643b3c9f72fc87a196b00df5ed50d9ebb4d347b3e8f7c571316fdf4en/a 
2019-07-22n/aexe 9ee266d87885dc6afcdc05ce1ab77143b488682285fe096c2a19f646949bad9an/a NanoCore
2019-07-21n/aexe 2e6dd389c538bfd23f2f8a06df7ca7a53462256897deb5b4bbce93f49bd606c0n/a NanoCore
2019-07-19n/aexe feef6e8bddc1b5494b48dbc32a8c6024748415c693c6b5e2539ce4cca2419ffbVirustotal results 31.43% NanoCore
2019-07-17n/aexe 2851ceab1ac3643a48353fa5228b57efa1946a0f036e6ce0960bd967e0cd32f3n/a NanoCore
2019-07-17n/aexe 2057dc67fbd9be353790e94c7e8c6668b51d6fd957d28027bd8a7b5c277d3cfbVirustotal results 23.94% NanoCore