URLhaus Database

You are currently viewing the URLhaus database entry for http://onholyland.com/Img/CIC.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:219381
URL: http://onholyland.com/Img/CIC.exe
URL Status:Offline
Host: onholyland.com
Date added:2019-07-24 16:16:03 UTC
Last online:2019-08-11 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2019-07-24 16:18:04 UTC to abuse{at}cloudwm[dot]com)
Takedown time:17 days, 19 hours, 40 minutes Bad (down since 2019-08-11 11:58:24 UTC)
Tags:exe NanoCore link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-08-07n/aexe e7751788c5d1e5b677f18fe48d5bfcca551a5305ce8061cf122d083874cf7241n/a NanoCore
2019-08-05n/aexe 51f6db862fecc29f5adb21e3a2c526a9e746016c77751ce85f99847dbebf340dn/a 
2019-08-05n/aexe e3c023e0f193a4feb6c78901540e026f18820c6b176fdef799777f2b79f05104n/a NanoCore
2019-08-04n/aexe ef8b8977bc18de2e13442f694f281a9b48d5462f71577ec3fd29de57f381fe2bn/a NanoCore
2019-08-01n/aexe 16d5d258a37952c2aacc6a6bd0f8a43b2b3e6672c6b98597ceed3ff48167914en/a NanoCore
2019-07-30n/aexe ff6e9f1b64ba5d0c4994921a56321c3026f655b01614e2d16c84edd75be51b8dn/a NanoCore
2019-07-30n/aexe e35ab3004ad18225368bdb2f19a8b07fb00ae3e74251f555f4cb6bcd27939a43n/aNanoCore
2019-07-29n/aexe 7ef1042cff7125fa98229c4f48332ffb4a372b9d2d7e062c10da4bd89f30ac99n/a NanoCore
2019-07-28n/aexe c3a361a46b878bacd8622ede661f87bbca2c47c9e5095de5387121a0ded834e3n/a NanoCore
2019-07-28n/aexe 921567eae7bd3f9b875f7698d31a4662d81784a843e9a03070cb30c64f3b4201n/a NanoCore
2019-07-26n/aexe 8d628ec145006c75dba35af4c2b10ea7b1ca56cfcb312866d94f1398982a3cadn/a 
2019-07-24n/aexe 7628a13715f7883a72982d8da0bcc7943be68ab14d944873212eb6d4dea78a2en/a NanoCore
2019-07-24n/aexe 372480c5ad73e4037968cb29b9e9c0c760b26fedbb0039e1be8880897d58f1ddVirustotal results 34.72% NanoCore