URLhaus Database

You are currently viewing the URLhaus database entry for http://okkolus.com/downloads/toolspub1.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2862486
URL: http://okkolus.com/downloads/toolspub1.exe
URL Status:Offline
Host: okkolus.com
Date added:2024-05-24 13:30:17 UTC
Last online:2024-05-29 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-05-29 15:17:08 UTC to abuse{at}selectel[dot]ru)
Takedown time:5 days, 17 hours, 39 minutes Bad (down since 2024-05-30 07:11:11 UTC)
Tags:RedLineStealer link Smoke Loader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-05-30n/aexe 2be2240e9a4aec14025ae84f8cfbc34fa20b3a116da26ef828ff8263f4cd4f88Virustotal results 39.73% RedLineStealer
2024-05-30n/aexe f6c3e323f616313d3095f66f39e06576c0a220cea9a49a22e75bc98923473ca3Virustotal results 45.21% Smoke Loader
2024-05-30n/aexe f6c3e323f616313d3095f66f39e06576c0a220cea9a49a22e75bc98923473ca3Virustotal results 45.21% Smoke Loader
2024-05-29n/aexe 3c1a70855d1238bdc95577875a5a6cc064d2e0dd17cb3cc56b9a2cdc9bc7997dVirustotal results 40.54% RedLineStealer
2024-05-29n/aexe 45ee0743d38cecfec69dd9982408cd12d1f54cf682d6246f52b4b0fbde38f70aVirustotal results 43.24% Smoke Loader
2024-05-29n/aexe 45ee0743d38cecfec69dd9982408cd12d1f54cf682d6246f52b4b0fbde38f70aVirustotal results 43.24% Smoke Loader
2024-05-29n/aexe 9c539da17e3c5b2c2c289137ec9276c08b59de9e8a812c6f2e2f773721873809Virustotal results 36.67% 
2024-05-29n/aexe 906c789b8e6257a610c394aaf00418dc5c77cbde2c53cc080fdc45fb0b8d5147Virustotal results 38.36% RedLineStealer
2024-05-28n/aexe 07440021c21067958af8808c382520d359ba8dd23a39a02892aa1e1cd0fdef1aVirustotal results 43.24% Smoke Loader
2024-05-28n/aexe 876ec57a6de326532920c5f9cf8d37cc31955fd12489481a4d8a4abdf9994b68Virustotal results 41.10% Smoke Loader
2024-05-28n/aexe 85fb2a5fc04e93c9bb993e7a776a3345be25f9736e11506f6b66d04525312308Virustotal results 42.86% RedLineStealer
2024-05-28n/aexe ef503cd7d7300d0ed66f202871445531109bfbee7d793f6d2655ad7a5a2bb327Virustotal results 44.59% RedLineStealer
2024-05-28n/aexe 96b707086a5cea52d315bf171171c218424001904aa9d4010c6b4563b5f0dee7Virustotal results 42.47% 
2024-05-28n/aexe 8c4179e2e89db2886cb0bfb460775f3c8f3a582d08d9e75d99d70fef892efcebn/a Smoke Loader
2024-05-28n/aexe 3b2036e357f24ecc73ff24d2c5464a44e0214fa677e0797a7cc49c559b053a79Virustotal results 40.54% RedLineStealer
2024-05-28n/aexe 30e149c9f8a520cbb67e52858b3cd2005429e2c96c35a37d850b1c1fbcec84deVirustotal results 34.72% Smoke Loader
2024-05-27n/aexe df4ea15df740f004d61af4328b44049ed136a85f13cde7721f70267079e62863Virustotal results 32.43% Smoke Loader
2024-05-27n/aexe b6f26aaf35c5d06d131291c0a61d3fc5ab549e768762782a5254a41796a55ed5Virustotal results 35.14% Smoke Loader
2024-05-27n/aexe 7d5961b64d45bd62968eca15f2811c7aa1df243dcc57e5aafdf4de2f4f47c9c3Virustotal results 33.78% Smoke Loader
2024-05-26n/aexe 32118ff63acf10fa7100491a9403eb20aae672ec31005b217c02dae3b6417f01Virustotal results 41.10% Smoke Loader
2024-05-26n/aexe f0e6e0db2654751696c9410a073d50a0d45befe21ab6f2c7056eaf13adf3a0edVirustotal results 41.89% 
2024-05-26n/aexe a05ba24c06200a71272a30f5e2d91b017d810cb91787ddefa73917c3c74bea23Virustotal results 43.24% Smoke Loader
2024-05-26n/aexe 0c0a3ecafe96b325a32ef7c8a964af8f08c83933aed9c69b29d7e39f34ba4c41Virustotal results 43.24% Smoke Loader
2024-05-26n/aexe f6fdefc706e46c2162b28b3c4c968ce49aea5ccac02ad41aa48adc30fe2fa77dVirustotal results 43.24% Smoke Loader
2024-05-26n/aexe 7eab666f0e02ccb8111c74f81d82ee65c4ed0b95107b752709a967a20d4e2ed4Virustotal results 41.89% Smoke Loader
2024-05-25n/aexe a277892b6a1bbd232216842cd1420584d3c130af3eed3f96b272c1a3096052e1Virustotal results 43.84% Smoke Loader
2024-05-25n/aexe 4f367a58544f96f8d0dd19d323acf0db1437d2cd8ef96324a37ea7be20cabf36Virustotal results 43.24%Smoke Loader
2024-05-25n/aexe 777059bab5c018e5697848a65ca0c01119e570b49126541d0ab00ebea26c147cVirustotal results 43.24% Smoke Loader
2024-05-24n/aexe 6f480d8bf96773150f0939254a71eb20e447d30580aab7abf171ecb0e0094698Virustotal results 41.89%Smoke Loader
2024-05-24n/aexe 71480fc81a1e0eb85d94e08b31fa257204200371c01fbc3cbf7c45a622e66da3Virustotal results 41.67%Smoke Loader