URLhaus Database

You are currently viewing the URLhaus database entry for http://olsenelectric.com/zVz4iwC which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:48642
URL: http://olsenelectric.com/zVz4iwC
URL Status:Offline
Host: olsenelectric.com
Date added:2018-08-28 13:26:20 UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: unixronin
Abuse complaint sent (?):No
Tags:emotet link exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-08-293.exeexe 342789143a5107228110537cb466f0698feb785ff9ee342ab6e3615e39e9b2c9Virustotal results 24.64% Heodo
2018-08-29134497.exeexe faf13561d39bb0be0eff6ca76605a1b90ed202d4784847c8337c10118e3aea94Virustotal results 20.59% Heodo
2018-08-296221977.exeexe ff2f0b368380fda589f600d1081e9440b71d84f5535ba4d6ecc55b32ab5d5d35Virustotal results 23.53% 
2018-08-294453.exeexe 3bcef58398326c5b0565ab7011a5d215fdf68a121c8fcccab499bd2b8113694dVirustotal results 19.40% 
2018-08-282.exeexe 6c5fa1c0a0c3860b2775ed00c52a2959173d04b597528a1f876bc057d417cb45Virustotal results 13.43% Heodo
2018-08-28580.exeexe f8fa091e213aa5cbeac224f8af4337f891ca719c2769ea84f30af31944e5a01dVirustotal results 16.18% Heodo
2018-08-28770.exeexe 184a9253c0b3c402eeb9839dd516c423be3397b16c124a5962aa883d74f9e7c5Virustotal results 16.18% Heodo
2018-08-2867320175.exeexe 48854e6e816ea5a73c885611e2873efd99115d83074cc648be2859d9235ded3fVirustotal results 15.38% Heodo