URLhaus Database

You are currently viewing the URLhaus database entry for http://fenlabenergy.com/lEA2g/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:83703
URL: http://fenlabenergy.com/lEA2g/
URL Status:Offline
Host: fenlabenergy.com
Date added:2018-11-22 06:09:02 UTC
Last online:2019-01-04 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: abuse_ch
Abuse complaint sent (?):mail Yes (Ticket DCU000891035 created on 2019-01-02 15:17:32 UTC)
Takedown time:1 month, 13 days, 14 hours, 55 minutes Bad (down since 2019-01-04 21:05:03 UTC)
Tags:emotet link exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-11-231058.exeexe 864b1ce8feeed53db144afae131da20601bdf2951e198827177d40a233c490bdVirustotal results 22.86% Heodo
2018-11-2358.exeexe 06a4229c7a2da74718fb0138e5326d61f54d6fcdd859109e0299a8a964b8a514Virustotal results 22.86% Heodo
2018-11-233567.exeexe bbdb9c742ae880ec8ee5fe998c2f200d168dc00534477596402e34d02cf07854Virustotal results 22.06% Heodo
2018-11-239424.exeexe 727aeb3aba2e1fd5c78d7710cb5f1f76b0a40d314f261ef92620176452491f8bVirustotal results 20.00% Heodo
2018-11-230275.exeexe 9d46cf4634b8ce50ad0360ff41859531ee8a49e9072ca8bcc4135aabbc1d873dVirustotal results 27.14% Heodo
2018-11-236881092.exeexe d9503f255d0590fc115a657e7698a2686fafec61bc7e44148626f955444bf20dVirustotal results 25.71% Heodo
2018-11-23091704.exeexe 9f14cacea123070fc6b720a217786c24504171243a3eb1cbc78f13dd3ec31870Virustotal results 31.88% Heodo
2018-11-225799752.exeexe b070c8ea466be7f5c21564c87d9e473c6c0d711b726a0616c44dc83498016b45Virustotal results 26.09% Heodo
2018-11-227459924.exeexe be2368c763d1ca93e19acad7e7c4dedfb8c9683d0413914164dcfce6c0cd900fVirustotal results 18.84% Heodo
2018-11-2272180.exeexe 7fa57ed39952cd44b94648a058f38d16cb635583fda916e553f951eb4d9ffe69Virustotal results 31.43% Heodo
2018-11-2238030276.exeexe c58fce3414bf335cd84034739cca5edc725cb1f4f24c9ca8dc6db417c761698bVirustotal results 20.29% Heodo
2018-11-229849.exeexe 1b1b31e1cbb29327ae9e3539b1aa4e430f8c0216fc410c5e7786abaa25633c38Virustotal results 21.74% Heodo
2018-11-22295927.exeexe 1f7892fa9bca80caae6bd8ee2439408ee05f22ce8e3977adc081c0c85c954295Virustotal results 24.64% Heodo
2018-11-2285715.exeexe 1fc05fd0324f553731da1f2f06b40ff29b26a012ae6eca19bf95928c6e9ad8b5Virustotal results 20.90% Heodo
2018-11-2231.exeexe aa1eb8307b80892a9e005c9c2a86e39dc625f2a068e008077ce1be1e3d146918Virustotal results 27.94% Heodo
2018-11-22967.exeexe 68f5e0da88fa21e67850899c1bc58be7765370ac4dae82d23d7666607381b3acVirustotal results 25.00% Heodo