URLhaus Database

You are currently viewing the URLhaus database entry for http://fenlabenergy.com/u which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:86375
URL: http://fenlabenergy.com/u
URL Status:Offline
Host: fenlabenergy.com
Date added:2018-11-28 17:05:05 UTC
Last online:2018-12-04 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2018-11-28 17:06:02 UTC to abuse{at}godaddy[dot]com)
Takedown time:5 days, 23 hours, 13 minutes Bad (down since 2018-12-04 16:19:52 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-11-3095984.exeexe e7800c6cc9b4b895b9d76d5729a2678819c0abf4ba334ce6eacda0fad4fdeab4Virustotal results 31.43% Heodo
2018-11-3077309.exeexe ff43a7ee91199cf00ca77eb615f6ede1242d1b21e5a9d6cb5bc59190e34acc34Virustotal results 20.59% Heodo
2018-11-30393.exeexe 1697fbb63c7b3db8837b2630e925fd39210bef462570a9d256f225b85cd7c1feVirustotal results 20.29% Heodo
2018-11-306599.exeexe aae95e8f2169419538976f474ede4a67799c9a8658924a09a23045805d23a806Virustotal results 21.43% Heodo
2018-11-3057.exeexe 16c7e688c4f182e81abe93a27c37c199b23d3caa5e2aa19b33b5c0ffa4a70880n/a Heodo
2018-11-3028.exeexe cf53b7bf8736cd77927888e3d8327103c79e95768ded1f2678016bb8c3a5630dVirustotal results 21.74% Heodo
2018-11-3083288570.exeexe a6e52e4b0b8c2bc2d91852d3d85031483229432fce63d979d7c121c8236350c5Virustotal results 28.36% Heodo
2018-11-30253816.exeexe d3cded230efb0e6a973a4e8435a71c2a0ceb9264e3bfffc052f078bec6064e2bVirustotal results 23.88% 
2018-11-290891066.exeexe 47f9b7f01b4233718e90bcbafa8b5136c283b113189f2f1e9e0f3481ff0bd209Virustotal results 18.57% Heodo
2018-11-2965415.exeexe 501bf76666b57f372da64d0297b9c41d3df4eda3000cdedc8b2eaa0ebef895a2n/a Heodo
2018-11-29688959.exeexe 07c1356f8ee8628fadf8d96481762cf562b922a498e52bb6ae6aa695822fe496Virustotal results 30.43% 
2018-11-2978470.exeexe 73b57dc0179cdd547ff6fb3fa1e9bd2f8a0917f38316ccbcba71107faa8a4f76Virustotal results 21.74% Heodo
2018-11-290758.exeexe f134c1771743fcbd2d174b221c918c8f0f00330c7b3670aedd1df4224352a982Virustotal results 20.00% Heodo
2018-11-297.exeexe d9f027a108069bc29662d37a740fc10e95a7d934648395db8665f17055ccf983Virustotal results 20.59% Heodo
2018-11-29567.exeexe e3b60fe46c471044d46462de8b2dfda807d75b36dc0a6938b6cf20f554042018Virustotal results 20.00% Heodo
2018-11-280413.exeexe 8cf92c0b4d06b40a81cd342682d4f11851dea0571b59ed41ee5368a1622a1d2aVirustotal results 17.39% 
2018-11-285.exeexe 9074096f046de748da9f5468d8eb5def37ef223a00f68afe8453ce728f0790d9Virustotal results 18.57% Heodo
2018-11-287488.exeexe fe45c1718d3cb436dcf9d71146e3279bbdb3d0166456d166e1bfc6b5f76cae39Virustotal results 15.71% Heodo