URLhaus Database

You are currently viewing the URLhaus database entry for https://www.thermalswitchfactory.com/99jxom2/W_SY/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:176077
URL: https://www.thermalswitchfactory.com/99jxom2/W_SY/
URL Status:Offline
Host: www.thermalswitchfactory.com
Date added:2019-04-12 00:00:12 UTC
Last online:2019-04-17 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-04-12 00:42:03 UTC to abuse{at}alibaba-inc[dot]com,intl-abuse{at}list[dot]alibaba-inc[dot]com)
Takedown time:5 days, 21 hours, 40 minutes Bad (down since 2019-04-17 22:22:17 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-13CGl_m.exeexe 3958b5560181874d841a3d56f2c68d0f42667cc529581ab9b1ad0ea6b95e4480Virustotal results 28.17% Heodo
2019-04-13O6g_7Q.exeexe 9336f4dd87b24d7c040b6427df9eaf289c98cb94b1bd5bb0dc9dc95a9346b6f0Virustotal results 26.87% Heodo
2019-04-13z26_VWP.exeexe 180d57dde59998ed3a2c11eb5ac8d25b9738c7f5d57b8cb35bdb7380ca626a10Virustotal results 29.23% Heodo
2019-04-13LUe_d2u.exeexe 7cc84473f5b6da062306a8398c1e326ac1d73c2c9d44b563644085d6a0f068ddVirustotal results 27.27% Heodo
2019-04-1386_W.exeexe 9c87e061283d0a546f77f627eb654fa62f6b0694a2f300df19e46b11c5b00c3cVirustotal results 25.76% Heodo
2019-04-13uF_N.exeexe a17cfb016c2775b5958ceae8a233e374389912aba5027abb456c61b75ff0bd86Virustotal results 28.79% Heodo
2019-04-13uY_tsk.exeexe fa9bc3da655dc237d8c5c52318f64309531d8c0692c12688fba135e18ff83d78Virustotal results 31.43% Heodo
2019-04-139R_a.exeexe 1a30bb3202ca96a3a8d0a939ef6cf91c11c768cb07dac526fc5a04da3d0dca86Virustotal results 20.00% Heodo
2019-04-13WS_k.exeexe 5fe53b6b9b3614df408e73bd6935d19bb931392e11e11aead27e259438429a2fVirustotal results 21.74% Heodo
2019-04-13rj_T.exeexe d8c50ef1ff9b677cfeaab0c9dc7b61982d76fa1442a6aa0bd67415f7b91b0db7Virustotal results 19.40% Heodo
2019-04-13lFE_GHw.exeexe 703ae6afea0dd8251e147b0e4c70b0a3764b4cc19a9938b67c981ae1021335c2n/a Heodo
2019-04-13w7L_k4.exeexe cdfa39024495111f16667fbcd11121555771e1363e369f1f4883f98da85d4c10Virustotal results 19.70% Heodo
2019-04-13Zp_y.exeexe 28143e132fc33c33542cfdacb0191a119fb29a00c8f8ea53aff9a99530ab4b13Virustotal results 19.12% Heodo
2019-04-139v_L.exeexe b9369a324391718ceccad533b6ea3bae94456cb0243f569ef9e2d9f3aac2f5d8Virustotal results 51.43% Heodo
2019-04-13n_pM.exeexe a5152e50bf4cb561d16365eea2c4054d3b7cfbb2f78eba17d1128333b82604b7Virustotal results 50.70% Heodo
2019-04-13U_Ir.exeexe e0a9ec4de4fbaa21be4dd1d75eaa986e0319bf650d8f5c8e420c212dd773d964Virustotal results 45.45% Heodo
2019-04-13V_ttK.exeexe 707bb71f6c87a501a6d5a89bb5157fb57fbec7aceedc467947bc9257cbae720en/a Heodo
2019-04-13NVA_9.exeexe ec593db295bf0aedd136eb5e833b280bd9849bf927786139f92f4f1797ff9155n/a Heodo
2019-04-1351_OU.exeexe b5c713b5a2bc2ea3e9e48ce0c333636db3bb3c17be08d8efbe5a1b0e55f61bc1n/a Heodo
2019-04-13ja_9lL.exeexe 159f3fd270cce5f6acba2fbbcdef5f2213d5093b07c7e2ecdcd918b90ec098d0Virustotal results 46.27% Heodo
2019-04-13xn5_1MZ.exeexe cd7a073532c243bcab00f645d04187ee7797da2e88b81d963b4b5240d336b8e3Virustotal results 46.27% Heodo
2019-04-13c_Q.exeexe aae181bd00b2741d9c97f70b32d2024b960c58f678837360df6adebffac2e3a4Virustotal results 46.27% Heodo
2019-04-13o_VdK.exeexe f3de84dad5e8d7d3f30ee90d96b479c7c1747a60f560ca1ad07bea41710587beVirustotal results 45.45% Heodo
2019-04-13dAx_0n.exeexe 5f302bc8ff558cdda3e1d709d00e3c6d02b77f4ec55addc17ede1512c1ffbfc8Virustotal results 44.12% Heodo
2019-04-13pZ_SD.exeexe a6ffcefceee048bf6fdf6dc966b53755f9465139a427545b976a6e1b381c0825Virustotal results 43.94% Heodo
2019-04-13G_da.exeexe d96f032c942974375bbf742ce17f5e673d727ddb32b1e7d54988a77e9b4c706fVirustotal results 43.94% Heodo
2019-04-138tF_c.exeexe 1291de18a01e92bfc55de0ff2ca71faed51f1f5c0c89a2cdcf931efe211a41aeVirustotal results 44.78% Heodo
2019-04-13jK_6V.exeexe 35f8c3946a41f312d5f8bcda7c4d1b97637ec89ae4b09de04b9eabd38b009c8eVirustotal results 45.07% Heodo
2019-04-13s_d.exeexe 3448ae068593755b0ab339c55810cbac826c1819676776eae6cd82d9ecfea77fVirustotal results 44.44% Heodo
2019-04-13V_V7.exeexe 54eae6355c43e22da6be4d8aa824c3d92fc552f8dcd3884615d15580040508faVirustotal results 44.44% Heodo
2019-04-13bNo_vSj.exeexe e90cda665df5dd7a28f413f8859a3ad5828a586a15e5d8c8196887a4e6b9f744Virustotal results 41.79% Heodo
2019-04-13DYP_dEE.exeexe 9038a6323031e6c3b862c500834a9e6ff48416d965f092118dfc34190142df7dn/a Heodo
2019-04-13ub_yEv.exeexe ebca95ad8c2c49a5e2705d31102b2d4f5d20949e6baff6fac3901d86756b566dn/a Heodo
2019-04-13NHX_s6.exeexe f1a9eac7ff07813171ea265105c5c7aadce6140979db070e81ff80d40d495ac3n/a Heodo
2019-04-12j_FEW.exeexe 9d0599942d7aabb7f724ca6da98e336854667df33c6cd491f440c42e598e9c3cn/a Heodo
2019-04-12rHn_v6.exeexe d04be0415b0c4822e5ab12f7b002d8f11812d43bf7606b593e0ec6c636ef7347Virustotal results 36.76% Heodo
2019-04-12Bk_lTK.exeexe 2ab6bc7441172ea36119becc3886028d2ca0258881fc78280cd037ca9407c907Virustotal results 39.13% Heodo
2019-04-12Q1m_lN.exeexe b801e24d23d9850ebb5c0a2d2760ec4371f296c45bc5f833406699af68aa24d6Virustotal results 33.33% Heodo
2019-04-12zX_k.exeexe 8f5813a3b5fc51ba1835b92c509f761bc722ede03e2ceef6bb81af59bc7fe2f4n/a Heodo
2019-04-12Of_Fta.exeexe a77cd156aa680e12257fb374906315ac2bc296954908d84a45136a154720fd16n/a Heodo
2019-04-12f_6e.exeexe 0eadba5a555a9459ffc76c8f9e4d6507ec5e856359f2ea2eaaaf3eb892c9d75dn/a Heodo
2019-04-12ZF6_Sq.exeexe 8e05b40dc32d694100233aaca3e91bf28bb1ec431971e1694e4eac22008de928n/a Heodo
2019-04-12O_L.exeexe 45a8dfb283e3f40b2bfc5990dd2247d39a64443e8a32635d4ef7db84770722adVirustotal results 23.88% Heodo
2019-04-12v7h_ebH.exeexe 9894380293e12dbfe6d7d326967e16c4d57d930b083e5cf6fbeed955f94b43ffn/a Heodo
2019-04-12I_s.exeexe ea637081fbcd6b0c0d77a9d9a3b616a738d78b6001d591a5672d01203efc122eVirustotal results 23.53% Heodo
2019-04-125_hG.exeexe b69676a397bc487d28ba85009ddcbef6fc3583c18ca23f5ae362ccd5ca20275bVirustotal results 24.24% 
2019-04-12Xn_97.exeexe 98834261083b0e6af17481389d98bd7951af8acc770dbc85a30f10f9019cc1ecVirustotal results 28.36% 
2019-04-12q_I.exeexe 06dc9e0a0cb4f4f620110b80fbafb7a04ddcb483e03a88c38e1fcd3a21888436Virustotal results 28.36% Heodo
2019-04-12PEa_PL0.exeexe 2d76c9eef090e5b8975ce507851adff780a7f84f1164c91943d1c5ed026fcf1bVirustotal results 27.27% Heodo
2019-04-127_H.exeexe fb4097bc1e487366fb15a9303261c8c406105924c097dc5a8b5dd9a65bb0fb40Virustotal results 26.47% 
2019-04-124C_SQ.exeexe 0905da3d426423f2eff1709a0366110de7d70cf2650fe1b1e32f5f1a2ad5fce6Virustotal results 26.87% Heodo
2019-04-12R_75.exeexe 36156f5744466a7a8e2b92f8f6139b560c23a2c0e98acaa192d67b0641dc1b64Virustotal results 27.27% Heodo
2019-04-12xgA_rb4.exeexe 4d916ebfd5d30658da62cbe135cd2919b3ae6b74046c4f8db504f2c481d19581Virustotal results 29.17% Heodo
2019-04-12mZ9_2.exeexe 8574dd9172306021c951dda7fca721df6337d138c53964b04a92554a8095041bVirustotal results 26.09% Heodo
2019-04-125HG_xv.exeexe facb45ca86513dc680c54ede23231e30123f7a021488eee2766612302701840en/a Heodo
2019-04-12Uwv_Qi.exeexe b12a68abb69358e95057d3d0e20e39001e53c762cff7fa9677027b32534837ebn/a Heodo
2019-04-12c0_N.exeexe f03dec6f3b191839ab251aa5c88081693608aa075446f07d0a8652e9430405e5n/a Heodo
2019-04-12jVX_3WD.exeexe ca2826928bec60585e63c98c6aac4fc200634dcb37a9c2827e1c670fe95da1f7n/a Heodo
2019-04-120_vS.exeexe 0ba20fc5d0ac94ebdeca7166bb5f3bd707fc6e569f3a7ca18ba7437af71763a1Virustotal results 30.30% Heodo
2019-04-12WzH_gg.exeexe ccb8584b947e01400d629086a6d71e26b81462c3f228fd7117b4d20db96a3afbn/a Heodo
2019-04-12JQK_RYG.exeexe 179ac6a40323c17dfce919ab62a0087ebbb45eef72cd6f553e8ac6c7a4c916e7n/a Heodo
2019-04-12L_CY.exeexe 82514208c61485b00f195a78eaed29d3b075c850b34ed3bcacd152136bd0ef9aVirustotal results 31.43% Heodo
2019-04-12Ue_t.exeexe fe21b2b16e98c39c29e849a8be31178c8bf1d3238fb37a4cb0b6d9d17e5e1acbVirustotal results 32.39% Heodo