URLhaus Database

You are currently viewing the URLhaus database entry for http://checkandswitch.com/afile/3.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:18349
URL:http://checkandswitch.com/afile/3.exe
URL Status:Offline
Host:checkandswitch.com
Date added:2018-06-13 04:45:05 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Not listed
SURBL:Not listed
Reporter:@lovemalware
Abuse complaint sent (?): Yes (2018-06-13 04:50:14 UTC to abuse{at}hetzner[dot]de)
Tags:AZORult Evrial exe Genasep IRCbot Pony PredatorStealer Smoke Loader

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2018-09-26n/aexe1b4651e975f7318688bc442520cfebd8442ac051661cba0968188636f9db6732Virustotal results 11 / 69 (15.94)AZORult
2018-09-26n/aexe21112a35f57d5d09580e9e8a44d8796fb1d8bbd6bbda8c8d304e12bfefde9762n/aAZORult
2018-09-25n/aexe2bff6bdce0b9517b05b13700aac3bab214e818564e9d7497f86cab1662d34ab4n/aAZORult
2018-09-25n/aexe262ccd0175874539d21dd2187208dc3c0b43727ade9428535a6affefe26c6b8en/aAZORult
2018-09-24n/aexe9efbb319f9a19c9ee8ec05e2e22d407a212f185225d814f1dd52782612aeb2b5Virustotal results 5 / 67 (7.46)PredatorStealer
2018-09-11n/aexe524c9ef580b9d406c0beaa963ae8f07bc608b7eb9cd77015bd41472483ecf8aen/a
2018-09-09n/aexea0968eaf3c0d17659573f6e852827ab9a627bd38d9829df93d0da4b2200bb160Virustotal results 9 / 67 (13.43)
2018-09-09n/aexea574469c51581dc44174894c15143f0a40887d864912e24d31b6f78754c1079cn/aGenasep
2018-09-09n/aexeb2db28601b66812605b795c945a87e5d7f4fa193a50c0c39033cc8fcb8b863ccn/a
2018-09-09n/aexeeea14875874ebebff8bdd2c4bb6f3b262cbd545fb168f7fe3bab8ccdf5ffa72fn/a
2018-09-08n/aexe7c12212fc22f0f07ce2f9860f6024ca6952ce888494bc3fe4fe91f7c21a2179bn/aAZORult
2018-09-07n/aexecadd51790002954b1c73f2997a92bb39256de01fd555ac1fdf326c5415733d49n/aAZORult
2018-09-07n/aexe77530094582ab25e99ba75ca9860181b84452ba47e88b7d880640ebf8dbcc803Virustotal results 54 / 68 (79.41)
2018-09-07n/aexe1d95cdc0380466e426216bae35e514efd5ab2c3255cab3b1aacd25f89e65595cn/aAZORult
2018-09-06n/aexe16fcad17b0dde941a0b8b189784d09c96fd3e47246d8aa4c071d2e78075f8397n/a
2018-09-06n/aexea37c49f2d29c7ed845fadf22f7e25f40efa8bd01f5de12056c0abea3a0e6e738n/aAZORult
2018-09-05n/aexe4370f8c4011965ee89773a5ea149f2b446846fd5f8fb935703761994ba67d907n/a
2018-09-05n/aexede2c4bf97e2f078a9f4faedabf1a36befa02d389b27b398365546e116deaf918n/a
2018-09-04n/aexeb3c29dbe73a4a4581c43ae59c0e92d0d32f077c018d15e9c1d92f0358f809585n/a
2018-09-02n/aexed8af67cbcee968b06202b5b8bc5ece7ef0e9f84b1864f7c19c866f71330a399cn/a
2018-08-11n/aexedb1e33a26a6e8cf2c9470316c7ba980a59b31e46b6a65a3b7b09b8c8633fde2dn/aEvrial
2018-08-10n/aexea3c9c51c3e86badf8d535f377e3631db3441f10887098d74d5f2e9ffdda20ae8n/aEvrial
2018-08-10n/aexee8099cf05f32121cde7a3f7e6e906026abb816bbb096a01492edcc62bb2ad65dn/aSmoke Loader
2018-08-08n/aexeb3b3290aed03307920b9481e6707d04798461027e41a7290626e5494b1187665n/aAZORult
2018-08-07n/aexe45b643920a3c4954e4406df6c424b754477fc190968d1d74d0fa4a86f7adc72fn/aAZORult
2018-08-07n/aexe9db5c3a6d434756a81939f53bb6536dd23da9c6cf89f7eb418f33172d8b8b3f0n/aAZORult
2018-08-07n/aexe90ead6547cedf8c2b582de89210e814647988616fdc4fc2e9a535bea7eb142dcn/aAZORult
2018-08-06n/aexe5512f7e9afca554d6e832a944d880996f23dee0e7382a76a7d6bb99bc10557fdn/a
2018-08-04n/aexe771a941a33f0ac13c596c71fe772e27412b7046aa7cbf16b6f955005ccd0a243n/a
2018-08-02n/aexeb974392f01792da69488c4a60270cbd7b5d8715caff3bc282a7850ce6f071d0bn/aAZORult
2018-08-02n/aexed7ab7b8992a16f0360736e3c1c3684f97b6a4470cfa11d82e0f819d78a867683n/a
2018-08-01n/aexe25085ea4997fe39b322a845af97d904aba4750290afca7b0ea7588849fd8febcVirustotal results 51 / 68 (75.00)IRCbot
2018-07-31n/aexe38e3bb32255e30c269d1e0650212507c45887084fd2ff416a077d1d3bb70508cn/aAZORult
2018-07-31n/aexe1fc9747c92ab380af5cbd2fbb76dbaccc7b52361c24ff2091e4be9e962298d06n/aAZORult
2018-07-31n/aexe0a867073263e7472150ebc82efe043fc54e6e7e1ca03561c7b063420fd9733b2n/a
2018-07-31n/aexe8a1d31122839cbbdafaf6fe0b977e1f8a8c73f1b2f540db9e3ec6c6d58c4d75dn/aAZORult
2018-07-30n/aexec9c34433d53f9ec8313731196e3776e78c76d6ea86620265615723af183f9390n/aAZORult
2018-07-30n/aexef0aca0f1c2b973072987937db8904da2109503b668aef9c5a9106554e4d599a3n/aAZORult
2018-07-30n/aexee7d6b00794d18b095bbc656633eeb1079eb4485d040bd81ddbd2b93d7cbadc96n/aAZORult
2018-07-29n/aexeb74a353a6543bed518d47bfb9cf17b45f85e20cf33c91397151915e9ea01e86fn/aAZORult
2018-07-29n/aexe94b74425855095e72c6f9d91f96621f8d40c4213ea01539809d41e428c20ba6cn/aAZORult
2018-07-29n/aexe53f4be933aeaca4214eb480c5313f156e4e2b0743003f87b0a155aeec9830716n/aAZORult
2018-07-28n/aexe3d953553111af628cc11eda314d1ec0ace3b1c6032032d6e8c287767970e9544n/aCoinMiner.XMRig
2018-07-27n/aexe66ee723d8bcc815d00c288d299891732ef50e8d1c8c7691833d1fd9dd9adee40n/a
2018-07-26n/aexea21bff5bca6abe8f5e71c1c0823fab3228ad1aa238ddd557088f21b9adc25998n/a
2018-07-26n/aexec522cded60b63b5e7e35d9b9135fbeed5dcf3f503824ec8ba847e4607e32fad3n/a
2018-07-26n/aexee88106703dabaf3938b230e114e3f87ec90dbfa9fcab2a755e09dee84ef25534n/aAZORult
2018-07-21n/aexeb460c484decec723179fc16cf81e453e5d70a0c37a5b0e33ab90cad956d0c26fn/a
2018-07-20n/aexe22a2dc40cc73316c849efa7d314f4f2b4625bda7d6c5b80e98a87f5fc6d5fd32Virustotal results 15 / 68 (22.06)
2018-07-17n/aexebda775fedaace0931db7d35f9459db7081c74e0421d4278d466ae7e83b741749Virustotal results 19 / 68 (27.94)AZORult
2018-07-16n/aexe55193dc288e9699558c3167e0917cafd8088bd4dcea8d67bfe9a5dd63e48e809Virustotal results 37 / 67 (55.22)
2018-07-15n/aexea3bb6bb260d3dc248bc1f1eac37cc5c61547620d91ce43d188ab5ca8039decdcVirustotal results 24 / 67 (35.82)CoinMiner.XMRig
2018-07-13n/aexe13bba1cc91df6d5feb49903a8c49d3c4f281b2eddb8c53c69c9883ddca0638a7n/a
2018-07-13n/aexe066b88b04029e2b5d07462f7616ad562cafaecd255548b650206e24bdc8a9423n/aAZORult
2018-07-09n/aexeb066ac9a26215e47ecbe6f0abbfbee0fe853c8dd07aa8a3058a8b8ff3523eceen/a
2018-07-09n/aexec376f4d545797b7deb029da2468a4f191f80abdbe8fdb9b448749b6ba262af02n/aAZORult
2018-07-08n/aexef44dc72a5d0449deec98f50d94994d0f45442f1bb69bd5b97826a04b90fe2775n/aAZORult
2018-07-08n/aexe11a7964ae1d3570ea6e7425695c3900a518df05fcfcf4cf81ca9034ecd808f6cn/a
2018-07-07n/aexe6cbae2dd60628af2b20d37ce3b55ab649f52708338303f9deffc21bd8477e1a3n/a
2018-07-07n/aexed032f18712da4a30067dd050012ac131516a401439da894a68bbdd17d2419f2dn/a
2018-07-07n/aexef02def7c54af128725621109257d063e1b6445dd39f46140556a34a504378162n/aAZORult
2018-07-07n/aexe936abdf57b7f68a84ca472f2e49d56acccad7f30cbb7c25038cf60b0662320b0n/a
2018-07-06n/aexeaa8f9d6431ec8daba31bfa3900cdbc55ae155a702c57a9de7d599cde8beeeaffn/a
2018-07-05n/aexe7cdfea7a83ab7432187016bdc318189fd56609becc52adf6d5956dfbf997275bn/a
2018-07-05n/aexe0f8982c859a10e3030b6e70e80a12c145e4573384f88ce9356bdd4c0421ae106n/a
2018-07-05n/aexee7fe1031c225cc6fe494e515a5e4cb335b71d64f1eb172515b5eb2de85a448f0n/a
2018-07-05n/aexe5c98ec786ba598e16fa4987119ef11e40b0c108eb9a0dc96ac6c880eb9e3b65fVirustotal results 22 / 64 (34.38)AZORult
2018-07-04n/aexe3399866414ddc9f3c3b6d657dead56e0de4f686635c6feaee11b741ad5250c0eVirustotal results 12 / 64 (18.75)AZORult
2018-07-03n/aexe7b21dac20c223a13a5df025707a6e10ea3147fdf214844db01e0a8f887337559Virustotal results 24 / 64 (37.50)
2018-07-02n/aexecc4c3eabe1e3dfbd476447989caae4217b237881e93de1bd258d27a011098b3cn/aAZORult
2018-07-01n/aexe5e071d2b8e580c076d3d750a58c0aa27789ed23a9d049dfa8ba7dd935c5c3d26n/a
2018-07-01n/aexee96e0ee10ecc558dca4f5cbb65be3b251952cfd396bad41c9906a38b464d2cd3n/a
2018-07-01n/aexe6e62c87491e86b443609b816000f42b844e391a45241399c7b476aca966458b8n/a
2018-07-01n/aexe9cf03965bc77f75e0593c89594ab6e26c88ba70f07799ccf3c7ab6571be1bda8Virustotal results 31 / 64 (48.44)
2018-07-01n/aexe624c75c7284e917cf6264b82fdd200fc96cb057a261600355b3d09478150fd51Virustotal results 11 / 68 (16.18)
2018-07-01n/aexeac1fc70ea9e8cc6bc05a5c72f34ddcfc56c1d93cc5dc234ca951ef6009cbc4e0n/aAZORult
2018-07-01n/aexefeb0c0de1e19fc9112a08d092a82e788cbb41f2ba6c551b5d23edda0ccaf9fa2Virustotal results 11 / 64 (17.19)
2018-06-29n/aexec4a8731ee4409ec51cd188971571874d63bd8532b0ed6f9902cc26e9989731dcVirustotal results 12 / 67 (17.91)AZORult
2018-06-27n/aexe9c94e23a70bd9ffef482a2e055446e987238f59baf853df90e666cee838625e2n/a
2018-06-27n/aexe18a00e6187d5fb30723eacb04df3aa7134241e3ba3a7c38946da3e7224845491Virustotal results 8 / 68 (11.76)
2018-06-27n/aexe6773c92a3eaeb5bdac637128a663561d9abc81d3682e1dd046711ce2d15f3187Virustotal results 17 / 65 (26.15)AZORult
2018-06-26n/aexe88b1b754b441a551c1dd81efce0d23362969b0a9ebba4423872016223690b612Virustotal results 18 / 66 (27.27)Smoke Loader
2018-06-25n/aexe82b381d1c46764af2f9afde03ab3606fc8041bf4f3e1cfeaf8e448a70d304872n/aAZORult
2018-06-24n/aexe2a542dae26966bf8a30d105879b59143f1cc0946b3e5d1671ba53dc492b70adcn/a
2018-06-24n/aexe29f742c687d4e0e312f8ae484753a3c71a3edef63d3e99c261cd29391db034fdVirustotal results 10 / 66 (15.15)AZORult
2018-06-22n/aexe68749cb36a92277682cd6f64dc2d3823b4211d96fb2b63843db7b0eb609280faVirustotal results 11 / 68 (16.18)
2018-06-22n/aexeacdac2e837017d663d1a2e428e7fdcc0126e4e130b2a17ab3d54aca9735c5770n/a
2018-06-22n/aexe4ed147512124047bb6dadc861434bddbaba082d7bc50fe5ce3f3c4446fbf69adn/a
2018-06-21n/aexe7186d49a0d73588180b3b9aa7aaaae93f9a8e27cd5f18a02b4ed2017c6cbf06fn/aAZORult
2018-06-21n/aexee90ab4fe17e227978c3aa3fbd684f476d222145083b712d2b4cf81773ec8f87en/a
2018-06-21n/aexe59268a2ea56bb62fe205f0502d8ad397ea32537fea71e7ef4d5a4ca0f074eccdn/a
2018-06-21n/aexe7721303a64f4be3f171c55be6b6309c381c9328d5d0526e2db9947251c9ce096n/a
2018-06-21n/aexe7838c9662cbb26d06099f980a2e9ecec906bce913c28b24a28eec3cfa2f2e39cVirustotal results 4 / 68 (5.88)AZORult
2018-06-21n/aexe51f94df7ad406e7a9ceb04e435d5d066d27a4e9dc3285c23e61552341d3880ban/a
2018-06-21n/aexe1abc65add46cba26e2adec2da460fe413491c791768e3bae73276416917e9eaen/a
2018-06-21n/aexe37d3b52998398ac373d1f1c807dbc8e17b58e3010d30e83518b04b45fd4b3685Virustotal results 15 / 67 (22.39)AZORult
2018-06-21n/aexe6706180a4889fde228a72eaac1b1e7471ddafab2495a4cce5d8e92b07f7866f4Virustotal results 24 / 68 (35.29)AZORult
2018-06-19n/aexe177a7e3e1a2387937cd3cbd6ca87e922b88bb8717f15aef8ddf213775c968becVirustotal results 19 / 68 (27.94)AZORult
2018-06-14n/aexea29f44531e3a5054a771d099396f2f223821c2e22196fc05a508bdc7d3c8cee5Virustotal results 16 / 67 (23.88)
2018-06-13n/aexeba804ea1138bf3d7ae3347739a0ec70a627aaf2cdd0b91eae665d96ebaff08d5Virustotal results 10 / 68 (14.71)