URLhaus Database

You are currently viewing the URLhaus database entry for http://da-industrial.com/js/A4/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:733431
URL: http://da-industrial.com/js/A4/
URL Status:Offline
Host: da-industrial.com
Date added:2020-10-22 07:36:11 UTC
Last online:2021-02-01 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-22 07:38:13 UTC to ipadmin{at}teco[dot]com[dot]ar)
Takedown time:3 months, 12 days, 14 hours, 54 minutes Bad (down since 2021-02-01 22:32:36 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-25yPujK.exeexe 86c9982e4fefc33a7679d2f2f5ee9abe4569fe75698d88f9a93a9047b9c659f6Virustotal results 60.66%Heodo
2020-10-22yxIOg7xvjOK4M.exeexe ecc0d886f3bb56c4013d0a84eed5a6417f5b39b8bd71e8cca4b476e036d6a0b9Virustotal results 46.97% Heodo
2020-10-22YTGSHI9Iz8M4tiQ6CetvR.exeexe a40389a080aa2081eea0750f418cfe68397d61026eeb5e4aba094d189b43ceb4n/a Heodo
2020-10-22V2AykCNPl.exeexe b863fde0d4b1e7d808bc5a61a966635e1fb5e72b6000f79cdc383add469d6d6fn/a Heodo
2020-10-22eSKKfjmWs0FJd5.exeexe bf0cdaa1dcda6c6881530163fc585584b37c2d1809ff386a261634cd127709b9n/a Heodo
2020-10-22KIkzhGySp2eEp.exeexe 2a9d724236c2d3614a0271de5289e5e3fcf9b9b0a97e30b69c81de49c54faa7bn/a Heodo
2020-10-22NX6yWrGb.exeexe 0a9d66602f6815d7867c68c0e63fea91bc75ddbb34c3a55a1ca2a7866daa6ae6n/a Heodo
2020-10-22b5NUzjApYvc8E.exeexe 93ca9fbf8959c7b4339a9cffabeda00b1f2a183a054ab8a8a107a19625a1779aVirustotal results 34.29% Heodo
2020-10-22rfPI4gpEre266CJARK.exeexe db979dcd18d76db5cf99177338e44981d27397974b9809db8e4dc75cbb51ab92n/a Heodo
2020-10-22s9nk8uG9M0YxdQZoPvQPI.exeexe cf26548a30d07241a1b70bacf391618f086fd48ab96644d53e7f5f1e7f36831fVirustotal results 28.17% Heodo
2020-10-223Hj1CSRl6MS5Q.exeexe c556cccf0b684fd53b360bfc34c1fe034b590b039a1ccd99cf61fc542625ca0eVirustotal results 28.57% Heodo
2020-10-22sGwf72PzC.exeexe dbd4fd33a9d38438fe8ea7e07de22e50d36b3dd28b326fbe3e82fea0ff804d44Virustotal results 25.71% Heodo
2020-10-226C1aDGmco.exeexe 5c11f03db3fbf50e25df02cc80655b8c4eae38db0a8b4bdc0049850c7860a656n/a Heodo
2020-10-22ghuwEehMJ1M2xxodHANI7.exeexe b355e1183da03e0791e0f14669ba3d33d9fa586cbac242ffc5abc014bb79a042Virustotal results 19.35% Heodo
2020-10-22VXzeNslDvXhuIbIXc3OD.exeexe c545f5d241ebf58b93630f74b96f6ff56d04b8e44a4c9f1d6b8753e2e2702e40Virustotal results 18.84% Heodo
2020-10-22CHPHhlKstmKdp4y12DtB.exeexe de53d2a54f2fedfbaeaf7ae15f5c8a83ec1f96fb404c2f2bf3bf4fe6b058573dn/a Heodo
2020-10-22naTszo2WwLuU0BMWVsXp.exeexe 110cf82c03446cac2de8fd1aa3a6c3912107ebb7328bbb6adabc46704e0f69c7Virustotal results 19.72% Heodo
2020-10-226GZQRfXHVRSTxagZMGZ.exeexe fa5dec2a1c7272fbd54339c9d190897d81545beeff681ac7802f1b04962b91bdn/a Heodo
2020-10-22mzr.exeexe a2ac2cab3faeffc47166f920fd1b96ca2ecb8d5153af997693670023f8295976n/a Heodo
2020-10-22bYf.exeexe 9d97da8dd909f29e50a29b0197717713d57b03dfd7da782aa5a420f681d6efcfVirustotal results 16.90% Heodo
2020-10-22AH4YR.exeexe 900246e30cfd680f20fa9723a064ad29c0215f08b1f487648b54c5c0cda78f63n/a Heodo