URLhaus Database

You are currently viewing the URLhaus database entry for http://scglobal.co.th/XLx/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:94711
URL: http://scglobal.co.th/XLx/
URL Status:Offline
Host: scglobal.co.th
Date added:2018-12-14 00:25:59 UTC
Last online:2018-12-17 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2018-12-14 00:26:04 UTC to support{at}idc[dot]cattelecom[dot]com)
Takedown time:3 days, 22 hours, 36 minutes Bad (down since 2018-12-17 23:02:16 UTC)
Tags:emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-12-1536.exeexe 60a1a4460bdde47072c14580ac860b8f90eb3fea8513e5c8e95ef1b5e58dde67Virustotal results 15.71% Heodo
2018-12-153.exeexe df93c2e0781aea121c27ef41dd28c26212403d9a5ce69b6f0527c916666aa162Virustotal results 20.00% Heodo
2018-12-159.exeexe 74eb1fb74684055b9dc910d3bfcf26c72957f0c30ac8d57c42e9a27f9c495d38Virustotal results 17.14% Heodo
2018-12-153618299.exeexe 5f35e901c8ea0c2cac011eb1b8b76f90785e40af8feabd88d8e4287638610e46Virustotal results 18.84% Heodo
2018-12-151654110.exeexe 7c3f9ab3bad94782779ca841542af0801cf6fdcf0f466f148c7abeb37086353cVirustotal results 18.57% Heodo
2018-12-1401526307.exeexe fa98e97fa8e54aea8734974bae0cfcfbf265c289c1cf0608f81209e8f3c5089fVirustotal results 19.72% Heodo
2018-12-142567264.exeexe bfda212d35cf8e938f04d326b9e36887476a9938db6ed49667f7607c2ba41766Virustotal results 17.39% Heodo
2018-12-148.exeexe 4fe6a6083775900230eab8b7ca97e68e66a174eb854c949708a996aa1e38e3bbVirustotal results 19.12% Heodo
2018-12-142.exeexe 07b97cef8ed1f3fe9cf592166931e48641e45422889f8d9ba756aedf564c6696Virustotal results 21.43% Heodo
2018-12-1484376.exeexe df4fd49dc53618d7f3a14246f90e97b1061d976bfb86cba638bf32d47b0765e9Virustotal results 27.54% Heodo
2018-12-143365.exeexe e7af213cb8e2eb7eb83395908d0fd344f08e989287e5edc9d1e780f8fbfa8cfdVirustotal results 21.43% Heodo
2018-12-146198247.exeexe 52514acff385f83d4acd4359266e099067b9be1cd47dd95282b347ebc72690feVirustotal results 22.06% Heodo
2018-12-140.exeexe d2acdbe1286be90e8f69b3e4fbd472e1617c682d5491fe8d4c03f031bfac58d8Virustotal results 23.19% Heodo
2018-12-143.exeexe e9efe277ccf8e2a54e94436ff110b626399a3bb3d16c7d94c6a6dce9b40d62cdVirustotal results 11.27% 
2018-12-14476.exeexe 56fb51c35821f6d19b71004c14305fb7ca4b13a46ff1176eef4261b8170a1f4bVirustotal results 21.21% Heodo
2018-12-14210520.exeexe a199fa108ca249653438a86deb17097d77a7b8c8acab941ccc3d85f6b43b1ab3Virustotal results 21.43% Heodo
2018-12-1418689.exeexe df3d446d6d2668e184d08ed4e0d4c27333839af692c6421054e5775a7038e4ebVirustotal results 21.43% Heodo
2018-12-148234.exeexe 1546c69c1c702d08b74f41df4e05240898bb48b1d101ba3eea697c77ef879761Virustotal results 20.00% Heodo
2018-12-146509.exeexe f521385ac0eb5ee9d2ba9c88884c1b88be0a289a62b14756cbf9805f95b33a32Virustotal results 24.29% Heodo
2018-12-145301.exeexe 58629704ffefc7db626fec6691f609b76bafb92e99f99b3f88d3f351ab53bc81Virustotal results 23.19% Heodo
2018-12-1409129.exeexe 695dde02005872c92b00ceb56cff716531065b477a1799418891c4fb443d4660Virustotal results 20.29% Heodo
2018-12-14626194.exeexe f2e880dac3d5367b641e378a9af2954d2a748e025ea78ec50a8cf52932c6079dVirustotal results 23.19% 
2018-12-14239944.exeexe c9ba0c6ea2d8b5b9db22f090bc926d3f2d8fcefdab57d49353fe05579200c1bfn/a Heodo
2018-12-1498.exeexe 81f32234983f1649bec4b3180374c51debb69a832c0e9293351ecbf507c88b04Virustotal results 25.71% Heodo
2018-12-1449766.exeexe 5822673a0a9617dadf761ccc70e8d89c633c123914b928f4b4f05d8f17751c08Virustotal results 26.09% 
2018-12-14767009.exeexe 5321a4f205fe32d28e85c2b74a7fbee80337bbc857404689dee114b47e16008bVirustotal results 28.17% Heodo
2018-12-1424641244.exeexe 6476739fb169087b297ef4f2e97cdef8fc50de188edcd5e011e4e8a08b155956Virustotal results 28.57% Heodo
2018-12-1406159.exeexe e3a7ea814ac11d52d0636cf94dd503dd9281973f63fe50e58b708cc44e37ba3bVirustotal results 27.54% Heodo