URLhaus Database

You are currently viewing the URLhaus database entry for http://gamemechanics.com/dbtest/kb9b-4kojmqx-intrqo/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:173994
URL: http://gamemechanics.com/dbtest/kb9b-4kojmqx-intrqo/
URL Status:Offline
Host: gamemechanics.com
Date added:2019-04-09 14:32:05 UTC
Last online:2019-04-20 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-04-09 14:34:02 UTC to abuse{at}a2hosting[dot]com)
Takedown time:10 days, 14 hours, 28 minutes Bad (down since 2019-04-20 05:02:18 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-124568090657_April_11_2019.docdoc c4902a7a5058fe9b65d47d59dc62e36f5049146e5f551c1d5622226649da9888Virustotal results 50.88%Heodo
2019-04-107063652725_April_10_2019.jsjs 26b5d6c8934dbf593f2cc541bacac6e7812d71ddec256eb7bb4e9dd61b9c13b4n/aHeodo
2019-04-109341282252_April_10_2019.jsjs 7853439472ed9cd4358d92492c3abbb44d2ae46a2e3fbceebea2bcd858e4ebaaVirustotal results 8.93% Heodo
2019-04-106889906405_April_10_2019.jsjs fded1345d0108bf6da569dbb8b00e143b393e89c87cb201965cd1da0631ad4a8Virustotal results 5.36% 
2019-04-0913947642986_April_10_2019.jsjs 7ddfffb789cb316a55ff6f7c0dea5a703dbe3cbdd25d70cf6cc60481e90a057cVirustotal results 6.90% Heodo
2019-04-0930608488171_April_10_2019.zipzip f1dfdbbadf2fb738035d732424e4f2590a74fcdec649a8150d464a86751f7414n/a 
2019-04-0940251880530_April_10_2019.zipzip 6487e4d90e4d34c4d58cbc3102e49407983b149914a2b8d2e57b5ee92188b3c4n/a 
2019-04-092759517090_April_10_2019.zipzip dded41629bfce3a068cf21c06de6407664e30b82966ca2b4b901b74d39f32ac3n/a 
2019-04-0959042143495_April_10_2019.zipzip 47e10a60bafb7a00adee0a918d60cd81208fb525c384b4e5e545150c7d39f4e9n/a 
2019-04-0901934524830_April_09_2019.zipzip caffb584bff3e149aec59bba76a7f7b4a295df1f9967d64cfac432be7eefa6f7n/a 
2019-04-09144931482733_April_09_2019.zipzip f6dcbca968f7b5aae2bb1852933b00a57b214c8f683c020c556e95a8f2138e2an/a 
2019-04-0924668364694_April_09_2019.zipzip 2997c912f0e2af1251e1f8772c5aee2d71a2cde1eea9731538984b2783ae2218n/a 
2019-04-096460488083_April_09_2019.zipzip a28104e781e9d92f089a9fa933c0f7d3f9beefde0dad2a18da32e720d84285a1n/a 
2019-04-09293166353893_April_09_2019.zipzip e10bb859076157ef9796558f37b5395e501ee7ec388938656ff0ef74c6b7b346n/a 
2019-04-09070455010495_April_09_2019.zipzip 105147b899210cfae2f0bb50b1d9a3d8f3246c46cc159ca40506e1ffe388e0b2n/a 
2019-04-09883302784312_April_09_2019.zipzip 351c1b69133181d23539d5878ce7794848ec96c20decffaca4fb04ebe04e173en/a 
2019-04-091985590644_April_09_2019.docdoc 9efb03fce5fa761348c993c5b5fe23d0c9563c5d55e40c323ef05a26e4ea96f8n/a Heodo
2019-04-0997913405250_April_09_2019.docdoc 09aab77d8262bff03f3f248d7c57bcef951c77fbfe7804271a686a38c65e1afdVirustotal results 25.00% Heodo
2019-04-0979881393054_April_09_2019.docdoc 445bb685c5f0766fc0d2cafa048eed71712bf82730320a50cc531161df7a560en/a Heodo
2019-04-090135343340_April_09_2019.docdoc 167329cc0873391535982f908d258772240cb5aa75427b2f3bff4a9c04776859n/a Heodo
2019-04-092156726684_April_09_2019.docdoc 7d7c938b29923d7d03dc136173b89c706374f1b86488b125449e4e8a8d866871Virustotal results 22.95% Heodo
2019-04-09583450163902_April_09_2019.docdoc 65e0375545edc1896338e7fc5a1e0fd005a9eea5fe751cb35d81453977c53cc2Virustotal results 21.67% Heodo
2019-04-0969851260955_April_09_2019.docdoc 48172e9c6e67f30e18b821c1232b558184327dd6dad274ff70357426d3e984b1Virustotal results 21.05% Heodo
2019-04-096602132997_April_09_2019.docdoc c97e879985bd09b1bd2d2eab5ce410cb00f092cb8ab03513d8a7ed2e3cf03332Virustotal results 21.67% Heodo