URLhaus Database

You are currently viewing the URLhaus database entry for http://gamemechanics.com/twitch/ELf/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:188076
URL: http://gamemechanics.com/twitch/ELf/
URL Status:Offline
Host: gamemechanics.com
Date added:2019-04-30 15:50:04 UTC
Last online:2019-05-15 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-04-30 15:50:10 UTC to abuse{at}a2hosting[dot]com)
Takedown time:15 days, 3 hours, 4 minutes Bad (down since 2019-05-15 18:54:44 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-02ezwxhz0a4ron1ki.exeexe 2cfca42cbb8df0aae0fbfaf6c3b77452176285b9ff52da37e56791aa51ee8652Virustotal results 30.99% Heodo
2019-05-02ohnrcboz4.exeexe 09ab57c6d3d152efdab9eebf9aa4fd29f585ee6f647406682ca179102b98116bVirustotal results 30.99% Heodo
2019-05-02ln8vjxpsz2fp.exeexe 489ed6140b742d4bb2682ff7da80c5e2d67499ca2f97a1e2930472d4ab08da61Virustotal results 30.56% Heodo
2019-05-024gsc6.exeexe 8401b00b6fb0f3bf6507d6576475c909a6a013b998449a80b27321d6fd52f0f9Virustotal results 31.51% Heodo
2019-05-02rk88ilejlxqd.exeexe acba54a4b5b72bba9b5b9036485fa0257c5dda20856f360dc8ea8cf0d764bac6Virustotal results 22.54% Heodo
2019-05-02nbujqk7um0opzs.exeexe f157b22a20feeb0434ca66806ab77e590603a97c863656f0f734f1cde5e87b95Virustotal results 21.43% Heodo
2019-05-02e0gctd4bj.exeexe f4456e473304e3d438a3e7cf58d601c5b56d16b1b81ddcf5e5e16b1ec20c172aVirustotal results 44.29% Heodo
2019-05-02s7rqzwa6r9.exeexe 4384db57f8098be4eb16caa008dc7d87a349b02d9574c4ab5b13f50ee888fa54Virustotal results 36.11% Heodo
2019-05-02103lsp8c.exeexe 90cb1f8d6e6d54ac207dada4c686c794ecc03bcd232719e7bf37e1ecea96a199Virustotal results 35.71% Heodo
2019-05-02yqd9r7j9nra3g03.exeexe 94e3dd6d07d2ccb2b4a5dee974af9c815c25777aa5e87962348d24f5991a182bn/a Heodo
2019-05-023fq111l36.exeexe 5820dd4ee3893dc9f2a0cd523d4927cd23a9e4fb63a8d8dddd78e79869fa4333Virustotal results 43.06% Heodo
2019-05-02ptb90kr526hv7fs.exeexe 223fc1e77320c0a515a20fb2de9c1914a47708dad5aaae4454b91288156dbe6eVirustotal results 47.22% Heodo
2019-05-024q1gb0twgtsp.exeexe 66aa942d8dc8714c54e31c733d37d5f6d29eb27ff64e3cdac40ee9ffcbed2f42n/a Heodo
2019-05-02tshll0djjbw16u.exeexe 79a44b5796a6c8f3dbe3050dcb7cd9a53abd0b568903b5eb079d33d93f1d8a7eVirustotal results 38.36% Heodo
2019-05-021h67jd.exeexe 3b5acf6213221055de8d43376ca1cb56555d30a944ff9f60ffe8cec6a8bd325bVirustotal results 38.36% Heodo
2019-05-02c45dh9py40.exeexe fc7cf3f6bf9b02163ad46c045e008583b8e4432ebdbfb2f7d2bd4f098a91074aVirustotal results 36.11% Heodo
2019-05-025gxpl.exeexe ccd26cf9cf606fb49a237a501e9e441cae962090bb6e5b24e4e93898ac5b3383Virustotal results 37.50% Heodo
2019-05-02vi8ww3q2avfbwo.exeexe c6a767ba8c7fbd15990e376a2ecf6acd3933770982b7c591d35cce684770e719Virustotal results 30.99% Heodo
2019-05-02aw4wdi68tg.exeexe bfa9f4346764ccf4f2b721cdb1ad12813907113071e7c4336cb0f68f12a04ec6Virustotal results 27.54% Heodo
2019-05-02if2qks2f.exeexe eee540e958049bf14200c4004b53ae1431c2c74f1c74bd637235c04bc5aaa7afVirustotal results 29.58% Heodo
2019-05-02fs6bb.exeexe 92528cfa2b857a8b3b1b2d0047c237293d7df35d6e2bb87f3cd9f6bd43c4a38bVirustotal results 28.17% Heodo
2019-05-022ivzsyodn7f6db.exeexe e52503af4ce2b4a6ca4558b750569e51f48c78a20d69bd18677a8f88e8767ab1Virustotal results 29.58% Heodo
2019-05-01wliqskaukj84.exeexe df8471d7149ad3b6fd7e8fb7541de710bba9d18296a8c5c47efc10b0f21ead05Virustotal results 28.17% Heodo
2019-05-01wf40v68r.exeexe f4e5581ee0c9d708435206419260f8d478aa1bf82056b85b277c59da7a708e86Virustotal results 29.17% Heodo
2019-05-01ipvydzxcispeqrn.exeexe cee42889fdbe04188000486e783db459272855339c68ee0567fb310ebadaf42bVirustotal results 26.39% Heodo
2019-05-01pa2qctopxbaq.exeexe 1969227c1da28bee28df639c351bbae36a6735d44df8ddd8056e7dbf8ee2b720Virustotal results 34.29% Heodo
2019-05-01e4ff7xe8h20sb.exeexe fc8b6e6d117dd5b2e8a1c09f67466875686b03556031b3a4c5fc160ee097d7d1Virustotal results 22.22% Heodo
2019-05-01ikbtfgg9l34rq.exeexe 03ae027f5da19d9d7cf5c66dd74eafae7fc8e0b581d2c49163db86b03fbd4210Virustotal results 22.54% Heodo
2019-05-017o4fe8lpfkswru8.exeexe 9f9ede214a21709bad4f6867ef8b0d03fc6f9846c06b332d39262785a5ef09faVirustotal results 20.83% Heodo
2019-05-01stvnw0xsg.exeexe e5d8aadbce59b0960dddf0d1481db1d5c6d3dc97b093938e37e82a0b5216053eVirustotal results 20.83% Heodo
2019-05-01w81jdopddp83.exeexe 73600cd0546dc22d24b13b6f04c3fab2d0c4542e59a3eb5a8129d55253fcc886Virustotal results 22.54% Heodo
2019-05-01npBZ94zd79Pl.exeexe d1cc656d254e31f478b57dbb5aa14793a898454634563b54adcac8e5a9e16439Virustotal results 21.13% Heodo
2019-05-01V6DXhADpGMk.exeexe 85b6af90e832fb63e89f08b4c88072cec50496e9744b493527b1da56abe8c12bVirustotal results 21.13% Heodo
2019-05-01zzXY4P4K.exeexe b2224689dcad89409f61de17385afc309bad960a29ad4536544060245d98a7ffn/a Heodo
2019-05-01bBClzYfyOJx.exeexe f7991d54db31a411d21ef1b6ef87490aa3828576eb59fbdefa57a3861d1c728cVirustotal results 26.76% Heodo
2019-05-0152CAOP60.exeexe f3b63d05db4989d717bc0f8dd66fe2080cdc0d13c8ded93030ae3b70026f5e26Virustotal results 25.35% Heodo
2019-05-01j81O0rvg.exeexe 684c52e52cd712231a6e8abc3800253ab6cd9c43225b65f859a3f6a59b5ddbd5Virustotal results 28.17% Heodo
2019-05-01mHgvN47t.exeexe 80f992b1906e88d7356ac0e0ad51bf874b2757e0813f2d9eedadb292af0c61d5Virustotal results 33.82% Heodo
2019-05-01eEVqm37PQ.exeexe c7709b8129559ad7ab29b49ce7474fb0ddffd5bdac106d4df71b5b144f1b21d6Virustotal results 32.86% Heodo
2019-05-011CIjLkRBABxy.exeexe a0cce57894f221b63c4d5a57f3249251010da5c365840f7b63e8e3b8ee3c10bcn/a Heodo
2019-05-01XFDQWWf9txwX.exeexe 131ca72a20ee4c1bd81246ec60a226712dfa6f0d0b6706b7b7c7c9a6f6ef5a5aVirustotal results 35.71% Heodo
2019-05-01ChJd1SVE.exeexe d85efb8cddbc21306a86fd25c3cc5f893af158ad8b2ead2f64cced2f8db40a48Virustotal results 32.39% Heodo
2019-05-01b4A3ReW26.exeexe cb41db92f2c3b9afa422fc65a6df8e55d26fadac58077fa706bc5c40929c89cbVirustotal results 31.43% 
2019-05-01CFaXxZ8ycF9a.exeexe 90042c714cf8671807ad4290921c16abf0a59816c0ab4296a076a7b10ba46c00Virustotal results 31.94% Heodo
2019-05-016Ao60OJpXjJ.exeexe 768f9ac2e34c329924c37e8eea52fbdaa52d6b7ea102bdeea5c4de83c9a44545Virustotal results 31.94% Heodo
2019-05-01jlrf6v7dEd.exeexe 12f53950de8323c610cb7ceee7d9e86f686bd8c991866f51f7c3dac0f3b862d2n/a Heodo
2019-05-019EezCintR.exeexe 953c39c126e8688290f832b85f4fbf232e9d4becce8a7b401b557ec0975318daVirustotal results 29.17% Heodo
2019-05-01xjE1AUobVC6.exeexe 563495968b838ec4e58f67a177e80b3eb6e7f83907b96c18d3641104be5f5d63n/a Heodo
2019-05-01n4lK9hLXquu.exeexe 63b1b0237b6dab649df12992446651e40953d68c004af4792130d64acb5910daVirustotal results 28.57% Heodo
2019-05-01tqAzMsdq.exeexe ac3294e2c0f1c250454f7d8e5dc18a4fd20f36772eb1978d8ed676389e6c77e9Virustotal results 27.78% Heodo
2019-05-01F71iV1C95SYX.exeexe d5ddfce986949236d061a8ecf8683419ac9be02f0afbf9886c983a243edaea55Virustotal results 29.17% Heodo
2019-05-019crJkGBvPy.exeexe a9c78c029559c3c146ad88b1bd4537c81431df7366be87f9feb903593ef2ace6n/a Heodo
2019-05-01KygTJEz4QDiv.exeexe ba8eece35e64b6fbbd12f239162ad352288bee75fa295f79cb85875bd6072b87Virustotal results 28.17% Heodo
2019-05-01R4TOQUgxC.exeexe 3755e12eb843299abafaa75b6556891a3cd18d4547695cf67ae492c85bb78a6aVirustotal results 30.99% Heodo
2019-04-30cyGUiHjf.exeexe ceaacb8a9656034956154e6ff56f9a4f9587431f9bc863d8d976909dcbf1de47Virustotal results 30.56% Heodo
2019-04-30QueK0VrbrX.exeexe 323f79a427c06cdac69877dff7b50d55ebaace0df0e2ad2685ddbfcd3d6441d8Virustotal results 30.99% Heodo
2019-04-30TiGr8NeE5CU.exeexe aa5ee46ea3617e3484c5e86aecfd1ce6a91dcb179bbbd129d2c7b48842a370d7Virustotal results 30.99% Heodo
2019-04-30ZHLiD59BClD.exeexe 0e4d8f94695835678762132e57f4852358b6612b173b2bd1232742118d009e31Virustotal results 30.99% Heodo
2019-04-30nE221gYjkJa.exeexe 0b8e05b035da25640a50f1450f3a92288473a33e421d585fa940187f4d8261d0Virustotal results 30.99% Heodo
2019-04-30K57uwuYfs.exeexe 2604db869657cbebcd60e6f4d7ebed7026f68e21209cdf171bb2fb70bc02655fVirustotal results 31.43% Heodo
2019-04-30sJfpuBSLWhe.exeexe bbe981142aea9ae1d00ffc2a8dfb41c74b1adad9144f08892362b2b18e2056dcVirustotal results 30.56% Heodo
2019-04-30rWsT2qZ9BOtk.exeexe f6f6d4cbd6b700b791b6e155ae2774f8b984cb749fe8f38e62b3f47bc1bc1b0eVirustotal results 30.99% Heodo
2019-04-305Oxoskqv8Wpz.exeexe eee3a9097bd48436b7bf4fdf5204ebf7990da77c9e4494fe13879d45fc60ad24Virustotal results 30.99% Heodo
2019-04-30d1eWBfltnV.exeexe 66e1569771a34ec272ba8d59685a00b73b9974bb237c5116a82cffbf3378f596Virustotal results 27.78% Heodo
2019-04-301exGEeY7ol.exeexe 6c206c29700d87e034c7cb6679ee3ec5a894439638843e38f1272cd9d97222d6Virustotal results 27.94% Heodo
2019-04-30pTNNVNWa56yM.exeexe 10294a1dbf6dedf9ebe35eff1807e078f1164b6900f3527a2d35988f49ab7a5bVirustotal results 30.99% Heodo
2019-04-309AgwNNx8TT.exeexe aec7f3a8926b4ae3cca4393f7635923876a35651e2f3498ec54da21e4bd559cfVirustotal results 25.35% Heodo