URLhaus Database

You are currently viewing the URLhaus database entry for https://www.gamee.top/wp-admin/ozXuzYTf/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:257486
URL: https://www.gamee.top/wp-admin/ozXuzYTf/
URL Status:Offline
Host: www.gamee.top
Date added:2019-11-22 15:57:06 UTC
Last online:2020-06-14 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-11-22 15:58:02 UTC to helpdesk{at}apnic[dot]net)
Takedown time:6 months, 24 days, 15 hours, 4 minutes Bad (down since 2020-06-14 07:02:13 UTC)
Tags:emotet link epoch3 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-11-24this-site-is-virus.docdoc c2e393ff568f4a87ce48011f10664138e569710f56ddc0462aa7f36bdad5ecadVirustotal results 20.34%
2019-11-237ecdb_9.exeexe 0b9eb5477a8f872537aa3e4f6d15c6b7f1477a128ca2035c19cec719e0f76806Virustotal results 22.06% Heodo
2019-11-231p34blxoo_3645268686.exeexe a1ddd1ec2992b3b5cf68bd38078dae53090266764d8e1ae644f081ea74e29fben/a Heodo
2019-11-23l0s_2722323555.exeexe c07b605f68c3e25a23d21c8ffdea2c0b2b1ac8f32050c7311f447e45f17119f1Virustotal results 16.18% Heodo
2019-11-23r8k0_5244.exeexe 69e42af00ea818b12ca7b1e4642a52236f310c11a3c553819a5ff651d4e591e9n/a Heodo
2019-11-23jdfk5_16350.exeexe e7aa2c4e5965e9fee306dbc50bb2ec9f6e4884efe678619553edc4eb7adc0551Virustotal results 10.29% Heodo
2019-11-238shz_3651578.exeexe 19363549dd3b2f6c02201c0aed07b5b5417eecffd377040bf44ccdbd226be2f3Virustotal results 8.96% Heodo
2019-11-23yui_2.exeexe 1efbd69f9eccb7f6e581902d7b1d9cae94d1fea4ddc68f5e883c2c9d9cb712can/a Heodo
2019-11-228h_91.exeexe 6b977a8b680494ce6516de0f483c3bb5f9aec68fb7b12a253890843af74db28bVirustotal results 11.59% Heodo
2019-11-22qv_9433246110.exeexe 16dc5baf631a9dc999d9096d046cbd39aba4b63055ff0c9c10b72573487f02b5n/a Heodo
2019-11-2248_34039.exeexe 0e0f5092b18ebee41a94ab398e703ea70e00018044753f510f117927f7bfe806n/a Heodo
2019-11-225tb_132162573.exeexe d874f6aa86a84b63a1d4428ba2dcfc89d4c12ed7d384752ab559b8a0e25b7329Virustotal results 11.76% Heodo
2019-11-22gl_8814894785.exeexe 3092bd5d7929edb467d42cd1c4afd9236ed9c2244037f7391773b4c3bc18d62cVirustotal results 8.96% Heodo
2019-11-22mjyy4l2k_0435.exeexe 89b878cc269a52f07d3710879418c5fa2e8939870c658210e5b08c554711ac6cn/a Heodo
2019-11-225sqxnqlecs_6.exeexe 380ff3e4851904f4a3f572b0a523e73229560b28b9075d0292de32dfdca744eaVirustotal results 16.18% Heodo
2019-11-228lf9auek_94165.exeexe 126e3532a9ee52585f4be6f974d7c708191f0f48066a8e272d94b2ffdb892df5n/a Heodo