URLhaus Database

You are currently viewing the URLhaus database entry for http://megastararena.com/aspnet_client/file/ZVsjSRDKYhS/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:447374
URL: http://megastararena.com/aspnet_client/file/ZVsjSRDKYhS/
URL Status:Offline
Host: megastararena.com
Date added:2020-08-31 12:03:45 UTC
Last online:2021-01-13 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-31 12:04:05 UTC to abuse{at}ipserverone[dot]com)
Takedown time:4 months, 15 days, 8 hours, 58 minutes Bad (down since 2021-01-13 21:02:23 UTC)
Tags:emotet link epoch3 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-02DRGLsG3mcF.exeexe 60e70ab1e177d90bda49c31337592e06edafcea821f53269d9ae5e9871910613n/aHeodo
2020-09-020803841106.exeexe a2a7c69ca2a194670cecf0413022ff364a94fc4d4afe1ebc6e807c02d34fb87bn/a Heodo
2020-09-0200019753.exeexe 7e44ed94845c1f6ccd90f2a23f073eda17b4b3b06d4bd768fe2bc695ad83d76an/a Heodo
2020-09-02pHkj5GON.exeexe 6b4f9482923fe31eb50ba4090ade55fc23dd44d3af8c62f07d21721bb92ef060n/a Heodo
2020-09-0258585677LuCPf0O18h.exeexe beb5b8691cc059a191020da1c74fd9280392ca512558e3d91a0a77482277cdc1n/a Heodo
2020-09-02AGocuv8egs0088399427515.exeexe bd3dc4657de66d33ce2f2cac43529cef3d5da66258c992cb8d9674f957e84473Virustotal results 16.18%Heodo
2020-09-0200307966003429IwldqCixQ.exeexe b6c7c65fcf04c8cbc8b9be5e4e6cc6948239df9bacd6230d5a22a341e5066c9dVirustotal results 8.70%Heodo
2020-09-01gQodEsZs3653762724.exeexe b9cae66117965dd38dbce964d87c11899129e576754f98af23af9f8d7e6266c7Virustotal results 7.94%Heodo
2020-09-01wvkOLKb7CZU046564.exeexe 43f9eacf99a6289eb8d428ae5ad0af1b0964f13c84b562de78ef47b8d6591ca5n/aHeodo
2020-09-0100019106.exeexe 767aad73d88c0b29a9645ccffa2d9ff9f86667a3d033df42fa3b6f0da081764bn/a Heodo
2020-09-0126ScEAc10965122.exeexe aa0f269ddce68ee2850c44499295967143e8f9acc49ddd13935a7e2c95da67a5n/a Heodo
2020-09-01n1Enw873515223668.exeexe 38e201d75f76b22d98322d82a279b236c3afe73fb40ea0f452cc7d738346180en/a Heodo
2020-09-01cjN7bSq0049371.exeexe fe8e4a8838ed57fd5147e9866ae85f39a21fac95f707676b63540885477382c4n/a Heodo
2020-09-0100926033398229.exeexe 50a9b8704aab153a9fbe5227e9240875e0ce00d5e3704f7bb9de5bae2f9a55fdn/a Heodo
2020-09-010077973341014D6i.exeexe c40ae2d44e317343be5c9b9dd63c51be88f28eb4fb20abc166d19f0bddee524an/a Heodo
2020-09-010qqMeAzRi7.exeexe 037b54d17b021532bce42118352cf251a546372c52a2a3a7fafcee82e73aebbcn/a Heodo
2020-09-01iizU.exeexe 5e83e48c172c350c292aa0da1f3ecf11f002201bd6fdd0e6f538b61ae58c614fn/a Heodo
2020-09-0100006263189805.exeexe 31055f638a9ecd418c5cc24dda18dd69aa3f9bc6ec8b089b639a60d64d0222b1n/a Heodo
2020-09-01HTkojOkquCxQ00009034448.exeexe e71c3f22d2f72f8767be82427684522d8c1c4b1629d155afa9e1977bf9be17e4n/a Heodo
2020-09-01LXMMLqkKXYqR1.exeexe 6210c6c1ed5a4c70bf76daaff664724125d0ee42ae9b3aef0ee5ae051910fa41n/a Heodo
2020-09-0100008377933273217GS.exeexe 1cbd3bf1e0102458cd51c502f1927ebc11f1b6cb8a7f0b1931a46f55747655c1n/a Heodo
2020-09-016InQ959730483.exeexe 2c18706f11e4c3f2896e1242b39ede7b5010974daf8373324bf49ff24fe70669n/a Heodo
2020-09-01w1VFU7000001817286.exeexe 939a2e5e55a53b470b4c59713cd5f3eb96ca8e267965785aad2c6ff964a89cc3n/a Heodo
2020-09-017oQj0797251168.exeexe b4b1e5cc9f5ec8100f122df131abc2748772a5006847de5f8637e19e765de5a4n/a Heodo
2020-09-01u0V7415007911.exeexe 80bbe20ee46c15f491690b05e95b1d4c994a89a7585fb3d10355baa6a1826694n/a Heodo
2020-09-01dmCkH516.exeexe abcb80ce2743d65f9ca3636c17af086b094c06ce7f8d6f858fa31cce2400f588Virustotal results 18.84% Heodo
2020-09-01yTuGa.exeexe b44de22aa8ffbafafed468349b987a2e2d3aa959167c6648eb547ddbb881eceaVirustotal results 17.39% Heodo
2020-09-01hYGNj3oX00117.exeexe ec17b93ddb84b4c9c31007c8e66f9aaf29fce8823e7861ae71046cd8309caa8fVirustotal results 18.84% Heodo
2020-09-0100361713.exeexe c5992147b6801a38e64f674ce80496943a1f4ed67a430f6dfd656abb75de1b3cn/a Heodo
2020-09-0100773638328932.exeexe 27723101711b3477179c6270d02c81d81a72d11e1efab28fdaccb71b22919e07Virustotal results 20.29% Heodo
2020-09-01uLWsfDNbR110.exeexe 71a93058814f289e43eea0b55fa09ee7a0e103d8eae229f6ad060c75fa66372aVirustotal results 18.84% Heodo
2020-09-01uu9IBo.exeexe 2152e1fbff4f0e24f90c1f0f15b60448fea5c1831bdd3d9d2c3a3b12c92c0acfn/a Heodo
2020-09-010810551.exeexe 895ba4997e38793446d1a405b9aabaf9e65c0834f827dd0355f005317f754544n/a Heodo
2020-09-01BoIYwjJGsv7561521699.exeexe a27d00fc0b4687f1725c8c481dc3d43160cb858fa1c14dec57d7166abb06bb64Virustotal results 13.04% Heodo
2020-09-01fjIoM8005096.exeexe b36ce15a0a5c406830f20a1dd5523fe6e681afc478dc7ea438c7a25c8eecffd5n/a Heodo
2020-09-01SxHko.exeexe 9c84bf25ac166453aec53be22550c8fa1df8f2550e64528097d6780f3a5eb39fn/a Heodo
2020-09-01KgTUoKNs.exeexe ac2568b855bf358755c5b2ceac330557cf1f1127345941938b2b36a7e038a72fVirustotal results 12.86% Heodo
2020-09-01p30an9XO02802.exeexe b549856d293543039fa8d08e15bd79ead9735f8e2b6cddd2132807e76ba471ban/a Heodo
2020-09-01C1B88240.exeexe d6c477c93b35cf7338c3094802157bcaa10b7d648c5d09b06da9399eb67a8434n/a Heodo
2020-09-01e3.exeexe b921e52fa010936e42d34a3c9c9dfbe49d28f4cf791e1c61d36db53f1dcd98cbVirustotal results 8.70% Heodo
2020-09-01097635908467.exeexe b0cefe36d2ea796fd50fd770368d59eccb0f75130c6970186dcd5e4b696eb68fn/a Heodo
2020-09-0105244.exeexe b1ebae5e2d33b4b49bb2552c98ce2ce3b6f069a421ce022c4c578fa34c49a761n/a Heodo
2020-09-010000903415181Tzsev4WrJIp.exeexe 07e27dbf2a0868a4a552517ba76ab32f093e86c159f72c3bccf5cfb86dd803dfVirustotal results 10.29% Heodo
2020-09-0100016065161.exeexe f9fc44e310b754388d6f6c10845c0fcb6a1db442eab3371f91cf4a9973de9fbfVirustotal results 8.82% Heodo
2020-09-01saZZ0641039642.exeexe b784f2355863d339f4352738fd9e34b98a6a2c9f620b7d54e746130b72a6c574n/a Heodo
2020-09-01006902937207nsbUuy.exeexe 8ece253b7365fca80f507b82da3e278e1f7e46f536cac01d9120c8ddbe5317d2n/a Heodo
2020-09-0100172.exeexe e69cb4148a2e630804d9f0a9d33d628d0114787bec600b6ba6e2d1de1f6a85efn/a Heodo
2020-08-310006751LBvsoeWPB.exeexe 685f2be45a4cbb4e68d5ce68725add860f9dc3c7586d41084d754739252da8c5Virustotal results 15.94%Heodo
2020-08-3104766290175574aWJWN7vw.exeexe bffebdc528cd9ec678f8ebd7167b822d398534abafca0704669a0f169aff2467n/aHeodo
2020-08-312015039552510NAIO1E.exeexe af142b7fe2c82f2d6b15556a8878fa264d769cb69c0a991898c58d40d610ca6fVirustotal results 14.49%Heodo
2020-08-31082034815.exeexe ff2bfa3fa6912e4d316ded094b9d4db307f116b3f8080302f4c178c5c7ca5c9dVirustotal results 8.70%Heodo
2020-08-31b57Sq6YVAxd00693489.exeexe d0b243a6b594882fe6ff6c9db16cb3315a4afae40d36b0fdf675f359596416b6Virustotal results 14.49%Heodo