URLhaus Database

You are currently viewing the URLhaus database entry for http://www.platanistagames.com/wp-admin/n2BUnZrEi/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:546783
URL: http://www.platanistagames.com/wp-admin/n2BUnZrEi/
URL Status:Offline
Host: www.platanistagames.com
Date added:2020-09-17 17:21:16 UTC
Last online:2020-09-21 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-17 17:22:22 UTC to abuse{at}akamai[dot]com)
Takedown time:3 days, 17 hours, 49 minutes Bad (down since 2020-09-21 11:12:06 UTC)
Tags:emotet link epoch3 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-18iF.exeexe 1644a6e630422bdc8f0b710cc76f91e8cc4683172bb58948ced93d584c0bd0c3Virustotal results 19.12% Heodo
2020-09-18WYeCGqtIkYRA1e1U.exeexe 868792d490aa18dcfc21884b3707a2fd5f5ad23afd0f978480b55f384cb3da37n/a Heodo
2020-09-18BwEFslH4zi.exeexe eb91640b25c8762376e1b11a11aa567f479304a18bd5baa08d4f9a29702a6c6an/a Heodo
2020-09-18zYNXfc9.exeexe 749351e2784cea504ce328c8b37df3ad7c7c2d9d63dd24ed33d2bff8f5980ea7Virustotal results 19.12% Heodo
2020-09-18YyWdYIBNKMf0vx7.exeexe 5bc7ed412fcad550b8e2741aa6625f2f1a23a06ca501bedb82783434c48a0e42n/a Heodo
2020-09-18MHGo.exeexe 2bc1367c3434a68059a612b43713ac9ead521e93e06fd0e77a77d314991258b7n/a Heodo
2020-09-18CCQAPGgyfz9NbRssnN9t.exeexe d2b6f2c37d02841079a4a428fdc00e05248b6318d4c9a587c9797842f3565605n/a Heodo
2020-09-18SHqvH5nNU0WAvQKZmq.exeexe 001369cecd4d7c58b525bbe0cf96e8cd3502421e51522e9f636394e2a6e575dbn/a Heodo
2020-09-18RY.exeexe b2e6c9ee00fadb86f4a36390802209abc6565fbd56ac6a4b385f47eadfb6fdb6n/a Heodo
2020-09-18Zv3CgO0BVhN0Ox0teM.exeexe 0bae00a3ce3647f6e3f74123d8168c6c982ce581a11419feff8ca591c6a690f9n/a Heodo
2020-09-184jNrFY2izHBURrlfZhb.exeexe 1a91f202986f6606a3fd858a35aaba658880522ddf3ca724624aa45fddc396a8n/a Heodo
2020-09-18mw8H4Ri7n4I5wgVAwp4u.exeexe 9f6a7f4e8107fe42226a26059df8ff28c54cce66120f23810376e41b86cc5a71n/a Heodo
2020-09-18LeAKetTv.exeexe de7d17a45c0d52db12010a74b10f2be9c286af778d7cfbc4f4484a52fd18d5ffVirustotal results 14.49% Heodo
2020-09-18z0.exeexe fc7abe3f3a442f844f8968d74775b9fc0d7bb3680f0877351b0202f6ba1be5f1n/a Heodo
2020-09-18ZXsVB5M0OA07TGXK.exeexe 7ccf038cac0eb6674636e7fb5b0cabcada39f4dd57814c5803c365d71f21659dn/a Heodo
2020-09-183ODvpWcZJihxhDhBI.exeexe a34f2ca9612c791f4a7117ce293b2537968f7439308546efcb6a304df815d3c4Virustotal results 13.24% Heodo
2020-09-187q.exeexe d34a3a638bf53bcb03f6654c76d74fe417766e9c793542071cfa2f76b86e5e87n/a Heodo
2020-09-1823wF7K.exeexe f2578c0048c5fbe0765ce5af9522896bc5c21f1b2f7be9662dc8dde43de76560n/a Heodo
2020-09-18Matcd0TI.exeexe 06a4e48ee6021ea0b8d2ac48b00f0e57bfbb2802349f2c98908aebc523835381n/a Heodo
2020-09-18uAD0UJ7JA7zGvE9QBrA.exeexe f2d3b37d5bc6d4ddf233f04d5cb945dba2ed1053152f6bcb3d9f53f24fa86e95n/a Heodo
2020-09-18Udqh6r.exeexe c9e74418906475defbf30f0415a8af8bfbb03370e5435ebd4eff6c063704efedn/a Heodo
2020-09-184dcMYgnKvc4.exeexe abeedeb48049e1d46f91fa6921de39055017dc0d1739819026bc50dc5e40c832n/a Heodo
2020-09-188P2.exeexe 1f1b2534162f59804557a3801cd1d05ad62f14a8738c20bd333bbad3717db17an/a Heodo
2020-09-182TXGRpKbMfC.exeexe a18c5dd941fa7c0c7b2d0328535876e54f59e0fbc59b261b9afaa3d92f608b3dn/a Heodo
2020-09-18uLNjUjG2tC5ocjonjqg.exeexe 5fbfd750cec87cd33536fce0fdddc13787753787d615590053077d1007e71c49n/a Heodo
2020-09-18gL0D.exeexe 09038ccc0ccb3f6a677ae3bd021c61913f70d3be0d516de06f17674d18612fe4n/a Heodo
2020-09-17V2lScffFR03fX.exeexe e14441520f0a4f02d54502c02e2d487ec3787d048722952830a62ef05c9f29adn/aHeodo
2020-09-17auwttWbmChAlbCSP864i.exeexe 5e700b47713d33b6a17b2ddfe80aef7d68315a16641902618256b09c1a1fc1cfn/a Heodo
2020-09-17J8Mxb4Fsy9Nx.exeexe 27a2b848c5c20c168ace3ca4432dedce86d9f3f68e4d0a8338459558497057fbn/a Heodo
2020-09-17dIvwEDD4OaZ4MAY.exeexe 6c6cca6a19cd18cb49ccf0a62276e1cc5e42a25d7e3efc9ea2634dc6181e37a5n/a Heodo
2020-09-17VZQjZVVRBZ7DVHEo.exeexe d1710ba4b3008c9ca4da870e6ee60a39c56309bf24502e0ce00c960ddf64d8fen/a Heodo
2020-09-17JexLxxwxWNvzF.exeexe 268c72bf8b2eb9924340ccbf3a434f17b513ef5b65c460f1a72f2ecee419a9ccn/a Heodo
2020-09-171Gc9.exeexe e9408f75ebc3917a711917b762086c4877585d3e8b2c4cd45d9f8f2fca88560an/a Heodo
2020-09-17V.exeexe 840ad9ebd17f974155081443fb08a322aceb6e4d873554d29d6871c92b275488n/a Heodo
2020-09-17jrqD9Q11XGM5iuD.exeexe 3b89f4277b3216e941db4a33e384b733ccfd07d730a0990ad782f90df0893344n/aHeodo
2020-09-17TYNkUb016QjA5b4Oc8SC.exeexe 8a31f7f8046395d673d32e77e4862eac0ca336a50321c91821086177af55be92Virustotal results 16.42% Heodo
2020-09-17dkk1v4tw2QFMSXZYiXyb.exeexe 989b74691ccb24ea4fb30b310c908b374e92b1632abe142b47ba64152819fe76n/a Heodo
2020-09-17LK9d1trbGQ1Z83.exeexe 07e83637723a093cef7e1272364cc0ea52abd30908b553278a30d3ba42df9394n/a Heodo
2020-09-17p5rOCPVg3CAxv.exeexe 5f7fd9203f475592672aea81beccbe5249342df270f55dcd1a3744e3cc628e54Virustotal results 9.09%Heodo
2020-09-17fgebMRzmGKByQ.exeexe b7b98c6f5e8ad6a2064207b89fdd9966d6651b6a2ad5ec52710fb0b32c02dc91n/a Heodo
2020-09-171a7.exeexe 98579fff823fd35ec964830d5709f6a900430e8035f1a64b910a871a8686e743n/a Heodo
2020-09-17bYvZth0.exeexe 8497e76171b9cbcb43c9d7b0777c8b0044ed12d9ca14f696450c3a445298293an/a Heodo
2020-09-17p2tshKM7H.exeexe 9f10826bbb368ff8309fdab9919ea0b0e5d4e1db66811d5f498edba7ccbf5c17n/a Heodo
2020-09-17yIbs3D.exeexe adc8ed69913047a9b1b1ddfa81b7fda2452b4bbb4b67c534cbc924239e5acc15Virustotal results 16.92% Heodo
2020-09-17qh05U7bByFHl.exeexe 2aef1610300f20bc5bc74e5a6091c6c4922e9550cd43970a7b6df44a145622bcn/a Heodo
2020-09-17sMWMD0BwAJ.exeexe 9511def98e66074592188ba2e8b435af232b29a12ce8d836f5f5ab3b3c0821b7n/a Heodo
2020-09-17JhmzndW9Swai.exeexe e681d4ab27e64b34f15b46ef23872dd2014a639c31b5ada4c127fb7802493ed4n/a Heodo
2020-09-17WwFEe.exeexe 2eb7fe7a3b5d1bb225828c6eff94e068b9efdcb3a6ff5e36f7c12f5c06e9f2edn/a Heodo
2020-09-17R5WLk82P9zMcZ.exeexe 07a0b9df5782981e8fc29d32ed78187569e7ff991f9d4412c077bb4c11e128a9n/a Heodo