URLhaus Database

You are currently viewing the URLhaus database entry for https://castnavi2020.com/sys-cache/X/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:695307
URL: https://castnavi2020.com/sys-cache/X/
URL Status:Offline
Host: castnavi2020.com
Date added:2020-10-15 01:34:11 UTC
Last online:2020-10-19 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-15 01:36:41 UTC to abuse{at}sakura[dot]ad[dot]jp)
Takedown time:4 days, 0 hours, 7 minutes Bad (down since 2020-10-19 01:44:18 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-16MYkNBIm7KFhN8csRxU3Y.exeexe d7c9e68a68517ad0725951a4f88277377dded1d8c8e9130d035ff95c37f337caVirustotal results 23.19% Heodo
2020-10-16hIHJl8o.exeexe 1aeab867577709a3972e03af933a3425cdcb27b664e594f5b89a2d957227e29fVirustotal results 24.29% Heodo
2020-10-16Swja.exeexe b55adb8db89f63472736af3e0aba6b899e627bbd364dd583ad4e537966ce7d14n/a Heodo
2020-10-16BVkk4iAbBXXSjrtgUxC.exeexe 7aab532781403f04627a911665906fdb7a0c159a794d2c95f622082a6f974f93n/a Heodo
2020-10-16fraQZRxA.exeexe 4f89a9db75ad7e1d91e798629986f84300ba17cece759cd2800caf11465e126cn/a Heodo
2020-10-16iqxS0aTUaRvnvV.exeexe cfe808ff3ec7779c71add84e0e12569e3b7e7b41302ffa66e8df942280f405a1n/a Heodo
2020-10-16dZERKlfQq.exeexe 70b6a6cdec08e291875395a46c0745b9ff79bc59e82da7cb07f863516ea3c708n/a Heodo
2020-10-16eZDDqNsa9viQDsfkchDqH.exeexe 43b68e233dcbe0160f5c05fbdf51da1dcffc48dd172a2af264e8255c24c39de4n/a Heodo
2020-10-16kH5S2RCdwB.exeexe 9ea16f2febfe8ffea7a414db3883a425578574647103011a42fe3a61feaae592Virustotal results 33.33% Heodo
2020-10-16QWUIJNVqE.exeexe 81c83c4acd417e6a48157a23d59dc733dfb05b888bd6ebe2c44510f99fbb887cn/a Heodo
2020-10-163ShbKYo.exeexe 1f2e55df6be530480b0f5c449640c86f922b0e46e82436053d47350353f135f3n/a Heodo
2020-10-16m5x649kYgc0k5uI86Gfcg.exeexe 62e4f902c99cc40465c58ba86e01202a04c0de701cdff15517235dd262714b2cVirustotal results 24.29% Heodo
2020-10-16iTHmxGCCnnhwHmvKk.exeexe 0bb52c76a7c5dbfaef9a6d99a5eb1e46ad50cd5949af146036435044c0b7d404Virustotal results 22.54% Heodo
2020-10-16tMPE1PhJRVYnQ.exeexe 6be8c5244e2100156fbb4d2ed187b44f3a55e5f1742ca2f18765f40d473b13adVirustotal results 19.72% Heodo
2020-10-16AVJ6e1.exeexe 8e1e9326743e2fdc2136a743514e1739efb6298dfe0da6f53c2317c8c44a30f5Virustotal results 14.49% Heodo
2020-10-16iByjE3kDwQ6i8xJJuT.exeexe b0978dff9b7eab47b88e46c6a57da3d2713596698a254de3eea2bdecec9abb09Virustotal results 15.49% Heodo
2020-10-16c1MBu.exeexe d76026083680a76d0b38710a092a8abe722134dc3785d0ce82b4360a4064e3d3n/a Heodo
2020-10-16lq6yyyi3EBAIY7.exeexe ff96fbfc01541e9d64c0b9187ffefcfef350dc46782b5930f1bdedad639f2025Virustotal results 14.08% Heodo
2020-10-16sNAQKABjsIjwhb.exeexe c42b7215f87e2de2b44c937af631ad3bb9089eb1c53c023e16c033ed4720d5b1Virustotal results 14.08% Heodo
2020-10-16vn8y5V.exeexe 680f662d5687df3dbd6baae9c832ea58709a57e765aec936a37067624f36bafbn/a Heodo
2020-10-16egLNnAokA9m6BQcNGk.exeexe 9e2a1be28bb441a2fbe4f7b727817baaa049b8c5414f1ccf891ab4897a501dcdVirustotal results 11.27% Heodo
2020-10-164RTg7.exeexe 55ce9c5dde1b3eaa315a3df1345a0dfbc78024fa297fdd1610d9ebcbc43a85f3n/a Heodo
2020-10-162nA9gXs.exeexe 95808aef1d691814dd5e7195ba48b5a90a5fea7d8deacdec8108cb4a4ebdce02n/a Heodo
2020-10-16lkBPBfmvd.exeexe 6159b0bd870d20d5b07e98dc1a6866b4418308621dd8ba6be9db50dea4be24d9Virustotal results 14.29% Heodo
2020-10-16yYFGs7ZxZm.exeexe 3a0fb8bf216a127fbfccc498a0262ac0470a1034d493aaf9afc60ffb5022b148n/a Heodo
2020-10-161K2YwZjoKimgtw5UZfI.exeexe ea8e5707db234938f836baf932fc212a4484a5c30d6c5509f64af4b9fde4f60eVirustotal results 11.76% Heodo
2020-10-16a2XeWo0AlygCi.exeexe 52ab98bb1213f5a1f0bda96508d8502c081f0b635aa53d88eb3883ba41f08384n/a Heodo
2020-10-16j8wY7xoKnbsIESZvYqkgx.exeexe 3af041e8be3df47fc08f8734f69bf7317f4d2119c3590e3607239fe9e87327bdn/a Heodo
2020-10-161f45F8WXVddfmgHJo.exeexe 87b1eeebac8814b153ee1969bcba3447ee6c0d6c28b5d5220caaae2451d8ca2eVirustotal results 11.27% Heodo
2020-10-16wZBcHFx4Bz6H2AKIK.exeexe 2d9515369787fe5095c0616a78900369940a1341f4984874e0eeaf799cf7159en/a Heodo
2020-10-16S0PAZPXcYe.exeexe cd1fbd7fa58fcfd6cbe7bad0063bc1f8268315ec60e928e00bbc8d8235495cddVirustotal results 11.27% Heodo
2020-10-16lFFhzG.exeexe 628ea3e54c283e185abe29deba8a1408fe0c4ee0621117450ed8f16931904d6fVirustotal results 11.43% Heodo
2020-10-16yRSzx.exeexe 72dbd348542727a406002c1ab1d359154ebcd519b05651ec2f40e639f670460eVirustotal results 11.43% Heodo
2020-10-16lj3er.exeexe 1bbd7c662b21e6f176262e60289fb06f24cff9c3133233972cd2b6af8cb33af7n/a Heodo
2020-10-15Wg9A6UOzYGF1RvT21U.exeexe e65b71f5f6033a08e0efe37c4a097df0b959e742ebebe42491374ef6e0eef622n/a Heodo
2020-10-15HXHF3ryX0vnj2s1.exeexe 3f6c5c9c7ec013b52732664ba8278fbb7edc7bcf83527e377a501561227dccb4Virustotal results 10.00% Heodo
2020-10-15LjWRP.exeexe 3fd37f894f63b314ec481ff7fd72b1227f469df59156e5472b3682ca0d662e63Virustotal results 11.43% Heodo
2020-10-15KHGai.exeexe f237004009b37beff86073b66774ccc0bf6eed831450abc78d6cde03fd8e0ec8n/a Heodo
2020-10-15CFFWf2MRPj04Yc.exeexe 51e955cbd24e639010bab387eac975c0c2fdb15b397af5bfaf70543766b1a692Virustotal results 18.31% Heodo
2020-10-15UvStZTy.exeexe daa8ed58336a49d278a19f6d445efc511ca725873a7727382498ca0d6dff3e85Virustotal results 18.31% Heodo
2020-10-15s3ZUbRU22rTt2.exeexe 650691ded741548db9223d46c791f93935e07ad6ec3405aa67492e4a030fd0aan/a Heodo
2020-10-15B5IUDvdPj2nAAz.exeexe c4fce97638499da70ad4f85b320c07d9252f7622c38e54cc5706d663c9dc6621n/a Heodo
2020-10-15YkSoxvLdHsrziCqJ30yl9.exeexe 07fee6607475da057327d9682f1cd9f5d5aac411e4a6a7f33eec252d3fb5d1d6Virustotal results 18.31% Heodo
2020-10-15oVAR16.exeexe 9c29504b9c87f9869c3f3eae091e35f03045bf7e377a56a26b24321017074221n/a Heodo
2020-10-15sMXNP4gKUV.exeexe 6f8f1f2e2e9d1563f68672a872c953ed3aa862f73494fc84cdac63ebb6134238Virustotal results 17.14% Heodo
2020-10-15tC5zohRj9LlW21B.exeexe b32132be69e01c545c2c2561c53f88897ecf034eae7b559f2278f37b1b292f73n/a Heodo
2020-10-15M1ZHf.exeexe 03194558254e61c8c4d6cf1000453ab4da4782ffb1291bdb7071f64656656748n/a Heodo
2020-10-15mtcrcSFlTUKS0KHOPuif.exeexe f7f5a5077236285afab78487dfa02ef9c2caaf26325d6558fdf10649fee5f4c9Virustotal results 20.00% Heodo
2020-10-15cyTlhKku5OYuJrEjj0xG.exeexe e2cdace44a3addf7f8c921e4e1806a8b6226d81915c0ff6e1e3171ec3a7dffe3n/a Heodo
2020-10-156WYsVqsE0A.exeexe 7e4c76e3fe24aeaf5f69aabac5950a4f87401cedca103704f05fa2f73db00f3aVirustotal results 21.43% Heodo
2020-10-15OjFEpErpE4jBjfWh8Q2LJ.exeexe ab7653d982d1ffe7c7caaf4d37b003befad79166835f66a142dfdaf931e309c8n/a Heodo
2020-10-15ddH.exeexe ed7ab0287ca239299d0c92a7726183fb4b869fabaa38bbd8e1c56504f1c15025n/a Heodo
2020-10-156sOLWgQ4wrZHg.exeexe 19e64d54d069c4d181221672352bead02081780d8bca788b49cbac5cc8c0b3eeVirustotal results 20.00% Heodo
2020-10-15ARad5Jh6Ckmz955nKP5i.exeexe 298c98f7b3e8f0a11112ab3f7e9d0bf9138cd1daeaf6f85b854229484e7a7761Virustotal results 22.54% Heodo
2020-10-15QqQC3DqT8OipZZGA.exeexe 7d9a2509a06e226be05b25e77c1250be10a76b95dc106d2026bee7c0009a2b7cn/aHeodo
2020-10-15OUK3nMZy0B.exeexe e29fd4c081976aaf5d5aacc23e6f07e2639faccf45a389e9541f0eb646c2b9e4n/a Heodo
2020-10-15sW1ohejN7i4InI792S5.exeexe 146ada58e32d399d0b254abc0758802ae2bbcacd7b4ba9458492db48e995a05en/a Heodo
2020-10-15mBHqbC3SZGSZp6.exeexe 1b2c486d11921f3a98ab0cef74e33a88b4a4102acd37269ae3b60b37c4bae04dVirustotal results 11.27% Heodo
2020-10-15QSkFrLi5BzyFf3CsGQRYW.exeexe 9af8beae816a93d3c0a215561aaf836b76b3212b62df3215d5bbfd9f9a100f31n/a Heodo
2020-10-159mbN.exeexe b3595dc9bb1a0019621d27f68a5a8db39cf5a9ab318f90d1e67b49883f8fcdedn/a Heodo
2020-10-15JfHHkgZvuC3Em2X.exeexe 02970433b615918477d99f0ccf5032fc3090cd46b095385c9f50d8dd0fc0a26aVirustotal results 11.43% Heodo
2020-10-15yNZQXXFd4oIBXuoDG.exeexe 76cca81cc4267920900ab073af234d3d44e867812fac0f08e15319b061b6ce11n/a Heodo
2020-10-15ZOj0bbDDT7xR3Z9ZVS.exeexe 39eea5143317b9be249bfe7b500a14fc6058967c60618c9f4c503bc1c0f8e2fbn/a Heodo
2020-10-15YD3UBrPzq5uM8zyrWnoOx.exeexe d3039f5c5a5b0aa0e73b7a41dbe48c37d6d9462faa82c56e3ff933ad694bea0cn/a Heodo
2020-10-15wuYKm4fBMFovmysc0.exeexe 21c81d53de2b2223a0c8f161af06618c8831f6d6b8141f4d14853d3fb4a035dcVirustotal results 9.86% Heodo
2020-10-15mWuwhTB9SLn.exeexe 1ac0aa892d9c0978d4dca03daef91b44b5ce041830ee24ec56394cc035672ce4n/a Heodo
2020-10-15XSUoafC07.exeexe 831b5ab3b907ce48e28205afd1c16295950747055c058a3cafeee1e9fa8ae9fen/a Heodo
2020-10-15ug6CGB5mFxun.exeexe 6744301d3cf0a78f50d98612244f0b9682417ba352170c47009ffed5c2023605Virustotal results 24.29% Heodo
2020-10-150EgtLdK.exeexe 3b5c8480634bcf42f093837bfe806e1ce0fe69d6550c015b8e93ed89e264fb7cn/a Heodo
2020-10-15hQpv8H7YKZCM.exeexe 24c00ae31136ddbbf57b11e76ecd90ea5107d6c261b9dbaf94d994099d0d8109Virustotal results 16.90% Heodo
2020-10-15oxHdaTO2WjTwcKx.exeexe f13425fac3814fc48f77ee175c7b097f7c893e404db815e8ceb8f562522c878an/a Heodo
2020-10-159ZceZOP66N.exeexe ae3d6d0ef7de13c8969bf7f790eb5a3c6c5a6db47412f2afabb9f53ec3c0ec1bn/a Heodo
2020-10-15NS2Oiz3khSLjI9BtKeId.exeexe 7f722405dc4120606be127bdaf2dd6f38496ab8b79d17e231d436d2323769aben/a Heodo
2020-10-15B0D.exeexe 4dcab9a23bae8e99abdd5afd2d028797fd250b8075e945419f5da5c0560f2f00Virustotal results 17.14% Heodo
2020-10-15UQJITb1trpnX.exeexe cac35499075bff808c53b3d34dbb4f867271fdfe2388a1aa3014afea26586603n/a Heodo
2020-10-15G9R3cZd.exeexe 2730dd1dd841b4fdd200cbe0867c30ba576c983fdd29b51d98ce525f3126ad7dn/a Heodo
2020-10-158lzEHpHDydNkIX3Vz.exeexe c789037e9ebf0ff581dd126a7552b12161e2f434b48194407839e41725692bc5Virustotal results 16.90% Heodo
2020-10-15pqKeBIgPVVSVVC2hnR.exeexe d5faaf4ceda3cce48ba1fa0c6e47a6069ff950f28592eaf956ee1dcb8f8e1545Virustotal results 15.49% Heodo
2020-10-15i0rLK99MN2P.exeexe 1691e62c1b608cf70a11a5fb075456af1cd43d9822249663a9c019a20beca52bn/a Heodo
2020-10-15WSBhvzwrl.exeexe 90bff1ca27aa10e6d76d4963e50264f5746c8444f6d960cde1400850b6600c52Virustotal results 17.39% Heodo
2020-10-15YwrOgz6kattNxE9MNo.exeexe 030a846551892ded00ea74b4d36c01e605d2140d1556c063daa5fae68c114443n/a Heodo
2020-10-155YGG1KgizBWx.exeexe 748444097aa11ce192ce637e62be7270a030146667bfb602b887f1c2e313a8d0n/a Heodo
2020-10-15cJzC42cT.exeexe 8e3c0876d65a4ba87298e5a3c7abeda120ef42d73410b29db8dbacb47c5650fdn/a Heodo
2020-10-157nzJdm8Owk3O.exeexe f7c5d629596349d7e4bc19fcca82b1067f4a5e7aa9e899276636d6b2693d7730n/a Heodo
2020-10-15gD3yMgpBN.exeexe bbca05d8ea0ea5bfe1c498b9c0756f4729b91e1c3586897e541528b3b2ec6d9en/a Heodo
2020-10-15Q83pnw.exeexe db24466e88c79322f0a1352ec9498f1feb5f43434093bcab08750faa0bbe0621Virustotal results 15.49% Heodo
2020-10-15w3vgsl467RrQahbbYvJm.exeexe 7ec631ccc2d5d2f1db2158e08a6c3dfbf7763d26cfacf5d233bbf3a6b145915fVirustotal results 15.49% Heodo
2020-10-15BSt.exeexe 34df6284bb560dad163128593a738aaf4aef92e1fd3f88b864334eb3db44ed82n/a Heodo