URLhaus Database

You are currently viewing the URLhaus database entry for http://ard-paya.ir/cgi-bin/ddiue5yX5k28KC33EKw/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2102309
URL: http://ard-paya.ir/cgi-bin/ddiue5yX5k28KC33EKw/
URL Status:Offline
Host: ard-paya.ir
Date added:2022-03-17 16:41:14 UTC
Last online:2022-03-25 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-17 16:42:15 UTC to report{at}parspack[dot]com)
Takedown time:7 days, 15 hours, 44 minutes Bad (down since 2022-03-25 08:26:36 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-19Z8TQDzVRbElLK6Spv.dlldll c9827a8b7df918f62e1254ee902b2855fae8b2b1c91c109b089c22a226db2326n/a Heodo
2022-03-193Cy1EF93.dlldll 9ab942a3ca799fd65a9b70d894d6608f0a58567594574356e07274d50bbcf6b3n/a Heodo
2022-03-19cpHn7Sw.dlldll 6944a56010fdf3274bee7715777f83396a5fb1948c3acaf168624b841c551da6n/a Heodo
2022-03-19VFJnTEQLqs8QYp.dlldll f4e703f3c53b4188a8f2c3e3a4df7fb246c4286a6a1a33967f326d2f3816cc51n/a Heodo
2022-03-19bhYf5ST1llIB96hOKw.dlldll bb6cd61999e2dcbd313dc6ce078f5a40b3cf3e6d778e36e59353ec9e34f8c3e3n/a Heodo
2022-03-19VGFczMs7Y2bpp1tCpk.dlldll 6997eea854642f9a781b71266351ac40ea1b44b6c0999dd5c296c375837feea6n/a Heodo
2022-03-19KTb8Z.dlldll 61c6cfc183b2fc673328a9c791d091827351b85f7b12f9d45c1482946d570b69n/a Heodo
2022-03-19SiQn9S7Ra4.dlldll 1ec7ecb2363a9704809d78e906ef53934f22bf084137ffc288da7b5228ab6d38n/a Heodo
2022-03-19jSz122ZfR47pw.dlldll 9a45983303e042cd19792d5d9e7f46ca63f5d8e1611789ce74a4c2818d4dfa04n/a Heodo
2022-03-19bcyZGOM6jdG.dlldll baa7b6b25111edbb092dfc7d84dc7276e38199ab525be3a9891930f5cdbb3d70n/a Heodo
2022-03-19A5V6P6bs1REe9.dlldll 97cce3fded324c416b4533faa9a36be47dc53a288729d7e45ec232ef98b57637n/a Heodo
2022-03-19XOknpH9.dlldll 7de74549886069ede100b5b7d43b437b5719a7032a763fa2ac6e1a4fd4653042n/a Heodo
2022-03-19IycRxM7kxaMN.dlldll a437903fb7be63bd2b5232a68a6b3cf98774530b72bfc500628b4f36bd6a92b6n/a Heodo
2022-03-19v7MN8rXelRWKvscTeHK.dlldll 88dd2c98db1abd5500c98b7c95269c0fcd1fad8696103d1b15a6798aad9717d5n/a Heodo
2022-03-19Gr1Q3cPn.dlldll 1e3203541989b63191e7ebad47c355d090f74acf018a3a2fd63a5844f5479190n/a Heodo
2022-03-19hTkUgJD.dlldll 258e418ded7ed1091d48ff040daa89a3e0934639e9726651771379407b90989an/a Heodo
2022-03-19yrwURJ.dlldll bfa4dd90b999f03d6d6d49367b2ff0ffc7fa2b502b88f987b33cc1af177247b8n/a Heodo
2022-03-19yOjgteGR9OKLA2Q1k.dlldll 6b085b7d21902121cba3a404c3fb71921e825fe5b61e6755d3a461c76994a833n/a Heodo
2022-03-19JHcVl6Ile.dlldll 8b43e2240495ca444bb5beb3c5a97a35f5b26c7e90c92e002bbb05d89b2bc507n/a Heodo
2022-03-19aChY3Mup50TVHs3H8q.dlldll e698d6272728b25abfeb5c73914e9ca98b4469dbc6a42cdc55f2095d000aac77n/a Heodo
2022-03-192YCtgovJY8X1S.dlldll 176a801a8cf583429a35aea7530666ff11b5e3cf032cc670bb9e446decc7648an/a Heodo
2022-03-19oaNrtg6XTM.dlldll a26a21887562d078dec260212ecb336425a193e1017f2bfb844df3e0ceae09fen/a Heodo
2022-03-19xyEic8ff5.dlldll 5e0475b5bc30e242f85685bcd15db481255c02f2640b377b694ea9846ca5e5een/a Heodo
2022-03-19hGQeCIIhZrQp04O8a.dlldll 075c77ccc1cbecf892939689e45f4243866819e2b2afe4d15ac6c8bd87df2ab0n/a Heodo
2022-03-19yNDXI0THlAG3KLt.dlldll 926c7d9a20b7be866ea5b8678867a7ed54adeed4f14b465ea60e606ffe439f2dn/a Heodo
2022-03-192UorU4Zdto.dlldll 23c6982a9c40dbdbf181438f73029df80711802e0b77190373b6d135d5a702dcn/a Heodo
2022-03-19cqlf9kC8jCrMAw.dlldll 8eae56f2a85d7ffc6b4a40eb929ed71c79d84baf8323449153e659d4efaef073n/a Heodo
2022-03-19B30reeo3OQwhnL.dlldll 94d9e3eb318d6bb72bb396d35703997443ac9446285a0c41f8ec5a5e2043ff51n/a Heodo
2022-03-19a6ulVSG4WI.dlldll 5f883b50239040d8a563907c31ad5678ee13028fd2fee27e248ed7ea49b10f03n/a Heodo
2022-03-19XcbyMeNiC.dlldll 88baaed4d3a8ddb2e31382156be5b2f1dadb307b7a9133afb204802c17ac690cn/a Heodo
2022-03-19RoX.dlldll 9a5771b175310bd1d023675794598c56e5066d1dce467b5b2e3739ba77579a14n/a Heodo
2022-03-19SLkvGiRELbSi3QJh.dlldll 84c2cb2f95fdbbe4c6ebff547bd4dad7c323c0916a03cd8d78b06d2d4cf6f164n/a Heodo
2022-03-18C62udLZMPc7HzE.dlldll efe98545849ea55874a05b24f0edbbaff97d4001c6ad3df1bbd78b2430f64812n/a Heodo
2022-03-18IacCtX.dlldll c092019fdef636d1f8691edc8b42845f201889b4e128691a3064e57d72a7d40bn/a Heodo
2022-03-18QOweIaVndu.dlldll a408cfaa06b57d57cc9d9720a312b0d18d5bed358a6b192544b18f9879c4cd7en/a Heodo
2022-03-18VZydTPp.dlldll ea89d0cfc6b359f467260c861947e337d4818abdb73fb240c9f34e89b2fc2204n/a Heodo
2022-03-183yGKhSVwiJMUIN.dlldll 843a1af15bf2f6f284eafbe73754569666c6dc44e2e7e3dafc9d740bcedcfa5fn/a Heodo
2022-03-18byTCBci.dlldll 9150f5b564a19448cc5866d98dcc73e8fc322c096a346df3920fab0045490cdan/a Heodo
2022-03-18Xh1UgAH5OR.dlldll 4ab2daacc8829652a95da214aa076024d2b81f085d007e52b42bde88f6dde0ddn/a Heodo
2022-03-18EfF3.dlldll aa4b616ca5b27b0aa3e47970b8fdcd12b9c7d3f2c029aabed7038c5afe814de6n/a Heodo
2022-03-184tB.dlldll 19304634108a3ba73b295febabc300cfaea1410fa8c5cb7b3cddde5e3e66776dn/a Heodo
2022-03-18hQyBvD.dlldll 5f9da7e939d1102d9283f9c6049a2c1341445f8117e248d54a126d65c7f40c6bn/a Heodo
2022-03-18zcIl418zhsTW.dlldll 60636642f3f9a8538f9296007e5590c5f65ad328c0975e024215c2fed1769bban/a Heodo
2022-03-18talYrMBgn.dlldll 7db96a363d1e56efebf922d4c1dbee4c67313eab0135e191c3a16f18e1efdea5n/a Heodo
2022-03-189czV0zgtjDEY.dlldll 27b434ac14d7853dfc82c300dd4fb4e6322002b473bff46340e642385844bce2n/a Heodo
2022-03-18kgQ6.dlldll f131222e426342a37491a0421b30a5526bef10ca09543ab93d19b8db0c38b7b9n/a Heodo
2022-03-18yfhXVw0xvqQrQI.dlldll 693d07efef7cf8d5ea44054750b38eb79c515ccf75a145a4134821154a5abd13n/a Heodo
2022-03-18xldEEJqSduaGYHavmql.dlldll 1bf60d376020f3c8a0f54a058248047fdbd37f97a22a7a27259bb6f97d6a4de1n/a Heodo
2022-03-18Q67fRlt93.dlldll a5d9bac6631eeeb339c52129b7a8c945489fd89d5d82b9b7e6d91b2e44587bb0n/a Heodo
2022-03-184jbbUPP0gYLiih.dlldll feb824e32c37604f056c6cbf13860623cbb69c217780b1e9a8582ca3fa109d2cn/a Heodo
2022-03-18oBghiOdF9EVtIObX.dlldll 11f51c9702aaacc6718f15e6ce0b0cb299d06225363cf9bdeb8d7b087ad89153n/a Heodo
2022-03-182C5j3M5HZUoWdfb.dlldll df4ce2677ed297476b68f29ffd5ef6adfd2874ae04296f81e83c925c567ef7ban/a Heodo
2022-03-185IKj.dlldll cb8d70d0fd6ca9ff31d80b200cdb8f9cc6f1d4df4d2191393ec71e31dc759723n/a Heodo
2022-03-18hYxowdo1.dlldll 7d6fc01f6832b252ced9ac952935569b789ed75bfbd2d0ce085e809d13d19db8n/a Heodo
2022-03-18UnV7SmAIGCey.dlldll a01c4b709afb5f177545bf50077d76e5618e2e95dd2980fe7662207371271f94n/a Heodo
2022-03-18BFqiUy7rd.dlldll 701bc7048ce4083b1df4a996fe763927a93e41156348fd20ae74c98673ff0221n/a Heodo
2022-03-183YlfSg.dlldll 1ea502b5f891e5631b7c16c948b6a1076072c1049ddd68f6d672573fd84a7a70n/a Heodo
2022-03-18P4Rz4rbRaM.dlldll 5a7c124c97b97cd7dfac9b606a515e76d8813728cb61f92a773ac033a6c8b193Virustotal results 22.06% Heodo
2022-03-18P4Rz4rbRaM.dlldll 5a7c124c97b97cd7dfac9b606a515e76d8813728cb61f92a773ac033a6c8b193Virustotal results 22.06% Heodo
2022-03-184Fct0k.dlldll 35b18ad8fe23687e1e2fef48dbb9714fbf939e6e134ada383855a3e5b51d2fceVirustotal results 16.42% Heodo
2022-03-18JuEkkGh9JdhT.dlldll 8a3ef497bd546c2b2c393b02a5f0b6896dd303a3ce780fc9a5239b94a3070284Virustotal results 16.67% Heodo
2022-03-183EFydzQY8QiS7vJ.dlldll 76d33f560e857e7b26f0be6c0dc645beaa7dde9858a18c233f10a01f5a540e9dVirustotal results 25.37% Heodo
2022-03-18SqqV.dlldll eb32973c23adc74297d2dcab705d547df43557c036a3fb5ebaa9a22013496628n/a Heodo
2022-03-18isw11jVVWPphnqqx.dlldll 9fb4000e9b577ee5001245da587912bafc745571bdddfe39cd998f8de002d2f9Virustotal results 20.00% Heodo
2022-03-18QjTZAZOVmzNUE8Cs.dlldll 6a926fd8ead813689204a44bae3bfdad15aff5e1e38550320aa52754f7ba885eVirustotal results 23.53% Heodo
2022-03-187T5ESBoz90.dlldll f3cd4494592d7600d095cb1cfd9aff22cfbef64dc072a1688b7765b66c55b59cVirustotal results 25.00% Heodo
2022-03-18oKe.dlldll 4313b9587eef18c2c511fabe7cf9096052e5e5350bbad9577c3357ecdb23b6fdVirustotal results 23.53% Heodo
2022-03-18w04ADRARVCvUMDnElO.dlldll af54e63619d8974eba22a860b7e8b766937e9ad1fe8b6d042150c5fa4ebb779fVirustotal results 23.88% Heodo
2022-03-18S0D0OjVW9Z.dlldll 84c26d858c86dc13dcfec75ab853cd028ef8355edc37b0a58ecb7853f0244b4bn/a Heodo
2022-03-18xcXtUR1AvCKA98qreu.dlldll 9c90664a34d59b1dbacbf785bf560dfb98a89f97a283b8988cadfebc75e7e111Virustotal results 22.06% Heodo
2022-03-188WoBwwhaZ7nXEBBEAW.dlldll 447aea53f282c23928f1b0b3a862d683755b2a221752d2dd0e48b3d436bab6dfn/a Heodo
2022-03-185HJg81cXv4A6z.dlldll 5ffc00602b8d6b9f68e141563d6b311e727673ffd81761302a745dd05072a40bVirustotal results 20.59% Heodo
2022-03-18H90E7TCrFsa2oDDcdd.dlldll c92ded7bebd1f2c491176448d34bbdbba84012084b1f274b6f1a117c298e1262Virustotal results 19.12% Heodo
2022-03-17Qzcidtuqu0OWvKlh.dlldll 4ff40ff2dc8f46d24dd64415b4e4d915a5caeca0c4f34407f3c1e1c63074cf79n/a Heodo
2022-03-17hAA92GFotQjrwt2Q0p.dlldll feea5595acc7d64c592a726471bd359256dca053eb62022e45a86dcfd3e220aan/a Heodo
2022-03-17dK7NbKUuVBi.dlldll 9ebe497f619fd3d31ce5cae496407de764905ea17c46b4bec4bcaaf6a115e563n/a Heodo
2022-03-17Htp6C25Pzfk.dlldll 209563e4dbddd5542c21b7b23e0b92f0018f7574cb9cc65cb2959e0d67332697Virustotal results 19.12% Heodo
2022-03-176V6NLOg6JT.dlldll 46d5fa22283e36d4da0ba6d01cfef00f9ffe9d80fe15f4ac432a52e4254d3bfdVirustotal results 19.12% Heodo
2022-03-178g1Qc3946qtTyDfqx.dlldll 0032ae466b50bef361d96e6274c810026cdbb2e0774ecad016f00f8c65dc9c1bVirustotal results 23.53% Heodo
2022-03-17Ghh6v9RUm3K9lTLPod.dlldll c39bacae1ca87eed25554fc7f8c80ad0ec5e6729eafd3b3937a05db9c141579bVirustotal results 19.12% Heodo
2022-03-17IJL1OJLmHQlGg.dlldll 773985f4185c804d5ac710b5575cd7601aec4bd622340bc4c39a692a6f209049n/aHeodo
2022-03-17RCVTO6bCw.dlldll df010f6530c8816898755a5f22e081a02ebf224f1ae0d6d82df685db1c6a098eVirustotal results 20.59% Heodo
2022-03-175wS4KxG2XNRmfMUQjr.dlldll b6ef60851f1b2833ff4ff6c568bb676d5419ebb6dba535a7ca439c2dc318ea8an/a Heodo
2022-03-17YcQNUOc5AO52K7qich.dlldll 017396c38187ef3b4dc8ae83be8e3c32e00ea1431ecc32fcea8f193164b0a6d1Virustotal results 23.53% Heodo
2022-03-17f2Ukd.dlldll 075b6d8dbd634896206bafe6cf8de83e21ecd28f73ec91dd379ab43959bf8f28n/a Heodo