URLhaus Database

You are currently viewing the URLhaus database entry for http://armannahalpersian.ir/armannahalpersian/byxUd7hAO2/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2255163
URL: http://armannahalpersian.ir/armannahalpersian/byxUd7hAO2/
URL Status:Offline
Host: armannahalpersian.ir
Date added:2022-07-07 23:01:08 UTC
Last online:2022-07-08 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-07-07 23:02:07 UTC to abuse{at}hetzner[dot]com)
Takedown time:19 hours, 35 minutes Good (down since 2022-07-08 18:38:06 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-07-08nssa.dlldll 59d151b02d4ae69aca80916d41cbb9109c74b018fdb980b37dc7f98e4504b946Virustotal results 16.18% Heodo
2022-07-08dxY6raqB58zg82g.dlldll 7802136ab800d5942eeee1c6e68b3f16d3a2bd9a43d922f3e5cc633cc447ee8cVirustotal results 16.18% Heodo
2022-07-08PPhNFqw6.dlldll 9a269f9fa776041f33a14851e17f5e1eb022028208653be609f16aa296deb14aVirustotal results 19.12% Heodo
2022-07-08HtDAQdJbcKMDm.dlldll 112ff7c029a0224af571eb2d4c55d03bb700cd56d926b6575a3f63412ba4cddeVirustotal results 16.18% Heodo
2022-07-08DrBCOd4GRHda4f.dlldll f17f26b91bd05c0cf5e7f9de15076014330fb7813910c85bff6cdef6242a11b5Virustotal results 14.71% Heodo
2022-07-08LWwi.dlldll 2739da88e8809c025983bd2aa9878b75f11c5b04c3a7d8081c6333229a83d44dVirustotal results 17.65% Heodo
2022-07-08fUPD3.dlldll 993c64b40dc5b12394eb25c7ba6483d7235fccf278782e83323343d58b5b32b1Virustotal results 14.71% Heodo
2022-07-08nJehGWEo8JF.dlldll e022a2e92e038b9efe60a70231c94d2841a7c504e6c8db98d758226775afd1c6Virustotal results 16.18% Heodo
2022-07-08fIcZ6gY.dlldll 878b2bfb7fccc6183044123da2cebd491be11a47c18775d8f0b9ba45504b021dVirustotal results 16.18% Heodo
2022-07-0807zBz78OcV.dlldll 1277637e26e8258b62fd03025976666eb7573373d70aff45d0160a11d395aba1Virustotal results 16.18% Heodo
2022-07-081AsoFaCeAymxLSAb.dlldll c3275454cf05da03e9f9a85dfbac19799f6736ae55dfc0e3a6c60577966114e5Virustotal results 17.65% Heodo
2022-07-08mqEJPv4mEGIQX2dX.dlldll 8da4f151db323d7e4b1fb94ca09cfd0b751d737da930a752ef3709c7c91bcfbcVirustotal results 16.18% Heodo
2022-07-08rEW5E.dlldll 99fd09eb47e830eafcf8b49382a0ea2ace386c31d1e7e79036a224605bff3bc5Virustotal results 16.18% Heodo
2022-07-08wh501JClyPDxfegBo.dlldll 21f0795f478e6a0cb67bd8f56a7b1f0d6aea22fcc14460eaeabd941fc0e4d29bVirustotal results 16.18% Heodo
2022-07-08Q3ZtVfE8dUs4.dlldll 9c58131d31aee1060498d9b1742690fe8d0023332219bd85aa20c7bdcb6c2b8eVirustotal results 14.71% Heodo
2022-07-08FTZGCHVlk.dlldll d3bc8a622f0fd4ea950023fa08de86e9948bdf91bb16e649c9dc482cc11a0bf1n/a Heodo
2022-07-08YxX38jHQm.dlldll d8891331c421b65b2d3f6d38fd69d53c52e8919163bb4f599de4647d8d834b89Virustotal results 14.71% Heodo
2022-07-08doiFzNJgQ.dlldll 9270f6cc244f79ae5812c5a81de76a5a62493d53a6dae4b06e0f94c27b6bc2baVirustotal results 12.31% Heodo
2022-07-08w84yeggUe042U8pb.dlldll 75d11325ffb23cb46a3508c2b85ea58933b06d08bd114b431bb096f8b7d9979aVirustotal results 13.24% Heodo
2022-07-081WPwy8.dlldll 8da8795c30deb266dd66612ae32f17b27b1b106aabcdc262b1ab0ac0fda3449fn/a Heodo
2022-07-08R1atFNn.dlldll 5acf67f9e9747cc83e8c248b82f176507b0b4d0fbc2a413516a8c1d6a557b3e5Virustotal results 14.71% Heodo
2022-07-08jcH6b05V2W8.dlldll 4ab1dd1ac168aaa7c2e18a88904b31eb9d0d0026262ad54510f252863414964bVirustotal results 14.93% Heodo
2022-07-08MaE.dlldll abfaa4c5db3b0e689551ed71ecfc48f779a1f2783408aa507c8061d9f2ec1c34Virustotal results 14.71% Heodo
2022-07-08xPJ42.dlldll 20d8ef6045dd330a2366b2c2f55732d2e3afd869355daaaea691c0fb19dc401aVirustotal results 14.71% Heodo
2022-07-08RSjCZsVBuswFdlSh.dlldll 8340fca91f77d19e75b3814628f5455839c3f656c3fc7158c3dd06abd8ade6aaVirustotal results 14.71% Heodo
2022-07-08e4f5Y9r.dlldll 5e46805ed4aa8fbf901653bd8f3481aad6d28868289ad454a70c1250e864cd78Virustotal results 14.71% Heodo
2022-07-08Jup0M8v3wcGdM7e.dlldll b0678bdcea0a14384ebc4a96dea4c8c5aa0c5389f2ca1b02c3dc568bab919fb2Virustotal results 14.71% Heodo
2022-07-08t1oHZ1s5IYO0JEcZKYh.dlldll f595f749de390920af6e8f96461f9a0a1fa01258889bec4e03c59fb908533892n/a Heodo
2022-07-08VUhg7H7NBXdpS.dlldll 252ea387a6bb7dff6e9b92bfa9a6ba5c22e332d80c6d2c4bf74275500a4d8ff0n/a Heodo
2022-07-08tYxvwDMsg232hT.dlldll 740b6216206b0a802edec9e8abc9a1503c86be947925bd9facd837a408a83d73Virustotal results 7.46% Heodo
2022-07-08hreJJ3LmA.dlldll c476748a608b639a1dc751d350e03d32c1a316e848be64d833ed2afdfa701c39Virustotal results 7.46% Heodo
2022-07-08xxuuR.dlldll a9d057716e480b4cc9b8c5446d6ececbb18fc2bf12d4229e4c9f0731de78a786Virustotal results 7.46% Heodo
2022-07-08JgxhOxlNii.dlldll 70d2f68b035990729ee5b752b077d63d2196ac51213dfdccc72965e1257deb69n/a Heodo
2022-07-08XoqIKPRgiUmJ5sDUT.dlldll acadc3a159855b0e0ce1aad744bc8ee04b74b07222b801176343f24bc32d752cVirustotal results 23.53% Heodo
2022-07-083YzPPRZZLvyHxMw.dlldll e05aa6d15b774d5355364df7e056b589f6a755c6fc776110badfa91ce46b55a5n/a Heodo
2022-07-08IOjax.dlldll f723a9a5082ba987f3c6a626c316b00198d78a1b844dc6256fe30bd66c3c7f07Virustotal results 20.97% Heodo
2022-07-08iCZE4fA.dlldll 2c51fc5d5208002f410cef31ec53cc9821b85dd3d0c41fe193bc311d0667932bVirustotal results 22.73% Heodo
2022-07-08xstQ.dlldll e5b992b90848a139bf0fc73f888123524e572728077e15c65011f23afc7fe79eVirustotal results 22.06% Heodo
2022-07-08l8gRp5.dlldll 585544e2d8e0beec3671cc84d874445f1854b4dea54d0c99ee2bdfeea58b6b66Virustotal results 22.06% Heodo
2022-07-08HOIjz6KGMIvJhG40nE.dlldll 943d71f3c1691b79499610fc4b6f37febe32b87c21cf6c29be57858723355999Virustotal results 22.39% Heodo
2022-07-08uSg60bxbRpYLJQ3p.dlldll 7d2258da1065a15460c4dedcdcaa72301846cd36198ca303496b2ed4d7cf8426Virustotal results 22.06% Heodo
2022-07-08L3ftfZuKUEepV.dlldll 648a717acf1f1149f8cb1eff44613045b7d237d261a4b6e5a73f8813929eca3bn/a Heodo
2022-07-08lg6mojgfp.dlldll 67b7d932a394572632c4d026796cb5c4d785d19fb22680ddb773da4c53d97392Virustotal results 21.21% Heodo
2022-07-08T1Zm.dlldll 0b46c47437f92b87c0e188833cd85be9d3002658ef9ad3f38db3d7c9fa706205n/a Heodo
2022-07-08MjZ0dBvwtS2J.dlldll aa85bb99ee0645193937d3b4df0c7a8436aa8c02a2e9e7c98be6ab93a6f4bdf5Virustotal results 22.06% Heodo
2022-07-08dDtahY1ewjgQX.dlldll 4a79fd5049bd83e4c3e3a0dc75b063f306f78395c53bf24433795fb460a89666Virustotal results 22.73% Heodo
2022-07-08WbtEEZh79KNPo.dlldll 3e01f0c51aac1cca56de3f4094e11d9ef781e134d40b8d3f6fcc90e3a2972e6dVirustotal results 22.39% Heodo
2022-07-08uUoyrgVWtOu.dlldll 50dffa130cb338099bd0b3b4e409901318d657aebd693e15b9c93141d10fc131Virustotal results 19.12% Heodo
2022-07-086lwI5pZ0.dlldll 29cc28355969ee0744350704052ecdd2b4a1ca00ff3a0159976c477e7aec3281Virustotal results 19.12% Heodo
2022-07-08S3Ys54fbm3WLdk44x.dlldll 063148b0e7768c03d46be0c3132a10e1ba6b4946a085e26eea85c9b8ea643d4eVirustotal results 17.65% Heodo
2022-07-08HUikg7qSY9xJf.dlldll d55bea265d374d3efd2cedc8bb761d8e665eaa27833eef4e60da792b31cda81bVirustotal results 16.42% Heodo
2022-07-08Zrw.dlldll d1f7d916757e12ce37f219990b61320170d29f1913126ca1c1904846d5de6205Virustotal results 17.65% Heodo
2022-07-08BFTRvNFW2GatlWm2bs.dlldll 51094d1a7fb2f18e74896d9897cfed84dbf55cf3486c7bba0ffadb0661156de6Virustotal results 17.65% Heodo
2022-07-08s55mP92fm.dlldll e738ff42bcc4adc11e4a4054d0478ca9e9c16965546a7d20bac42ba39ee02813Virustotal results 17.65% Heodo
2022-07-08YlpxGV.dlldll 83e853b7f37d94ce7831fdd4d36e1aaf7118625e318a14443af4f82cb9e77c11n/a Heodo
2022-07-08xfaKqB.dlldll e80171252c95df808b558b2d61ef2902989593c686daa4e1199770e54a117e1aVirustotal results 17.65% Heodo
2022-07-08intGueuffu.dlldll d91a299c131e4bbc1fa9bc233c620c2af83073a7c6cd3ba2fc7bb02f6202e39aVirustotal results 14.71% Heodo
2022-07-08LvwoqgWww5B7nU1IZ.dlldll ff40a305c26d8c2633ff1265193fde3e18bf4c91fcfe5d13343aa68c60e7281dVirustotal results 17.65% Heodo
2022-07-08jA4h.dlldll a25b07dff7e78d732d52fc160b555df4edfc2c2bf5cba44b60c86c15627b543aVirustotal results 17.65% Heodo
2022-07-08SelqlzK2.dlldll 95afb509ab7cfa502250b92b3924f40adc8f7eea0fbeb6e4a9a05f6fe22b1c16n/aHeodo
2022-07-08oQ5ilG8.dlldll 9297777ffdd07d6765b5560417639554b16dec06481ea72cdd31a6240551d853Virustotal results 17.65% Heodo
2022-07-08LxdrGH5FGPOMKLf.dlldll 9a4d4f2261d048afeed0ddc4f5bf3d2e86a8c31cdc96f9ab0d8fe1b3f8aa8ae0Virustotal results 17.65%Heodo
2022-07-07w1Tfi.dlldll a21777152e359a1107af1e862a6376f936aa8109c9f0697768f7f6d9f849140cVirustotal results 18.18% Heodo
2022-07-07odJZuPJoC.dlldll beb4d317872d5ba8c07aaa6fce07e83b3e2e941e4f5a7fcb5a068f947ea2ad71Virustotal results 17.65% Heodo
2022-07-07sXm8qHOTxw.dlldll 6c15310f58ecc227e64e8184181b5361db54d96002a91cd7d6ecdce7f5b4e120n/a Heodo