URLhaus Database

You are currently viewing the URLhaus database entry for http://chitgarbar.com/01/closed-zone/additional-cloud/944464-DibhSAOQ7C/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:416144
URL: http://chitgarbar.com/01/closed-zone/additional-cloud/944464-DibhSAOQ7C/
URL Status:Offline
Host: chitgarbar.com
Date added:2020-07-21 17:31:03 UTC
Last online:2020-07-22 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-21 17:32:03 UTC to abuse{at}hetzner[dot]de)
Takedown time:21 hours, 52 minutes Good (down since 2020-07-22 15:24:34 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-22Dat-2020_07_22-Y621.rtfdoc 997f3689474b1e1be428b19fa9eb6927ccf37889b64e7cb0814a1effb83d6912n/a Heodo
2020-07-22LIST_20200722_3679.rtfdoc a01d4df7ec965c82ea4ba5fa2d607e1fc1c14ee2ce6e6eed9bc5508be71769a0n/a 
2020-07-22arc 23036.docdoc 7dbe324e0d12ad78dce60ff5e9cd95569b85088bdc2d6a21671c60e099767b7fVirustotal results 43.33% Heodo
2020-07-22File-2020_07_22-I629771.rtfdoc 488c696ee2debc2fb1afc0aab20d756276fca35ca9f91008fcb07568b79ede95Virustotal results 36.67% 
2020-07-22doc 2020_07_22 156355.rtfdoc d89c2b2131e03e4f8eac35b8cb25de8095bafff8642629e1a4b64b391a014a77Virustotal results 34.43% 
2020-07-22list-2020_07_22.docmdoc 79cb28f01264a585e6d085eff860653eb72ec7b1976323c1f310ff7bdf0b1598Virustotal results 36.67% 
2020-07-22file 1285985.docdoc 2bf6770c0abd36c1d4bf26b47dbe953c8f1f7968fac457a4a370a1b198945d4bVirustotal results 35.00% 
2020-07-22Rep-20200722-BS4389.rtfdoc 623c4ed3bff71e9b92646983452b40e40499ac21f3a3aa0647bbf37d3581b909Virustotal results 32.79% 
2020-07-22doc_YZF67391.rtfdoc 0f118e682037e3a2415cb85caf3c45494072c60591a6a8ddb51a1a0d3b07eac5Virustotal results 31.03% Heodo
2020-07-22Mes-OY47738.docdoc ad0b84b38f613391231e63d53e800947407c72b0e2b87c9a79cb58d7d3520146Virustotal results 28.81% 
2020-07-22inf_8085.docmdoc 8e68dd2720dc2775d2a42abaf76de80d689fdd34c0367de007c414def3d2d33bVirustotal results 28.33% Heodo
2020-07-22LIST-2020_07_22-AC643137.docdoc 3f0439068eefa5ef762b899f9eb133708916084d5e2f79a0344093fb19c3c026Virustotal results 30.00% Heodo
2020-07-22inf 69567.rtfdoc 194c758a5ff19785134e06f7efa9ee11bc4e3d42cc2005d93581915fcb9ef005Virustotal results 26.67% Heodo
2020-07-22FILE 20200722 0860.docmdoc b68476e293e35d7cbbf80b3561d23bad553eddd9b04a07ea072ab1ea17f1d78eVirustotal results 26.67% 
2020-07-22dat-7643877.docdoc d831521ed1fd89695ea1f405aea9680401dc470716ead9076e1c428afc608093Virustotal results 26.23% Heodo
2020-07-22List 2020_07_22 186175.docdoc 21443c68d64ecddd740c7966067a4bed9de79aa081c06b9ad97fe8d8d0e0716bVirustotal results 25.00% Heodo
2020-07-22List_20200722.docdoc 46ddfb783ed7cee9d4ec3196ec9297e861503dbfdf905203eca8be9bcbd448e3Virustotal results 25.00%Heodo
2020-07-22REP.docdoc 656f9f7c087bc9a3d272d1aea2c369dcfa89d33e5fe59b61e4a57d7b181904d2n/a Heodo
2020-07-22FILE_521661.rtfdoc cf527cd37a84ec65c4b6d8a8b816c739b62805416400d1527c8ffd7d3931a298Virustotal results 25.00% Heodo
2020-07-22List CC717.docdoc a018bebb6f4d713eff5d16c6b80d20df72bab7d5e055c287018f1f842f952e1eVirustotal results 25.00% Heodo
2020-07-22file 8745.rtfdoc a73ea0967cbcfbf0070a32f075b9b8e4f448d2d60f08f78ef9439b64394fc035Virustotal results 35.00% 
2020-07-22Dat_20200722_GL32995.rtfdoc 8cf9d9d42298a4668f016012416111f8bfcd129c4b0ce9050c28a283734568adVirustotal results 32.79% Heodo
2020-07-22Arc 7190334.docdoc eed180c709224d892fa8a82e0c51bf623d7057a65ca483d45e3d005984dc6588n/aHeodo
2020-07-22File 133.rtfdoc 7eb51f8c4719f0171a98650b63385c15908628fc4ef7838c410fc53c46a0b8a6Virustotal results 33.33% Heodo
2020-07-22doc 20200722 IR05855.rtfdoc 3e24c4373b1e2ba1e3d16925cd0d4a1752452402ae4aaa8ad8ce498bbff5335cVirustotal results 26.23% Heodo
2020-07-22REP 20200722.docdoc 3113c9be4e91ab866a9d0a0a3a71236962f0598a11a4345f114dcf1e3feae621n/a Heodo
2020-07-22rep_927299.rtfdoc b58dbe82f7a65596a2277d1c5ef1e42945e45cd0ad84c35872e1ed404607b9b6Virustotal results 29.03% Heodo
2020-07-22Doc 20200722 014651.rtfdoc c07649d058f6470af27cb972b0a9306496e2641bf959dd66206f3feff56b83c1Virustotal results 28.33% 
2020-07-22File 20200722 923922.docmdoc 80cb12a6bbe9b2c3065f9007e9740b9f7d75dcf2bc68651848cb08f4ce619b39Virustotal results 26.23% Heodo
2020-07-22mes.docmdoc 3374b8c7bab8c4d65f45434d84b29231b7a403d578c2b123e75507b6bbe14653n/a 
2020-07-22List-663791.docdoc 8d70f6580cf02bcae5c4c14396951b6e6c1ea10bcbcbb89f835c29dc7d2c8cebn/a Heodo
2020-07-22DAT.docmdoc 3e65642f10d2b821a0c08b74d0ddfd34717dca5f9918551779815db934ae7963Virustotal results 26.67% 
2020-07-22File-2020_07_22-287.docdoc d7b8fec9f533a9c31e7fe587b89552973d00bff30e4c7d8f7d4f2d93bc0eda1fVirustotal results 26.67% 
2020-07-22dat-2020_07_22-TN219278.rtfdoc ea444cde5a8ef5b6165a348732af41e4c634669259036caae42e242c5a7c9b1cVirustotal results 25.81% Heodo
2020-07-22rep_2020_07_22_QCF76513.docmdoc 7fb831a6988b9e816af85e485721d4e44b500b6a9d30af5b82cf9ec4d28eb584Virustotal results 25.81% Heodo
2020-07-22Doc-2020_07_22-231609.docmdoc d3bfea33a12c522ea8faa7840613e14c78035362c064c858c1467513a68ac9a7Virustotal results 25.81% 
2020-07-22rep CNM61265.docmdoc 812ed74f92912f98accd025c7c64b9c943032b3379fe1c9654a9deeac6d8b981Virustotal results 27.12% 
2020-07-21list-2020_07_22-57401.rtfdoc c20821e80c5ce943d4b87b9416329f0502a4da3c97044c8fd7016172353e1626Virustotal results 26.67% 
2020-07-21Arc_2020_07_22_18652.docmdoc 3ef294ca4013371b69d6af647114806b71bb3dc07fd56f12c078703411d61b3dVirustotal results 25.81% 
2020-07-21INF-248.docmdoc c1cc356eaf49711b7673b9c27f015163363a60417ad3b9b7e6883015b65d80d8Virustotal results 26.23% 
2020-07-21Arc 20200722 IR35905.docdoc cbccd20b9bc23454ec01bec4a0094e77dcc43d577666259f8d97aa30a118ac35Virustotal results 26.23% 
2020-07-21Doc 2020_07_22 J5330.docdoc 2027e8348e8d2f364d55b2bf47f9a4b37fd2ff7aabdda5ed056e3f6cd42cf777Virustotal results 26.67% 
2020-07-21file_2020_07_22.docdoc 139f5bcf4c7fcbe0a8a5d940c5d38dd847e2c979df74dcf680208e73b8ac668dVirustotal results 26.23% 
2020-07-21DAT_20200722_I171.rtfdoc 205a04626bdf6f3da605d8f8ba60126d02451085528330524d899a38520be8c3Virustotal results 26.67% 
2020-07-21inf-20200722.docdoc 6852b34db0c7a6150c1095a704236a1938b4ed46cd9d7bdfd412555ebf61890an/a Heodo
2020-07-21inf_20200722_AZM646893.rtfdoc b88eeea6841abee77c07e6b5243d98213c6997de1033e14ddec0cf10b9b11c35n/a Heodo
2020-07-21FILE Z6749.docdoc ca4ae10db92df8cf44bacee70e7560ae411a37d1559687ad47687282ca447526Virustotal results 25.81% 
2020-07-21ARC-S45476.docmdoc 96f45a5c51839644dbf8e9f7ffaa226944422285dd997fc0ff8c23a883b18410n/a 
2020-07-21rep_20200722_34098.docdoc 7262452af523481d22f70888f7619a9a6da291bacfefdbc45ed95492326d2274Virustotal results 26.23% 
2020-07-21INF 2020_07_22 5596.docdoc fe0262abd2e28972585a28e0db4036c88dc6bc7858de8135e9cf58c599228037Virustotal results 26.23% 
2020-07-21ARC-N1076.rtfdoc df064d2b2c29dc8f110dcd919081328a7f481f69cc521b3cd2c6c40cb1c92eb4Virustotal results 26.23% 
2020-07-21doc_20200721_9422.docmdoc 6c9063989cd23941fcc8533284a0e2ccd26555ec3b40e4f292ede0bf59605f1fVirustotal results 31.67% Heodo
2020-07-21FILE_20200721.docmdoc 7fd4027186cad2b91bd60610992523540ae00d02b8bce17010e9cfcff62836ccVirustotal results 30.65% Heodo
2020-07-21REP_2020_07_21_581.rtfdoc 954e8a3b2f224ae59b0cbc54c3f0585184cc2e26aed9315eefae4f05fe73a708Virustotal results 33.33% Heodo
2020-07-21mes-224373.docdoc 50d5051a82f97571415ca2550517c6872eca80692c7d6db605082a0b9876d34dVirustotal results 31.67% 
2020-07-21Mes 2020_07_21 24492.docmdoc 23c6039e4db511bc4f78a07eab4780a9f8a41e215b277e15bbefb19faa85171dVirustotal results 29.51% Heodo
2020-07-21LIST-2020_07_21-815.rtfdoc f76760e19ef8c715a396435ac9a3fc931699e03a431a25ba0f9d0f20c104495cn/a 
2020-07-21DAT.docdoc 2d765d996ee252399e74572c6d32bcf5d221d6c7383ea2f309c413cdbb39b167Virustotal results 31.15%