URLhaus Database

You are currently viewing the URLhaus database entry for http://artaan.ir/cgi-bin/available_module/guarded_warehouse/45986600242432_kCa3XvfMo/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:429021
URL: http://artaan.ir/cgi-bin/available_module/guarded_warehouse/45986600242432_kCa3XvfMo/
URL Status:Offline
Host: artaan.ir
Date added:2020-08-11 06:08:18 UTC
Last online:2020-08-12 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-11 06:10:03 UTC to abuse{at}hetzner[dot]de)
Takedown time:1 day, 1 hours, 42 minutes Poor (down since 2020-08-12 07:52:53 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-12Mes 2020_08_12 ID463.docdoc b2638f5a62f9d35d681d04b249fe965504f71fd5e9d9dae777b51fe94e169c3aVirustotal results 28.33%Heodo
2020-08-12DAT 20200812 9534113.docdoc 08e063ffd684f75a775f7dc074dc7ff0c06ed18b48ac1c1caaf8adb80363b9cdVirustotal results 51.67%Heodo
2020-08-12Inf_2020_08_12_KYI9755.docdoc e44866ddc3408fab14c87c206e408852253a05de531691d4cb8e1dcd7f37cf72Virustotal results 50.88%Heodo
2020-08-12inf-2020_08_12-70307.docdoc 1f2721d86674c089b606753be49e601afa652cd0daa1af0a19239ca33981af29Virustotal results 51.67%Heodo
2020-08-12Dat-20200812-086.docdoc a3703f60dbe4aa622cfc6db9fd27551cf9e8bf6398ee8727250898a495583e23Virustotal results 48.33%Heodo
2020-08-12INF-2020_08_12-CFI896.docdoc d6ceff199daed77e31636bbce10dd06d27353c4064b10c076028aea4313071c1Virustotal results 49.18%Heodo
2020-08-12inf_20200812_Q640.docdoc aa16198b53e4a0f12906d869baf7d712279438c0e5cb818a405a26f02d9b29d0Virustotal results 53.45%Heodo
2020-08-12list-2020_08_12-4382645.docdoc 590e4167894112b18705fca17ee4057b39745b4af8c182ee650b066c9b195f8cVirustotal results 48.57%Heodo
2020-08-12Mes_2020_08_12_168.docdoc 97c96d516ed17d4020cd6eb8bc30414a3c99e2d192a3ac91fe520cca444b1924Virustotal results 50.85%Heodo
2020-08-12list_20200812_KRJ879820.docdoc a86eec1385c130042a6609edfa33a94bd2e475ddda047eb16553247dd67622b9Virustotal results 49.12%Heodo
2020-08-12DAT_2020_08_12_870.docdoc 6fa74bb52572c68bce1d712b488aea9184f884d85ef22b26492011dc0fbec3a8Virustotal results 52.54%Heodo
2020-08-12Arc 8805.docdoc 7d7ecd381d765e01cbb41e6b0a254b7bc60ebb1d59c3c212286dbb9054e5093dn/aHeodo
2020-08-12Mes_2020_08_12_FZB9192.docdoc 2d9d999204b6190a6e91bc1da7b0330466f17a916b33c2cab9bd681bc5060e10Virustotal results 48.33%Heodo
2020-08-12inf_3533.docdoc e49959014262227a3e6ca5bc2937e6afab83a251fc694000d1a3d38e7814d9dcVirustotal results 50.85%Heodo
2020-08-11FILE 20200812 152.docdoc db2aadedc60eea4a3a77bfbd6c1334cfca2091f721e34c196cde4f47624bcb90Virustotal results 49.15%Heodo
2020-08-11REP_20200812_0206246.docdoc d135bfa839f7aced43217658d78cc59d8c51a7120940e59b3c805612e1b276eeVirustotal results 50.85%Heodo
2020-08-11Mes HKT28509.docdoc 0241b1ed7a1656dab5d9fe64b7e59fec547126495769ca53d78220090b494889Virustotal results 49.18%Heodo
2020-08-11mes 20200812 465.docdoc 8f5d6af71053c703ef6ac42971b9c19766bb0682e793b8f295af1453eccb5023Virustotal results 49.18%Heodo
2020-08-11doc_2020_08_12_3718.docdoc 062afd98270aae9eadeb47e14d2270691b2254239006bed96b4a65eda4df5ff5Virustotal results 50.00%Heodo
2020-08-11mes-10073.docdoc 6c45ff153d6de80d056c6f69da227ecd5bbe257a22d4942cdc493a5d623d7cf8Virustotal results 50.00%Heodo
2020-08-11file-2020_08_12-X3804.docdoc fd98e040494ec96249be1460752ad33da1d1a230de136873e2c99e72fdbc336fVirustotal results 50.00%Heodo
2020-08-11Arc-0453.docdoc 2a0edb0b6cbc19988eefe08d5e8916bd2412d0cbfd5528e64ab37788dbd7f177Virustotal results 48.33%Heodo
2020-08-11Inf-20200811-J9245.docdoc 6c43bac38a962a5ba3d1c691a45946526dc5a550897af82d14982b94077a6d29Virustotal results 48.33%Heodo
2020-08-11rep-2020_08_11-KA196853.docdoc 505bf00a3f0c6b5d8ececc410f78de1bdb0fffc8fe7a3324166448fbb3a213f0Virustotal results 46.67%Heodo
2020-08-11Mes 2020_08_11 ZBM18468.docdoc 669795b953f2d46ec362bc03adae579299f4c4a42392c7cbdfef5ab5b54b5ec1Virustotal results 37.70%Heodo
2020-08-11REP 2020_08_11 948.docdoc 308dd9d0b4a83eed9cf0f4d5014a22bbb9f37b197d9f8304612cb48397cd5404n/aHeodo
2020-08-11Mes-QJX239775.docdoc 044d06642354a6eb14607f8979059a90591603e4f52ef900ff441368be7c11d7Virustotal results 40.00%Heodo
2020-08-11list-2020_08_11-PP7332.docdoc b27de5accc5440416824521c2e1ea63ede6b2c5658f5e01a0472db9789a1729dVirustotal results 38.98%Heodo
2020-08-11inf_YL4700.docdoc 0c2fd444f2fb9f77cde4f5629c19ea2ff814f7cda10a63a6bc6227d3ce403b4bVirustotal results 36.07%Heodo
2020-08-11FILE PSU9869.docdoc 4a0b580e9b59383cef5ee984231048e27d3e01c6bbc31f779fc80f435d286940Virustotal results 37.29%Heodo
2020-08-11doc_2020_08_11.docdoc d2d1169820bcf260d48e6273ea105b4db9727fcaf8702362a7c8d3b8ca93b1b6Virustotal results 36.07%Heodo
2020-08-11REP-1253.docdoc bef25908178e50a5ea5c9427e2d767e442719458414443980f1d1454659d4804Virustotal results 32.20%Heodo
2020-08-11mes 0545411.docdoc d959ba3063627e8c1ba90a9562d91943c0a6e82b8b2b749750fc5900649b6a12Virustotal results 31.15%Heodo
2020-08-11inf-20200811-2302770.docdoc 356e3d6505e5c614fd7fe96e3e20c392e04e5b6e552a28f069dd37250d00508eVirustotal results 30.00%Heodo
2020-08-11List 2020_08_11 0098042.docdoc c279b2621cc960bc14d86aa7b7a8ed1d61346e3e582e77072b43a1631871f3f1n/aHeodo
2020-08-11dat_IK9205.docdoc db7193bd4ade13db9176b928367925a9c2a83e175a118ec2c74fc16697408d80Virustotal results 28.33%Heodo
2020-08-11list-791994.docdoc 03ae6dacc26669e23257af7d5e8a8c8d15bdbe6cc973112960392ab22d03d93fVirustotal results 25.42%Heodo
2020-08-11List-2020_08_11-25156.docdoc 15101ad204c6aa2c1a38ba1dbb0eb7c8f64c9745e96ed7c93ba8cd16368fd67fVirustotal results 24.59%Heodo
2020-08-11MES-2020_08_11-774.docdoc 29d67f5bde2807da0a4316463578997237825ad1a5e219e2dc5d9c4efa4cf3e1Virustotal results 23.53%Heodo
2020-08-11FILE-2020_08_11-BH014.docdoc f680090987b21b32b1b79195b479f3bb74ae2e1507572e091736a055335597bdVirustotal results 24.59%Heodo
2020-08-11INF-K887994.docdoc 9715534fe73d1a63f33ee24b769c7a8dfdadedb96b0c0e52fe0fa713f889d37cVirustotal results 23.33%Heodo
2020-08-11inf 20200811 OB310.docdoc 5920c7e4ce5cd003b9b0fc667cf8b9414312502656caee024acae86456e58ce0Virustotal results 25.42%Heodo
2020-08-11DAT_2020_08_11_152375.docdoc bdec17a0bd8af4f682e06a0e45531d3e90242d09c6a7e99b3c293fcd72418b21Virustotal results 23.64%Heodo
2020-08-11List 2020_08_11 BZR872.docdoc 9ef7fa8efe7c59b7cdbd9d44134d7876fb641fd6cbd2b1aaa1fadab058c7e4efVirustotal results 22.95%Heodo
2020-08-11Inf-20200811-CF2559.docdoc d4050a58a41dd6772a72b9db7e54c8edcbf596762283a46a9a04ee37952ce224Virustotal results 23.73%Heodo
2020-08-11REP_ALL98166.docdoc 2625218978dc84d278092066c6e099ed58f536ea22be875f879d7180bf1a0eabVirustotal results 22.03%Heodo
2020-08-11Mes_2020_08_11_MD899.docdoc eaa9a3fa2103d303ee4a16d7a20d7fa41d0047bd31a6bd1e1a6718cf4df41881Virustotal results 22.58%Heodo
2020-08-11file.docdoc bac9a9d3b5783ae78298bfd2e768bbca94c8d87986fc65ffe746ed49ccd32c6cVirustotal results 23.33%Heodo
2020-08-11mes.docdoc ad8ecc85066be281b996f847814e7770dd2316faeaf97406e310db7bd1e3498fVirustotal results 20.97%Heodo
2020-08-11LIST_20200811_MM9198.docdoc ca9e326f9883ccb0ff723213e72819c6bbf04eeb79ff50338ea5f87f22337781Virustotal results 23.33%Heodo
2020-08-11Dat 2020_08_11 MX48997.docdoc 9dea2448db7b1a50b96944b0d89c0541ea881d78e7b0cd42598ae3bac80bc3ceVirustotal results 23.33%Heodo
2020-08-11DAT 20200811 X556560.docdoc c63d69fb1a335468a6aeebc2b8af051bf71cb55b4808a17409b332fc70728b8cVirustotal results 44.83%Heodo