URLhaus Database

You are currently viewing the URLhaus database entry for https://mobtakeranbehdasht.ir/wp-content/attachments/cOl6fuxHiwfPfd0q/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:753219
URL: https://mobtakeranbehdasht.ir/wp-content/attachments/cOl6fuxHiwfPfd0q/
URL Status:Offline
Host: mobtakeranbehdasht.ir
Date added:2020-10-26 20:27:04 UTC
Last online:2020-10-27 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-26 20:28:07 UTC to abuse{at}artaknet[dot]com)
Takedown time:8 hours, 27 minutes Good (down since 2020-10-27 04:55:25 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-27doc-2020_10_27-375.docdoc 124f56eaa0b487e7b12b941084ad16075fec2f6f8f9016dd7366c8c33d18f531n/aHeodo
2020-10-27doc-20201027-F16161.docdoc 60880faa0f8f1236178dd99076e9bc3357db26aca7a0b7bbc216ead4d101b153n/aHeodo
2020-10-27arc 9285.docdoc f715e2571cf2bfd37aa823b2ddbe5462575a40ed082e3b039329ce574a2be700n/aHeodo
2020-10-27Dat 2020_10_27 648.docdoc 638e44975f0b3264b96dc36febaf47327594bcb7bb203aa8d3cd6caa6aa872e3Virustotal results 51.85%Heodo
2020-10-2770519889 2020_10_27 N36100.docdoc 4a18ab940330fb73c1e289748a3cefa188091c8ea0d7babad686162c011b9cdcn/aHeodo
2020-10-27Inf_20201027_LN143.docdoc 850d6c02cdf898bc72beada105c810692cb2bfdb8fab3b14e772c2076db9b99fn/aHeodo
2020-10-27File-UKO020.docdoc dea0bc4c6fff09c2bd1c8a995db1da421b50f9e57b107db26bc5b71dba427610n/aHeodo
2020-10-27mes-20201027-PI70415.docdoc 2001d202bd375d7b755d168c2491c95c5615bce5bd11c4977bf0275ca66bd7f8n/aHeodo
2020-10-27rep-2932059.docdoc 6562c1ec0d60cdfb002adb4ed15dbbf2f2f3f717002fbe8151e35d3755eb4358n/aHeodo
2020-10-27Untitled 9621828.docdoc d5fc142bfa2e0ab5cc22067cb316b2f73dbf3cceed7fe452a46028fe26c38610n/aHeodo
2020-10-277647533-20201027-TRV495.docdoc ba144b2c722855e58aea0bc21aafb2692d8b535dc920fa40677eee2de5baa662n/aHeodo
2020-10-27J250-20201027-917658.docdoc c34b033be6ccec716ff4925ce6e96a65872b23103b659fa24f079d99711963bcn/aHeodo
2020-10-27580346-2020_10_27-LG5012.docdoc 52d4dcd449517b101bb99988f9b270b9785a8987cc4edf558f18fa0bbd5bb438Virustotal results 49.06%Heodo
2020-10-27Inf 20201027 081641.docdoc 34552d4adde7395abb5b114284e79a47c0aab68c0ab1fc62affe993b7373852en/a Heodo
2020-10-27UNTITLED-2020_10_27-262.docdoc 7f3ad8f66409867f25e71e87520c6c5bef13981bf27cab43e285638a3681292bVirustotal results 50.91%Heodo
2020-10-27DAT-2020_10_27.docdoc 4e6cc9395d61d172bbf4609dd2621e07304e62e0d580fca4ee823d4359fcc7a6Virustotal results 43.55%Heodo
2020-10-26Inf-9074.docdoc 83977121b9e97f87d650fe12845d19e59c28ab763af8051d755ea26ca2ae9821n/aHeodo
2020-10-26Doc_20201027.docdoc f620c363a605c7c11abe0ed6c9f919168781361df2901e24752c0ebd428c4854n/aHeodo
2020-10-26MES_OEJ1376.docdoc bc23d2f73145ee8b7cb2c6599d33dfba5d95c4a49b2f8deab7fd2fe9f2530b9en/a Heodo
2020-10-26Arc_20201027_GVN992.docdoc 9624eca338cef03d8004d874cd0c774bf67ece67290d5a0022da8117345b11c6Virustotal results 39.68% Heodo
2020-10-26doc_2020_10_27_339905.docdoc a6ac09dbb3459963822e353554b37779cfaca3dec0bf23c8005d6275fb3289b1n/a Heodo
2020-10-26Untitled 2020_10_27.docdoc 1a1bb338ded170fc8b77be52d9031a89690c47a9cba2da74ddecd43d0fb4dde8Virustotal results 40.74% Heodo
2020-10-26INF-20201027-076.docdoc 7e38fbea33118043c198749415914c8371c9eb7f7e95d037b71076fdbff8ed0fVirustotal results 39.34%Heodo
2020-10-26Rep_597.docdoc 599c7105a79ad339b973d5007b37475243cd05b61c4c74481adbcbe44243bebcn/a Heodo
2020-10-26Mes_20201027_3914774.docdoc 49763f91e6076006d04ab8fbf74278e52901c5b590a44c595b21718f96a6dda1Virustotal results 40.38%Heodo
2020-10-26382442 C9507.docdoc 9cf56a7784e96327856d334a095beb3b92568462ede5fe91ba11b2d2fd4e2443n/a Heodo
2020-10-26MES NA702.docdoc 74e750f82e7c7c858a05804d55a0c72b21daac57d63e1874753cd10f428b8981n/a Heodo