URLhaus Database

You are currently viewing the URLhaus database entry for http://samasamak.ir/sys-cache/Document/597bbUH96VHRP9b5/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:757381
URL: http://samasamak.ir/sys-cache/Document/597bbUH96VHRP9b5/
URL Status:Offline
Host: samasamak.ir
Date added:2020-10-27 17:37:16 UTC
Last online:2020-10-29 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-27 17:38:40 UTC to abuse{at}netmihan[dot]com)
Takedown time:1 day, 18 hours, 40 minutes Poor (down since 2020-10-29 12:18:52 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-27arc 2020_10_28 24946.docdoc 2c0e571af9551f882e0f962c19799154fd0e9d82e9c8876d726a11f50cbc9676n/aHeodo
2020-10-27List-2020_10_28-0734974.docdoc 4a85964172bb7b3971c47929b9bdb5e54b312ddcf539fa7036e5cf18db89e07en/aHeodo
2020-10-27Arc_20201027.docdoc cc06472bd25f7b5f0ef84191079f28606f6f063823f7ea4b69d671a7037525d3n/aHeodo
2020-10-27dat_20201027_083416.docdoc 2520d211b53e772f7a11ae07b43267f359a5a48ceac370084cbc4fa1197a268dVirustotal results 19.05%Heodo
2020-10-27Arc-2020_10_27.docdoc 69f39eb5b593ecc06e8cf64198bc5f86b5f201c3fe0b66373e1caf7a0f2cac0fn/aHeodo
2020-10-27Dat_20201027_DJ8669.docdoc 882bcc061c75ffecf676b125f0a6b158e37c86cad7fe3de21013be35af4caf3en/aHeodo
2020-10-27Dat_20201027.docdoc 84350d794ab71f13e5b73fa0731a06fa097fd3c727040e023d946f348b66a73fVirustotal results 22.22%Heodo
2020-10-27Attachment 2020_10_27 759.docdoc c760fe45f26d328ded7cc3fac92ee701e551cfc11a4c2b0cbde98423f6097dafVirustotal results 19.67%Heodo
2020-10-27Inf_2020_10_27_K0113.docdoc edfb677e0654249df35a0a414629e5adfea9df8bdf6970d67ad7cd91cbac5257n/aHeodo
2020-10-27Dat.docdoc 8a1b55c98e4946eec03ce1b525e3051f05f02a515b87b9c2b53888e52f8bb13an/a Heodo
2020-10-27DAT 2020_10_27 H203.docdoc b91805dd757e2c22fd237b95a5414b7ecf4bfff23e7e48d024ac493fc7af96c5Virustotal results 33.33% Heodo