URLhaus Database

You are currently viewing the URLhaus database entry for http://dirgantaratuba.com/cgi-bin/gywl1w7xs882EplpSpbrUzZqUmxsnpd4d6voPtt1Jm5zwx0r/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:945040
URL: http://dirgantaratuba.com/cgi-bin/gywl1w7xs882EplpSpbrUzZqUmxsnpd4d6voPtt1Jm5zwx0r/
URL Status:Offline
Host: dirgantaratuba.com
Date added:2020-12-29 22:18:08 UTC
Last online:2021-01-06 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-12-29 22:20:17 UTC to abuse{at}dhecyber[dot]net[dot]id)
Takedown time:7 days, 3 hours, 14 minutes Bad (down since 2021-01-06 01:34:58 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-312KNQXLC65JGQ.docdoc 43af38ecd27585f00463abfee0ca7f492fb36fa862c8d215447d59be27652589Virustotal results 50.00%Heodo
2020-12-31KBS9D4PTC1.docdoc 38bbd83de3da247dd96f8f463e73ebc76a9165bb783fc85432714e863675d87fVirustotal results 49.21%Heodo
2020-12-31YRCEHNTEB4DA3JHW.docdoc e43be8ecf4cbc6b3d85f07d75f2e9e4666b38fbe656d5179697bca7246a4d924Virustotal results 49.21%Heodo
2020-12-31PLBPWHTE2F7I7.docdoc 2aae32497917afd5a493a921d6bae0556badd6dc783eabf9b3322806281435f9Virustotal results 49.21%Heodo
2020-12-31MUGYYUIYERC.docdoc fc43780841b9cf0e6fadf2ae64ef8e79e7308db86a931f976d550224e37a879aVirustotal results 53.23%Heodo
2020-12-31928CGFO7V.docdoc f13634d2bd3bc1469174a0cb871c0d10bcd89c1431232838e1251c25ce568a0aVirustotal results 48.33%Heodo
2020-12-31Q35BOR.docdoc 5b4299a14a7a1bcac53b86176777b6fbe902fbb5a440e9040126b39743db254dVirustotal results 49.21%Heodo
2020-12-315EVPLNT02.docdoc fcd4936265c3d59d43ed6c51658cafd788f22ab0e3601f832346c762c3d97c2bVirustotal results 47.62%Heodo
2020-12-318KJ6VSJ.docdoc 6c1e317361243614038a172a218b2050728fbcf3f6dc18937d02f92e1ff92354n/aHeodo
2020-12-317TLW4XXGNWME.docdoc 575d1371fffeb5877c6a769757f0e62ec244b41f834d609312b916b18c55d7a2Virustotal results 47.62%Heodo
2020-12-3166Y3X87MM4OT3O.docdoc f9929b5a3d5cb50bece6e6dd8e553d79f36e34bcf71e2f302d709d108582e6d8Virustotal results 51.61%Heodo
2020-12-31J5RRIB.docdoc 9c05cd41d8c7fb3746acbcaad200dc66bdc79609905a06213a787799c9661985Virustotal results 47.62%Heodo
2020-12-31IWJH8U7Z9LVMQ.docdoc 91086dde82b6ff0a38dcc4ceafee71808d2af326520ab5e0f610f0c2fc6637e9n/aHeodo
2020-12-31RG0E8Q2.docdoc 7dbe3e3f4d5e95b69111858fc5e96f73c1b7f8284276a1280486ab64139324a2Virustotal results 41.94%Heodo
2020-12-31VZCF1M16PCGAYB7N.docdoc a076dfb0f7e5a9217dd1cde4b003fd8714d6693b990f2ac4fd1b70fdbea38296Virustotal results 42.86%Heodo
2020-12-31YXO0NQYV21Y2Z.docdoc 14eef594729b6784626929323d1f4a040cf76e3774ad5b77a16c28449db182cfVirustotal results 43.55%Heodo
2020-12-31P1L62AO8U71.docdoc 3bf59384c4c1a24eb5fef4453dd1fc63a75324f4aa6b86a62ba47de3393027a9Virustotal results 42.86%Heodo
2020-12-31JMGUQWMZH5AW1.docdoc 62ab4ab746aa32f2fc56a4441eb18d109e5174400f6eec250495e2b513ac63c9Virustotal results 39.34%Heodo
2020-12-312WBZSMC786.docdoc 399701ae00f1f4e019e97b788362403c8323b417cd0f72fef7f9a39dd4ad4436Virustotal results 37.70%Heodo
2020-12-31O1JYEDCH3I4CLD5.docdoc ebb494890c3756f3bd2d17fe15fea7443671ce48c7d22821b6f0e73920ab061bVirustotal results 32.26%Heodo
2020-12-306X0KYI7Y.docdoc fa91406d32a92c06644f1089b3184110a7e7238b70dbbb86098e77f7ce82ff5eVirustotal results 30.65%Heodo
2020-12-30GLVEQN.docdoc e561d015ba417615f931d69404149b840e6f30d937c6d1e8765462d08c33384eVirustotal results 30.65%Heodo
2020-12-30DXT5XBOL1CG.docdoc a3c7030635319611442140f4e775bd30cb0379b86a430e9b54df0ce366d7db30Virustotal results 31.75%Heodo
2020-12-30XF2S3H10MZ3F.docdoc a2bee4290712595f0afb87e5a247cafe694d279fb7350e43bc163630e926aaa4Virustotal results 27.42%Heodo
2020-12-30EWZX1BXC.docdoc 58e9689587eedb1e893c93baa299ea296c05222359dbe281306ec12304d3a8c2Virustotal results 46.77%Heodo
2020-12-30KZGCPDIR7BEQ0.docdoc 6aac95dd3f2a6b9cdc5ddfbda6e548ab8d93a61f48640d3a0a98a312fad42e56Virustotal results 42.86%Heodo
2020-12-30SA9XVS6Z.docdoc 75e6fc7e5c98a20bc64f7944d2bead6901f575fe20135e9aafe210ee2e1e2c49Virustotal results 42.86%Heodo
2020-12-30W27U0G1CKZ2R7KQ.docdoc 69cfcbc8cdcaf6fb79be3d871779d709afb32745e7e7ab35db31dcce9f6bcb80Virustotal results 42.86%Heodo
2020-12-30GD53915.docdoc d6704fdc1942538d16ddedbe3eff3c429e462d4378b33040597c5a218c0e852fVirustotal results 42.86%Heodo
2020-12-30QAQJHWJC810DK2D.docdoc 0b9ad72f95097098c7273fc3e89e96d14537deadfe1570a2e36b8ec40bf241a7Virustotal results 41.94%Heodo
2020-12-30RU4VE1HYD.docdoc 9d7889fe83c60f08711f29825a62cc029f17329e4008a7298e7c3ba5cb6ae8ffVirustotal results 38.33%Heodo
2020-12-30BOHKTN6.docdoc cd86c55218a19d3c739795e4da8c0c8b34a731b1d89fcc0685a5ceed2f3f8feeVirustotal results 38.10%Heodo
2020-12-304LZP50TJP527ME6E.docdoc b19c3ed6b6012da42e3a700410a21231588c6b1da97f92911a540b9e3ae71b08Virustotal results 31.75%Heodo
2020-12-30OX5E51VT3S.docdoc 48cbbf0f9680ad78df8965f1b76d756f88912c653711968364b7f7eb3f5795b0n/aHeodo
2020-12-302B066QFTTX35UL.docdoc 643eeead31f1c79f2a2d191699189bd671ca0169fff0feeb3824ff0b57281e3bn/aHeodo
2020-12-30CBUO2L793.docdoc cecc306de3cae60a1f3d988356054754d0d3dcf8666045f718d5cfbf53e6a730n/a Heodo
2020-12-30767BFVGVARGY.docdoc 71bab4125d8e53687619ff03b3dd9d67b832995ca1998183e77db10e3c2e0c5dVirustotal results 31.75%Heodo
2020-12-30G28MGW1D6C29E.docdoc d89c0125f6b6987e2fe9e70c5748a551eeb0e2b03ad8b06fae80c42153d912ban/aHeodo
2020-12-30ZNN8TYQ5CPZGT.docdoc 6dca5a2a6230eff6ce29c5dfebd77bb4eb68e4c6d774f8b9e2bc95c013cbded3Virustotal results 34.92%Heodo
2020-12-30EZ9FQQ.docdoc 102752bacabf212b2d93d7dab6e84615f2e94a7c17f88f88c23cd2e87643da1cVirustotal results 31.75%Heodo
2020-12-30Z04YO16GXBA.docdoc 8186fe52d421d13e8e0eec79edc7310813af24a6d27eaefa886fbbe5fb05da6fVirustotal results 28.57%Heodo
2020-12-303WRS83Z.docdoc 63a9349a502e7e3e7a78488b5fef1649c62dd1fca5e72c79dd92e0bd89327105Virustotal results 28.57%Heodo
2020-12-30FL8KVI9T1SN1.docdoc 4c0bd56c72fbb8e4fc45f671c03970329a3070b215f7727f83040d529e44f5e3n/aHeodo
2020-12-307DSM3QW.docdoc 95fe116f2a0eb74504e9ba87b6c75f4410ffd67176c46b5daa31d111648cd40en/aHeodo
2020-12-30P19CMNXFD.docdoc 038ce32c78cddd37592b182971d0c98b8c1d4dc9b398b593a5d28aba6e947b2aVirustotal results 29.03%Heodo
2020-12-30AAF7AU.docdoc 03a1dec23b27d910477e78137c85a9397eb5d0118e347d00d22a49e0fb04ea3dVirustotal results 29.51%Heodo
2020-12-30Q65F0F0YK1R.docdoc 92420e97420410a69bf5380467fdecf56f39a624e108916cf3797db026d122fdn/aHeodo
2020-12-303VC4R0EARA8NCB0.docdoc b8b8a0b9feb659e1a9f61285a8f8e98642fa46eda26a61a780df9fb698c63131Virustotal results 28.57%Heodo
2020-12-3050PFLNTO1CNF3U.docdoc 5e9e5d0c36a1395a73be5fc2a97167d451ceaf649ed3c72992238710edcf31ean/aHeodo
2020-12-30OKIDCR2T26H4G.docdoc dd2fb6306e8f3dc2849a641608ae41a0a339a1b522cf120a47fa7b2d825e21dcVirustotal results 29.03%Heodo
2020-12-30C02BOJM4393O.docdoc ad471901c1ed7f1674111218352a68322ba2b1d0a4c7c0f5757dc0bdc2e4bc56n/aHeodo
2020-12-30921NZPWLOJO4LD8K.docdoc 40862d0b1aafeb508f97893ee74e2b324ec7e1eb96bc924b3248b9174e43c1afVirustotal results 28.57%Heodo
2020-12-30UB1RWIBUXCL.docdoc 76283689c929908f5d50f086c098143c982d804cceec6b10d530d67f181704ebVirustotal results 28.57%Heodo
2020-12-30IJZN5H2YK.docdoc 6ae13a12baaf1966a1b672ec45aaff934ef60f13fcd6d0df780ca587955ae5afVirustotal results 28.33%Heodo
2020-12-304NM8FGBEPYJY2W.docdoc f986e45721d272af5712ecebae797be7ecd2410bc63161d05c9e899f6e107af4Virustotal results 30.00%Heodo
2020-12-3036I4JYM6PH15LO.docdoc 3c2ed9471901c2a6ecb559a6af4a9ae579b9e6e93ffd08595f002d8b0ea1afd9Virustotal results 28.57%Heodo
2020-12-30LLIOLKEWBP.docdoc 3c5a0e1906eb2a02dc597a235c6ba9b3faccc526ef1aa3b2f34f462257ff7261Virustotal results 27.87%Heodo
2020-12-30DIPGCXJM92EVU4W.docdoc 7f975c35b98c82e158e6689e3a8d6c5da6a640ba0f279256f3c01927e7476fbbVirustotal results 27.87%Heodo
2020-12-30JKWQMPH47C.docdoc 8b4a38559a56ffcdcc7d468947e3a2aba74a0c89e004dae2ef92edb78a433a78Virustotal results 29.03%Heodo
2020-12-30D5N3CB4.docdoc 5866f3b91372a6d516f905a7d68435727224cd7b9e42fefa0ea4c7e052aee237Virustotal results 26.98%Heodo
2020-12-30W9KZVIBKC81.docdoc 8bb7c4fe3223b8d923a4d634817f253204b25961ba6a1b663d67c41d9f58a550n/aHeodo
2020-12-30FW68BIO8D9T.docdoc 0afd7a7406e620b8d1e0e1a2b63f5a0096fa9e3090973050b74736c876726964Virustotal results 22.58%Heodo
2020-12-30Z9OV27BDREE719B.docdoc 5ff309e15ed409297bf10da249a2d68038b70b8032f305f43310e8930cc7d606n/aHeodo
2020-12-3090UU0YJQJ4MW251.docdoc 3cf8ba8f690f6ea16120329967cdbaa0a7d30af951bcd991eec00356ebe46301n/aHeodo
2020-12-3004HEGWD88.docdoc 43def52a7d5d5aefd8b9f35b80d2fe898607d4ba78d92e44fa407571f78237d7Virustotal results 23.81%Heodo
2020-12-30EX70JU6E5.docdoc ea6f265f22707486accc68c065677c9a83e895f5af1b800bd3eb915a4564abc1n/aHeodo
2020-12-303GNQXKKIE97ZGXH.docdoc 6355855803541e94555c6e004ec777be2e376aee0629bc18b71308f9f41a307aVirustotal results 21.67%Heodo
2020-12-30M652O22.docdoc 523b00e1ee6f5889ae4040bc5fbc46c57e5d33e2419f441d46564316536f3a5en/aHeodo
2020-12-30J8V84L1DJBJY.docdoc b27f92fc7b7e54584e7fe736fcdb389855bf59b934d2fdd033d54e79c14d6c1dVirustotal results 23.81%Heodo
2020-12-30Y6Y3ONEY.docdoc 3f58aa984c9e26aa906d9f4371ea2d31b00ca6c6eecd9dac7fcf4dc2b19caae9n/aHeodo
2020-12-30JOOOM7OBEL.docdoc 34d114c948d93bbce1a1b9ecc92c641ef3c8ca4ec755ce893e55f8b89f7c4c54n/aHeodo
2020-12-30T6PLKQV2T3.docdoc 7f2ac6bb3023f707dd963cf571a1669902ce80a56951f95833fc670192acd2b3Virustotal results 54.10%Heodo
2020-12-3069DZQPJ2TFS4PJ7.docdoc db7a9c5a90c3e6e449fb9375629b793c22d1eace5c4cc7ebdc3743769fa22f04n/aHeodo
2020-12-30BR7R1S8CY3QD.docdoc e799e58726ad5d72644487e2fc47f0ddd22bba379bd0552bbd015e94680c70b6n/aHeodo
2020-12-30NGZZI5ZF.docdoc 4a5d601a84c5c5244615e1f860e6d52fed614858dfbd0215b97b32414ca56f43n/aHeodo
2020-12-30NVT10S5FDY57ER.docdoc fa5aa91755a36f8142bfa74818a3aa61264edc65cf4aa9fb8d4bec28f6faadb0n/aHeodo
2020-12-30VDTWGRXOI.docdoc 475aad7f21e14f905a091f4289932e4a8f2c9c518c3ded3fd3709632e8e75c91n/aHeodo
2020-12-30G2TYLGOJQUP0DRJN.docdoc b5f5bab1debd9fd60535f3a992c4f90f462f3c42896c05138b18e67c36d111edn/aHeodo
2020-12-30NZP5ICO0Z30SCO0.docdoc a586bd9284e08911b3ba6a021732d976be512698b16238e9ada5a5d08b477fbaVirustotal results 53.23%Heodo
2020-12-307R3F26DYVLJ.docdoc b40baf85b9fb3f4fba22b7357bfb8eb639d08c6175af9bab68528061b66eb404Virustotal results 54.84%Heodo
2020-12-30SD5BJZ52GDJ1.docdoc 6b44f18c20a7bb829c5d1e02c4b77128f29a7407068126e8ccbeb63006b77b75Virustotal results 57.63%Heodo
2020-12-30794HQUTF921.docdoc c0f2fe87220adb36dad5fca93cee589c0de457481655e1d64b220de2e89a11ben/aHeodo
2020-12-30CX91XB1RIBKVSH.docdoc 59dd64819d5e4347530f69b1a854607289d93c950a746580535cc79d8ee373c7Virustotal results 50.79%Heodo
2020-12-30GDTUTH9W5UZQX.docdoc 4a03b5e095f8e4303740cf67df82c3491eb1b3545de5256870aa1bcfffda1e54Virustotal results 50.79%Heodo
2020-12-304V6T6V.docdoc 94b586e5a285387c08041e2a39bc999a222670b33b5e3793cf3136cc9ca4add6Virustotal results 47.46%Heodo
2020-12-30G29XZ3SY4WRFGT.docdoc c18cbfc2d84a1436acef501a8e605966ab35af260f8a6c86f24e5b459c87bc19Virustotal results 47.62%Heodo
2020-12-303MIWM3.docdoc bbb438693d73bffc0675f548a52a1639697b0acbc53423881708882b0a3ae949Virustotal results 49.21%Heodo
2020-12-30Q8PHWJF.docdoc 84ff4b1cc97853c325a80d9ea06156582a5b00d8a2dbf43e776796904b5ba7cbVirustotal results 47.62%Heodo
2020-12-30KBAAR7W3RGNT05.docdoc 16a0fc95c6217d4542b0a02200d26987e08d41c709ba9c36b9830993b2b4c6c4n/aHeodo
2020-12-306HGABNL9FZZ.docdoc 9f343da9a2ef57f1ea4109e7e45944ada3a23457de02511ef088806da7686d4aVirustotal results 49.21%Heodo
2020-12-30KXIR5HU4035H.docdoc f2b0207491ef2795d3e585dded16d15d536a7649834aba2f6e24036ee9bb1b2fn/aHeodo
2020-12-30F3SO24G8OZYN.docdoc 4a5958fc2b8d147d9713f4c9ec880045218ae9c1e8251eac8a645e48545e2d11Virustotal results 47.62%Heodo
2020-12-30A0NCB3C6W.docdoc 270178887f55fd612338733257bcaa9750d9f7f1dd3ad0ecf1e55222c3f5d834n/aHeodo
2020-12-30SCORPAT85Z05.docdoc ddfe5d80323178ceb4c5120878ac5448907826e95c3b76bd9c2306e16af00092n/aHeodo
2020-12-30N2O6ME1U42.docdoc fec3ad4118a479bcf4486c4612fc14f123d4cf677b8dd088bbf218be9d0497acn/aHeodo
2020-12-30T9DJM9L.docdoc 1af286a5a937026e62b7a7b6b972f03109862f815f785d9d9d3ba20346da0eeeVirustotal results 47.62%Heodo
2020-12-30JA432H.docdoc d9790597cff0277c202cb25c47d5338d113df8912fe45a44d04f2d146901ca9eVirustotal results 47.62%Heodo
2020-12-29CNFGILV.docdoc 1b4a340a7d7925e5635152af5c56f1fd2e77b9088afb6fe33eba7a03009f5df9Virustotal results 47.62%Heodo
2020-12-291DRGTY0CX9U.docdoc 2ac4c55baa15d3719031c845766adf59717598fe67e7434f595f28120c916528Virustotal results 47.62%Heodo
2020-12-29NAS43ZD0M15JI.docdoc 2527707f508b47e4031c1bf43ad94b728ab6a4847c208dd3f7e592ed49d36f6en/aHeodo
2020-12-29JXFG1X31JZ.docdoc 66a2b350efaf60cc7b59b9de600b6a8183d3a8393688914c52ab4bf9d1e84ac9Virustotal results 47.62%Heodo
2020-12-29P7LELLEA1FQGMTQ.docdoc 0eadb33ff312f9a52da6f3c043f2e183147ab94efbbfdc06bf2951c12d03aa5bVirustotal results 47.62%Heodo
2020-12-29846952ZWV3BHF73P.docdoc 004ffe5fdd488817ced5a47937acb4d2e3130187329de56fdb5920a56d3118a2Virustotal results 47.62%Heodo
2020-12-29OJPGJ0RNYMRCFI.docdoc d6480e873d81be6637d3ba474138b40d9773c0d9294fc530019ed6f3d1fcb1d5Virustotal results 47.62%Heodo