URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: gooddns.ir
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-08 09:52:04 UTC
Total malware sites :37
Online malware sites :0 (0%)
Offline Malware sites :37 (100%)
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-10-22 22:05:14 104.237.252.41Not listedAS16628 DEDICATED-FIBER-COMMUNICATIONS- USno
2020-10-22 19:50:39 185.207.37.206Not listedAS203061 itproximus- COno
2020-10-20 06:13:36 193.228.91.147Not listedAS213953 MizbanDadehPardis- IRno
2020-09-08 09:52:08 194.180.224.87host.vmpars.netNot listedAS200436 tehrangaming-com- IRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-11-07 07:15:07http://gooddns.ir/majicx/blessedx.exeOfflineAgentTesla ext exe abuse_ch
2020-10-30 19:23:04http://gooddns.ir/donpyx/donpyx.exeOfflineAZORult ext exe abuse_ch
2020-10-21 06:30:10http://gooddns.ir/ashleyx/threex.exeOfflineexe Loki ext abuse_ch
2020-10-06 14:25:30http://gooddns.ir/ashleyx/thirtysix.exeOfflineLoki ext lokibot ext James_inthe_box
2020-10-06 04:56:13http://gooddns.ir/bobbyx/pablox.exeOfflineexe Loki ext abuse_ch
2020-10-05 13:57:37http://gooddns.ir/ugopoundx/ugomenx.exeOfflineLoki ext lokibot ext James_inthe_box
2020-10-01 10:25:37http://gooddns.ir/angelx/angelx.exeOfflineAveMariaRAT ext AZORult ext exe abuse_ch
2020-09-28 21:44:07http://gooddns.ir/bobbyx/starmoneyx.exeOfflineAgentTesla ext James_inthe_box
2020-09-22 19:06:13http://gooddns.ir/ashleyx/solutionx.exeOfflineAgentTesla ext exe zbetcheckin
2020-09-22 19:00:37http://gooddns.ir/max/maxfrnd.exeOfflineAgentTesla ext exe Loki ext MassLogger ext zbetcheckin
2020-09-22 18:56:41http://gooddns.ir/basara/sixz.exeOfflineexe MassLogger ext zbetcheckin
2020-09-22 18:55:20http://gooddns.ir/nwamax/peacemakerx.exeOfflineAgentTesla ext exe zbetcheckin
2020-09-22 18:50:09http://gooddns.ir/kingx/benx.exeOfflineexe zbetcheckin
2020-09-22 18:48:08http://gooddns.ir/stansimonx/stansimonx.exeOfflineAgentTesla ext exe zbetcheckin
2020-09-22 18:48:08http://gooddns.ir/bobbyx/cjfilex.exeOfflineexe zbetcheckin
2020-09-22 18:41:11http://gooddns.ir/wealthx/joex.exeOfflineAgentTesla ext exe zbetcheckin
2020-09-22 18:41:05http://gooddns.ir/bobbyx/XefEzLg1CiaPCAC.exeOfflineAgentTesla ext exe zbetcheckin
2020-09-22 16:43:08http://gooddns.ir/basara/ftp.exeOfflineexe MassLogger ext abuse_ch
2020-09-22 11:41:26http://gooddns.ir/nwamax/nwamax.exeOfflineAgentTesla ext AZORult ext MassLogger ext ps66uk
2020-09-18 04:11:29http://gooddns.ir/cypherx/cypherx.exeOfflineexe Formbook ext abuse_ch
2020-09-16 16:59:09http://gooddns.ir/bobbyx/ndaboski.exeOfflineAveMariaRAT ext exe rat abuse_ch
2020-09-16 13:43:10http://gooddns.ir/bobbyx/fbfilex.exeOfflineFormbook ext James_inthe_box
2020-09-16 06:55:09http://gooddns.ir/bobbyx/starx.exeOfflineAgentTesla ext exe abuse_ch
2020-09-16 05:13:11http://gooddns.ir/bobbyx/bobbyx.exeOfflineexe Formbook ext abuse_ch
2020-09-15 07:12:06http://gooddns.ir/wealthx/desertwood.exeOfflineAgentTesla ext exe abuse_ch
2020-09-11 00:27:38http://gooddns.ir/trulex/trulex.exeOfflineexe Formbook ext zbetcheckin
2020-09-11 00:27:38http://gooddns.ir/wealthx/frankbo.exeOfflineAgentTesla ext exe zbetcheckin
2020-09-11 00:27:37http://gooddns.ir/atlasx/atlasx.exeOfflineAgentTesla ext exe Formbook ext MassLogger ext zbetcheckin
2020-09-11 00:27:36http://gooddns.ir/atlasx/papix.exeOfflineexe zbetcheckin
2020-09-11 00:22:40http://gooddns.ir/nwamax/ldx.exeOfflineAgentTesla ext exe zbetcheckin
2020-09-11 00:21:40http://gooddns.ir/ashleyx/godgrace.exeOfflineexe zbetcheckin
2020-09-11 00:17:37http://gooddns.ir/ugopoundx/ugopoundx.exeOfflineexe Formbook ext Loki ext zbetcheckin
2020-09-11 00:11:05http://gooddns.ir/arinzex/arinzex.exeOfflineAgentTesla ext AZORult ext exe zbetcheckin
2020-09-11 00:07:09http://gooddns.ir/kendrickx/kendrickx.exeOfflineAgentTesla ext exe zbetcheckin
2020-09-11 00:05:36http://gooddns.ir/endyx/endyx.exeOfflineAgentTesla ext AZORult ext exe zbetcheckin
2020-09-10 16:58:33http://gooddns.ir/ashleyx/chrisx.exeOfflineFormbook ext James_inthe_box
2020-09-08 09:52:08http://gooddns.ir/arnoldx/arnoldx.exeOfflineAZORult ext exe abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-11-09 18:59:2926ad3ed1bc9cee27370c1f3b3cdecce28d7cebb6707774c01b10481770e6dfd4exeAZORult
2020-11-09 15:32:22034e412b4cfd7511004908d87ef4efc4eb896a280289595142feacfe92206e37exeAgentTesla
2020-11-09 09:55:46bcfa4551e66deea775dee52f97f9d5806d16441c0d82f045a16e49340313ee54exeMassLogger
2020-11-09 01:24:5628dea672f0838ab7ddb990da50f77b3cfdc6dde4ba543754e830e39b262d7d3aexeAveMariaRAT
2020-11-09 01:17:488ef26b2b7ca600a007e62b5dee2e377e6b12299da67dc6dfdfb53ea2c71a8b03exeMassLogger
2020-11-07 07:15:07b6064cc9790f02ae68fe4150b25be527352129e5d9c49f81ac320c603996ae70exeAgentTesla
2020-11-05 01:25:48d2ed9e1008393560f0d117258892b7c6a67031184fd0566a98707b278349617aexeAgentTesla
2020-11-04 13:01:470fd52c8b8586dfd283eb2b6acac20ed36b7887e56131bad25a61f29e321e13fcexeAZORult
2020-11-04 06:01:1279517807d3412c0fcd9bc91c4231cee4aa9d5bc35f80993a68d52c479dadbeafexeAgentTesla
2020-11-03 15:53:130038fdbc0cabdd5c5e1a140c9e614977ee2582c4c729ded51be44003ce01d152exeAgentTesla
2020-11-03 02:22:454988575523d9a0fe1fc226f972e930cf597cf8c001b306d07d7cc5750a45e38bexeMassLogger
2020-11-02 13:24:169739e405c8408179997ac6d497f557afad062cd201d0155aeca09386b35efa60exeAZORult
2020-11-02 11:53:05ce0b4d46b5a0d870536813367ec05bdac9e32c3ac06d73ed14926b113e3b0ffcexeAveMariaRAT
2020-11-02 05:12:3825bfba7555f3b542adc0b1384711da8e2e44b5fa8141866eae52a3e81efb6954exeAgentTesla
2020-11-02 04:05:5400e08a19f48abe62f711ef9738a94ef764314b98a430765127f1a90a1329e40cexeMassLogger
2020-11-02 03:18:381796a7c25fa960607a5711f5c36d0c8494bf8473132e18773103fbe2e56e85f1exeAgentTesla
2020-10-30 19:23:044a126dd572e4e9683ee2c10df9415488da67ba17fb5319082af4f89ae8224a5fexeAZORult
2020-10-28 00:37:557d5290d1d269e1aac0c6cd6d2c898725f0d7cd5aa9b9c5b65921578011ae4e5cexeLoki
2020-10-28 00:11:55bb0c0ab2569096b8f1550626aaf3b30d98f5ee6464178f88d524e4f5fc7ed423exeAgentTesla
2020-10-27 19:16:24f15b2f5c88a588fbeb079df8ca9c2e10180233df4a5d0b4165209e76bc456f4fexeMassLogger
2020-10-26 13:37:09dab43c2fb08b038593931c2db3095efb6ae3fe71d663129c6f94091cb6c1d14eexeAveMariaRAT
2020-10-26 04:35:16521e2f70efb986ec0949122dd83690d98604618ab801840d16bf949685c4a157exeAgentTesla
2020-10-26 02:17:5140e91b54dfb08b396759074f6018c28433f771a9c6c66ff5b1789d786c591c87exeLoki
2020-10-22 03:54:039a51da9fb8c0f24ae9355d54ab930826925bdc2ebff3160ffbf16190557df25fexe 
2020-10-21 06:30:106339585ae21633ce485f2b874c9797c84c5326b325847a44361e6978da77b758exeLoki
2020-10-19 10:28:12aa703ba4b6b97339a2d84fca6c433da3118f4930ffd27d7bd401a82d7a722e29exeAgentTesla
2020-10-19 09:14:12d62d0dfa280cd130a3c9a1d39cddc61ca6212bb7a3fc2fdf39b72ff11dfe7a06exeAgentTesla
2020-10-15 10:25:42f6f18336f32f52ccbde6b1e31304eb4952beb16fcb6357e8442f669dad47b7a2exeLoki
2020-10-15 09:55:28a3eec914b2a8764501b8894335ffff2873d8e6e5ce4425655c30b70cfa583a64exe Loki
2020-10-15 08:47:09e9d732f17054b1b2137c5ff2de0bfd4790067453d05f78d18713f3a7d824d754exe AveMariaRAT
2020-10-14 05:46:05ac04290c3e7987172725a684e7dfe521011ed939565b40fab96c2732420c01a6exeLoki
2020-10-13 10:31:479c1c50a6555a369b3adcabf576590eafcf0b0fd9b6f491839111528a445c21cdexeLoki
2020-10-13 03:15:523690ee8b15550b1ac997b497e19b0b556b78cd80747d458c09ed8185a55410f3exeLoki
2020-10-12 08:26:210ffeb38588c3b63f2ec6ce65f8296a6d3c4c0c43eb893486295f37ef0aeaa21eexeAgentTesla
2020-10-08 21:56:258f24b4adb843172c14b392bcf73f1f46ac8a20091cb22649110bb937f84b281cexeMassLogger
2020-10-08 15:49:006371e9b8a274164dfcf6252a2fc78749feee699a85ae2f6dacccac43ad8ff1a9exeMassLogger
2020-10-07 13:47:102f591f2c8c67d9c61b196f05fc0730152e5a8c5cbaec47f6afaae62bdb7033ccexeAgentTesla
2020-10-07 12:34:5936b1ab53f234ad0fe7e20b642c43eca994ecb25f86f201ab82f7ab53b7a82cd3exeLoki
2020-10-06 14:25:3037901d945339377a518a69c4e346b63f7bc57bec7479b330d04157d815c5c6a7exeLoki
2020-10-06 04:56:13e6cae09db3ac246cffc114eb41dc867b8dcedec83fabcbb76e51e167f74b7011exeLoki
2020-10-06 03:03:02814f3b9dc8aea3d8a2c42d0eda2779733e7c0deaea265cc0b5be77cd1fa6b869exeAgentTesla
2020-10-05 13:57:37834ef88e9aff3dd68e67981ba7d7d9e1c193ede60369389cb9efe30d17fbc754exeLoki
2020-10-05 10:46:116e3d344af8c112b08250ac66287871145be753315dae86e7b879747aa3e91fe9exeAZORult
2020-10-05 10:09:284c2e0930bdf8d7e4f74a6b005ce1a1fdf1fe3a77ea4b1b88d7ec4ec4d9d9655eexeAgentTesla
2020-10-05 10:03:57b3f2d07e97cfe28deee3a65b8541c48f96f022b52db515b06c635f3b9fcc35efexeMassLogger
2020-10-05 08:15:10744ebb2e77533c06399b3e375e997c864eecc2a20d97145c028a44575a6a44c8exeAgentTesla
2020-10-05 07:50:49af78e9a2d4a82521ad67cc63493b8525ebf8c2c1b1fb2530162250daafeb2ec7exeAgentTesla
2020-10-05 02:27:21e27846749619df94dd373cbbc3a27fe44a5790bac920ad7c2d8ed13296e71387exeAgentTesla
2020-10-05 01:52:45553ad8c805d4151e154177bb4fbb1678711306d8eefba081ec36bf0518d4e88fexeMassLogger
2020-10-01 10:25:378134e9aaeee2160899ff6995b0d97a1742eda48124ff8cebaa4b2f65b2e8b153exeAZORult
2020-10-01 01:23:43e5d8344ae7d9f2641a4e564d0e6e1a6494e216e6a5be0355eb45190e25d11f8fexeFormbook
2020-09-30 22:31:06dbbf7cfcbe5ee947d220a1fe226768ad168807e98723ab261743175b44cbb1fcexe AgentTesla
2020-09-30 13:10:23c82f2b1293a456b9c187db6098e19a7e95b0e5e34c3eadf5dcb7b4eaafa1d5caexe AgentTesla
2020-09-29 09:39:29dc26722293a555aced172076bba90658b85b05a22be48ddf880fae072bed45e6exe AgentTesla
2020-09-28 21:44:07c95b9b5cf40c96d46c8a6443c458575ccb0cff8e0f750a3e9506c62a155bcfb0exeAgentTesla
2020-09-24 23:57:18814765ec878346538ddeaed238bb9ffa88e466a0c158e40ad0a2b7f27b4b2676exeAZORult
2020-09-24 23:53:2254c0138d6a0dbd5967d7cf51eb753b29aa1fd72a85152285bd22347fa6654022exeFormbook
2020-09-24 23:53:06c0cf68515b3afd73306eaa9c2abdd73f06bfba2943f57fd081e7ae25cfbf7b76exeFormbook
2020-09-24 23:49:14b48cfe64a7d020f64e9b09d7636b59ac1f567a51d246b8dd59c53eaa6b339aa7exeAgentTesla
2020-09-24 06:03:23f6b7e42150aea95c6af1e8c570ca45fac6e7e7dc2b27a88cae25fbc92faa07ffexeAZORult
2020-09-24 05:37:55b3332f865f362bd89aaa305a8b8ec5d3e5b6ddae9e704b70a2d36723550415b0exeAgentTesla
2020-09-24 05:25:00d2dfba35543519803792501c08cc68bb21534ec3fcdc50224bb154776f62b28fexeAgentTesla
2020-09-24 04:34:521277fb7fda4e11d5c61a6c07df4af7712070f01e002d54683c879c23e739519fexeFormbook
2020-09-23 10:28:588c6589747dd18d5160664041b3f47111ddf5fb35a3223ec798d501b1904c9fadexe  
2020-09-23 09:53:5906575f01727b5aa6296492bdbaae78073ee3b3abc8870b6b9027368260bc768eexeAgentTesla
2020-09-22 23:46:38bd18316fd03811364bb4971e795d394c8efc44464537b4c4a27107c4c1f1f823exe AgentTesla
2020-09-22 19:06:1333c4898c9989aa6fe40b7370b1982d94f021caf856aa5e782a1982df339a8d44exe AgentTesla
2020-09-22 19:00:3726e69b176a99a4c9490c9dae46d755e7dccd44e7820a6465dd379d7687884cfdexe AgentTesla
2020-09-22 18:56:4110979f9fbee39c33046e940c5893569a1963d3c82de2627394e940ea070f0909exe MassLogger
2020-09-22 18:55:204f8898a5d7e982fefebb69f72d381d184347fc008576be4fae0fd03ed694f94eexe AgentTesla
2020-09-22 18:50:094f34c0a83c985048018c06c994412ea937ee254d8dff0781652144b581a61a23exe  
2020-09-22 18:48:0843b927f5931b3a944b09f9cd74bebf9ca8dd270798cba76a26c6cd02fe0edf67exe  
2020-09-22 18:48:085698fa32fef4c15af331c87f91c9e16ecbf4fbe239f296fc272d41f3c6c93437exe AgentTesla
2020-09-22 18:41:118df4f03ea552e6923d49c91aa9ebc090b3cac7e73b79ba29b931b51014af3d52exe AgentTesla
2020-09-22 18:41:0550ad98f5422a27c28f00ad682dfe8e9c76626ed3d9f5f94d75905e28f1069119exe AgentTesla
2020-09-22 16:43:0853b70d68422c7506f2c4a4873c25951bd0bc54768b25b575ea314f554b62c882exe MassLogger
2020-09-22 14:28:44f0e6e6fef9203d99ebd684d0cef134b076d0cee40a64c04ede7c7ef062e8db62exe AgentTesla
2020-09-22 14:18:22875158091605f31c526784e1d32823d74aa2beadbb780fbacce87e3e94ab9c18exe AZORult
2020-09-22 12:53:086719a4695baf49168a0dbfdc669ee635109e7e387ff2e68ad491bf62516aca56exe AgentTesla
2020-09-22 11:41:251f6ba009b612340ababe496d7c77de26636fc2adc3bb186264171db42d72510cexe  
2020-09-22 05:16:08e169043db0da14b9d2b093e3bb7e3b223a5ef91a3adb2bb70b7c9fe10d6d34aeexe AgentTesla
2020-09-22 03:32:08efa72b6f92df805bd77cc6124b7bc1271fd10548e32d213ce6573c07d7096e49exe AgentTesla
2020-09-21 10:49:3871f156f01f3722503ae7b346c37f64a6bc9efe810309636aa30673062b59aa6aexeAgentTesla
2020-09-21 00:53:170d38cce24d349ab7c0ed29d24fa3686a525d5c8904a12e744ff872069523a4faexe AgentTesla
2020-09-20 22:46:2417de42648d49e21ed411c460fa0c805443e1898e21114beb8ea7301da3ee6b31exeFormbook
2020-09-18 11:10:2484da474dc9a86be051d5a30bd2c4715026e0faab0daf2950fcbebb8e46f907adexeAgentTesla
2020-09-18 11:10:20f7a21b812eaebf24b601f897d3287979247b6025b1e20841ad8b34ec5d1c6575exeAgentTesla
2020-09-18 11:04:55043c7dd432720c9a854ddec54afef3c2651b6f419b7e58be93531cc75ec7e5d3exeAveMariaRAT
2020-09-18 11:04:45a6d47a142ce8ca991f9090ff981c4a4c5a021030fcc9610a582ecb8c96b607bdexeAgentTesla
2020-09-18 11:04:1015af9bb36b7a51efea7ab70d98a29ef7059f4f5b7178fef0aaff0671bf6c9386exeFormbook
2020-09-18 04:11:2920307ce6b95ddf5b77edab8e733ec48f4925fcaa1e184cae538a450c63dc7ba9exeFormbook
2020-09-18 02:08:3249f5e75f64b5a1620cc9a6cbd3870e87853aecb3ef4019ac1a42bdd8a0c499e7exeAveMariaRAT
2020-09-18 01:57:429f54e86b4f6032cb7d52de8394aeb6b0b56eaa75ec463faec3849d93803f8bf7exeAgentTesla
2020-09-17 10:53:48eb05365a45080a0ee40aa03ac166b7d3f47d4f86bdd37427ba754be5aaee6aaeexeAgentTesla
2020-09-16 23:52:1734eeebc4197df0980b621253c336662f3868ccc65a5f99a832d47751d4d5384eexeFormbook
2020-09-16 23:22:53f66db0d80e1a4208bcf7ef6d29a0387a3846a1c7b22d4bdceef9060861fba3e0exeAveMariaRAT
2020-09-16 22:37:57da84ebc8503de1b6c7d4388b75738b72ae8c2a84746bc34d6ca07266b8917ca0exeAgentTesla
2020-09-16 22:29:515c53dc947d2083d3339c1522bc44363cb007e0a6fa314198958ad92d870c4425exeAgentTesla
2020-09-16 22:25:328aafecddd3b462d27c24000757496edb5c6bce1e6abff9157d5360457b0805d7exeFormbook
2020-09-16 22:18:01cd1ea50109f5d04bceec3fc95cc63da217e48fa02b32146f152c777ab417efacexeAgentTesla