URLhaus Database

You are currently viewing the URLhaus database entry for http://veyron.ir/gregx/frankx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:408804
URL: http://veyron.ir/gregx/frankx.exe
URL Status:Offline
Host: veyron.ir
Date added:2020-07-07 22:52:45 UTC
Last online:2020-08-05 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: p5yb34m
Abuse complaint sent (?): Yes (2020-07-07 22:54:02 UTC to solisomama[dot]john{at}gmail[dot]com)
Takedown time:28 days, 2 hours, 51 minutes Bad (down since 2020-08-05 01:45:22 UTC)
Tags:AgentTesla link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-30n/aexe 4f6ac6b43b08dee7bebe8e4684dca255762ec6d41e5ae06a225a6d4f3c07495fn/a 
2020-07-30n/aexe 25d3e71ae70b75dfdb4b477ed76b45111a589bb835ebc4e0213e1318e71bc2f3n/a 
2020-07-30n/aexe 5cf3298f9cd61ba4783a3d8da6ba47b38aae8cb7fd27058ef8b3021ca55b6ed3n/a 
2020-07-30n/aexe 2466112d1a0c6a63ce0986c08be8a39e4e79c47f7859d876640484c281e3a118n/a 
2020-07-29n/aexe b56cff92784583649a7d51b0e159c1164b33df7ba524ef09330f4c5568b37c1an/a 
2020-07-29n/aexe 7e8d40aca1a6aed5393e15a39742a32adbfb0266fbfaf5a99910445b9e29dcd1n/a 
2020-07-29n/aexe 712e5c020dd446c2b2feeba564cade96907216005feba6981a22d698aff32272n/a 
2020-07-29n/aexe 4de5085175c9b6d4179f4691102562495dc5a14860fb67c550394a873eb9cb9cn/a 
2020-07-27n/aexe fe1e5c0840dd619a3ec8aea4b02bfa0cc3edba9274e37656632f355d1ee72847n/a 
2020-07-27n/aexe 3a00ca86999d134c1f29cec80a366ab6976512bdde7641bb6734f1e6e4ee1bb7n/a 
2020-07-25n/aexe a4ae415479b36a01cd7167d38644647449042c3619037ee7c19728d1522e6f33n/a 
2020-07-25n/aexe 849e2fe59277f0c370342b9e5d484e97872748cbf287c3339281a3e9e53c6edbn/a 
2020-07-24n/aexe 440ae454f6374a5afdae5bd7a848f1d9b5f8b2680bd66aea831d701fc9a9308en/a 
2020-07-22n/aexe ceda01b7bfc093b321a93a9b11645af1fb4cfe6d5a5b2771e3e1400a9e49e4c7n/a 
2020-07-07n/aexe d5f9424e2698ce6cfa384b4f9a584a951d3165a46922352d3d4456d5c58b5cdeVirustotal results 68.06%AgentTesla