URLhaus Database

You are currently viewing the URLhaus database entry for http://gooddns.ir/ashleyx/solutionx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:599566
URL: http://gooddns.ir/ashleyx/solutionx.exe
URL Status:Offline
Host: gooddns.ir
Date added:2020-09-22 19:06:13 UTC
Last online:2020-11-11 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2020-09-22 19:08:44 UTC to solisomama[dot]john{at}gmail[dot]com)
Takedown time:1 month, 19 days, 5 hours, 29 minutes Bad (down since 2020-11-11 00:38:00 UTC)
Tags:AgentTesla link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-11-02n/aexe 1796a7c25fa960607a5711f5c36d0c8494bf8473132e18773103fbe2e56e85f1n/aAgentTesla
2020-10-28n/aexe bb0c0ab2569096b8f1550626aaf3b30d98f5ee6464178f88d524e4f5fc7ed423n/aAgentTesla
2020-09-24n/aexe b3332f865f362bd89aaa305a8b8ec5d3e5b6ddae9e704b70a2d36723550415b0n/aAgentTesla
2020-09-22n/aexe bd18316fd03811364bb4971e795d394c8efc44464537b4c4a27107c4c1f1f823n/a AgentTesla
2020-09-22n/aexe 33c4898c9989aa6fe40b7370b1982d94f021caf856aa5e782a1982df339a8d44Virustotal results 35.29% AgentTesla