URLhaus Database

You are currently viewing the URLhaus database entry for https://pagribaf24.com which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1099147
URL: https://pagribaf24.com
URL Status:Offline
Host: pagribaf24.com
Date added:2021-03-30 08:23:05 UTC
Last online:2021-03-31 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: reecdeep
Abuse complaint sent (?): Yes (2021-03-30 08:38:03 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:23 hours, 23 minutes Good (down since 2021-03-31 08:01:27 UTC)
Tags:geofenced Gozi link ITA ursnif link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-03-3160641bdf1b7ca.pdfdll c4f9a2d5c7c0411d780a53eb5a9e6484a295d82c09043d49ec64ea879b7c39fcn/a Gozi
2021-03-3160640dab56790.tardll a3e3a5e0f97bf5165605fa7171655dd09703bc666d4a06a8f673cc298f2c9fd9n/a Gozi
2021-03-316063cf7970e34.pdfdll 63838db8c3036185083489a91f5d7408e9757eeb1f33f24482fa07025cea3f3cn/a Gozi
2021-03-316063be9525973.rardll da4b50153b040705375cba63f254d38df3885bb1554804b28eff96091138a80cn/a Gozi
2021-03-3060638e3a083ab.tardll 8328e3fd543f366d1625e37bf5b002b5d057b2d80aa2250326c174425886c1c0n/aGozi
2021-03-3060637df464009.tiffdll d515a304a591707596b58a7fc569f350de1f941b935edb0c3bc397683f46b0b7n/a Gozi
2021-03-3060636f0974844.rardll b1ef6442d9fecf9e07039f23e81f9b5717fdc4a656b583c95eecc5d16fb83db1n/a Gozi
2021-03-3060635ee24ea13.pngdll c4fd6c2f3b195284db1158bbb0eafa3820c6f6e5056676dc3abf4c6d70ca3fb7n/a Gozi
2021-03-3060634f9363b67.tiffdll 98b783c4cee34ddd8e58910ca691fe23c217b3243d56b79fd92e5c600620cc73n/a Gozi
2021-03-3060633246aecf4.tiffdll 135f4c62aafa51c0b03741132aa3168c2b69612f48f784906787c30102cee7f1n/a Gozi
2021-03-306063129e4624a.tiffdll 482589045863230f95c3f5518cc1185682a148d62ce703aab828f53d0a6fc095n/a Gozi
2021-03-306063007a8a4a2.pngdll 310ac7c48b536f71a16706f67fd4d2bed5d9f5708dd460cf3cbc0cd34f43a3edn/aGozi
2021-03-306062e334c4843.tiffdll 3d77467fd77f39e8dcd6747c47de1ffbacea6d6fc2730e402eedde10374dc8b2n/a Gozi