URLhaus Database

You are currently viewing the URLhaus database entry for http://stiedemann-alvah30hq.ru.com/gg.gif which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1102798
URL: http://stiedemann-alvah30hq.ru.com/gg.gif
URL Status:Offline
Host: stiedemann-alvah30hq.ru.com
Date added:2021-04-05 16:58:06 UTC
Last online:2021-05-03 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-04-05 17:02:04 UTC to anti-spam{at}list[dot]alibaba-inc[dot]com)
Takedown time:28 days, 6 hours, 55 minutes Bad (down since 2021-05-03 23:57:11 UTC)
Tags:b-TDS dll Gozi link ISFB link Quakbot link ursnif link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-05-03n/adll 28ba36fd7492e93ca0e34dcc8cd9f92413e9656b4e122bdb2d0bd4f62a2bb2e4n/a 
2021-05-01n/adll df301e2ebd8b49beb4cdd2d20e4924d6a9ba73b8a11b3e6007b4fdd8f4bb2c49n/a Quakbot
2021-04-30n/adll 62061309d79118800b81eccd4a11d16d4beb571bf5a00a83ee0624a5fe459e2an/a Quakbot
2021-04-30n/adll 00c1f64cbe3e7afe22c38abf3b429dbe1b0da9ba82251ff4361691bd5febad8cVirustotal results 57.97% Quakbot
2021-04-30n/adll 58837b7bc9b2352788cdd74b902a6b8eabab7c6a30b4296ef1dc01f7dad57792n/a Quakbot
2021-04-30n/adll 8b6132a8475be9763c2f6df713c33ddb80d988eee788d0d80c3afda57f85e6b7n/a Quakbot
2021-04-30n/adll 44c4ca06d26ac968101643ca16aabd6305fc24dc925a3f41aeb10def5bb8a5d7n/a Quakbot
2021-04-30n/adll 9ba9b58f9295b107bb155f0471c6ef1434d7920f1918ebe125d7ae0156f9ab31n/a
2021-04-30n/adll 60536fef8b21609f89bb267d85466dca827f5a204e2599134b0a7791346c451en/a Quakbot
2021-04-30n/adll dd9db041493a507bf74503ebd11cb59aab8b677e01381c1b57e6ad3811042e67n/a Quakbot
2021-04-19n/adll 8e5364e8cbef3ff7c6ae8ee90523a97245a2b85a7e8d667a0995c61ee7b01dc5n/a Quakbot
2021-04-19n/adll f4ce398359c68c377cf9e32e7e2e9128341d8eeeda0926fcebdfc77824111ad3n/a Quakbot
2021-04-19n/adll 9679a578b44be8335d0d4d3917e5823c31e2b124289c6deda1a3b1533131c04an/a Quakbot
2021-04-18n/adll f88a62eebfabee52c49bf91739b8b03aeb7a30661161f1a19ff29c85ef7eb3f1n/a Quakbot
2021-04-18n/adll bf4b2ea6a9a46ec8062398cdc42aecc26f6225fef7b784f985f2cfe2f8104abbn/a Quakbot
2021-04-18n/adll af9457c3f2d448075c8a954edc15272b627ed589e65fde78c6d857c960706395n/a Quakbot
2021-04-18n/adll 4e872afa380d85d9bd8970e773e1fd2f4f842048ad7bcaca5b470851ee178882n/a Quakbot
2021-04-17n/adll 4989d25d43a747d0b8498bf5566aa964a85ac1ba6f6c3902e30dcde439101989n/a Quakbot
2021-04-17n/adll 521cd0afaca3158ab5c82ecd2e7214a63887884d8afb1da7e7137ac22f690390n/a Quakbot
2021-04-16n/adll 00ff6fe84f220a8ac34570b015badc933e1c9cb6c8b37fe949a40a549be574d5n/a Quakbot
2021-04-16n/adll 12be70603bcbb8ce95d4247ef784d3720d59769ee634fb5df652e8b09b878bc5n/a Quakbot
2021-04-16n/adll cdb0d4cc4c989c382e6f18ca80016a214264902cebd752ef198e385c21f805c2n/a Quakbot
2021-04-15n/adll b70ff4a911fc5f9b13e5c09d6bf4d78db13568ba81eb3b69bee0dfa204566000n/a Quakbot
2021-04-15n/adll addc1d0223717dc9596e37c1b7d585418e8649195a3f63c7cfe46ad2e6d5b161n/a Quakbot
2021-04-14n/adll d4491851ab1fb27f21f1255be9b907de9c5d879b80d995013eef4d87faefb8c7n/a Quakbot
2021-04-14n/adll bb396e6feea9d9556b789e1d468f5554a7ff1ca1db241bfbdb62a4fce2501fc0n/a Quakbot
2021-04-14n/adll 388886022d572ab0f25e8e0e88e5a71dbf43f853812b339574f3be32cc157725n/a Quakbot
2021-04-14n/adll be9cdf6531437f620b8dd424443105d22405b9bb6fa26a7456ac8f005dfaa8e0n/a Quakbot
2021-04-14n/adll c11c6e6d3c4fc0460e899674c51af9d508a737d14936e158e87230ebb5388617n/a Quakbot
2021-04-13n/adll e33678d4ac4d07c470746340dc454643f7917531b2db572915d6861d4812b2bdn/aQuakbot
2021-04-13n/adll 65eb24a8a006cad8aaf4f1e3ae8eea5edec0d8334a9aff6906354184b9c74c40n/a Quakbot
2021-04-13n/adll 494538517467c864196b7bc13b8b81ce85c92f037e5140017434301119e19eb0n/a Gozi
2021-04-13n/adll 2362310b1358fa0b793c20fd06d508963100ceef703ed99b48ff8ff66403c8e1n/a Quakbot
2021-04-09n/adll 3e9f31093b5092e0b862d3e2effc5b0a3176ce46acbd39a7042e088b00120575n/a 
2021-04-09n/adll 23ee1f28f43a812c1e578fc3d4bb22a6f405baed3af72944e1c358d857d7f564n/a 
2021-04-09n/adll babd3a0ac64dd9aecc7f16cf4617602c4049a7b0bbbbc1c774223c5d04e5d045n/a 
2021-04-09n/adll ac1d737d5ecaa2261e5fae7be5faeef67a3305f538c8137ec6b2be7317bc5e38n/a 
2021-04-09n/adll dd6a96c4f516c9bae586169aff9b3d3ecddd55442839e742dbc85332a6138e48n/a 
2021-04-09n/adll 3a752de50fce92aad46b5b0b2420d5be76d1f43ea7e2ca827eea5b644d7c1af4Virustotal results 43.48% 
2021-04-08n/adll 8972931c465a8a33a82eda4da2ed063bb75b55d826a4f7e0b17fe7987da91af4n/a 
2021-04-08n/adll 55c05fc2995a1bdd965933ef03f391302b96e930d40da23a921cae696851f31fn/a 
2021-04-08n/adll 4a699fddc9d5849fdc747a9a03f0b17d88fd6c877508f32919ee23df5ac565e9n/a 
2021-04-08n/adll 04fe9cadddf089e9bf3177ba3aed4938b80b73ee29c033b3254d2e7dd47ea27en/a 
2021-04-07n/adll 6aa0ddeacf83b75b39a5fc107c82dcfd38ceb4c757fb18c4434f8fa98ec18e95n/a 
2021-04-07n/adll 48e425a75fe228163198d33167293dfc2e2a315935a486d6d2f665addfedd26en/a 
2021-04-07n/adll 4b86c1f3ad4b8932fdfd65ef22085d05c5de4535b807f50d35ee1c9d1dadc77an/a 
2021-04-07n/adll cd81e88b720c8961f9a69e46375631548232a07f4c63f62b33162e4781980308n/a 
2021-04-07n/adll d16c2182276a8cf2aac7464faed0cc866298eef0974ba3ff03578aca03754d41n/a 
2021-04-07n/adll 370735fb04f3bfd696398da5387069003eeb0969b1ea2008b6818b7ec838cdacn/a 
2021-04-06n/adll 5651367a8c9242b6a4e2917c50b7b8ec0e5b2caa1ac031d6cd3ed88dc0d320ecn/a 
2021-04-06n/adll d118ca751b0aa759be16d95937dde7c3704abfcab74d6973984cb64ba829499en/a 
2021-04-06n/adll 9476dd0d4040a690c2c8eea58aa015cd4e211ada02f603b48d7715a9e721f76dn/a 
2021-04-06n/adll ae4c0fbedcad7ccd2d48e2d2c1d2788e4001c961398cfaf47f1ec87ecd656ca5n/a 
2021-04-06n/adll 00b178ec0aee4cf07ea96af283c687609538dd3185e6b5888f29e50c79cb27can/a 
2021-04-05n/adll 7e39320816229aed2e8cdbaceac1d82b4d9c67554247f565dbf85aaf3b629cd5n/a 
2021-04-05n/adll d806d80b36dac2818e94555553f01bc1e437aa982c07db9b7a34d6921511897cn/a