URLhaus Database

You are currently viewing the URLhaus database entry for http://zopxor.com/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2270456
URL: http://zopxor.com/
URL Status:Offline
Host: zopxor.com
Date added:2022-08-09 10:35:07 UTC
Last online:2022-08-11 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: JAMESWT_MHT
Abuse complaint sent (?): Yes (2022-08-09 10:36:04 UTC to itresh7811764289{at}yandex[dot]ru)
Takedown time:1 day, 19 hours, 31 minutes Poor (down since 2022-08-11 06:07:58 UTC)
Tags:agenziaentrate agenziariscossione geo geofenced Gozi link ITA SVCReady

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-08-1162f48cc53f4e1.pngdll e1029789f70054736738b7861f9e5e7305aca6abb3c752fcc3a2bb361fc1e4f6n/a Gozi
2022-08-1162f4634deb2b1.rardll 97e8e454ad2b38a0065cae9f3eb576a2a928419e4cbc8ec77e4a91e4c1b6c630n/a Gozi
2022-08-1162f4532b4d93c.pdfdll 8b00beac8a1ba142d1f1dbe910c4d54bf9fee5bcfdeba16b2b1f0ce41bd69fd3n/a Gozi
2022-08-1062f4402b371f5.rardll f206c47d6a6ebda166beb8cc219f5d4d1438bba84fbcf40eed7f114d8910e6f8n/a Gozi
2022-08-1062f42878a44da.tardll 144cc995c4b44a87f07b2cc8ea775b0ad1abbe231fff7a12c2ecbf3f1562ec9en/a Gozi
2022-08-1062f3ee7beb367.tardll 4ce9259d1fc75f4fcc5a8ddcd8325a15951ba2cc274267cea821c2b47d01b59an/a Gozi
2022-08-1062f3dae580607.rardll a94a279468b6e5c208e312ae524add03a86bc46326ff2e8810c1d1ef6a7b9e4dn/a Gozi
2022-08-1062f37dddb2185.pngdll 441b676349685e84b50a18c883cffc3cffa661e164fd6d0adbeb95669ff4f378n/a Gozi
2022-08-1062f3680ccd856.tiffdll 3af1eb5b8e36b0e4dcb32e08e51a99d9d8690aff4fbee87d7ad39a609b60a320n/a Gozi
2022-08-0962f23859599e9.rardll 64cdc3940ca0769a298854cde01d73973ef217b80527f8dc853060ad9a53076fn/a Gozi