URLhaus Database

You are currently viewing the URLhaus database entry for https://drive.google.com/uc?export=download&id=1lhNnWOyDntGqIbsYkxWGd32S5XftXVfH which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2726994
URL: https://drive.google.com/uc?export=download&id=1lhNnWOyDntGqIbsYkxWGd32S5XftXVfH
URL Status:flame Online (spreading malware for 2 years, 7 months, 8 days, 6 hours, 57 minutes)
Host: drive.google.com
Date added:2023-11-01 16:38:07 UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2026-05-23 03:10:17 UTC to network-abuse{at}google[dot]com)
Tags:AgentTesla link encrypted GuLoader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-12-29IJZNqiADYiOfEWVCUpnyDnH242.binunknown 4238637485a2812b99506b4aa97326855c6caf4bd3729820df808d75921ce474n/a 
2023-12-12IJZNqiADYiOfEWVCUpnyDnH242.binunknown 6073df1c96c763b7adaac22d62b3b00b7e27207f6eb27f136243b5297792c872n/a 
2023-11-26IJZNqiADYiOfEWVCUpnyDnH242.binunknown c52151529330e75a3ddb5d1ce06f26789f9b905afc5d6ea9b54bd8419e555d27n/a 
2023-11-13IJZNqiADYiOfEWVCUpnyDnH242.binunknown 0bd0287bec734a2510b644e9e5813764e6cb99026fdf603d9079fffa14aa6141n/a 
2023-11-07IJZNqiADYiOfEWVCUpnyDnH242.binunknown ae4e9b4cceb4bab744e5ab3e45cff029c178074368302d413b8e77033aea791fn/a 
2023-11-06IJZNqiADYiOfEWVCUpnyDnH242.binunknown a5639618e57d8268f6bcce21e7e93b9a022691662c926c09f4af06968581c1a9n/a 
2023-11-01IJZNqiADYiOfEWVCUpnyDnH242.binunknown ecb9872b6ab22b14b081be1664b9bdbae5bcd83c299766ddd7daddc010037d79n/a