URLhaus Database

You are currently viewing the URLhaus database entry for http://g0zh8lb3.com/4adr/lotv.php?l=iadi1.cab which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:415589
URL: http://g0zh8lb3.com/4adr/lotv.php?l=iadi1.cab
URL Status:Offline
Host: g0zh8lb3.com
Date added:2020-07-20 22:31:40 UTC
Last online:2020-07-21 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: p5yb34m
Abuse complaint sent (?): Yes (2020-07-20 22:32:02 UTC to abuse{at}hostsailor[dot]com)
Takedown time:5 hours, 32 minutes Good (down since 2020-07-21 04:04:53 UTC)
Tags:geofenced Gozi link IcedID link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-21iadi1.cabdll bef8f36a26acf60b0d7555302c8967080f0086fadedc91dc3dd773361be51dfbn/a 
2020-07-21iadi1.cabdll c3062cf758ad3d11b6ce8ff0916c2d96d518b4868b3adb8b316d1e0744ee85ben/a 
2020-07-21iadi1.cabdll e49b306371e81d06fa986c70b6869734ba95f0cbd84b531a4362cbc11e25722bn/a 
2020-07-21iadi1.cabdll f1ae671e560d247f7cfc52629f109d4ef92cf2258650cfce68047d99644896c1n/a 
2020-07-21iadi1.cabdll 8f17b4fd523badecdae88e55501a701afcbe8d91be0d9b31cc565f4308e3371cn/a 
2020-07-21iadi1.cabdll 87362d70baa530190b88145865e4d4520fc5d70f0aff5afa9ebd3ded8631bd7bn/a 
2020-07-21iadi1.cabdll a61a93f88d758206d1a0ee2d63b68a515f0728ef3cec8b4476d1e18150b5054an/a 
2020-07-20iadi1.cabdll a6e2fdf58a7133e80b3f60634b4455818d6e76381324d49bcccae26c0aef70afn/a 
2020-07-20iadi1.cabdll 3e2324e69cfae94402bcf77017098239054aea9caa965a880f7db3c92140b384n/aGozi
2020-07-20iadi1.cabdll 2f7cdaca514364ffd4684054fd7d8f55167e7dfbb9b1759513e66961a6b35d09n/a 
2020-07-20iadi1.cabdll f15c087d60303c585f1d45beb0dbf4f1b1a73c9cbc667236ec3994430cbd8894n/a 
2020-07-20iadi1.cabdll 65aeac1e54fa03dc3f0b599021446d122908134c8219e58fecf5a8d10f038e56n/a 
2020-07-20iadi1.cabdll d51a8ad5ed3eab0783e6197222a834513620539c5ca1f480ee48957791eccc34n/a 
2020-07-20iadi1.cabdll 945e2331307d65f1b8cd9ac1ff030c406a50fade1e86c51a9a915affb389da29n/aGozi