URLhaus Database

You are currently viewing the URLhaus database entry for http://g0zh8lb3.com/4adr/lotv.php?l=iadi3.cab which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:415591
URL: http://g0zh8lb3.com/4adr/lotv.php?l=iadi3.cab
URL Status:Offline
Host: g0zh8lb3.com
Date added:2020-07-20 22:31:46 UTC
Last online:2020-07-21 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: p5yb34m
Abuse complaint sent (?): Yes (2020-07-20 22:32:02 UTC to abuse{at}hostsailor[dot]com)
Takedown time:5 hours, 32 minutes Good (down since 2020-07-21 04:04:53 UTC)
Tags:geofenced Gozi link IcedID link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-21iadi3.cabdll 4c2a468bf1a09d520ecc39ad5a0d88bbaf613a2ff509af4ad2b638f0fda88e65n/a 
2020-07-21iadi3.cabdll ba86c2d0707e21ff40c7340d5fc2441543a4de4f673dbd8cdc483d2f11975089n/a 
2020-07-21iadi3.cabdll 275997ee0354f33010e867ccc7a101bf968566a62d9b8135da03b2ad6271b974n/a 
2020-07-21iadi3.cabdll bdf509aa2359ea071666d090c96565b2799df72b24bb0b6e5df78b32cdc4032fn/a 
2020-07-21iadi3.cabdll b8cdcb77b4401093f7f078be639d2b3ef58a12278979fc5d916bb4a45583a8ean/a 
2020-07-21iadi3.cabdll da5a4fd237355e39ab4d1a06de6c5840a56c038110a57fb4a2d0bf13bb92decfn/a 
2020-07-20iadi3.cabdll 33dcbeddaced20e042e67792109c9effdeefe939b3af5537627466ec3aca5a1en/a 
2020-07-20iadi3.cabdll 4c9cabcde817f590839c647cb1e19f20bf78c0f74ddb49e40d04174518fd1835n/a 
2020-07-20iadi3.cabdll 2f29b3ecb8cd1f8e9cef67f8bc326928d83ddfe702c439445632161687654c3dn/a 
2020-07-20iadi3.cabdll d29c886ff793389a70b48a7f5f45c1f586c76dcabd91450973cc1b55b2d44070n/a 
2020-07-20iadi3.cabdll ac1789fca2f3838325d4c62426cb88ab160e76c04fbeeb31112e7808ff2cda6en/a 
2020-07-20iadi3.cabdll 1fee70a0002d9f6c9658e90e4d115d80e36f57180ff4a6f227bf774d698685d9n/a 
2020-07-20iadi3.cabdll 87e415465673719dcc735f160508678577a8c6c0c109e0b79b68779000bbb2d0n/a 
2020-07-20iadi3.cabdll c43f085c492230b8f67caab4ed80bae0380e5c43aaab68f87cb547f44f09926an/aGozi