URLhaus Database

You are currently viewing the URLhaus database entry for http://g0zh8lb3.com/4adr/lotv.php?l=iadi5.cab which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:415593
URL: http://g0zh8lb3.com/4adr/lotv.php?l=iadi5.cab
URL Status:Offline
Host: g0zh8lb3.com
Date added:2020-07-20 22:31:58 UTC
Last online:2020-07-21 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: p5yb34m
Abuse complaint sent (?): Yes (2020-07-20 22:32:02 UTC to abuse{at}hostsailor[dot]com)
Takedown time:5 hours, 32 minutes Good (down since 2020-07-21 04:04:44 UTC)
Tags:geofenced Gozi link IcedID link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-21iadi5.cabdll 371cb5ba96c476c5fd65fe2c828546078ff9b2a7c5b4cf92ac76bc3c1c16a2a3n/a 
2020-07-21iadi5.cabdll 8677697056bce75d61b13f159f1038fdd4bdf5181ba40a240f725346d79e0e3cn/a 
2020-07-21iadi5.cabdll 00eb4a85ef63c9cd5a482bf6351c397b8448d0a0ea5ae4bee15fa46a0799fd84n/a 
2020-07-21iadi5.cabdll e415fce87ad1945fbe4bdc5d95061fe738d2ebd4c20f986569bf4701e472eb97n/a 
2020-07-21iadi5.cabdll ba9b2a9dda5f27bcd395d54e405dbc56affe760eeb051fbc6ed8f4c627904eean/a 
2020-07-21iadi5.cabdll 7cfcff02259aaee768809b6bbe6e4bf12a8fb4edbcf89457ec1297d6d9b3031fn/a 
2020-07-20iadi5.cabdll aad569dedacce8b50a96574baa1659839c80c36a6bbf777a28bc17e9737501bcn/a 
2020-07-20iadi5.cabdll c3e94550512af0762298260baff15b0fdea453480c48de6b23a43f706a9f7ae5n/a 
2020-07-20iadi5.cabdll ecdb2d37a414fd5b388198db380266da1051369a8c52050b20c4911637561ee3n/a 
2020-07-20iadi5.cabdll c703284d8f37b0f6486b29773f72a68c168dd57a2ada2a83e9cde23ccb5417abn/a 
2020-07-20iadi5.cabdll a2b6521b7aaeacb3c7f2e51300cad98ef6427a34166dbf202f91792cd1f442e4n/a 
2020-07-20iadi5.cabdll 8b6c0bbafd1cecd3d8948676f375f39b0804d181e3e392e187f8067c2b0b2cd4n/a 
2020-07-20iadi5.cabdll 11caa43faf65841524bedc0146c2997a01f841c69480fcccb93ab78250bfd2d1n/aGozi