URLhaus Database

You are currently viewing the URLhaus database entry for http://g0zh8lb3.com/4adr/lotv.php?l=iadi8.cab which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:415596
URL: http://g0zh8lb3.com/4adr/lotv.php?l=iadi8.cab
URL Status:Offline
Host: g0zh8lb3.com
Date added:2020-07-20 22:32:17 UTC
Last online:2020-07-21 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: p5yb34m
Abuse complaint sent (?): Yes (2020-07-20 22:34:02 UTC to abuse{at}hostsailor[dot]com)
Takedown time:5 hours, 30 minutes Good (down since 2020-07-21 04:04:55 UTC)
Tags:geofenced Gozi link IcedID link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-21iadi8.cabdll aecc8b2d45685d9d4aa0077182616c8e855cbeadda416ad7bbcf891a9a46c647n/a 
2020-07-21iadi8.cabdll 92e32a7a82361bd9d5274028748a1b8a18bdb18c6659f3bba5cacda2a214d805n/a 
2020-07-21iadi8.cabdll 1ed2dee69510528000406124c3226f7fedd8348f54c9cc4f056b9fcaf1d5edc1n/a 
2020-07-21iadi8.cabdll 6dfa26c882e94e9cf085c5a8f40783cfded4450b0386d56c5a8e2bf507acf991n/a 
2020-07-21iadi8.cabdll fba3dd31f2440a0c6ce4c32bb110c7472af1c3d3ce3bff49c206b352800a509dn/a 
2020-07-21iadi8.cabdll e9e912fecdb8951e398f71de99c95424b00801f3105be760dcee260dcf8119d2n/a 
2020-07-20iadi8.cabdll c5189bef6fd7ffd2b5326c83e222a8ee1a974a79ea9403c19a3d6bd5c64796c9n/a 
2020-07-20iadi8.cabdll 49c26e440a3c65184eb1111afc5b1066474812cd2cc207decdb15009bcd18783n/a 
2020-07-20iadi8.cabdll 000f8cc45f0aea72365b9286aaa2eee431daac86ec3a638b5a8301976acbf0a8n/a 
2020-07-20iadi8.cabdll 39ea2bc59678632c10097d4c61cf9cd75c8e03d2b5c7e770e5c8cf9f7de0158dn/a 
2020-07-20iadi8.cabdll a227b41b4399cf2b42dfd3341c956238ddd6eae47dadf8fc0d6f799c5bfcaeecn/a 
2020-07-20iadi8.cabdll 3054919ce2fa9b2e400a5ce400b98070038425be891cf3ab05ae3ea72c0bf2b9n/a 
2020-07-20iadi8.cabdll f9fcc43f2768b8c415cffea51dcde31f474c3ea3be3e676b5839c3df07a06cf8n/a 
2020-07-20iadi8.cabdll 0ff9b688fe79747b33506c52c28f7381db2cbb81cf0add006cdba6addac58893n/aGozi