URLhaus Database

URLhaus tries to identify the malware associated with the payload served by a certain malware URL. In case URLhaus is able to identify the associated malware family, the payload will be tagged accordingly (field signature). The page below gives you an overview on payloads that URLhaus has identified as ZigClipper.

Database Entry


Signature:ZigClipper
Firstseen:2026-03-28 07:03:17 UTC
Lastseen:2026-04-25 16:02:13 UTC
Unique Payloads:4
URLs:4

Payload


The table below shows all payloads that have been identified as ZigClipper.

Firstseen (UTC)SHA256File TypeFile sizeVT
2026-04-25 16:02:13f82d272a52c56f65d66ac665f3074639b93b61c094d27c75e0c77b9baffe896fExecutable exe733'440n/a
2026-04-25 16:01:093194b61d652d50f11bca2edf4708a5ba322a190b6bd3d447b516507add5adbec2'277'201n/a
2026-04-17 06:31:078ea0a4e1ebaa2134dbf13284db36b0edf8ffb728c99d3f2ea00e481b64ae84a5Executable exe654'088n/a
2026-03-28 07:03:173fb70248e9db2bfd2d8d4ad60b752fc3fd9b442b58a30f8239da561e82a791f3129'124n/a

Number of entries displayed: 4 (max: 1'000)