URLhaus Database

You are currently viewing the URLhaus database entry for http://www.greldez-vous.fr/wp-content/themes/wp-coda/script/pik.zip which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:147239
URL: http://www.greldez-vous.fr/wp-content/themes/wp-coda/script/pik.zip
URL Status:Offline
Host: www.greldez-vous.fr
Date added:2019-02-26 09:18:59 UTC
Last online:2019-03-05 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2019-02-26 09:20:13 UTC to abuse{at}ovh[dot]net)
Takedown time:7 days, 0 hours, 56 minutes Bad (down since 2019-03-05 10:16:24 UTC)
Tags:RUS Troldesh link zipped-JS

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-02-27n/azip fb882601be53045bfc2a8b8bb76d39095ec5ddb6f891920c333ba07a791ce839n/a 
2019-02-27n/azip cb7dbca05f03c849cdb6806f626628a2dd6ef89ee06876f33b6304080faf2882n/a 
2019-02-27n/azip f0d1508e1445c138f75f1edd28449a6bbd6920dd2dd31a2e4a7ad0730331f7c3n/a 
2019-02-26n/azip d3c8260b870b624049563c0cd109307631ee6e92edbf69623adb6088a5e13589n/a 
2019-02-26n/azip e81d523c8de30cf95b8543cd1f047a755ef2b4f3cbd21518d98d6b1ed2e08c49n/a 
2019-02-26n/azip b0d6aa397c59bb6376afa6f9f090d072289ab433f7d5cb9042620a701aa5487bVirustotal results 30.00% 
2019-02-26n/azip 49875e5a62f3855e07851122a53a023d79e0661d2c725846fa2de7e021b28c98n/a 
2019-02-26n/azip 2d4a09df8029d54d787768dc3ce30f50c43a7a07f070d283a0c8d18b3d24262bn/a 
2019-02-26n/azip 39f929cf5f772354050358d98fbc937eeda632c27a9fa76f4ba6db85ffc7e804n/a