URLhaus Database

You are currently viewing the URLhaus database entry for http://scifi-france.fr/wp-includes/ID3/pik.zip which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:147241
URL: http://scifi-france.fr/wp-includes/ID3/pik.zip
URL Status:Offline
Host: scifi-france.fr
Date added:2019-02-26 09:19:23 UTC
Last online:2019-04-18 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2019-02-26 09:20:04 UTC to abuse{at}o2switch[dot]fr)
Takedown time:1 month, 21 days, 4 hours, 18 minutes Bad (down since 2019-04-18 13:38:05 UTC)
Tags:RUS Troldesh link zipped-JS

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-02-27n/azip 76d65f511c5e139855d2e833cb69cb5b962fdec52d98d26b289257c1e76d2c17n/a 
2019-02-27n/azip d5089bef057ab886add54e01addc821cdb26390d7852603fc9e1e13a51f3c13fn/a 
2019-02-27n/azip 430a6f106ab36d32d86b7dfabc4e5735d017c0026df04f908101362fc7e161dan/a 
2019-02-26n/azip 3a3d41555852b88d2154917d26233b2f46d6f520787f95e7a5c7843fe760080eVirustotal results 31.03% 
2019-02-26n/azip 70c90d4ac259c7f17369cff6aa32699e7d6ad48c366872e66daa799c522b319dn/a 
2019-02-26n/azip 20fd4e313aca9de6cd1dc6480ec6067b0b3f8cd331760a6b6e9b62eef9582736Virustotal results 31.67% 
2019-02-26n/azip 76c20b89e375fa0cb46f1f2ac58ef26d544b4b20589a68bfc5eee9f557e8b849n/a 
2019-02-26n/azip 9de41366a38d77bdcdfc5febdd6c26e2f0a2ebc221cf863270a8c456c444c7cdn/a 
2019-02-26n/azip 3f6202f55c8bd26af90e9a98e996217a4df535e5b6e53b62d95235dff773f32en/a