URLhaus Database

You are currently viewing the URLhaus database entry for http://olivefreaks.com/wp-content/themes/olivefreaks/js/slider/images/pik.zip which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:147299
URL: http://olivefreaks.com/wp-content/themes/olivefreaks/js/slider/images/pik.zip
URL Status:Offline
Host: olivefreaks.com
Date added:2019-02-26 09:29:10 UTC
Last online:2019-03-01 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2019-02-26 09:30:07 UTC to hostmaster{at}nic[dot]ad[dot]jp)
Takedown time:2 days, 22 hours, 43 minutes Poor (down since 2019-03-01 08:13:14 UTC)
Tags:RUS Troldesh link zipped-JS

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-02-27n/azip a84d2fff6057d8c636804bd1491b2150d01875f1e9048648462085bd32141d5fn/a 
2019-02-27n/azip 6af0bb317ee27dd5f57956312f7590b397de22a22d8bb1964d352f8d5bb5a20cn/a 
2019-02-27n/azip e996b29064f328a6d5a9a3e7e9c2951789346d116ce4287a22a35b4cd47db52fn/a 
2019-02-26n/azip d5a7505db4630aa4573c125c7b0b3ba436cf98c0d9956ca67e83299f0c338f60n/a 
2019-02-26n/azip a8c1928a24303d40f8d559783cc9febb4fbd48632c1661dfbac9aaf352b14839n/a 
2019-02-26n/azip 45077488107ebc6ca97e1858e51fe73d39ff6ca1b0534a924096ec6b7eab5958n/a 
2019-02-26n/azip 959d06af66190a2e9738cdfabd8b2a81e2b4d0997f8de82cfef4930355c9bc8en/a 
2019-02-26n/azip 50b687126dda71bc9f1d17c95b5e34ad15c53aaf6fc1745abf49cefb7c12d180n/a 
2019-02-26n/azip 1cd6b13d04c3cb8d599142d3cae76ce15cb35a0543ebd1f4e05016b32b3093b4n/a