URLhaus Database

You are currently viewing the URLhaus database entry for http://sagami-suisan.com/wpBK/pik.zip which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:147300
URL: http://sagami-suisan.com/wpBK/pik.zip
URL Status:Offline
Host: sagami-suisan.com
Date added:2019-02-26 09:29:12 UTC
Last online:2019-03-08 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2019-02-26 09:30:08 UTC to hostmaster{at}nic[dot]ad[dot]jp)
Takedown time:9 days, 14 hours, 59 minutes Bad (down since 2019-03-08 00:30:01 UTC)
Tags:RUS Troldesh link zipped-JS

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-02-27n/azip 1af9ef4510971f96fc35ba88812ce33d47aa39176b52a81cf2c1c3ccba2fce19n/a 
2019-02-27n/azip bc10046107123510ae74a73d47c5bbc93695224da1448355f8523fc4e184923dn/a 
2019-02-27n/azip 41ed163b301d1069678ce4ce2095d56693b3861d79d5b166465843149d9d4299n/a 
2019-02-26n/azip b3d6c7d90d6f87074a674fc2650b3ad72a4718a34a19053a7e948d10adb633a6n/a 
2019-02-26n/azip e101e8968dfdea8d87ccc7a536b4e4f05f8d89bc78cd455b31d99f9bbc41206en/a 
2019-02-26n/azip 7057a3b6595ad144927962fb75e2195ad3f1eff28086df31bbff518e7c5d2fa9Virustotal results 31.58% 
2019-02-26n/azip 52edb4bbadb39f62b82befde645ba35e9c3003e56c47286ccb1cd4b4c4326e33Virustotal results 28.07% 
2019-02-26n/azip 9168d266a7797b70dcb9b0f6de8989053c31444b4ec1e65f3dfb34a91d2e3928n/a 
2019-02-26n/azip 24491d08d0a375b2b6f28a7ded44c8ee0e9f6e2695b274fe56fcca77f7e8ab92n/a