URLhaus Database

You are currently viewing the URLhaus database entry for http://maithanhduong.com/.well-known/pki-validation/pik.zip which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:147302
URL: http://maithanhduong.com/.well-known/pki-validation/pik.zip
URL Status:Offline
Host: maithanhduong.com
Date added:2019-02-26 09:29:16 UTC
Last online:2019-05-07 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2019-02-26 09:30:04 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:2 months, 9 days, 20 hours, 13 minutes Bad (down since 2019-05-07 05:43:51 UTC)
Tags:RUS Troldesh link zipped-JS

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-02-27n/azip 61178ef80602a56a97f858b0408adcd71ffb7be6ca1593c32f63683e4f60af4dn/a 
2019-02-27n/azip c10a0dce68d6c0abca33dfc9110c8b9be6b47881b0e3457e54e887a9bb6b2d82n/a 
2019-02-27n/azip dad10a0cd03749fdc6c59f57d6f5627e1d238f9bd8c8dbd581d28d9949639129n/a 
2019-02-26n/azip 723f8a8649047f2be6c728831fa72b0c3632d2c37c6bbbc819ba3230a6336a5dn/a 
2019-02-26n/azip 220cd3a20f934e6cc68846f488d504ebc6b113ee200db5a2c38e655827b9baccn/a 
2019-02-26n/azip 3fb1e5e02e5145b6b7d076ca9cc9fbc6e0e06677cfcfaa0265ded63bb80f2cfdVirustotal results 27.59% 
2019-02-26n/azip e45b1741ef9b657293420af2a1c13145645a73f085b60a31686323ffa30f93cfn/a 
2019-02-26n/azip 7823369151589cc88e69893b870e1ada78468eb997f80db555ec3f1f2f72fb80n/a 
2019-02-26n/azip 4f7b2e22a44cb849ca7e97b378e71fdb68261d3be32c46e743d14331f1ee5e7fn/a