URLhaus Database

You are currently viewing the URLhaus database entry for http://sergiupetrisor.com/baum/images/pik.zip which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:147320
URL: http://sergiupetrisor.com/baum/images/pik.zip
URL Status:Offline
Host: sergiupetrisor.com
Date added:2019-02-26 09:29:47 UTC
Last online:2019-04-08 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2019-02-26 09:30:19 UTC to abuse{at}mochahost[dot]com)
Takedown time:1 month, 11 days, 12 hours, 41 minutes Bad (down since 2019-04-08 22:11:39 UTC)
Tags:RUS Troldesh link zipped-JS

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-02-27n/azip 4905bd6e0af439be3f43041315230f07515f02a641348beca65766b7fd65a24en/a 
2019-02-27n/azip d591f4b7a4f1953d8531084264a9bad153e29602d529882734a5f0cdb0ccf978n/a 
2019-02-27n/azip 9ad58817475a548bc323b01261706f06b5fe4d14fe3ccc890cbbb7c6b3856d61n/a 
2019-02-26n/azip 075cb74677c23687d67a1cde98b89f19c41683ded11f5d2151eced12ea8b1c42n/a 
2019-02-26n/azip e926d2024db18093d242080fafaee353c52256eb5c79954c3c034b2ebf8eedfan/a 
2019-02-26n/azip cdf4f58948399c01b8fb4a7efa1740e113f32265d107cef69f7c2e7393e79973Virustotal results 31.03% 
2019-02-26n/azip f742aab667e3fcc1c2f1413e379f60bb3947d56711cad5ee3ce7185038259aden/a 
2019-02-26n/azip 0673017d9d78dd4f77a01295c1686d95b78d705a4e8a0b0831ff6934966dc4f1n/a 
2019-02-26n/azip d12517885419796840c0ab79f564372aa888260c4a804e2a26766ffcba825f89Virustotal results 28.81%