URLhaus Database

You are currently viewing the URLhaus database entry for http://rwittrup.com/wp-content/themes/valerie/acf/core/actions/pikz.zip which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:147950
URL: http://rwittrup.com/wp-content/themes/valerie/acf/core/actions/pikz.zip
URL Status:Offline
Host: rwittrup.com
Date added:2019-02-26 18:05:40 UTC
Last online:2019-05-25 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2019-02-26 18:06:23 UTC to abuse{at}servage[dot]net)
Takedown time:2 months, 27 days, 11 hours, 10 minutes Bad (down since 2019-05-25 05:16:32 UTC)
Tags:RUS Troldesh link zipped-JS

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-02-27n/azip fe3494fdb73d9b55824bdb9057c90416f2ce00f520a7912d011b90b15a327aa6n/a 
2019-02-27n/azip 9ae3033917f75bc8c0cbcfb304d31294dfd4cde2a25dbb3dfb8f5f7325cac5afn/a 
2019-02-27n/azip 40c8fa9aa946aa6b29fdbae4f8e34905540313004c470e2e5747803184f48ed1n/a 
2019-02-27n/azip d84219efde50d99074ec2a80ac7f5bef1bce4e961577c6eb427b98a7cbc2f6f4n/a 
2019-02-27n/azip 02a3ba45cbad61e144740a6d9ce5be27c94468c9983987ebb74fb67a492bdb9an/a 
2019-02-27n/azip e88bca6eb6b5ce0185fac5fc643e94a392bd39ae1a4870e598a7e28c5a6d206an/a 
2019-02-26n/azip cc8c1950af9ca6c6f846356e429633e38d6d66d6d21f7a9e4b4c4ac69b97c2a8n/a 
2019-02-26n/azip 95dbc4076740386fc00404625957b4a6420ca5f2a7599ca3107f2c209753a85cn/a 
2019-02-26n/azip b25a95e9f36d0a31983f2d22febd47de03835be261854788eeb68cd19f3be678n/a 
2019-02-26n/azip a38d20149ef399693ea08bbf4e0819ec63529fb2f5a6e8cd941b501677d43c2dn/a 
2019-02-26n/azip eb0e831fdec30fe695c6f3dacb9e95502ce6922fc14bf29e2558bcfc52bb4e7en/a 
2019-02-26n/azip 1d9640b2781dfed68dcf2ee85cd81f9c81580786d5af3fa7e3d7a0c7ed80d20fn/a 
2019-02-26n/azip a2f2fac52b3e3de0720e39604890e590f24cdbe5e816308e96d13ff50bb1a237n/a 
2019-02-26n/azip 344dca1e438a798f0900691e43c9a4d2c12cb0d4e997bf14306edf9bcf72a291Virustotal results 29.31% 
2019-02-26n/azip 34244d7a86cc9b5c50c0a23f1b6a409f56b67963bf0f39329fe70f9a2c84cae5n/a 
2019-02-26n/azip 4e6e225c0cbfe851e1bb3e69cf0e1cca19b7a18ffad3963e0e4ab7c0dd0ee30dn/a