URLhaus Database

You are currently viewing the URLhaus database entry for http://greyhuksy.work/wp-content/themes/zerif-lite/inc/class/class-customizer-theme-info-control/js/msg.jpg which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:148442
URL: http://greyhuksy.work/wp-content/themes/zerif-lite/inc/class/class-customizer-theme-info-control/js/msg.jpg
URL Status:Offline
Host: greyhuksy.work
Date added:2019-02-27 08:58:05 UTC
Last online:2019-06-04 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2019-02-27 09:00:04 UTC to abuse{at}quadranet[dot]com)
Takedown time:3 months, 7 days, 12 hours, 36 minutes Bad (down since 2019-06-04 21:36:52 UTC)
Tags:exe Ransomware Troldesh link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-09n/aexe dcc8f1ce5e70327aefff973fc621045693dc2ccd0943a3e0af34110823a8bcean/a 
2019-04-08n/aexe 21c6c96fc01751a0bfe45cc661f08fe5829ddaf9f82d00d07e1c795dfee8ed3an/a 
2019-04-08n/aexe 88378972da810dfb4256711965e66bd4dbdb4484f69812ac6f217944fec78f49n/a 
2019-04-06n/aexe 4fd887e4601960642aff9de6af010712b1533c09725a98ca366ce892b7fa2afan/a 
2019-03-20n/aexe 39ce95c424a7c6a78e6f725dcd1a8355132988598319bf785113e9058f03210cn/a 
2019-03-19n/aexe c256c20e3f1e66b5b263837ef0de16ba1717149cd7c900b48aa94979cfbb9b39n/a 
2019-03-13n/aexe ad449acc9c68dc8a86c5a9d18c44eea2712b3178a98f10229b2b84b86c276571n/a 
2019-02-28n/aexe 5013dc9e2ddbe9ddd90af638466379f876b70ebe504d62e72ed166480a4d4f83n/a Ransomware.Troldesh
2019-02-27n/aexe d7931e0573af3f962f7e10ee48996ddf33b3491a99da031a67426825a8c2d62cVirustotal results 32.84% Ransomware.Troldesh