URLhaus Database

You are currently viewing the URLhaus database entry for https://pekishop.net/lander/link/src/Setup.zip which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2522912
URL: https://pekishop.net/lander/link/src/Setup.zip
URL Status:Offline
Host: pekishop.net
Date added:2023-01-30 19:31:20 UTC
Last online:2023-02-20 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-01-30 19:32:05 UTC to abuse{at}aeza[dot]net)
Takedown time:20 days, 6 hours, 11 minutes Bad (down since 2023-02-20 01:43:57 UTC)
Tags:fake-installer Malvertising RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-02-06n/azip 9d6d70ecbe565bcf62cf3c139b05a8688d4cfc0ba51b02eb8959b06124f10071n/a 
2023-02-04n/azip 192d4cdf69c8f457e8ba04dbbec9e1e96a74b89f06c9867604a32baf30e13b00n/a 
2023-02-02n/azip 1021400fe5af32079474b9796fa67eeae4137e3dd18aec59d6ad6950fdd4a718n/a 
2023-01-31n/azip 5f487ec252e51ddaf9a4558caec9bbcb89ca7decca0a1f6b2ba7da2743ae3b2bn/a 
2023-01-31n/azip 9d514b902c9149aeae183d87d64b58d2f62276d83647af4f790a3232fa2de3e2n/a 
2023-01-30n/azip b7d62cddb1e711ac05f2aeaac89731d510bd82b006c802d7b7ac105761fab4a4n/a