URLhaus Database

You are currently viewing the URLhaus database entry for https://codeload.github.com/sonriseclient/kaancevik6-startup-3055/zip/refs/heads/main which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3310224
URL: https://codeload.github.com/sonriseclient/kaancevik6-startup-3055/zip/refs/heads/main
URL Status:Offline
Host: codeload.github.com
Date added:2024-11-28 10:38:22 UTC
Last online:2024-12-07 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: JAMESWT_MHT
Abuse complaint sent (?): Yes (2024-12-05 08:13:09 UTC to noc{at}github[dot]com)
Takedown time:21 days, 8 hours, 17 minutes Bad (down since 2024-12-19 18:56:47 UTC)
Tags:sonriseclient stealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-12-10kaancevik6-startup-3055-main.zipzip f771569cc6ee72a56e6b21ccadab43b69ba10b9965bb7135d44e88da8911df77n/a 
2024-12-08kaancevik6-startup-3055-main.zipzip d60c650a98c7823684d02dd3ba32c21b0f0e0f8bb8cab7cc9a049bbc150976c6n/a 
2024-12-07kaancevik6-startup-3055-main.zipzip 909f30a5e7931d9aa14435cf83d974ebf94ea9907ee8e31dfd0b1777bafa0e44n/a 
2024-11-30kaancevik6-startup-3055-main.zipzip 4d41dca930aa9b4aa0f289ca595ec43bfa0571ee67d4ea3451f10b955e7b643an/a 
2024-11-29kaancevik6-startup-3055-main.zipzip b72b7492ee76bf6edb412b12df1bed0e9025810841849554e8a0e0c5909ab888n/a 
2024-11-28kaancevik6-startup-3055-main.zipzip 23dd5f8513d5751cd339fabdc08bb297f5336525d268ae08ca43c81111095efen/a