URLhaus Database

You are currently viewing the URLhaus database entry for http://194.38.20.199/ae.sh which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1046498
URL: http://194.38.20.199/ae.sh
URL Status:Offline
Host: 194.38.20.199
Date added:2021-03-04 10:23:03 UTC
Last online:2021-11-30 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-03-04 10:24:07 UTC to vb{at}smartmedianetwork[dot]com[dot]ua)
Takedown time:9 months, 1 days, 0 hours, 56 minutes Bad (down since 2021-11-30 11:20:43 UTC)
Tags:shellscript

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-09-16n/aunknown ec3438c2d96ede0ac8085ae90a3f7656c1bba92c338ae8bbfc210c789ad882dcn/a 
2021-06-09n/aunknown 04cf1589b2bcd508b5159197822fd0f5884de9cbaa220bc51122031d0387aa29n/a 
2021-06-08n/aunknown 9aca0cb782b305aa8456c7313e3ef050130b7250c24afd9c366d66a924709f95n/a 
2021-03-25n/aunknown 6c6e6439a721568b90d2215455e35e698ffb510c6f08febcecc410d49d29be2fn/a 
2021-03-13n/aunknown 7b0d0d95d781d10928de1a6c13a72577dbfa8de8ab9529b1aac78cdd41e41d26Virustotal results 22.41% 
2021-03-04n/aunknown 59ad99b67dff93fc22a0b1a092ba4dc63d690bc7c6b5c4c551f56524e7561cc9Virustotal results 26.67%