URLhaus Database

You are currently viewing the URLhaus database entry for http://34.80.131.135:80/bins/shiina.ppc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:161393
URL: http://34.80.131.135:80/bins/shiina.ppc
URL Status:Offline
Host: 34.80.131.135
Date added:2019-03-18 15:48:15 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Unknown
SURBL:Not listed
Reporter:@zbetcheckin
Abuse complaint sent (?): Yes (2019-03-18 15:50:05 UTC to google-cloud-compliance{at}google[dot]com)
Takedown time:2 days, 17 hours, 42 minutes Poor
Tags:bashlite elf gafgyt link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-03-20n/aunknown 5c62411ff4b3077be6600b1e70f990caac3b6867f79de85817eedbe9f48145b5n/a
2019-03-19n/aunknown 732f2b51ca5c21e2c445d337ab7c4ce5d00757a9e1bd9843e7b207d884a1ff89n/a
2019-03-19n/aunknown e31d0eee26c7641986cf02f16dcf137c1595891e636d632cd17d624fcd68bd1dn/a
2019-03-18n/aunknown 8fc7ffc4f9edb051087c7dc462cfdd801d3f7b037b3ea66e8b29f82955bd6a4aVirustotal results 30.19%