URLhaus Database

You are currently viewing the URLhaus database entry for http://45.95.169.115/bash which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1684598
URL: http://45.95.169.115/bash
URL Status:Offline
Host: 45.95.169.115
Date added:2021-10-16 09:37:06 UTC
Last online:2021-10-16 14:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-10-16 09:43:04 UTC to abuse{at}maxko[dot]org)
Takedown time:1 month, 17 days, 15 hours, 44 minutes Bad (down since 2021-12-03 01:21:56 UTC)
Tags:64 bashlite elf gafgyt link mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-02n/aelf 174481263e10f69e27539bebefe37da08a1023813b8f5331eeb194fd266bdae3n/a 
2021-11-23n/aelf ec6c63ab94d9e2342665501263214a574b4cbe8750d069c8b8ad196458a0f74dn/a 
2021-10-16n/aelf 59f8ef9ba40a6c227e5148e681728bcdfbc1d4624873a5c9857523c3d64f4bafVirustotal results 57.38%Mirai