URLhaus Database

You are currently viewing the URLhaus database entry for http://185.204.217.174/lx/apep.sh4 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1846134
URL: http://185.204.217.174/lx/apep.sh4
URL Status:Offline
Host: 185.204.217.174
Date added:2021-12-03 01:12:04 UTC
Last online:2022-01-03 07:XX:XX UTC
Threat:Malware download Malware download
Reporter: tolisec
Abuse complaint sent (?): Yes (2022-01-02 15:47:52 UTC to abuse{at}cyberfolks[dot]pl)
Takedown time:1 month, 1 days, 6 hours, 45 minutes Bad (down since 2022-01-03 07:59:06 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-25n/aelf e54da5095ae873b7baa3401afcb24e0d97e5814faa0778b051e04d2c7ccc8684n/aMirai
2021-12-23n/aelf d50aad15d664e65d8e00fb7b61f096619d24dc5d488f5091c505094b131dd254n/a 
2021-12-21n/aelf 7317a53c56c67f4292616841de1dac58a0c45da9e90e2f20b2a834ae32ec7692n/a 
2021-12-20n/aelf 366c3ae44d52ce22eb717c167dc816a13d599a930852af5922049ffa6a266decn/a 
2021-12-19n/aelf 53960606dc46d361ca8c5a015ed19cbb1c175f386bd4d88cc0270bc18b645b01n/a 
2021-12-19n/aelf 2ad2474339c56760e04772837318f0091edb6b78a6f35c1acc347010575cc24bn/a 
2021-12-19n/aelf ea47efa2eb7c1656c178f536d21edb8a0029117d655d57a956da1b0ae1a57f97n/a 
2021-12-19n/aelf 973a0d1b5d3bebc052c8726b49442e6404127dae3846012e88b59fccd0301871n/a 
2021-12-19n/aelf 20b0f9dd11fea5899b92757fed4e1c46726b27b20076c29a5e832f5949a14a52n/a 
2021-12-19n/aelf 589d9cfd3cf2208a0a1b6e73cbb23b06f7e50a54f0cb70ce77aa9fb3feb2feffn/a 
2021-12-18n/aelf 444e74878de19e01b2f05053e96c79c233627af8a6057ffd258f26a2bbc84317Virustotal results 52.54% 
2021-12-12n/aelf cfbef6e285540b10fad4546a08144eb830c46ce53b819cf24990133f07bccda1n/a 
2021-12-12n/aelf 2b6525013992e38b6cd597dd9f25a392e9bbdd7a7a036449e60e8789d5206a67n/a 
2021-12-11n/aelf 82182242f4064fda6c651b088224bc860336706ea9162666bbea5e15a2ccd432Virustotal results 51.67% 
2021-12-04n/aelf 664b372da6de8eba2fb25bb9f6f7f2b9a0802a18f176b107d8b2cabe2447207an/a 
2021-12-03n/aelf f9a9205de6d05f6ebb423a61bd01ca9e55a24fc6c97191a61bb989d64f1fac7bVirustotal results 51.67%