URLhaus Database

You are currently viewing the URLhaus database entry for http://136.144.41.60/.s4y/sh4 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1978269
URL: http://136.144.41.60/.s4y/sh4
URL Status:Offline
Host: 136.144.41.60
Date added:2022-01-15 06:02:06 UTC
Last online:2022-03-17 23:XX:XX UTC
Threat:Malware download Malware download
Reporter: tolisec
Abuse complaint sent (?): Yes (2022-01-15 06:03:06 UTC to abuse{at}serverion[dot]com)
Takedown time:2 months, 1 days, 17 hours, 41 minutes Bad (down since 2022-03-17 23:44:54 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-13n/aelf 206e881789eda2a6204ae09f31f769fcda4e28ffe761161ecf20b359a9f5ca03n/a 
2022-02-04n/aelf 2d6043197b7f8fc523806ccf8dd83c6a322e5fb6f92762e9785210151ee473e5Virustotal results 48.39% 
2022-01-30n/aelf 0f896b6c72f712a39a1d263c87d3d11d09667e35a29747cdc6cf00afb9b5430bn/a 
2022-01-29n/aelf 95e8bd5010837df614e9307dd0a0b6d71c160b3acb4d5c0d2530db034286fd02n/a 
2022-01-27n/aelf 247df31963af1c11f06ebb3e20c0008d1255ddf1776fd4948ea35fe2d591b879n/a 
2022-01-26n/aelf c44be1816d15242f68aed816dffc3eb5f226eb82a810d0655f23ad2d76be3178Virustotal results 49.18%Mirai
2022-01-23n/aelf 2bb78bf8a8c2de6c5082766ea05a6c9cee24e2b03445a6d1ed179b924391e8b1n/a 
2022-01-17n/aelf 696f76f7ec0b5b11ffc65852f5092cf7d371514584703d3b16eb67b1a3de5ed6n/a 
2022-01-15n/aelf 83dff73546f44fe9369f5f523a3c10749c9078757ab64ec4c18544a1f4d3a5d7n/aMirai