URLhaus Database

You are currently viewing the URLhaus database entry for http://222.186.52.155:21541/sh/AV.sh which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:212045
URL: http://222.186.52.155:21541/sh/AV.sh
URL Status:Offline
Host: 222.186.52.155
Date added:2019-06-27 04:43:28 UTC
Last online:2019-07-13 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: Jouliok
Abuse complaint sent (?): Yes (2019-06-27 04:44:04 UTC to anti-spam{at}ns[dot]chinanet[dot]cn[dot]net)
Takedown time:16 days, 7 hours, 16 minutes Bad (down since 2019-07-13 12:00:08 UTC)
Tags:bash

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-07-12AV.sh;unknown 6f62167f649c5f698b409b90313d4774ae315604dc19a4279322ef2bfce84a83n/a 
2019-07-08AV.sh;unknown b978c66468fe8a64370c6fd5ebed0e4288744a86d0b8c4ca79fe5198f8432075n/a 
2019-07-08AV.sh;unknown 1e2224d00bb4ddb9bb91a0af138e4fdb6cb6f08bd4cc088b4e7c5d485fdd5e85n/a 
2019-07-04AV.sh;unknown b07ea934fe363286b7bd068489856a224dfbf7099a2ec767a7f364d446f6728an/a 
2019-07-04AV.sh;unknown fd2712ffadbcfb5ccea85da9351ee07e9fe45b567cab9e80bc6db59ce9ccb2e8n/a 
2019-07-04AV.sh;unknown 3ceef1dceb37a74358b7410467375da7ed98e558d9db94479bbc4229b3f2c8d9n/a 
2019-07-01AV.sh;unknown 1489e238cbfdc19fe67f13d420125b4dc5de3e384420eee477504e8db5f568e2n/a 
2019-06-28AV.sh;unknown aecc0a4b5bc0f0bd1f3f14a4a9615eb3e9f787c3a829b148f2b4ff16e43b6d2fn/a 
2019-06-27AV.sh;unknown 0ecb3c23314d6bad0ec7d442be675ff8bf241f68a385012d853dc9aeb739cabcn/a