URLhaus Database

You are currently viewing the URLhaus database entry for http://oracle.zzhreceive.top/b2f628/cronb.sh which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2124298
URL: http://oracle.zzhreceive.top/b2f628/cronb.sh
URL Status:Offline
Host: oracle.zzhreceive.top
Date added:2022-03-31 12:33:04 UTC
Last online:2022-06-30 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Abused domain (malware)
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: tolisec
Abuse complaint sent (?): Yes (2022-06-30 02:25:05 UTC to abuse{at}as49447[dot]net)
Takedown time:3 months, 1 days, 1 hours, 58 minutes Bad (down since 2022-06-30 14:32:31 UTC)
Tags:miner

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-06-30n/aunknown fe6731f3025775e97d97e08699c57f464112883617bc4505cd8912ac7379d34en/a 
2022-05-09n/aunknown 3724b0555d0c8d0d0eb3856d84fc29317a1e8c4a8f4725344cb7336d97be80cbn/a 
2022-04-21n/aunknown 0672e1f1c463e5f64f2123adfca4fd0a9652f954fcc1e084a2edbbe327e31021n/a 
2022-04-20n/aunknown 6bb1b8ce01d40a88f080b434d49378e16c7b23c0400c55df5bf6eaf984677528n/a 
2022-04-19n/aunknown e4281147982f9fd909c5e7c8a390b1c88f6c1fef57734800e68314d950c406bfn/a 
2022-04-18n/aunknown c712bf42008bf4c83b9f45918c9c00a6b06d0e0fbf62ce76ded407deea274245n/a 
2022-04-18n/aunknown a5b954928ed3a5e3907649c95d0c7187bd930f2c83b462b633d349e037a6f364n/a 
2022-04-12n/aunknown 60b7b207377d84301c818711f00758fec465d2627dcb2bc55c2dc40e8050ef7en/a 
2022-03-31n/aunknown 7d7d0b4353401225e8da8424a7e1c5edaa091b256bdd48b7dcb158befca0b205n/a