URLhaus Database

You are currently viewing the URLhaus database entry for http://192.210.132.120/bins/vcimanagement.sh4 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2136334
URL: http://192.210.132.120/bins/vcimanagement.sh4
URL Status:Offline
Host: 192.210.132.120
Date added:2022-04-07 22:32:04 UTC
Last online:2022-04-09 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: tolisec
Abuse complaint sent (?): Yes (2022-04-07 22:33:05 UTC to report{at}virmach[dot]com)
Takedown time:1 day, 11 hours, 8 minutes Poor (down since 2022-04-09 09:41:46 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-08n/aelf 3a504c1ba56854ba4dd92feaf264029c5bcaead36f42a5a67c63d78074de6037n/a 
2022-04-08n/aelf 0e227ea9ae61e22881715b094e60224f590abbc7ff29c4381b9c612835a2b2b1n/a 
2022-04-08n/aelf ca247a17e02a95967b352940625519d8bf60108605a69c871de07dbafc7b9880n/a 
2022-04-08n/aelf b00dab042f26d7f12b8c2cea3a1879c34691dc80bc9e337170a86a59ea7c8666n/a 
2022-04-08n/aelf 87afa2895a040d26e45f6e6c36e6c06cf8c5600d1da847f56a0049e4dcb36340n/a 
2022-04-07n/aelf 5cb7596e6b3c170cb647b7c0532a6aaf240097fcd9efd3eee1a3d101ce5e8c32n/aMirai