URLhaus Database

You are currently viewing the URLhaus database entry for http://198.251.86.46/xms?load which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2229122
URL: http://198.251.86.46/xms?load
URL Status:Offline
Host: 198.251.86.46
Date added:2022-06-07 23:02:04 UTC
Last online:2022-06-13 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-06-07 23:03:05 UTC to admin{at}frantech[dot]ca,fdias{at}frantech[dot]ca)
Takedown time:5 days, 10 hours, 25 minutes Bad (down since 2022-06-13 09:28:53 UTC)
Tags:shellscript

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-06-13n/aunknown 1dbfb4ed696dc3cd7a2f48c1e70e30feba4fdc78891f84cbf1dec28a8025c753n/a 
2022-06-13n/aunknown 137312006b7416140b38b1598280e311cde234a212db36ae57d74d6828724fc4n/a 
2022-06-13n/aunknown 375c347048d4bf656e40c2d5ce78385d7b318741b4a74389ac211426e9c3c160n/a 
2022-06-11n/aunknown 23ce9c750c406b0657c1d3cc89b00e46e5d9f4c016c6b1d6e294f833c8862d09n/a 
2022-06-08n/aunknown 7196e59b0ebd891606d84f78ea8cc95c0a82ba237d342bfc9922368de4e18da3n/a 
2022-06-07n/aunknown 2622f6651e6eb01fc282565ccbd72caba9844d941b9d1c6e6046f68fc873d5e0Virustotal results 42.59%