URLhaus Database

You are currently viewing the URLhaus database entry for http://62.197.136.92/pumaxnxx/bot.i686 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2234423
URL: http://62.197.136.92/pumaxnxx/bot.i686
URL Status:Offline
Host: 62.197.136.92
Date added:2022-06-11 20:31:05 UTC
Last online:2022-06-15 02:XX:XX UTC
Threat:Malware download Malware download
Reporter: tolisec
Abuse complaint sent (?): Yes (2022-06-11 20:32:05 UTC to abuse{at}serverion[dot]com)
Takedown time:3 days, 5 hours, 40 minutes Bad (down since 2022-06-15 02:12:32 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-06-14n/aelf 816ba39939f574febd5b3d9ecf0853462e590595a88a9ebd86b711c841816c1cn/a 
2022-06-14n/aelf ccff9b4f2ef7b7c90fbfc20de0d73b21020af915ac417af6145d65b156efe764n/a 
2022-06-11n/aelf 8e7b95edeea570e752c6405a6fb900d19c578a0587b2828968c0178c6a5c3bddVirustotal results 32.20%Mirai