URLhaus Database

You are currently viewing the URLhaus database entry for http://2.56.59.83/bins/ZG9zx86 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2238727
URL: http://2.56.59.83/bins/ZG9zx86
URL Status:Offline
Host: 2.56.59.83
Date added:2022-06-15 09:52:04 UTC
Last online:2022-06-20 18:XX:XX UTC
Threat:Malware download Malware download
Reporter: Gandylyan1
Abuse complaint sent (?): Yes (2022-06-15 09:53:06 UTC to abuse{at}serverion[dot]com)
Takedown time:5 days, 8 hours, 43 minutes Bad (down since 2022-06-20 18:36:30 UTC)
Tags:DDoS Bot elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-06-20n/aelf e0b94225daa58f828f74cc602d9c227fd847dccaa38ab531f25955d53ae2f4a1n/aMirai
2022-06-20n/aelf 96b1d1ce4ea78dc0e05a92e5c292cf5c7a50283e3bbf7a8480c3a3561539d0e4n/a 
2022-06-20n/aelf eda24ed610a924107cfa978e26b131f87d80e4c689cf010b715963ddf8ae9d7fVirustotal results 48.28% 
2022-06-19n/aelf 3d49bda81113429643e4a39f6c544ca711db4a8b3a5445577432acbc1bfdc526n/a 
2022-06-19n/aelf 4efea4f15ef08ed16359c7f16eef806cf4ec0392f2e91dd049da07f76c24f9cdn/a 
2022-06-17n/aelf deb3568042de950ea326b6f804e050b130bf310fb5f4eb47ee83a8999019f1d0n/a 
2022-06-17n/aelf 15b79ecd6b8dd29a417a1861eff56f6c788f1b9af396b6f1cfd2aabc6ea2317cn/aMirai
2022-06-16n/aelf 17999e34ac80236c6ed60ceef2789189cb909574ea17fba6796ef5be2242f572n/a 
2022-06-15n/aelf 70a7aef080b2214dc1e97ffa2c7c03bae29c2ae04602338310ca5171b3f7aeacn/a 
2022-06-15n/aelf 5db294497a9b5a81a8ae8f7493d3a7005a1f1ef576827f113725e003c60bb2e4Virustotal results 57.63%