URLhaus Database

You are currently viewing the URLhaus database entry for http://2.56.59.83/bins/ZG9zarm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2238729
URL: http://2.56.59.83/bins/ZG9zarm
URL Status:Offline
Host: 2.56.59.83
Date added:2022-06-15 09:52:04 UTC
Last online:2022-06-20 18:XX:XX UTC
Threat:Malware download Malware download
Reporter: Gandylyan1
Abuse complaint sent (?): Yes (2022-06-15 09:53:06 UTC to abuse{at}serverion[dot]com)
Takedown time:5 days, 8 hours, 37 minutes Bad (down since 2022-06-20 18:30:45 UTC)
Tags:DDoS Bot elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-06-20n/aelf 1c8738d2033fce3bd78d26555025b6f6ec96195ef77a76e0b50f05a04ad18310n/aMirai
2022-06-20n/aelf 5c577896e185daf5546e9f9d4f860b40add28761439711dd99e1e803e655ec3dn/a 
2022-06-20n/aelf 5fc7e8c860b865bc63aacb8dbc93e2e1018116e67adf10da7a543d9cfce3b1d8Virustotal results 42.37% 
2022-06-19n/aelf 539de09878d69d0efe1ae6166f07a8a0076ec38328f60ed3ee92f6d7c3f744b5n/a 
2022-06-19n/aelf 1abe5c348223f87490824227741e63b88ddb2f4619d534a655c13ad4094f3e53n/a 
2022-06-17n/aelf 7d58e526228ba82f030e8ae5130df6518e9baf0f3acebcc40148f97fd677acf4n/a 
2022-06-17n/aelf f87cd3f56ea2bd0a2247d87579a0857bf55b3ead75e866756fd58d6e9327ed03n/aMirai
2022-06-15n/aelf 3e7b813f188a3757bbb34410bcf34e28ffc98b9f21dd9989396037c442786796n/a 
2022-06-15n/aelf 7c6b47ee1034a154bae2902e763c6d0a99fa18a0393aa6c94a996f12e7a3ad26Virustotal results 48.28%