URLhaus Database

You are currently viewing the URLhaus database entry for http://204.76.203.76/bins/ZG9zspc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2258562
URL: http://204.76.203.76/bins/ZG9zspc
URL Status:Offline
Host: 204.76.203.76
Date added:2022-07-18 10:50:05 UTC
Last online:2022-08-04 02:XX:XX UTC
Threat:Malware download Malware download
Reporter: Gandylyan1
Abuse complaint sent (?): Yes (2022-07-18 10:51:05 UTC to ryan{at}ohiocloud[dot]net)
Takedown time:16 days, 15 hours, 34 minutes Bad (down since 2022-08-04 02:25:41 UTC)
Tags:DDoS Bot mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-08-03n/aelf c45fa7885a6322ea8806e6027fd05077f89310faec386354b5556e12bfea97cdn/a 
2022-08-01n/aelf 1f8a35d8b1e9531277144f17c3d95c06f7b2673bb31fd5654037713d65e51960n/a 
2022-07-31n/aelf 58e60dd123ef0e3371e379b43b3f73816dfa48bc7ff94959e51000d9905bfe3dn/a 
2022-07-28n/aelf eccf8c02f1dd21ab4510398579bdd26cb0fc07ce4bbd2cab08e184ef4e5de1c8Virustotal results 46.77% 
2022-07-18n/aelf 1bef8fdd25a8cbf118d03af8c7801cd3b4b7d3f3bed8a32b3bb8f3cb550a8820Virustotal results 45.90%Mirai