URLhaus Database

You are currently viewing the URLhaus database entry for http://91.92.188.72:64496/.i which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2290030
URL: http://91.92.188.72:64496/.i
URL Status:flame Online (spreading malware for 3 years, 11 months, 6 days, 15 hours, 51 minutes)
Host: 91.92.188.72
Date added:2022-09-02 19:49:06 UTC
Threat:Malware download Malware download
Reporter: geenensp
Abuse complaint sent (?): Yes (2022-09-02 19:50:07 UTC to ramin[dot]ansari{at}tci[dot]ir)
Tags:hajime

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-04-10n/aelf 5cbcc16895dc64c7503e09474f0a2e6c5a79ddb6d4336d40a6134777e1c30feeVirustotal results 54.69% 
2024-04-01n/aelf ede7dab0673b2c7d8169b94a6c9f8b4cd3ba8bb41442f3d0238e46ad9e6d269cVirustotal results 61.90% 
2024-02-16n/aunknown 4f2f607160c2f475157e2473f4512af59181453fdbcef84a77b3067655a7c27cn/a 
2023-11-27n/aunknown 65b3b3761e36f3e60e86fdbf73fa20d6f092369b94ef607a8fbb33080a475f14n/a 
2023-10-22n/aelf 58049539d5573de36965e96a8697896c6f98c0e0b1dcabc4cce9b67416f3d321Virustotal results 63.93% 
2023-09-16n/aelf 9f43e611483cc054e32b95cf115f75c931b5c1daa82cab75724bda9eaa966141Virustotal results 21.67% 
2023-08-28n/aelf 54be4dd404945f5515e9b5095ce43ac4197615efd4f5f7e91f2e52a6bf3ca6b5Virustotal results 20.00% 
2023-08-20n/aelf 907f0740c60559d222408c5d7083cb03cada4bd1b4277a5ba984a16dbf6bd580Virustotal results 20.00% 
2023-07-10n/aelf 7a6c9fe1a29196755fa1842a987290c848903afb920bb637a740ed2f2961ad78Virustotal results 23.33% 
2023-07-06n/aelf 9ce30de62e5c4aecfa10ae6ccfd07498d10d57255038e7079acedcb63f1b6269Virustotal results 20.00% 
2023-06-23n/aelf c88bfee2cb99db72760a72f21c4d831c04c7495ae48b6d885f6d3e829c1df803Virustotal results 20.34% 
2023-06-17n/aelf 7c081d658fd4851c257175bd95e494dad2d04060f8c0a3d227a57207d69c0b98Virustotal results 3.33% 
2023-04-24n/aunknown af388bfcaa2c0fa9cd441d30f58b0db5023c7890057fbf342851d743037b7a7cn/a 
2023-01-07n/aelf 4a8dcb5f28b218dc73a385de9d0c73fc741b2025bf367bfac302ef658a65bab0Virustotal results 22.03% 
2023-01-07n/aelf 4dba95235a05789b47de3df4859c663cd58e48a03381d18a50c81a56107f5a65Virustotal results 26.67% 
2022-12-17n/aelf 6cce4fce8e5602fdc6d1643f4ca921001e74abb4ec11a1eeb74e568f96767e46Virustotal results 26.67%
2022-11-17n/aelf cc69a669f81bedd975c92c567d820fd0cdc4a7ec6e58c6b04fd03693556fb005Virustotal results 28.57% 
2022-11-15n/aelf a0cf5761454a7265f13d9cda55604ab8626190f3afdeeb8d933a907902f5e9e2Virustotal results 20.00% 
2022-10-27n/aelf eec68e0190cb6b7683556b3fde3922936b0b0a70d0efd2062c53c87f2adfdb1fVirustotal results 20.00% 
2022-09-02n/aelf a04ac6d98ad989312783d4fe3456c53730b212c79a426fb215708b6c6daa3de3Virustotal results 70.49%Hajime