URLhaus Database

You are currently viewing the URLhaus database entry for http://91.92.246.47/4satry.js which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2735468
URL: http://91.92.246.47/4satry.js
URL Status:Offline
Host: 91.92.246.47
Date added:2023-11-27 06:54:05 UTC
Last online:2023-12-04 21:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-11-27 06:55:07 UTC to abuse{at}limenet[dot]io)
Takedown time:7 days, 14 hours, 37 minutes Bad (down since 2023-12-04 21:32:26 UTC)
Tags:AgentTesla link ascii js

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-12-04n/aunknown 7a3cdc80acd4828c9a978cc4f7ff9b5f79895c39e85f29c97d8dc158ec897007n/a 
2023-12-01n/aunknown c74b4a057f10996a1bbfdda6ddc87283e7202a1e3f8ac4c563e110b793564defn/a 
2023-11-29n/aunknown 7eac15326f74d5d01d5e5b8f6f9d37b201cab9b34c8e3b81c95f49be96b50436n/a 
2023-11-27n/aunknown 59af2921c60ac2a2019c4906929a63cf815b2decbc1dca744b3ee365325f431dn/a 
2023-11-27n/aunknown cba2aead157862b248d2415432df76c6859c95fe1e4aa6208a30f670963b3b7bVirustotal results 11.67%