URLhaus Database

You are currently viewing the URLhaus database entry for http://8.218.138.77:8888/supershell/compile/download/win which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2942567
URL: http://8.218.138.77:8888/supershell/compile/download/win
URL Status:flame Online (spreading malware for 1 year, 9 month, 11 days, 6 hours, 35 minutes)
Host: 8.218.138.77
Date added:2024-07-07 13:09:18 UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-07-07 13:10:25 UTC to anti-spam{at}list[dot]alibaba-inc[dot]com)
Tags:exe supershell-c2

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-01-11winexe 2bf7b91e47f37fd493f648b4058673013a6e6dcc4d44e26cf8bc6e8f733f7bb5n/a 
2025-01-28n/aexe 8c2e8d9486afe9e31aa45e7268de4dc3e1f6f1416940aea35d035343a310a9a2n/a 
2025-01-26n/aexe 3c10e74ddf821dc184382f3ae3139bead950eeba7d28d21b93018dd3cea12ba2n/a 
2024-07-07n/aexe 9e3c0485f0c017c04f684859c8704a2ed0fc4f6515ec2299724bc2c32fa0c4d6n/a