URLhaus Database

You are currently viewing the URLhaus database entry for http://47.98.188.214:8888/supershell/compile/download/[win which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2942682
URL: http://47.98.188.214:8888/supershell/compile/download/[win
URL Status:Offline
Host: 47.98.188.214
Date added:2024-07-07 15:15:43 UTC
Last online:2024-11-20 18:XX:XX UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-07-07 15:16:15 UTC to anti-spam{at}list[dot]alibaba-inc[dot]com,abuse{at}12321[dot]cn,abuse{at}alibaba-inc[dot]com)
Takedown time:4 months, 16 days, 3 hours, 13 minutes Bad (down since 2024-11-20 18:29:16 UTC)
Tags:supershell-c2

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-09-13n/aexe 9e80ece44deb7f89ae3d9f3aebbda5fccedada0c0ca02bfd0fdfec0fb54c69c9n/a 
2024-09-13n/aexe daf67ae25ec411216f70d8ed81c58bbb5bf4d8fe7accce86eb1741e0b38f8a93n/a 
2024-09-13n/aexe 8cedaa7451f4605b56288605368e0587c5f02b558747c3c02227ddd6ff3159cen/a 
2024-09-13n/aexe 87a77b64179114ac10fad9b08c7f810626328cd66f8ee8c04f0128ab6bb6a1a5n/a 
2024-09-13n/aexe 25e098b98ac9f6a8acefd99149ff37752c24c0d6dec0c44152c0c2f9334933e3n/a 
2024-09-13n/aexe 000d7842e1d80d740162263508ff03850abf10e392822edc95f0e7cbb52ae104n/a 
2024-09-12n/aexe e4f26974eacf124a31c2b161e87f33211d6f772d7ac2f0632c429881ad3b7cdbn/a 
2024-09-12n/aexe 60c0ee09df60f753f97b149895c9ffb301c903c686e3a2f30dbdae6553d33b10n/a 
2024-07-07n/aexe 9dbe2bff2ff6fdc92da92b98e8cf067df5a21ce0f351a47c2ccc190d590ba2dcVirustotal results 72.60%