URLhaus Database

You are currently viewing the URLhaus database entry for http://185.215.113.84/a which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3068560
URL: http://185.215.113.84/a
URL Status:Offline
Host: 185.215.113.84
Date added:2024-07-26 11:52:06 UTC
Last online:2024-11-21 02:XX:XX UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-07-26 11:53:06 UTC to automatic-abuse{at}eliteteam[dot]to)
Takedown time:3 months, 27 days, 15 hours, 2 minutes Bad (down since 2024-11-21 02:55:21 UTC)
Tags:exe GandCrab link IOC Ransomware

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-10n/aunknown 2ebc4a92f4fdc27d4ab56e57058575a8b18adb076cbd30feea2ecdc8b7fcd41fVirustotal results 0.00% 
2024-09-25n/aunknown 84652bb8c63ca4fd7eb7a2d6ef44029801f3057aa2961867245a3a765928dd02n/a 
2024-09-18n/aunknown 7c60a0bab1d7581bbba576b709837ef75a5c0833acb584bca3f7c780e70f6c14n/a 
2024-07-26n/aunknown 985da56fb594bf65d8bb993e8e37cd6e78535da6c834945068040faf67e91e7dVirustotal results 0.00%