URLhaus Database

You are currently viewing the URLhaus database entry for http://185.215.113.93/3 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3071642
URL: http://185.215.113.93/3
URL Status:Offline
Host: 185.215.113.93
Date added:2024-07-26 13:17:03 UTC
Last online:2024-10-25 19:XX:XX UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-08-01 11:34:09 UTC to automatic-abuse{at}eliteteam[dot]to)
Takedown time:2 months, 25 days, 7 hours, 46 minutes Bad (down since 2024-10-25 19:21:06 UTC)
Tags:exe GandCrab link IOC Ransomware

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-24n/aunknown 67ffd8e4ca5a4ec3fe8f3337da308526bb1401d38aca414744addd4cbd21d9a8Virustotal results 0.00% 
2024-09-25n/aunknown 84652bb8c63ca4fd7eb7a2d6ef44029801f3057aa2961867245a3a765928dd02n/a 
2024-09-24n/aunknown c5f3dc2c16c95f86f467b2acd90b5defac699682a291ac278d8fecafdce6765an/a 
2024-09-23n/aunknown 21cfa730d3cf7210c2a2ac6a79933f1faccf0c98b72aff8f6b3dd374fead05f4Virustotal results 14.29% 
2024-09-22n/aunknown 405d5e3c45d83f8bd563222befe2db4f36c4b9780a23f3a1ca0fe7931bfdaa42n/a 
2024-09-20n/aunknown f42ef51c4c7c8f607a0405848593369bfc193b771e8ed687540632cad1376216n/a 
2024-09-19n/aunknown 7c60a0bab1d7581bbba576b709837ef75a5c0833acb584bca3f7c780e70f6c14n/a 
2024-08-12n/aunknown 901af2048533f3da08dac91d7afc30e1f9623c415c737a557374f62324002f2aVirustotal results 0.00% 
2024-08-03n/aunknown 2b3ef263c2723822adfbe11cc2b8db3184b34552fcad496b2877981022273aben/a 
2024-08-01n/aunknown e00a5c0d53ebfd9c8e6523a23e74df26304c103e521d63adda0f048f1f2d3755n/a