URLhaus Database

You are currently viewing the URLhaus database entry for http://185.215.113.93/5 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3071647
URL: http://185.215.113.93/5
URL Status:Offline
Host: 185.215.113.93
Date added:2024-07-26 13:17:03 UTC
Last online:2024-10-25 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-08-01 09:49:07 UTC to automatic-abuse{at}eliteteam[dot]to)
Takedown time:2 months, 25 days, 8 hours, 4 minutes Bad (down since 2024-10-25 17:54:04 UTC)
Tags:exe GandCrab link IOC Ransomware

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-22n/aunknown 20a8fb765db33c4e77824c30fd6d5eca24495e3eb9919d2edeeb80b6b9b7208dn/a 
2024-10-21n/aunknown b5c29a5cac5c3e84462a6a0c4dcd1d2612b030a09b00b5c2dcf57fa9cd335b2en/a 
2024-10-20n/aunknown 9694012ba50c0d61629acb137e8a47a4b3ea44b51810218230c8f8e035c0b7can/a 
2024-10-18n/aunknown 84652bb8c63ca4fd7eb7a2d6ef44029801f3057aa2961867245a3a765928dd02Virustotal results 0.00% 
2024-09-28n/aunknown 40e2db72f6e566c01904a35546370b6a458979df2b98001762b9ee57c2fe8c73n/a 
2024-09-18n/aunknown 7c60a0bab1d7581bbba576b709837ef75a5c0833acb584bca3f7c780e70f6c14n/a 
2024-08-01n/aunknown 21cfa730d3cf7210c2a2ac6a79933f1faccf0c98b72aff8f6b3dd374fead05f4n/a