URLhaus Database

You are currently viewing the URLhaus database entry for http://111.231.145.137:8888/supershell/compile/download/3=====.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3086403
URL: http://111.231.145.137:8888/supershell/compile/download/3=====.exe
URL Status:Offline
Host: 111.231.145.137
Date added:2024-08-03 08:26:35 UTC
Last online:2025-07-31 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2024-08-03 08:27:18 UTC to abuse{at}tencent[dot]com,abuse{at}qq[dot]com,jsquare{at}tencent[dot]com,dreamsruan{at}tencent[dot]com)
Takedown time:1 year, 0 month, 2 days, 2 hours, 56 minutes Bad (down since 2025-07-31 11:24:16 UTC)
Tags:supershell-c2

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-05-083=====.exeexe 4e04d75231e13b199a86d26ae74f63f5ef61646bddd1e268437abe38d613f359n/a
2025-04-243=====.exeexe cb0ee66f87b60a02f88eb26ad3b930953c83e86a2956509a09164a199c1ff45fn/a
2025-03-07n/aexe 048268d5ae3211d24aefaac5102f5b2278e96d8ee981c6d6fcd88de1b512b5ccn/a
2025-01-26n/aexe 3cc86d79bd9908414e215066d311c1e001bc5f8c295df4f6e0d3d39a9b699064n/a 
2025-01-25n/aexe 81e56ae690a402ae1befb2f04b3bcb15b5df277fcbe9bd3633520600790cf4d6n/a 
2025-01-24n/aexe 910545278a9a01f5e870c384ae2c8acc73be64ae6664001afcf5fccd24d9d4e1n/a 
2024-12-08n/aexe fcd9a61c049da4edd85c7749a01c0e01ce62ade970166ca9e8cb6a8574da0100n/a
2024-10-05n/aexe 18c15feaa50d78f000e077d992a55707563c4660e26303c294b5f87b3abe6436n/a
2024-09-18n/aexe 69cb05b8f7ff383a1ecae0f29ba3dec18f047e3b7a016400ea814b808363e6aan/a 
2024-08-23n/aexe 19d66284249516093c94c545de1a7f5c83c9415b9b778d7f49199ad15a0293b5n/a 
2024-08-22n/aexe b1ca6a7e99018df5df521b3cc37df938bf35a271a5a80d2c1ea1b495b28ed18cn/a 
2024-08-19n/aexe cc4beb335581e1588feadee9aaca78e15ee669158f5c28bfe7d76bbfccfb1cb7n/a 
2024-08-03n/aexe efc9e08763b007f9c9d3e6b36cd612539a54e058a6dcd488edcff4e214ca40ben/a