URLhaus Database

You are currently viewing the URLhaus database entry for http://178.215.238.13/g/bin.x86_64 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3239783
URL: http://178.215.238.13/g/bin.x86_64
URL Status:Offline
Host: 178.215.238.13
Date added:2024-10-17 17:31:07 UTC
Last online:2024-10-30 00:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2024-10-17 17:32:11 UTC to dc{at}perfectonetworks[dot]com)
Takedown time:12 days, 6 hours, 46 minutes Bad (down since 2024-10-30 00:18:53 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-20n/aelf f2ffd588dd2ed65216ebad540e343e4ea7b25005dd763e004f69fc70986afa94n/aMirai
2024-10-20n/aelf ea07448888a2e6b648ba1a21aa895b2b6e151d673f1f078eff32bf8896f73f40n/aMirai
2024-10-20n/aelf 21043a5b00b7d8e14236307b89f38f37747da554e99e30c699c972d852eae7f7n/aMirai
2024-10-17n/aelf b3da6db0ed3715f5cee1d950dff388c6599dbbcf603aec335b55d81fcd4157afn/aMirai