URLhaus Database

You are currently viewing the URLhaus database entry for http://37.44.238.94/nsharm7 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3353761
URL: http://37.44.238.94/nsharm7
URL Status:Offline
Host: 37.44.238.94
Date added:2024-12-17 11:50:07 UTC
Last online:2025-01-09 07:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2024-12-17 11:51:11 UTC to abuse{at}fiberway[dot]fr)
Takedown time:22 days, 20 hours, 4 minutes Bad (down since 2025-01-09 07:55:56 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-01-05n/aelf aabec6b4032d7f0f573efc18bf1d530de4ea258dff35ab772702f7b50104a4a3n/aMirai
2024-12-28n/aelf c9b6fa1602a64cf77e5744f895e31db8557dbd588e7efafa7aaada3a53cc4422Virustotal results 56.45%Mirai
2024-12-21n/aelf 4d315e63c562b354627d6b169e197d5cf108f318b446dac59c8edff283314e9dn/aMirai
2024-12-21n/aelf 260e59098b69b177f0529ae6f78226477670235d0595568a7d9eccb521972b8fn/aMirai
2024-12-20n/aelf a41620a962349468235a9c697a0e3b4b54de42eb5a5982b5a0409de23323e3c6Virustotal results 30.16%Mirai
2024-12-17n/aelf aec31ea8b5774e626aa6e6f37136225faeefff45fbfae7371ea397462709d4edVirustotal results 56.45%Mirai