URLhaus Database

You are currently viewing the URLhaus database entry for http://176.113.115.149/bin/bot.dll which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3428797
URL: http://176.113.115.149/bin/bot.dll
URL Status:Offline
Host: 176.113.115.149
Date added:2025-02-05 13:06:04 UTC
Last online:2025-04-13 18:XX:XX UTC
Threat:Malware download Malware download
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2025-02-05 13:07:06 UTC to abuse{at}starcrecium[dot]com)
Takedown time:2 months, 7 days, 5 hours, 41 minutes Bad (down since 2025-04-13 18:48:47 UTC)
Tags:dll

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-03n/adll 2c61dde5725a101730875651c73edeafab4ffb4b1992413946f22df16387b3a4n/a 
2025-02-22n/adll 62d4b96e2c9ae2ea5c6300e1a06b1e1d5528f396f086f25ab5d3b251052042cdVirustotal results 46.05% 
2025-02-14n/adll 8588c461210aaed7057fe1743d52173977ec63f29133d5dcf50691094a1d2726Virustotal results 45.07% 
2025-02-10n/adll 9c84a8b64bf0e4d1ec7e90d0c8320941440f3f8a266c86ce1b7730e1d3cf21c4n/a 
2025-02-05n/adll 4b7e4232fec31a80cdccada106516e45a38d97ae18fbba586d4bec41c0bad823Virustotal results 47.89%