URLhaus Database

You are currently viewing the URLhaus database entry for http://37.44.238.88/.shell which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3432321
URL: http://37.44.238.88/.shell
URL Status:Offline
Host: 37.44.238.88
Date added:2025-02-08 19:18:03 UTC
Last online:2025-03-08 13:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-02-08 19:19:06 UTC to abuse{at}fiberway[dot]fr)
Takedown time:27 days, 17 hours, 44 minutes Bad (down since 2025-03-08 13:04:00 UTC)
Tags:ascii bash sh Xorbot

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-01n/ash bc74c261d81c630a79c9a793958f1d10a989e05d9e02d0748e994d41bcf26ebfn/aXorbot
2025-02-26n/ash 4176f6ee43565073813008555718f33b4cf16b9af4e2296a504608b1eba955b1Virustotal results 26.67%Xorbot
2025-02-25n/ash 2aa196f2d543ab882180de79718cd78d8b515d4db1e6513786a0a94eec0e9c21Virustotal results 27.87%
2025-02-23n/ash 2b428803d991a42ed468d804f252e0f08a68582e65838ab07ea2b725e018b41dn/a
2025-02-23n/ash 6eab2575070ca7ccfe4d3a410889bda3921ef15bc9e7285c0817877e8e6f3d43Virustotal results 28.57%
2025-02-21n/ash 4400d31143b1d5a43a0af37d2ac7360f7cd5a0b8b8ff624774f62189069164b8n/a
2025-02-17n/ash 61bed861502c8356ba044b7f3f920894207767dabc9fcd94896ddd8796cd251bVirustotal results 27.87%Xorbot
2025-02-17n/ash 1283dcad9bbb4f0d9cce63f490b84a39f98e3df8c86a5b9eb2a0a9d7c8e666e1Virustotal results 29.03%
2025-02-16n/ash a4bd5a0814626e642d45acc92bc2ccdaeebd359689b23034a0d88df6b6d5be87Virustotal results 31.15%
2025-02-16n/ash 4a9320ff6ecf7c6e77b9b3fe09438fd61d7867309a8a6133abaab8b03c9df4a8Virustotal results 30.00%Xorbot
2025-02-14n/ash ae6d5f558e08966e3c1ed24a693feb1e091fb41f7a5558ec1fedaaf3fb595462Virustotal results 24.59%Xorbot
2025-02-13n/ash a38e33062c910120fa254c8035d93a0d5b21a5b2e0714cb0e590c0bed1da2294Virustotal results 31.15%XorBot
2025-02-08n/ash f07ae8c69847eab9661713da3388cea50fc9999baf85cafce66431828c694d7dVirustotal results 15.00%Xorbot
2025-02-08n/ash f8131fc6a21d55e9979b7d2c621857e48b63b1062483de9d8507ee169053910eVirustotal results 18.33%Xorbot