URLhaus Database

You are currently viewing the URLhaus database entry for http://31.171.131.83/main_sh4 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3440524
URL: http://31.171.131.83/main_sh4
URL Status:Offline
Host: 31.171.131.83
Date added:2025-02-15 09:27:06 UTC
Last online:2025-02-16 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2025-02-15 09:28:06 UTC to u-abuse{at}ultahost[dot]com)
Takedown time:1 day, 11 hours, 12 minutes Poor (down since 2025-02-16 20:40:51 UTC)
Tags:censys elf fbi.gov GREED mirai link moobot

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-02-16n/aelf d844fb6df57d4339e1d970d417b21b422466e64e0ed1c6d586d9d11ad093f151Virustotal results 49.21%Mirai
2025-02-15n/aelf 579ca2e8aa8e41d5cebdc07fd126e74163ffb67a30256b844f4c4d55d581e47cn/aMirai
2025-02-15n/aelf e65f93170d6c105ff8a38016f52c39b9f06eca82342a4103c36dd8e19afe63c5n/aMirai
2025-02-15n/aelf 9b0bfa7d3bede3d928e94de8e8d5abd9f1a2f3aee4cc1ee0da8c2a2a21487a93n/aMirai