URLhaus Database

You are currently viewing the URLhaus database entry for http://94.154.35.154/sh4.urbotnetisass which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3618253
URL: http://94.154.35.154/sh4.urbotnetisass
URL Status:flame Online (spreading malware for 2 months, 17 days, 1 hours, 10 minutes)
Host: 94.154.35.154
Date added:2025-09-06 06:05:14 UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2025-09-06 06:06:21 UTC to abuse{at}pitline[dot]net,abusep{at}kharkiv[dot]com)
Tags:elf geofenced mirai link ua-wget USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-10-12n/aelf 89936f49e50a14f7c17b9ed52f01677b1cba93ff5d631fff8675a5eb68c7ceb2n/aMirai
2025-10-03n/aelf 03b32278962f1822f657bc88661806c1a37c863c397cf6f9889f7bfb576260cen/aMirai
2025-10-02n/aelf b395e6df8eed11b5a5db51a34d3578a660072b84943dba8feb2f97807141bdfbn/aMirai
2025-10-02n/aelf 875c0b73641c36d406a0f6adf718b75d740005d2e93328fb5702af3bd6e14743n/aMirai
2025-10-02n/aelf a2b66efc739b33beba40db57b3e80fff97c990afc5bb705234876475ec0015ffn/aMirai
2025-09-26n/aelf 23809a8e76b302cde0ecc15f9ffecea92ac3e7becf24f6583576a7e61bd00721n/aMirai
2025-09-24n/aelf 2a478862f4e2a8d3762f519a5e585801a5d7406c0a1205ed2f4f2ddf4d307e5an/aMirai
2025-09-24n/aelf b1cc867b0867c129937369b58dcebb14d3c2de60bc826c4ee3261325add8580an/aMirai
2025-09-24n/aelf f8904ffaf40c983974f47f9fed5b525c2cb49762281e4df31bfa83fa59033a44n/aMirai
2025-09-23n/aelf 6a5919ae3b2e409c0d84d7353ee80c07daf71423c7b63b8b3858eaea0037f286n/aMirai
2025-09-22n/aelf 74be60e30a7de677e5cd17e80012b5134311ee3e13ef6d1acbbf8849fed62956n/aMirai
2025-09-21n/aelf 08816e635573569b4cb82c5002aaed63295a98a94f7dff72485be20db1762c44n/aMirai
2025-09-21n/aelf 8e895adc6e77daafd4791dcc816487cbfa42688b2fbd1b66a99c37b5da14c2ean/aMirai
2025-09-20n/aelf 198c0ce29b9d71a04dbf44baa87e916cf5ba47924f03961659472b84d9cd946an/aMirai
2025-09-19n/aelf 7cee4ac4c5c52fb2d0c2d6edd4dec611dfebace1eae0d58d56b2429ff5a66397n/aMirai
2025-09-14n/aelf 5b18c9cbe6bccec88732d23ce39ba1d863cb8487cb0c557cbbd169b9f61e886fn/aMirai
2025-09-13n/aelf 8d37351feb40c8cffa43b778bc7087eb6b516b5e498244e640ab366d276d4800n/aMirai
2025-09-12n/aelf 654d37fe82ca152c7091f355e1e3171ba4e82a11261e306239cd956d3dc92413n/aMirai
2025-09-12n/aelf 878231e8edc53ba8bbc1f6f05a72fda2e9c3c00aa9722e859496bde9969f585bVirustotal results 31.75%Mirai
2025-09-12n/aelf 6c9a81f9274570fe1ea67285664d25a43273707ac4eddbfe979d7af5c2f734a7n/aMirai
2025-09-11n/aelf fd741c9af26c97723390dc102ba1b98a753d145ec9779547fb915a05b01975a6n/aMirai
2025-09-10n/aelf 488a3964f1e8849bdaff87c32c0f33d785062285b2427e2f2e81f7b35240e0a7n/aMirai
2025-09-10n/aelf a31264c50f0c10ecdc54a6bd3d05c8be5554479c2ff751b64e6794f7a5e99f17n/aMirai
2025-09-09n/aelf 7b0d21aa6ac3e9069eb3e2e4ddf2f7db3156e96fb1e65a132b09f48c3fd13b3an/aMirai
2025-09-09n/aelf f8e85bdd259d946b27a6f6f68122df72457b24c580f05b6adba523a911b72473n/aMirai
2025-09-08n/aelf 11ffc6b47fcb43ebabbcec4efda282d2cf1e07ce8caa01f88eaaa71d958ac9b7n/aMirai
2025-09-06n/aelf c83428ec5e156733c527a074467fef85b161cbef2f65f94b3e72e8c8b3f5e49an/aMirai