URLhaus Database

You are currently viewing the URLhaus database entry for http://91.92.242.241/sh4 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3657690
URL: http://91.92.242.241/sh4
URL Status:Offline
Host: 91.92.242.241
Date added:2025-10-05 13:50:17 UTC
Last online:2025-11-03 00:XX:XX UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2025-10-05 13:51:18 UTC to abuse{at}metaspinner[dot]net)
Takedown time:28 days, 10 hours, 21 minutes Bad (down since 2025-11-03 00:13:15 UTC)
Tags:DEU elf geofenced mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-11-01n/aelf f094dbfb09c537305457c83d9bcb568cff484fd30d9060c8d85941cb3f91827en/aMirai
2025-10-21n/aelf a957a145f85dc7960512d06170701f5690a9e0a09cd656714fdba0f13073af16n/aMirai
2025-10-20n/aelf 72a99e66be73ffd9bbf58936942d1afd620b82485ce8fca2c42daf7afff08d01n/aMirai
2025-10-18n/aelf 0695a1f162c2e33934fe11d464d48c0aec42162fb5015e7583260a2b6d4b300cn/aMirai
2025-10-17n/aelf 94e3ec4c6050637fde54713113c2402a8e6e19c496abafb0b82173a03f29baa9n/aMirai
2025-10-16n/aelf 4566ae09f0b697196747bbb07b36915fb99243f1c609cf552471d07d02cd4f6aVirustotal results 25.00%Mirai
2025-10-16n/aelf 8129e44d1e0d7f60bc8a5f3484fb9e536e36e3b02266bc81909b548c79034871n/aMirai
2025-10-15n/aelf 2706949e8b515983d1af2147202c628eb626120f0d2ee792a03c6dfeab89e0fbn/aMirai
2025-10-12n/aelf 7155856048435124795b191bd31cde31105e8e76a6849cf1eb147dd116fcb03en/aMirai
2025-10-12n/aelf 0e3b2d1aee4817c8ca7faf66380a28f2c99730b3ff03bb4229b6a68b10150f91n/aMirai
2025-10-10n/aelf ed746a4e6230662016696de95c17785b5f4031c0b3f17f301a58dc57d61725a4n/aMirai
2025-10-05n/aelf 3306c2f405ffd50a66d5652bcab8e8201fe99f52dfbdcce37c21b10b923f3090n/aMirai