URLhaus Database

You are currently viewing the URLhaus database entry for http://151.242.30.16/c.sh which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3659951
URL: http://151.242.30.16/c.sh
URL Status:Offline
Host: 151.242.30.16
Date added:2025-10-06 05:41:20 UTC
Last online:2025-10-15 21:XX:XX UTC
Threat:Malware download Malware download
Reporter: ComReports
Abuse complaint sent (?): Yes (2025-10-06 05:42:13 UTC to report{at}abuseradar[dot]com)
Takedown time:9 days, 16 hours, 10 minutes Bad (down since 2025-10-15 21:52:26 UTC)
Tags:clouddzy mirai link scammer traitor

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-10-07c.shsh bf349e45173751c727b208ec34a9e5e2972db62e84d711ed063ae8ba87b8dc42Virustotal results 29.03%Mirai
2025-10-06c.shsh 38960238b53e624bb0fdbffb2a9f85b7590943e293d64309384f817215d6df26Virustotal results 27.42%Mirai