URLhaus Database

You are currently viewing the URLhaus database entry for http://91.92.241.59/bizy.mips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3720809
URL: http://91.92.241.59/bizy.mips
URL Status:Offline
Host: 91.92.241.59
Date added:2025-11-30 02:00:18 UTC
Last online:2026-01-21 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2025-11-30 02:01:14 UTC to abuse{at}lanedo[dot]net)
Takedown time:1 month, 22 days, 7 hours, 11 minutes Bad (down since 2026-01-21 09:12:43 UTC)
Tags:elf geofenced ua-wget USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-01-20bizy.mipself 32c08454096fd0e8b566d574c9ba631eea584df12dfdefdcafb3f18671b6c8e2n/a
2026-01-18bizy.mipself b13b30180376a728b48a3c61daa2f891ff5fc87202484396c27256262c7c461bn/a
2026-01-10bizy.mipself bb380cf7c55342d74aa3bd957fd10a685c4f5527de768db3168cce352040b936n/a
2026-01-06bizy.mipself 008606478690c680ac620605fea48c673e5eb6a3baaec2af52b8e8c0aa20ab61n/a
2025-12-28bizy.mipself c1c45562f8efb0b67a57b8f645a3eb125b825868a86370135816f0cdd23d8926n/a
2025-12-28bizy.mipself 538b2bf784bb0d28f892a8e129f75b0f46773de26f656a32ab34b740a424fdf8n/a
2025-11-30bizy.mipself 16ebf82f00bc0105348c208b7a2b2fcf9eb775e7adc23bf2744c001bf9b15fc1Virustotal results 4.69%