URLhaus Database

You are currently viewing the URLhaus database entry for http://91.92.241.59/bizy.arm6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3720810
URL: http://91.92.241.59/bizy.arm6
URL Status:Offline
Host: 91.92.241.59
Date added:2025-11-30 02:00:19 UTC
Last online:2026-01-23 08:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2025-11-30 02:01:14 UTC to abuse{at}lanedo[dot]net)
Takedown time:1 month, 24 days, 6 hours, 28 minutes Bad (down since 2026-01-23 08:29:23 UTC)
Tags:elf geofenced ua-wget USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-01-21n/aelf 7b0d154ca12e3ca2d9f37403af4b161501fa7db2ab67aa56c66cfcdd9fea09b3n/a
2026-01-16n/aelf 3f87a070d32159ffbc1786696bbe2a8043c2ce894a8e5fadba25bae82e5c5a2an/a
2026-01-06n/aelf 3e60d9f6ed6039445aa0ab2e8c6a759fc786e78c1446a58ffb9efd7243560643n/a
2026-01-01n/aelf 09f6d64b2750880227a9c2622679519f0aadfef26c158ace43b544498ac5ca6an/a
2025-12-30n/aelf db6bfc4ff990942d425c1d04ea780aefc840eb0e2e80e279e20dd9c58d65ba54n/a
2025-11-30n/aelf 4dfc23150298b0236500ebaa09bffa740238c3db5597e43c77244e30195f25dbVirustotal results 17.19%