URLhaus Database

You are currently viewing the URLhaus database entry for http://92.42.100.131/meow/sh4 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3850297
URL: http://92.42.100.131/meow/sh4
URL Status:flame Online (spreading malware for 2 days, 23 hours, 44 minutes)
Host: 92.42.100.131
Date added:2026-05-20 00:04:21 UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-05-20 00:05:18 UTC to alexcimadamore{at}gmail[dot]com)
Tags:elf mirai link opendir ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-05-22n/aelf 6158e362ea53e4fd27a6b239b28498808f08f04570c6e369df0760c11dd406fen/aMirai
2026-05-22n/aelf 4539f7ff1128042810cf539587bc3a0ed5e233ec027a93215b54a8637b10539en/aMirai
2026-05-22n/aelf 6c063069e2d89bd9cc00b40993d34df98d5d5cbfe65d57406e05ef115f6300d0n/aMirai
2026-05-21n/aelf ce5530808e348d0fcec885db4854c4d9c9ee50058762663d7f7c7a8ccbe68846n/aMirai
2026-05-20n/aelf ec82ba60bbfaf1276da2b8025fcac9bcd1139bce230039ec543f733c359419b2n/aMirai
2026-05-20n/aelf c03a25d98fd24bd124410516d725c2466e0298e211da6ee44b63254427cb28ban/aMirai
2026-05-20n/aelf 671ef726c3d34ada74d95c23b4a3409208df287eefacb0223d0f926b02efa253n/aMirai