🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

URLhaus Database

You are currently viewing the URLhaus database entry for http://46.151.182.200:8080/bins/bot.sh4 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3902557
URL: http://46.151.182.200:8080/bins/bot.sh4
URL Status:flame Online (spreading malware for 21 days, 17 hours, 28 minutes)
Host: 46.151.182.200
Date added:2026-08-12 05:11:13 UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2026-08-12 05:12:16 UTC to abuse{at}ghostynetworks[dot]com)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-30n/aelf 4892824a9316779d423c3190df9bcaa9cdbde0756eb225b7a7ad5746dc04f654n/aMirai
2026-08-30n/aelf 2ba64fdf09968cfbae07c285bd9d459444b79b7b5e6f27eb89b67b9a3346c053n/aMirai
2026-08-30n/aelf f4044b040283607a2c4a8e6a04f0b623375d01d57e7cbf0fc50e6a8377a7781an/aMirai
2026-08-30n/aelf 1f304533b89dc90ec87d6eadc64f85cd3d5fd5f8549e2e6e6c5403233dc94f39n/aMirai
2026-08-22n/aelf a72bef426080975468dc686c7bc44cc99d3574ab626382632921dc48366cf107n/aMirai
2026-08-21n/aelf 22ca93f691d342cbf50165e97503d80911fa78343005896fbf0a40b5f8f29dacn/aMirai
2026-08-21n/aelf cfb3f5de317afedb369286a65dfee58c47e6b9b58a3ab00bb8ee88395eb72b25n/aMirai
2026-08-12n/aelf 652e49116e3235db3fee273a8b9dc904c770c71649db877e97c0b7981d81bcc2n/aMirai