URLhaus Database

You are currently viewing the URLhaus database entry for http://92.113.199.114:37402/bin.sh which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:702830
URL: http://92.113.199.114:37402/bin.sh
URL Status:Offline
Host: 92.113.199.114
Date added:2020-10-16 16:45:05 UTC
Last online:2020-10-26 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: geenensp
Abuse complaint sent (?): Yes (2020-10-16 16:46:04 UTC to oremiga{at}ukrtelecom[dot]ua)
Takedown time:9 days, 18 hours, 38 minutes Bad (down since 2020-10-26 11:24:17 UTC)
Tags:32-bit elf mips

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-25n/aelf eaea30c5009704c64eede1e7e71ed18da1518142c24499e7d9e77905419739fdVirustotal results 21.67% 
2020-10-23n/aelf d2c256b637465d8103f8651bc6a1856d706dc1bada790d1c1e45ec1c9bb44236Virustotal results 24.59% 
2020-10-23n/aelf 2376445afd5129af9df0e42f10324bfebd648d507642dc8012f0aa6b5b19417bVirustotal results 45.00% 
2020-10-16n/aelf b5cf68c7cb5bb2d21d60bf6654926f61566d95bfd7c9f9e182d032f1da5b4605Virustotal results 65.00%