URLhaus Database

You are currently viewing the URLhaus database entry for http://45.95.169.115/tftp which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1684491
URL: http://45.95.169.115/tftp
URL Status:Offline
Host: 45.95.169.115
Date added:2021-10-16 09:31:06 UTC
Last online:2021-10-16 14:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-10-16 09:43:04 UTC to abuse{at}maxko[dot]org)
Takedown time:1 month, 8 days, 14 hours, 45 minutes Bad (down since 2021-11-24 00:18:39 UTC)
Tags:32 arm bashlite elf gafgyt link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-23n/aelf d9c44de65e34b19425a946a2607d6f6760806588ac729448415efcc991190efen/a 
2021-10-16n/aelf f67efc3b176029660d6942351c1844cfc22eb6395e5932e4a9336394d7a94287Virustotal results 55.74%Gafgyt