URLhaus Database

You are currently viewing the URLhaus database entry for http://45.95.169.115/openssh which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1684556
URL: http://45.95.169.115/openssh
URL Status:Offline
Host: 45.95.169.115
Date added:2021-10-16 09:36:10 UTC
Last online:2021-10-16 14:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-10-16 09:43:04 UTC to abuse{at}maxko[dot]org)
Takedown time:1 month, 17 days, 15 hours, 32 minutes Bad (down since 2021-12-03 01:09:16 UTC)
Tags:32 bashlite elf gafgyt link renesas

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-02n/aelf fed2796a2ed6c31d3aece18b2d978c29dd92b417af05893423dd43d9b007b268n/a 
2021-11-23n/aelf 88bd1407376d54c8faad0c62bd159fe294d9beab2cbf1dfd54525cb8485a5342n/a 
2021-10-16n/aelf a8387f3b234d20e2e71f4b55ad7f51143e2c277963b48aca66975a3d729aad21Virustotal results 55.00%Gafgyt