URLhaus Database

You are currently viewing the URLhaus database entry for http://185.204.217.174/lx/yakuza.x86 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1946775
URL: http://185.204.217.174/lx/yakuza.x86
URL Status:Offline
Host: 185.204.217.174
Date added:2022-01-03 19:09:05 UTC
Last online:2022-01-10 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-01-07 13:21:37 UTC to abuse{at}cyberfolks[dot]pl)
Takedown time:6 days, 22 hours, 30 minutes Bad (down since 2022-01-10 17:41:55 UTC)
Tags:32 elf intel mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-10n/aelf c6d70f526742ace4524afc565dfdc65b1332e1c617b01ab5e142e55782680af0n/aMirai
2022-01-04n/aelf c4c1ec61e1b35b6afd59b8b42d5d388e6c48f42d8e47691914fe846474d0d26an/aMirai
2022-01-04n/aelf 7c2323026eb290398348ade919f51edaf8feff2bd8474b1765a8d451c1197e75n/a 
2022-01-04n/aelf 8be76d63f352f4e8489cb664757196c359ac5a9fa0172c4cf179f6634c703c3an/a 
2022-01-03n/aelf bf4970f4aeccabe73c27d30effd532d452c11221438449b70935d13e3dce4669Virustotal results 23.64%Mirai