URLhaus Database

You are currently viewing the URLhaus database entry for http://136.144.41.60/.s4y/mpsl which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1978268
URL: http://136.144.41.60/.s4y/mpsl
URL Status:Offline
Host: 136.144.41.60
Date added:2022-01-15 06:02:06 UTC
Last online:2022-02-10 05:XX:XX UTC
Threat:Malware download Malware download
Reporter: tolisec
Abuse complaint sent (?): Yes (2022-01-15 06:03:06 UTC to abuse{at}serverion[dot]com)
Takedown time:25 days, 23 hours, 25 minutes Bad (down since 2022-02-10 05:29:03 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-09n/aelf e764aff25ff39840d0b1eee65bb1c6e085438a897db9dedb8512e32c4c17ae4dn/a 
2022-02-04n/aelf 0f571a09ea716537ffcf4ea78a7c537cc4087d1cb8b8ae1132e6724bf969966dVirustotal results 40.68% 
2022-01-29n/aelf 3330504795b4be61eddced98b94436a984224b4a3e492f4defef07b18a3d0a1bn/a 
2022-01-27n/aelf 3f37a6bcdd515ac4be2d259fafa619a904f10f85ebe4ebf0eed5dfd44b121734n/a 
2022-01-26n/aelf 95926f70aa035acbff995bc4fa6a8472ef2500150b5020c11202f9462c4e42e0n/aMirai
2022-01-22n/aelf 670510c6fba434500e4879f29e45ed9a85f30c433d5edd99e0c4d3229f42abf3n/a 
2022-01-21n/aelf 3dd325831cd4693b579517720cbd0b560d59cad25c1647def0512bbc3a30b828n/a 
2022-01-18n/aelf 35ee6a23637915c13e9001d833086fb45a5ac258cc472f07d046bc17271ad18an/a 
2022-01-17n/aelf 975e568412fb207c420b46d19f1eca37d2380b141a516dbe341054418076d3d1Virustotal results 23.33% 
2022-01-15n/aelf 96b5fd41391c7bc9a742a6c4a7fdb4de3431bb4614cdc2bfa6c32ebfccbe248an/aMirai