URLhaus Database

You are currently viewing the URLhaus database entry for http://107.189.12.195/Linux which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2019684
URL: http://107.189.12.195/Linux
URL Status:Offline
Host: 107.189.12.195
Date added:2022-01-31 21:00:05 UTC
Last online:2022-02-10 06:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-01-31 21:06:32 UTC to admin{at}frantech[dot]ca,fdias{at}frantech[dot]ca)
Takedown time:9 days, 9 hours, 50 minutes Bad (down since 2022-02-10 06:57:26 UTC)
Tags:32 ddos.tf elf intel

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-05n/aelf 1b5b10c9f66a7ccb759e143782659dc7b7e1f938e3d5e4c3ee14cc5360353a2cn/a 
2022-02-05n/aelf 381cabc22a4b989404c733bf226971b93babfc047e23cdd0bd68812143099c17n/a 
2022-02-04n/aelf 78a527228c026d6885518d97214a2702a0f42f6309f1ecc1ddf7d1c35fd1228an/a 
2022-02-04n/aelf 92ce3ddd6dd3ab39ee984d64f108073ac162a42e689f07d6a5fe99c1728b3b60n/a 
2022-01-31n/aelf 2efef0986635f9c2c6985a72c0aafd41194a9604a7cdffc9c15d833d884e9379Virustotal results 53.97%DDoS.TF