URLhaus Database

You are currently viewing the URLhaus database entry for http://23.94.22.13/x86_64?ddos which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2053941
URL: http://23.94.22.13/x86_64?ddos
URL Status:Offline
Host: 23.94.22.13
Date added:2022-02-22 18:39:04 UTC
Last online:2022-04-17 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: Gandylyan1
Abuse complaint sent (?): Yes (2022-02-22 18:40:07 UTC to report{at}virmach[dot]com)
Takedown time:1 month, 23 days, 16 hours, 55 minutes Bad (down since 2022-04-17 11:35:36 UTC)
Tags:DDoS Bot elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-09n/aelf 793bf9870d0a744231f410116a26693eb835e7439b51cc45c2f059b59e4ad036n/aMirai
2022-04-02n/aelf 1736c7b37309f2e8c6db0a591dd780ac58e881ac4a4b707288c76a2ef6d8f0e9n/a 
2022-02-22n/aelf a877649f7d498125c8c9646c376d3c176444798c9b9a0e3d1f625aefc7ad2617Virustotal results 65.08%Mirai