URLhaus Database

You are currently viewing the URLhaus database entry for http://172.245.210.119/.rIIoOx50/JFS.mipsel which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2223214
URL: http://172.245.210.119/.rIIoOx50/JFS.mipsel
URL Status:Offline
Host: 172.245.210.119
Date added:2022-06-03 10:11:14 UTC
Last online:2022-06-05 04:XX:XX UTC
Threat:Malware download Malware download
Reporter: Gandylyan1
Abuse complaint sent (?): Yes (2022-06-03 10:12:06 UTC to report{at}virmach[dot]com)
Takedown time:1 day, 18 hours, 34 minutes Poor (down since 2022-06-05 04:46:54 UTC)
Tags:ddos elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-06-04n/aelf 88aa0b7285cc313672537642817c83f3e60fda348a4b7960c046a73ac53fcdd6n/a 
2022-06-04n/aelf 36d1b4fbb8285aab9d33ae8889ebd3b6191b2571fa467b7252ca915059b12e66n/a 
2022-06-04n/aelf e6734cec2b8db0bf857ec05e27f21c0aabc0e6a6cf700223b4e07745411a57bcn/a 
2022-06-03n/aelf 5f400420fe8e2876081ec818daba8a235e992096697bbdebbe477c849d923cb5Virustotal results 28.33%Mirai