URLhaus Database

You are currently viewing the URLhaus database entry for http://172.245.210.119/.rIIoOx93/JFS.mipsel which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2225934
URL: http://172.245.210.119/.rIIoOx93/JFS.mipsel
URL Status:Offline
Host: 172.245.210.119
Date added:2022-06-05 13:36:04 UTC
Last online:2022-06-11 19:XX:XX UTC
Threat:Malware download Malware download
Reporter: Gandylyan1
Abuse complaint sent (?): Yes (2022-06-05 13:37:06 UTC to report{at}virmach[dot]com)
Takedown time:6 days, 6 hours, 12 minutes Bad (down since 2022-06-11 19:49:16 UTC)
Tags:ddos elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-06-11n/aelf 600109dcbcf06e58aae07966584c84247bb63c7392560b51f94945910876662cVirustotal results 28.81% 
2022-06-05n/aelf cee0f00616b307e272d4331636ac9105231089236a51e36fa6759f6db9f44a0aVirustotal results 27.12%Mirai