URLhaus Database

You are currently viewing the URLhaus database entry for http://85.12.237.201:52711/.i which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2251010
URL: http://85.12.237.201:52711/.i
URL Status:Offline
Host: 85.12.237.201
Date added:2022-06-27 13:24:07 UTC
Last online:2026-08-04 06:XX:XX UTC
Threat:Malware download Malware download
Reporter: geenensp
Abuse complaint sent (?): Yes (2022-06-27 13:25:06 UTC to abuse{at}profintel[dot]ru)
Takedown time:4 years, 1 months, 28 days, 17 hours, 7 minutes Bad (down since 2026-08-04 06:33:00 UTC)
Tags:hajime

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-05-08n/aelf 67bd0ad916d5bb2d180d02123e3e6c437adcdc0f0577d70c0cac6cf6c56c60a7Virustotal results 44.44% 
2022-10-02n/aelf 8ef823602187a245f2b750d8b1468ab12c94d3a213b3839a457488d9eb9bebd9Virustotal results 25.42% 
2022-10-02n/aelf 418d2ed15ef692c315480d39650f133402fec5cf0261a4319ba5e62f130feb79Virustotal results 27.12% 
2022-06-27n/aelf e28927cc341f5d82c152736feb44f769248f7ded824e799c851de4bb8f7ed4a6Virustotal results 18.64% 
2022-06-27n/aelf 300ce3e8a7b7e3750ae798eab7ebfb8f96ee907227fa90fa812249c1a6c2ff51Virustotal results 21.67% 
2022-06-27n/aelf a04ac6d98ad989312783d4fe3456c53730b212c79a426fb215708b6c6daa3de3Virustotal results 65.52%Hajime