URLhaus Database

You are currently viewing the URLhaus database entry for http://103.136.40.141//ZG9zx86 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2252042
URL: http://103.136.40.141//ZG9zx86
URL Status:Offline
Host: 103.136.40.141
Date added:2022-06-28 10:41:04 UTC
Last online:2022-07-13 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: Gandylyan1
Abuse complaint sent (?): Yes (2022-06-28 10:42:06 UTC to abuse{at}apeironglobal[dot]co)
Takedown time:15 days, 7 hours, 4 minutes Bad (down since 2022-07-13 17:46:43 UTC)
Tags:ddos mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-07-12n/aelf 133bc8937a7f22c27b648ba54fbae4ee6e06c4d21c8394f0c53597d5bcc9f762Virustotal results 49.18%Mirai
2022-06-28n/aelf 5fd2539a15921c50a79bf9a99c6eb619e19e4f077aec918b613fc41c7e863b6fVirustotal results 47.46%Mirai
2022-06-28n/aelf a57f74c774945b284b9d31a931a5bd37f07b2562d6d1576fb4f8529cc4ca1e72n/aMirai
2022-06-28n/aelf d4ee57e5eba5a9bac274bf6eaf32465ec802dc674e6b9ed0cc6acc3a6088ccc1Virustotal results 54.24%Mirai