URLhaus Database

You are currently viewing the URLhaus database entry for http://45.138.70.19/bins/Squidward.mpsl which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2387311
URL: http://45.138.70.19/bins/Squidward.mpsl
URL Status:Offline
Host: 45.138.70.19
Date added:2022-10-26 20:55:05 UTC
Last online:2022-10-30 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-10-26 20:56:10 UTC to keithlu{at}live[dot]com,noc{at}as35251[dot]net)
Takedown time:3 days, 15 hours, 32 minutes Bad (down since 2022-10-30 12:28:22 UTC)
Tags:32 elf mips mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-29n/aelf 183418e625d0d9263b6c065f1e141b9cc89ea7b12b98bdc842864f148db97b3fn/a 
2022-10-26n/aelf 53e1fea006df70454a0cff528b124d9d1e41446551257646fa7a26d8192f76c7Virustotal results 57.38%Mirai