URLhaus Database

You are currently viewing the URLhaus database entry for http://5.181.80.126/loki.x86_64 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2759967
URL: http://5.181.80.126/loki.x86_64
URL Status:Offline
Host: 5.181.80.126
Date added:2024-02-12 05:40:09 UTC
Last online:2024-02-16 03:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2024-02-12 05:41:06 UTC to noc{at}4vendeta[dot]com)
Takedown time:3 days, 21 hours, 23 minutes Bad (down since 2024-02-16 03:04:33 UTC)
Tags:64 elf

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-02-14n/aelf 0acbcbc618dfa1669ee3199182a5e30cca75d1d297cc8ce5f00edabbf2fa5eb6n/a 
2024-02-14n/aelf 64b4634785438f59287dbaa5e0651cfb4fd2f72942aefaf81fdbbddb7bebe2d8n/a 
2024-02-14n/aelf ef2f60745572cae838344178b392e89b81457d3c256cd78347e579908f49e884n/a 
2024-02-13n/aelf 0fc62433eecb59558b7cd71cd67e073afda6f759cd074f19ef33fc9f8e433de9n/a 
2024-02-13n/aelf c52e1b8f07d060306d59ca354d7a9b3f28d007cbd65f9f513965bd980384a825n/a 
2024-02-13n/aelf 6eee87f314978816d6d7a8919e9f070d2af9754920be336cb9f0cf7c6ebd8080n/a 
2024-02-12n/aelf 71ac72f363af73a8b921c58feabf1a7cf4526fa994fff77d29ee08aa6c1dac94n/a 
2024-02-12n/aelf a1513e3c88e99d0fb7109cc4b5029f79017e9fbaf67dfc23cc28f2edfd8f6d35n/a 
2024-02-12n/aelf 8d35d1e7dd54689d7a484064a09cfcc9d7dfd7f83af7fa3f87e2b7a7ae646f32n/a 
2024-02-12n/aelf 82f7536df1fea60535ccdcb966d5f133a672dbb4a4db1898b990ffff115b7e66Virustotal results 11.11%