URLhaus Database

You are currently viewing the URLhaus database entry for http://103.172.79.74/m68k which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2764834
URL: http://103.172.79.74/m68k
URL Status:Offline
Host: 103.172.79.74
Date added:2024-02-19 21:37:13 UTC
Last online:2024-03-17 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: tolisec
Abuse complaint sent (?): Yes (2024-02-19 21:38:05 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:26 days, 12 hours, 2 minutes Bad (down since 2024-03-17 09:41:03 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-03-17n/aelf ab98ed0962904671af642cb4237550ff10c5da2caba3ed801c21c29d63ec1affVirustotal results 61.29%Mirai
2024-03-13n/aelf 6a5460adf0bf55561b7f47145c2e2630b1312164f30156ae18b34282ae7ca06eVirustotal results 65.08% 
2024-03-01n/aelf 189cea6ed0285e583fecdbd28cb3279d9450e83cc09f71122ecb3b2bc29cdb0dVirustotal results 56.45% 
2024-03-01n/aelf 7c1988b139592492820b145ee197091cd6e2ffe3626cd40267b3ecb06375af19Virustotal results 65.00% 
2024-02-27n/aelf 85a15435c9ce77f1e7500587a36f7faffa1891c67a14de6f2f868c960c01a002n/a 
2024-02-21n/aelf 9e4f30c91286fdad374d5483c6abfa03d6aa1ea73d9ed97f96d8f5b405c0832cn/a 
2024-02-20n/aelf 7ebb245636034b5eb44d9dba9bdb72abf173b4cd9e3dac4964ece7b74da7cf8aVirustotal results 66.13% 
2024-02-20n/aelf 23307bc39cca535b5a470b28202cbe16061b00ab499c0c49d8da4192f405b6abn/aMirai
2024-02-19n/aelf 9842bf603be8bc843dd1d691292b3615b48ec7e847a5b384f1ba00dfbd2268den/aMirai