URLhaus Database

You are currently viewing the URLhaus database entry for http://62.72.185.39/skidnr.arm5?ddos which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2799108
URL: http://62.72.185.39/skidnr.arm5?ddos
URL Status:Offline
Host: 62.72.185.39
Date added:2024-04-02 12:24:07 UTC
Last online:2024-04-16 01:XX:XX UTC
Threat:Malware download Malware download
Reporter: Gandylyan1
Abuse complaint sent (?): Yes (2024-04-02 12:25:10 UTC to abuse{at}ipxo[dot]com)
Takedown time:13 days, 13 hours, 34 minutes Bad (down since 2024-04-16 01:59:49 UTC)
Tags:mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-04-08n/aelf 3a2a428c55c0a656426edc5fd204b0ea29f5c8a639eeae11088bb36fe271bed8n/a 
2024-04-02n/aelf cf1d524ac97c5c54d88afac4f8e5890126cdd5769564c52ad263fece28150255n/a 
2024-04-02n/aelf b28364144cc31e33f2cca4037107272804a6e435c443f024b815afa68712fdc6Virustotal results 19.05%