URLhaus Database

You are currently viewing the URLhaus database entry for http://62.72.185.39/skidnr.ppc?ddos which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2802990
URL: http://62.72.185.39/skidnr.ppc?ddos
URL Status:Offline
Host: 62.72.185.39
Date added:2024-04-06 16:18:34 UTC
Last online:2024-04-16 01:XX:XX UTC
Threat:Malware download Malware download
Reporter: Gandylyan1
Abuse complaint sent (?): Yes (2024-04-08 01:33:07 UTC to abuse{at}ipxo[dot]com)
Takedown time:8 days, 0 hours, 19 minutes Bad (down since 2024-04-16 01:52:38 UTC)
Tags:mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-04-16n/aelf e9541b48371c18e2dd5f1a38c35d7be45d775dceedb9043a4ae2dc2fec9759b2Virustotal results 19.05% 
2024-04-08n/aelf 09438ea92327a6ae8482efecf913c05be5d8845812a12795422d94e068690c02n/a