URLhaus Database

You are currently viewing the URLhaus database entry for http://205.209.114.243/zerm68k which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2816323
URL: http://205.209.114.243/zerm68k
URL Status:Offline
Host: 205.209.114.243
Date added:2024-04-18 06:54:12 UTC
Last online:2024-04-23 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2024-04-18 07:16:06 UTC to abuse{at}hostdepartment[dot]com)
Takedown time:5 days, 9 hours, 44 minutes Bad (down since 2024-04-23 17:01:01 UTC)
Tags:elf ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-04-20n/aelf cf2da9f0a2d27eb2ab587f6027e71b07d8bd32c00faf59446e84204eeb83c210n/a 
2024-04-19n/aelf 8ce2af0449fa04efc30049f5ae0e344df528d34add86f23b0a3cbe19636066e7Virustotal results 31.25% 
2024-04-18n/aelf 0c89675825da407ca4cbe37701bff34a90d3bb068d05abe2ac0a875a36b30336n/a