URLhaus Database

You are currently viewing the URLhaus database entry for http://212.70.149.13/mips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2825177
URL: http://212.70.149.13/mips
URL Status:Offline
Host: 212.70.149.13
Date added:2024-04-24 09:37:25 UTC
Last online:2024-05-08 21:XX:XX UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2024-04-24 09:38:08 UTC to abuse{at}4media[dot]bg)
Takedown time:14 days, 11 hours, 35 minutes Bad (down since 2024-05-08 21:13:25 UTC)
Tags:elf gafgyt link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-05-08n/aelf 445e667d68504cc44517f837cdc023ce4e367f3e2afb0cb08abcd3bc2e94ccf6n/a 
2024-05-07n/aelf 454314c4857c7216ab6738e63a0981b82a603363c51ee8dd291b061e7d0f53b3n/a 
2024-05-05n/aelf 918a2c39dc9dd2345941ff54bc3036f4ec7935b42ada7f049bb50c0bd96a96dbn/a 
2024-05-04n/aelf c087d98411f11898c6ef0e7af65e30b1a892364518f4a88d6667199ccec39b06n/a 
2024-05-04n/aelf b7bc3b7fb883d9769a5dd5ea526329cf1d92f7799d00e2d546658ff1a550d966n/a 
2024-05-04n/aelf 94f293456747d36ecb7806bbf5c2dc27fc2010c70921478381a126ffe92bc568n/a 
2024-05-04n/aelf 3dbcb562466890254000283dd7ea7e7203e546a9998e429f03822fdb44f33e6fn/a 
2024-05-04n/aelf 522c1430727855dc49a83b3b045d2c138d1ceaa81fcd09f34a853ff2f4c87bd4n/a 
2024-05-04n/aelf c84aecad472883b9c198248037fd5436a3f3f94eff3dbcc8c3a095cc21058018Virustotal results 50.77%Gafgyt
2024-05-03n/aelf ea61cea125b8d576938ecd3a667039cd653748f420d31d11d54a0506bb57ebffn/a 
2024-05-03n/aelf 7d610172e5a821fc732e2539e863f10e705b05ce9b54557ee059b80dc7617fc3n/a 
2024-05-03n/aelf 18810a476dba5b0223ba812b0e3094eb2b834fce15f163ce4057bb915420df3bn/a 
2024-05-03n/aelf 12375ccb68d692ab77e40be37c13c5170c862c0aac4e9fd50dd890f3aa4f4aban/a 
2024-05-03n/aelf 5e040673fe6dfc24a2859d6f16cc3c10143dc35041a0bf4e9562facb2cfb53ecn/a 
2024-05-02n/aelf 54ebba821454d06285927c6a47c2fb494e4de5c2b0700c11205fab426190f423n/a 
2024-04-24n/aelf dfcc85a75ab10107b73e3b2d057c8b3caf4285d0364ba698a61208da8b6ea977n/a 
2024-04-24n/aelf 8efe38a5d4af96690257b5ecdb2e0b0320af3495602af44f3fd19759a8497c23n/a