URLhaus Database

You are currently viewing the URLhaus database entry for http://212.70.149.13/mpsl which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2825191
URL: http://212.70.149.13/mpsl
URL Status:Offline
Host: 212.70.149.13
Date added:2024-04-24 09:37:31 UTC
Last online:2024-05-08 21:XX:XX UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2024-04-24 09:38:08 UTC to abuse{at}4media[dot]bg)
Takedown time:14 days, 11 hours, 25 minutes Bad (down since 2024-05-08 21:03:38 UTC)
Tags:elf gafgyt link mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-05-08n/aelf 76fb5b88728fb3daa5e2267f2bae00dd4a1583a787508382d8f054649800b350n/a 
2024-05-07n/aelf 61b7d848850410fc92b285130b3ec87baf5b0f247c38433bec12a21416a7a0ebn/a 
2024-05-05n/aelf ef81ae91581695f03ecd45a1307a13e51bd77c95c8a78f36901a7e9af8c04d94n/a 
2024-05-05n/aelf d88cd6cb10a58660b542140b77ce5573fdf81680d938d843ea20ff19adfa7b6bn/a 
2024-05-04n/aelf a7256aee29d0512486747b18e7c7ffccefa376a47773997e78718346ffbc6ed2n/a 
2024-05-04n/aelf 7f1e8f3edcb70c7ec21dabb8640b48b157eb5cec3ec831d861a436e344e6da5bn/a 
2024-05-04n/aelf 3bc610b15d53db5b200b7209e41bfa97dcf70d32ca2430018f19b516b386c6fcn/a 
2024-05-04n/aelf 30e889df97a986538a51a4d299e867255eee595f5dd57d0148de1146909d275dn/a 
2024-05-04n/aelf dd052da491141818878c21fddf7a160bc3ffbb8bd626291353fa35d1e6260f98n/a 
2024-05-04n/aelf 23304f2dcd85788a025cd0be611e7308703be939ee28f807c9ea92f7f651c04dVirustotal results 50.00%Gafgyt
2024-05-04n/aelf 831d73d7d6d18b1a27d63be5914f7e07ff51da96891e5bf216614bd288b19e1bn/a 
2024-05-03n/aelf ec70bbe889a746d88107f6774a026f28b19ebe9fd5a01a72e2501ac0ba281a98n/a 
2024-05-03n/aelf 8b9f9b1808675a279e51f255d1e7b243a7e0574bfa7eeb99bc0390d77a4373acn/a 
2024-05-03n/aelf fad5fd1c6d610a397d397a8fa78509b26a6c676aee524b0d3ff7911acee35028n/a 
2024-05-03n/aelf cd455817ca081e2dc6031c556c64e4e6f5f3887c7989868a3cf565a2b6c88bc1Virustotal results 9.52% 
2024-05-02n/aelf db65b4442b620dedb48ed97d770e7dcd3d841361318bbd5b5af44e7fa82bce60n/a 
2024-04-24n/aelf 4b60839a2a927b194446e8f9a3148fc4fb85193883bdc4e129cbc15e6b74fc2cn/a 
2024-04-24n/aelf a9301a5114ab68806699349380c7d06da2ba1f1b10001d6f47442c3d3eca5399n/aMirai