URLhaus Database

You are currently viewing the URLhaus database entry for http://185.172.128.16/zermpsl which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2828824
URL: http://185.172.128.16/zermpsl
URL Status:Offline
Host: 185.172.128.16
Date added:2024-04-27 08:14:07 UTC
Last online:2024-07-10 10:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2024-04-27 08:15:10 UTC to abuse{at}tnsecurityl[dot]ltd)
Takedown time:2 months, 14 days, 2 hours, 28 minutes Bad (down since 2024-07-10 10:43:31 UTC)
Tags:elf

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-07-01n/aelf a32fe02f80a95099ed3fa3c8346629192163ca582a790dd2a17965376d3e73a8n/a 
2024-06-27n/aelf 94a3084014ee7e63d8c7481304ffc2ed357e956ff978a697ba7a7651e79f00d0n/a 
2024-06-20n/aelf 0f44d91524fb5440bf101c970d3ae1f89b347b5bd412c52f5547ce7b4d90414dn/a 
2024-04-27n/aelf a03e51acda032751fda4e7175748cfc7a3dd6106d9e293e995ede30516cffdeaVirustotal results 32.26%