URLhaus Database

You are currently viewing the URLhaus database entry for http://185.244.36.221/mpsl which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2893660
URL: http://185.244.36.221/mpsl
URL Status:Offline
Host: 185.244.36.221
Date added:2024-06-17 10:24:05 UTC
Last online:2024-06-28 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: Gandylyan1
Abuse complaint sent (?): Yes (2024-06-17 10:25:10 UTC to abuse{at}spectraip[dot]nl)
Takedown time:11 days, 10 hours, 7 minutes Bad (down since 2024-06-28 20:32:44 UTC)
Tags:ddos elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-06-25n/aelf 162d36c61ee1105c52e8ba4274c062ee67b7f1bfa2eceece6c82dd5c5ae1b29bn/a 
2024-06-24n/aelf 08e8d9a2341b5e9f37265b8e06c6caef846bc185c994b46c68627d8cbe739df5n/a 
2024-06-23n/aelf 978ee0a730dd88cae565c3271f106eaf32d23e1df9ca8e9a763f975ed9034b4fn/a 
2024-06-23n/aelf f084e89531c13f76bd44fe76c8f8af88ee3fb75b1258bf81c84629f125d45f61n/a 
2024-06-23n/aelf c6b09545007d8ffc07da8e8aef3ea20dc7860476bcf3b2ac8f2602faad0f731cn/a 
2024-06-18n/aelf e53e1b594aa83596cfc7da361bd42a284861183704bd9360841de59f59952294n/a 
2024-06-17n/aelf 6fdf5b4b08a5894339c26249e190ce627b9585af846573098bed2c050d0ae80bVirustotal results 56.06%Mirai