URLhaus Database

You are currently viewing the URLhaus database entry for http://170.210.81.104/tftp which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2908894
URL: http://170.210.81.104/tftp
URL Status:flame Online (spreading malware for 1 year, 5 month, 5 days, 14 hours, 34 minutes)
Host: 170.210.81.104
Date added:2024-06-27 06:39:39 UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2024-06-27 17:22:07 UTC to abuse{at}lacnic[dot]net,abuse{at}riu[dot]edu[dot]ar)
Tags:elf tftp

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-10-07n/aelf 3926d00a58abee60830dadccf02cef6337acde1275dff8f603562c6bf1f9a8fan/a
2025-10-02n/aelf 78410d92efab1e5b4d23aa58744103313546171196bb98663e6c05f32074a75aVirustotal results 39.06% 
2025-05-29n/aelf e579b9628dfac1af6839499f629bf6e3390df5e2307fa5320b2449e6488d400dVirustotal results 43.75%
2025-05-22n/aelf 6dd01fd11ecc5848c9a2bc7fe1b92dd0fcf519161d036f99cc64c2f1f5732459n/a
2025-05-01n/aelf b1b5c4fb0e763df6f0f6f0764becbffddb72636f5aed9d24c1d97ce7905839c7n/a
2025-04-27n/aelf 55abe6b9e0e6bc9ccaf155b9dec9c758cd324d794790a014c53db642b9a4f845n/a
2025-04-24n/aelf 0d9a26fde4d04d111f13c8eac287bd4a58e7931ffb1965a22ef8e06e6adb8136Virustotal results 31.75%
2025-04-16n/aelf d8acc010e2dbc62755ca34d727a881155d7b03684179c83fa913c8c84e162118n/a
2025-04-15n/aelf a0fe09701ff311c1b9ef44711ed214e1e0276db1f4074294fd8c21370471a439Virustotal results 32.79% 
2025-04-07n/aelf 5615abd0b3ca3c74bc850674d8ce299f1e4e197ae7c4287a7b75c224889eede4Virustotal results 41.27%
2025-04-01n/aelf 9af23b7f6ffe983a9fbb97872b05d981f8880d27d4f2844aab132a685de81cddn/a
2025-02-12n/aelf 23b38dba3fccae79701451acdd7f19d954d0076763dbc78cc46ff756b7a1fc49n/a
2024-11-14n/aelf 35f7f75155ecaccb57a6dbdccafb6483402c6f14f6ffb5bbeb8174229bd02228n/a 
2024-11-11n/aelf 031d8857eda77002149f52b45bf09f1c2890bc7f1f518091f9fbae8c0983e77aVirustotal results 25.40%
2024-11-06n/aelf f4ccfb4e6d9e1e00ec580321cdf25e484a64ba89411b74f9572c2e7e6fbb0666n/a 
2024-10-31n/aelf b51e9d3e0fb2363e217706688dfe1a56ffb29ed7eaf6259f82efc328ec56cdddn/a
2024-08-21n/aelf df12b303824b9bcefb1ce78d1c30e6194a8ac870550957f9e45425122da5f99bVirustotal results 14.29% 
2024-08-08n/aelf 321490c64d66511f750c3977ab2429d52806fbb30c7c160398b8f37bf3d621eeVirustotal results 22.73% 
2024-07-14n/aelf a429e1bdb5469f7b508174c1a242e0bc115ab549a9cfd58a25c722dca3b7bf1dn/a 
2024-06-27n/aelf 9b66676da9413803e42cb2efda1bb76084cdf89d40f503a6716f4eb719ac972fVirustotal results 27.27%