URLhaus Database

You are currently viewing the URLhaus database entry for http://45.128.232.240/mpsl which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2914236
URL: http://45.128.232.240/mpsl
URL Status:Offline
Host: 45.128.232.240
Date added:2024-06-30 07:26:06 UTC
Last online:2024-07-09 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2024-06-30 07:27:38 UTC to abuse{at}pfcloud[dot]io)
Takedown time:9 days, 9 hours, 13 minutes Bad (down since 2024-07-09 16:40:56 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-07-09n/aelf 4bfd146a7dc3c2080a0944752266bbc4df9544e54bbdc37c428b938b2acb0394n/a 
2024-07-07n/aelf 4a9006827059d63ff54d7152d8af2d3f4278d5f302ee2e0e147a8c42cc73606dn/a 
2024-07-06n/aelf 22cbcd7f2d5772b6c7908d5805feb1cadb5d2d6e883f7923e76486d329b1e343n/aMirai
2024-07-06n/aelf b4761cc129383a95bffbe549b7c976539f0964f18ad8ad629e062bd82fec3da3n/a 
2024-07-06n/aelf b7fc1e91b87bf34a5a236d3a774c60bead95d5103d940334a53e704c547987b9n/a 
2024-06-30n/aelf 18f7948a9dffdacbd6e48476d36d43836c28fd810140a98b63d1434d5c3d617dVirustotal results 33.33%Mirai