URLhaus Database

You are currently viewing the URLhaus database entry for http://45.128.232.240/x86_64 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2932557
URL: http://45.128.232.240/x86_64
URL Status:Offline
Host: 45.128.232.240
Date added:2024-07-04 16:25:11 UTC
Last online:2024-07-09 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2024-07-04 16:26:17 UTC to abuse{at}pfcloud[dot]io)
Takedown time:5 days, 0 hours, 48 minutes Bad (down since 2024-07-09 17:14:28 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-07-07n/aelf 54e9201a734dc585e6f7276a41d7a6701de1e0d3af345a3107e0a0eb40cdf0cfVirustotal results 40.30% 
2024-07-06n/aelf 3f509a48bfb5cf1a5da35c861c70b5777e61a5dbf250331e5e731a912a148672Virustotal results 50.00%Mirai
2024-07-06n/aelf 08a20881b7e805df6e9f372084eb40c87ce4aa72311a5936bd16ebf981c9b841n/aMirai
2024-07-06n/aelf 8027c2957bd52ab828478fe9fe6d06310945bf4230c9b39ca695f6de07e3c600n/a 
2024-07-04n/aelf 11e27dae32917624264c20d7b99bbc9c234c2cadfe3cd84828dd3dc5b6596a7bVirustotal results 16.67%Mirai