URLhaus Database

You are currently viewing the URLhaus database entry for http://45.125.66.103/qkehusl which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3283337
URL: http://45.125.66.103/qkehusl
URL Status:Offline
Host: 45.125.66.103
Date added:2024-11-09 08:01:10 UTC
Last online:2024-11-14 05:XX:XX UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2024-11-09 08:02:08 UTC to admin{at}serveroffer[dot]lt)
Takedown time:4 days, 21 hours, 16 minutes Bad (down since 2024-11-14 05:18:38 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-11-12n/aelf c0c0404979fe09b54512c15dade8808ee97ed6fc4dff453e6db08674a946b842Virustotal results 32.81%Mirai
2024-11-12n/aelf eb4356192362b219a6ca8e5bb5c209fca48ab809ae16d8d123cfaa13f11c52b9Virustotal results 34.92%Mirai
2024-11-09n/aelf 27187889f1d7b0281fde8cb83a0ea8576635ef992542d7741e2ac7e3e10ff9e4Virustotal results 35.94%Mirai