URLhaus Database

You are currently viewing the URLhaus database entry for http://154.216.16.108/vsbeps which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3283378
URL: http://154.216.16.108/vsbeps
URL Status:Offline
Host: 154.216.16.108
Date added:2024-11-09 08:01:15 UTC
Last online:2024-11-13 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2024-11-09 08:02:12 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:4 days, 3 hours, 23 minutes Bad (down since 2024-11-13 11:26:01 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-11-12n/aelf 18697f467d6fca041e203e578244648a3eae101efe21c0bfb77731ba15c8b107n/aMirai
2024-11-12n/aelf 3e9d8e759215c9a13a382697f997daa5cd80dee1bfa5a8ef3af4297783d2bcacn/aMirai
2024-11-12n/aelf 4597a169b792c7f7221ee8d23ef999e3f3553949a4a8de46550179087034d315Virustotal results 34.38%Mirai
2024-11-12n/aelf a3d088221c398c23b088f13f00e227c8a079be1f2f06e8d756cea235de1ead6en/aMirai
2024-11-09n/aelf c1aa0bb6b84249d0d63fe58e9b2c004d670e5f829eaa554b8705b39d863534cdVirustotal results 36.67%Mirai