URLhaus Database

You are currently viewing the URLhaus database entry for http://154.216.17.200/kjsusa6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3296085
URL: http://154.216.17.200/kjsusa6
URL Status:Offline
Host: 154.216.17.200
Date added:2024-11-19 12:30:17 UTC
Last online:2024-11-21 01:XX:XX UTC
Threat:Malware download Malware download
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2024-11-19 12:31:31 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:1 day, 13 hours, 25 minutes Poor (down since 2024-11-21 01:57:16 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-11-19n/aelf 927980050a46b64d1984a9492b6548cfb5c2af5d0198c09a220f65f31eb51852n/aMirai
2024-11-19n/aelf 95995e573abb0b1218a75d967d32610f4f689b34855f4f51726e5b393c354c72n/aMirai