URLhaus Database

You are currently viewing the URLhaus database entry for http://96.84.204.37:34173/i which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3304457
URL: http://96.84.204.37:34173/i
URL Status:Offline
Host: 96.84.204.37
Date added:2024-11-25 22:37:07 UTC
Last online:2024-12-26 15:XX:XX UTC
Threat:Malware download Malware download
Reporter: geenensp
Abuse complaint sent (?): Yes (2024-11-25 22:38:07 UTC to abuse{at}comcast[dot]net)
Takedown time:1 month, 0 days, 16 hours, 42 minutes Bad (down since 2024-12-26 15:21:04 UTC)
Tags:32-bit elf mips Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-12-01n/aelf fd851655a0cc12da68cc0a81320476fb69a4a00835b5ad7341b55ea36f2cdbf7Virustotal results 61.54% 
2024-12-01n/aelf 585488837a26f33f0b5a8e9f7f36ecba800df61f0344ec55f8986a0b3fad904dVirustotal results 50.00% 
2024-11-30n/aelf 122d5a734cac70d4c2c6c562ccefbdb1086bfc149a81e437e8ec1475e37977d0Virustotal results 53.12% 
2024-11-29n/aelf af413f5f22f2245f433736c3f2d296a990188ec83d741a1646d9fb96e77a5843Virustotal results 60.94% 
2024-11-29n/aelf 75bcb3a3bd2f15e32ae70119ce34aad4d2b72acedc1e79a99b2d8c08293fc8bcVirustotal results 50.77% 
2024-11-28n/aelf dc3906b6cf2e391537c1dfb599b3e5c0d58cccb3ed8b942cb1bcb064413b93e0Virustotal results 46.15% 
2024-11-27n/aelf d2bcf89297b6e4b93ab6200647a71ffcb325a6beba972983cdf5a6d32e1e79b8Virustotal results 50.00% 
2024-11-25n/aelf 4293c1d8574dc87c58360d6bac3daa182f64f7785c9d41da5e0741d2b1817fc7Virustotal results 75.00%Mozi
2024-11-25n/aelf 37a46c2b4715d5b600b43a4d4a67269e0eb5f501f3ee76e0f3440ab125b7d93eVirustotal results 47.69%