URLhaus Database

You are currently viewing the URLhaus database entry for http://103.130.212.99:8080/tp which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3400816
URL: http://103.130.212.99:8080/tp
URL Status:Offline
Host: 103.130.212.99
Date added:2025-01-14 20:57:13 UTC
Last online:2025-02-07 02:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2025-01-14 20:58:11 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:23 days, 5 hours, 42 minutes Bad (down since 2025-02-07 02:41:06 UTC)
Tags:404 censys sh ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-01-26n/ash a0a0f88cdccf99360fa6b82e3cea8ad0a3cd4555400e9ca0911bce6094eb2e7en/a
2025-01-25n/ash 130a5ce4a3e0d743974014b2d29a8129fe9b986a5cc6d8ee46d250cc7e9fabdbn/a
2025-01-20n/ash 9ea0767a4269c7a892710f0e2ccbcc2c925ed521aedd9b5bd4b7d40bbf658dd9n/a
2025-01-18n/ash 03b370db936066bc42a830b10e258123957310145093e581061b3a5773a73b21n/a
2025-01-14n/ash b96697c4740f52ed87b1a986dddb5dd6ab8dfc59368394f659c82bd2b3c44aa4n/a