URLhaus Database

You are currently viewing the URLhaus database entry for http://103.130.214.198/jackmyx86 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3425314
URL: http://103.130.214.198/jackmyx86
URL Status:Offline
Host: 103.130.214.198
Date added:2025-02-03 09:43:06 UTC
Last online:2025-02-07 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-02-03 09:44:05 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:4 days, 13 hours, 12 minutes Bad (down since 2025-02-07 22:56:45 UTC)
Tags:elf gafgyt link mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-02-07n/aelf 8877ce055688f8cf77a1ef610b4eae5dc7ec7bb42fc7fb4f87514570039c18e1n/aMirai
2025-02-07n/aelf 9488e4ad23ca77a15fd81177de1dcf2f7669394ec05abfcf4eabf15b3bb62c14n/aMirai
2025-02-05n/aelf 0e1923199e0e3c3728fe821d6c756947b7fa24ebf90a8f40fea58189ec5d6318n/aGafgyt
2025-02-03n/aelf df374e54f910df6ee0a31fe202876fb2eaec5f8e752eb4e2d067f2ea188a56b8Virustotal results 50.79%Gafgyt