URLhaus Database

You are currently viewing the URLhaus database entry for http://103.130.214.198/jackmyi586 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3425316
URL: http://103.130.214.198/jackmyi586
URL Status:Offline
Host: 103.130.214.198
Date added:2025-02-03 09:43:06 UTC
Last online:2025-02-07 23:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-02-03 09:44:05 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:4 days, 13 hours, 43 minutes Bad (down since 2025-02-07 23:27:10 UTC)
Tags:elf gafgyt link mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-02-07n/aelf 69647111ada35fe7ecbcf98db0bb9c247a2ed15f7d327d76509c987b7625d5dcn/aGafgyt
2025-02-07n/aelf 1758603f388c3abe285bcc9ead3cc010377816be2878752aa85378d86648c7a8n/aMirai
2025-02-05n/aelf dd5da8a9c14f9925ba88e8b7d6f07edc14780e38b4778744246fa364995f6c06n/aGafgyt
2025-02-03n/aelf e4268bb0b926afb0def833f91ca73145fd6465f38b64215277b9a473c7902c33Virustotal results 61.90%Gafgyt