URLhaus Database

You are currently viewing the URLhaus database entry for http://185.142.53.184/f which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3474833
URL: http://185.142.53.184/f
URL Status:Offline
Host: 185.142.53.184
Date added:2025-03-12 13:58:08 UTC
Last online:2025-04-11 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2025-03-12 13:59:06 UTC to abuse{at}fiberway[dot]fr)
Takedown time:29 days, 21 hours, 20 minutes Bad (down since 2025-04-11 11:19:38 UTC)
Tags:gafgyt link mirai link sh ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-04-07fsh b3af40324cdf4ba7fb7c50a6a4267915fca8179d4b3cf44fefcf2cc437768cf0Virustotal results 20.97%Mirai
2025-03-20n/ash 25325ed59aa3f2671f93e11424fb0d2773ed09db1452753ca218ac50a6280e76n/a
2025-03-12n/ash 56e8bb0c5b2344b5d12304c65e499c09dc30732152ba2ec9fe0c6a2426c9d81aVirustotal results 20.97%Mirai