URLhaus Database

You are currently viewing the URLhaus database entry for http://193.32.162.27/bins/pmpsl which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3487522
URL: http://193.32.162.27/bins/pmpsl
URL Status:Offline
Host: 193.32.162.27
Date added:2025-03-23 21:27:12 UTC
Last online:2025-06-29 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: tolisec
Abuse complaint sent (?): Yes (2025-03-23 21:28:07 UTC to dmzhostabuse{at}gmail[dot]com)
Takedown time:3 months, 7 days, 18 hours, 45 minutes Bad (down since 2025-06-29 16:13:19 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-06-11n/aelf 6802100b58427ba2a7551675a48db11f6961452b50081f44ec429aaec9a523b8n/aMirai
2025-06-11n/aelf f3b814c0c72eb07918b2a73c2a6ce90a8c70d9a8db8b62fd06020d500f31e9b5n/aMirai
2025-04-07n/aelf d748f606bed9bdc21a72a9ab0db74a74dd9484736bad3b722216107d6d4f8991Virustotal results 45.31%Mirai
2025-03-28n/aelf e257d0b2a8d6fa8dab677cc0e0c426016f25c905a18ce1bb1db045bce5d5c480Virustotal results 59.38%Mirai
2025-03-23n/aelf fd69c599111ca3d7dbe937c74df58b1933d69fea6f47636d485bf5321135b6fen/aMirai