URLhaus Database

You are currently viewing the URLhaus database entry for http://185.142.53.233/multi which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3491778
URL: http://185.142.53.233/multi
URL Status:Offline
Host: 185.142.53.233
Date added:2025-03-26 23:34:13 UTC
Last online:2025-07-09 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2025-03-26 23:35:07 UTC to abuse{at}fiberway[dot]fr)
Takedown time:3 months, 14 days, 22 hours, 59 minutes Bad (down since 2025-07-09 22:34:17 UTC)
Tags:gafgyt link mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-05-15multish 39b3a360c62dab5c94ee9774cc4d50aac3d0db8abd329f222f75312cb2c1700dn/aGafgyt
2025-03-26n/ash e2a3a51e7a1056c8c41925aec6df02d4ecd26d2619d0bdac5b6eb2c97ab31620n/aGafgyt