URLhaus Database

You are currently viewing the URLhaus database entry for http://202.57.43.234:19001/tftp which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3520081
URL: http://202.57.43.234:19001/tftp
URL Status:flame Online (spreading malware for 1 year, 1 month, 12 days, 7 hours, 50 minutes)
Host: 202.57.43.234
Date added:2025-04-20 20:36:10 UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2025-04-20 20:37:18 UTC to abuse{at}philcom[dot]com)
Tags:elf tftp

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-12-29n/aelf 4d640783e71cc3261665c51d2d91cd48b301a64c15df9ae5dc3a9501d3aa762fn/a
2025-10-21n/aelf e1401689f26b28cc9838568d513bb06cdc3b472039e89b612044f81765afe06bVirustotal results 48.44%
2025-10-08n/aelf df12b303824b9bcefb1ce78d1c30e6194a8ac870550957f9e45425122da5f99bVirustotal results 40.62% 
2025-10-05n/aelf 80d45dd88593007f4cdc0eb1254289f8dee5027b8684a1eb64f519e24c5a0c3cVirustotal results 40.62% 
2025-10-04n/aelf 829f76e09c6e3a92735fd324c0295e27cab04b8d4671d2eaa79c4579fe6b95c0Virustotal results 40.62% 
2025-09-26n/aelf 9590e45c8752e47194201003565309b4b2023d340a3800ac15808b4141e18becVirustotal results 40.62% 
2025-09-11n/aelf 14d98bed983d31163462f604ee2cdd6be8a25d1eed8105a9062bba391997405aVirustotal results 40.62% 
2025-09-03n/aelf e9637b8a8e9594cf2e9b38c7c21a9cb673f7e008a104d6248c277a9abf0d3847n/a 
2025-04-24n/aelf a0d4456c848f2f8a97441aad14e0fa1fc1a5125cca94743c416eb288ee3e7b4dVirustotal results 40.32%
2025-04-22n/aelf fb86b1ae70f7b067b400ad62b93e2bd2817d554ce22f2ca4c30535dcf2fd02abVirustotal results 29.03% 
2025-04-21n/aelf 8e7a921f1f729e29a4ed9260dc8726247fa9fd58dc22ca9f15e922cba1e51d2fVirustotal results 28.57% 
2025-04-20n/aelf 9b66676da9413803e42cb2efda1bb76084cdf89d40f503a6716f4eb719ac972fVirustotal results 38.10%