URLhaus Database

You are currently viewing the URLhaus database entry for http://137.220.194.112/c/kt10 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3531153
URL: http://137.220.194.112/c/kt10
URL Status:Offline
Host: 137.220.194.112
Date added:2025-04-30 18:29:13 UTC
Last online:2025-05-13 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2025-04-30 18:30:09 UTC to cs[dot]mail{at}ctgserver[dot]com)
Takedown time:13 days, 1 hours, 31 minutes Bad (down since 2025-05-13 20:01:33 UTC)
Tags:censys elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-05-13n/aelf 4bef627a7b06f13ae60c2f183340e299b702b2b59e062c53619808cbe78ca1b8n/aMirai
2025-05-13n/aelf dcaf870c61d081ce83d6257c2303af0f118f532e2cdcfcfa0c8c6dad609545f9n/aMirai
2025-05-09n/aelf ac368e6deceec0f3706b444c2e495f2ae676ec1536caefd443c33873ef795e6bVirustotal results 59.02%Mirai
2025-05-09n/aelf c774ba0d419a26d722fb5632ee40f0875048ec5b278539567eec70bc06a69dd3n/aMirai
2025-05-09n/aelf dcbd6271ec12c5565a2f1acc27b1073da4b54f9dc3eafe0d9fa8e098a7986fdcn/aMirai
2025-05-08n/aelf d0c44694d0f871e91fb82046402ce01353368da6d54ba28a3e1deee6808b5951Virustotal results 58.73%Mirai
2025-05-07n/aelf efda7e9987a3b873c9668521a3401b35a4fe90d58f557983cf8c33ea76170149Virustotal results 60.32%Mirai
2025-05-07n/aelf 5c340f68ce3d5d4cc6e28bcdec86ec6add6083173026357234f82bb7bfad002en/aMirai
2025-05-07n/aelf 56e0c98308d81edbf173d3688a26255136633edd4a7f51451dcf5ccd153a0653n/aMirai
2025-04-30n/aelf c9d84bc7a6c4e19c54b8b230cf969253480e4b08624f8ca8e404e1a7451a0350n/aMirai