URLhaus Database

You are currently viewing the URLhaus database entry for http://196.219.130.75:52670/i which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3559317
URL: http://196.219.130.75:52670/i
URL Status:flame Online (spreading malware for 11 months, 23 days, 9 hours, 46 minutes)
Host: 196.219.130.75
Date added:2025-06-08 18:12:15 UTC
Threat:Malware download Malware download
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2025-06-08 18:13:33 UTC to abuse{at}te[dot]eg)
Tags:censys elf hajime

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-05-17n/aelf 6e28b336496325c9659df5011066e1d1e57ffe035fe02db96c61b91a0b4fd77bn/a 
2026-01-15n/aelf 025f8c57aeed8e8d618ccae3fd094e945af54279fcf45655facf9de539ebce22n/a 
2025-12-20n/aelf 60b5b171e979d2079cff3e47bee2fe990a7650e6c0eeffeaee72208adbb4cb69n/a 
2025-12-20n/aelf 23abcda7cfa1aa2e64f6f9be6ae8579349c735f6cd2ef09b395dac0fbb183f90n/a 
2025-12-14n/aelf 7927f26efedc57b7b780b28e4b8998bbb71b48a11ddb7a6ba8dd4fb9a393ce46n/a 
2025-12-13n/aelf f5bccf87ffc848572b0937bf59661421f997a23229710602f3e545a81ba6cd13n/a 
2025-12-04n/aelf 20cd4d44b25304447c36c675134f5aaa1292aec54db799da4d013b72cd53c340Virustotal results 58.73% 
2025-11-20n/aelf 529ef49e00bf39d1158c6e0dc52b7fcd6ccf0e186dfdaf358b2cae984a821559Virustotal results 65.08% 
2025-08-14n/aelf a177d62b24a0855e8b879998300b79e53611417443c10385ca60cd78ff544a93Virustotal results 57.81% 
2025-07-15n/aelf d6566a9e7a4246fb78c5f2cf9a0008de023059b903050924211c383fd0afcbaeVirustotal results 60.94% 
2025-07-11n/aelf 0be261a305b102748add782ec19585184b5b9417e5c44c151984b251f51105c3Virustotal results 57.81% 
2025-07-10n/aelf 6cb60dd1c0b08385bface8d0902003cc043f627e09aeb05ef6d23c7fc22077f6Virustotal results 50.79% 
2025-07-01n/aelf 0345fea897390385cadd85b67543c834bacf9fe23df37da9636c566ba7c0a192Virustotal results 59.38% 
2025-06-08n/aelf 020f1fa6072108c79ed6f553f4f8b08e157bf17f9c260a76353300230fed09f0Virustotal results 69.84%Hajime