URLhaus Database

You are currently viewing the URLhaus database entry for http://109.205.213.5/resgod.spc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3610345
URL: http://109.205.213.5/resgod.spc
URL Status:Offline
Host: 109.205.213.5
Date added:2025-08-24 04:22:12 UTC
Last online:2025-09-09 03:XX:XX UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2025-08-24 04:23:10 UTC to abuse{at}razinetwork[dot]com)
Takedown time:15 days, 22 hours, 57 minutes Bad (down since 2025-09-09 03:20:48 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-08resgod.spcelf 6e0f15c3a92edea0104cd9050dea4f26e61ccccb0c04503c0574a0ea4c6d8c1an/aMirai
2025-09-07resgod.spcelf 494f9842c3fc8916d403cf4d91c8cc872b76d29bfbfa8b0415f80f8e52678a6en/aMirai
2025-09-06resgod.spcelf 02359fea02d20a63aae3a7601694c4777b452ec9297f2d9187ec0e7defe2d7b1Virustotal results 41.27%Mirai
2025-08-26resgod.spcelf 06206066d750db625368621b51a988cad9f8e7a1d1311c84c24b885d5454578an/aMirai
2025-08-24resgod.spcelf 0bf46e99ac5571896b1556a14962e8d7dd9f52e54b163c58f14b90231bbdcd20n/aMirai
2025-08-24resgod.spcelf cc2e3f3a23f116ee83264c093570d8585d0a1eb8f943378e22ef7e8e4abf636bn/aMirai
2025-08-24resgod.spcelf a09cc99ffa0adb4941ac7542f50e44d302075934c1cbc393e095568298b950e3n/aMirai