URLhaus Database

You are currently viewing the URLhaus database entry for http://109.205.213.5/resgod.x86 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3610351
URL: http://109.205.213.5/resgod.x86
URL Status:Offline
Host: 109.205.213.5
Date added:2025-08-24 04:22:12 UTC
Last online:2025-09-09 03:XX:XX UTC
Threat:Malware download Malware download
Reporter: redrabytes
Abuse complaint sent (?): Yes (2025-08-24 04:23:10 UTC to abuse{at}razinetwork[dot]com)
Takedown time:15 days, 23 hours, 20 minutes Bad (down since 2025-09-09 03:44:05 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-07n/aelf b0ff5d417b98975a78c034c4c9ed42cd68813c8c3415ea894b7687e06c10cf3bn/aMirai
2025-09-07n/aelf 2ea06d49ad77336a06848abc99342f23213eae502886214b838923ef758172aen/aMirai
2025-09-06n/aelf da2591fb83102af22b1066461e0d877c7898c73abbde02af7405bb2f2b7c83cfVirustotal results 40.00%Mirai
2025-08-26n/aelf 27d546d9d1dce95f137e0de71b85e8e542cfbeba80c28c1099ae85191646c28an/aMirai
2025-08-24n/aelf fc1120eef2173283dc316199b4c756cc39a7fd4748daed6e558b5d0c0fbc8c61n/aMirai
2025-08-24n/aelf 3f1307653a9aee279473dc5b124c5f1eb5949432c7d11118d922bd33f80c22c9Virustotal results 38.46%Mirai
2025-08-24n/aelf 61363241c7347f96baa3b308f9865812b6b90021dfc11eb351bebf7dab88371fn/aMirai
2025-08-24n/aelf a625b094739874aae8f8ddbf96a43fb3c49ba1f6f98ee9cf268527381b0e78c8n/aMirai
2025-08-24n/aelf 100609501eebfab10b7cfb71b3cd46b5720d0fbda00475279f5126019c33aadfVirustotal results 38.46%Mirai