URLhaus Database

You are currently viewing the URLhaus database entry for http://160.250.134.61/bins/mips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3629754
URL: http://160.250.134.61/bins/mips
URL Status:Offline
Host: 160.250.134.61
Date added:2025-09-23 04:47:18 UTC
Last online:2025-10-08 02:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-09-23 04:48:10 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:14 days, 21 hours, 32 minutes Bad (down since 2025-10-08 02:20:12 UTC)
Tags:elf gafgyt link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-26n/aelf 8e8239ebc8b41e0cb7f7452f6293f5a5dd4d2f7bd706df0f9e399413e8df328bVirustotal results 51.61%Gafgyt
2025-09-23n/aelf c8ab2207a950a19ede5731ba8f655f4465f2e0fc9a9b9364f01a786392a78e18Virustotal results 51.56%Gafgyt