URLhaus Database

You are currently viewing the URLhaus database entry for http://160.250.134.61/o which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3629759
URL: http://160.250.134.61/o
URL Status:Offline
Host: 160.250.134.61
Date added:2025-09-23 04:47:18 UTC
Last online:2025-10-07 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-09-23 04:48:10 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:14 days, 11 hours, 59 minutes Bad (down since 2025-10-07 16:47:42 UTC)
Tags:gafgyt link sh

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-10-06osh a7a6d32ce5eebd656da14bfc65833540b0e121e78c16674ace9b98e34aa717ben/aGafgyt
2025-09-23osh aab7205d2083c35499dae0618bbc60e1dfa4b20ad2064daeecb993b83771bb0cn/aGafgyt
2025-09-23osh b9c614d10587de93315c0e814cee76eb94507e3dce3b22a1a8936935c93fd6b0n/a