URLhaus Database

You are currently viewing the URLhaus database entry for http://217.60.195.187/LjEZs/mpsl which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3892205
URL: http://217.60.195.187/LjEZs/mpsl
URL Status:Offline
Host: 217.60.195.187
Date added:2026-07-26 16:51:15 UTC
Last online:2026-08-06 19:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2026-07-26 16:52:13 UTC to abuse{at}swissnetwork[dot]io)
Takedown time:11 days, 2 hours, 42 minutes Bad (down since 2026-08-06 19:34:13 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-01n/aelf 876fb6f7344673b9d619bc60e68d7cd61b2e2cdeb4b65aa61e1f83b57df92315n/aMirai
2026-07-29n/aelf 4d9d9274a5f607b4a04d6241b17b0bf447111f0c965c07f624a4deed906403c3n/aMirai
2026-07-29n/aelf 9b5a9954e031bf017324e3cbe578cb7f0148d428ee0172003846bc9486543aa4n/aMirai
2026-07-26n/aelf d651b3fc7cdd3aba3039cd94b50ddb385139a85bff6c3c55b3e27ed0cf8f96f7n/aMirai