🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

URLhaus Database

You are currently viewing the URLhaus database entry for http://176.65.139.158/bins/spc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3919164
URL: http://176.65.139.158/bins/spc
URL Status:Offline
Host: 176.65.139.158
Date added:2026-09-20 04:15:36 UTC
Last online:2026-09-24 23:XX:XX UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2026-09-20 04:16:20 UTC to abuse{at}stormindustries[dot]llc)
Takedown time:4 days, 18 hours, 49 minutes Bad (down since 2026-09-24 23:05:30 UTC)
Tags:elf gafgyt link mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-09-23n/aelf 1759adf6c9e588f5ab4d6eca1cd3c65cb45a0be425cfa24e33b7244adb8c98e5n/aGafgyt
2026-09-23n/aelf 6ee0d85c647104e0506f922701325d78d2a059101734a0940ef889eb7baacfc9n/aMirai
2026-09-23n/aelf 082b9e9e97f9502e4db7549880e4538f070636340e51d59eef1c4942e4519113n/aMirai
2026-09-23n/aelf d907c79d31b6ff1c667dba6dbc68e70c8d5ddfd0a623a1d9f43685d9ac214134n/aMirai
2026-09-22n/aelf f73a8902ae9422275b664df78e22d091a4094208a18e1fcb8f5e4501b9a5ea98n/aMirai
2026-09-22n/aelf 6d452b17f963cd2e1636d1c1e1baa8f5b6663f5bc4d55a90e95d1fb926c15139n/aMirai
2026-09-20n/aelf ca05d5c61cff1ffb32c1b4f8bb5227320f90d4cc36c2b05e406350f5071531a9n/aGafgyt