URLhaus Database

You are currently viewing the URLhaus database entry for http://136.144.41.60/.s4y/arm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1978270
URL: http://136.144.41.60/.s4y/arm
URL Status:Offline
Host: 136.144.41.60
Date added:2022-01-15 06:02:06 UTC
Last online:2022-03-17 23:XX:XX UTC
Threat:Malware download Malware download
Reporter: tolisec
Abuse complaint sent (?): Yes (2022-01-15 06:03:06 UTC to abuse{at}serverion[dot]com)
Takedown time:2 months, 1 days, 17 hours, 33 minutes Bad (down since 2022-03-17 23:36:17 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-13n/aelf 0b10b091f76e70db40c1e1a3097a50e6454947dc03768c9e8662116d7979d645Virustotal results 52.54% 
2022-02-04n/aelf 9a831f0c0598bd2c68e86b49ee3a39ddb1448c7229292ef64ca81507e23aa8c0Virustotal results 38.98% 
2022-01-29n/aelf c3244094658ef81e01f76ed7a7347854394e64d484e3423bad31cadce9ee9bfan/a 
2022-01-27n/aelf 6a180a786567a5d3dad51570d2ca9ea1653e63804149e19ad91794cb2d262f6dn/a 
2022-01-26n/aelf 60fa06e24a9bfcf972d7278713708b7293186da9ee6bcf6520d63871217a77b1n/a 
2022-01-25n/aelf d616e75d4885b9495491af08a82c23bdbad84e66cf53ca9a9668d081c36f0fcen/a 
2022-01-23n/aelf 7c9d646b26d0c38bfa76e2f093aa7fff8371ae5439856dcdba35ed18bb08fcf5Virustotal results 19.67%Mirai
2022-01-21n/aelf 7bfcd54db8ca4a37c713eced9e7d6d46a0926a7a23665aeddf7afecd69f6e94bn/a 
2022-01-17n/aelf 7895dddc5b3b9af8c1c6d37d088826408489ce3859594ce2cc6a4cb25a33ca6an/a 
2022-01-15n/aelf 21505123d2951771ff2a68b335070dd8071f5fd71b18b36cf305688eac4587f0n/aMirai