URLhaus Database

You are currently viewing the URLhaus database entry for http://62.72.185.39/skid.arm5 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2792030
URL: http://62.72.185.39/skid.arm5
URL Status:Offline
Host: 62.72.185.39
Date added:2024-03-25 10:36:05 UTC
Last online:2024-04-16 01:XX:XX UTC
Threat:Malware download Malware download
Reporter: Gandylyan1
Abuse complaint sent (?): Yes (2024-03-25 10:37:05 UTC to abuse{at}ipxo[dot]com)
Takedown time:21 days, 15 hours, 9 minutes Bad (down since 2024-04-16 01:46:07 UTC)
Tags:mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-04-08n/aelf 83065927708e65227b1f55fecdc02d3566bf2e0f91b19a04b6b237ecf7d205e7n/a 
2024-04-02n/aelf 519ab946f82cd9aff8145e2969aa3b5f6d2da891d7376f845c5a390361c686ean/a 
2024-03-31n/aelf 7a4651b8df9059db2afc76dbac775dfd57284d7dfe231f1fb3f56e1e718f93b2n/a 
2024-03-25n/aelf e4dc22f111de305e484d93e9b12ba80e5b11f2be9808fa400a8a54a41419dff4Virustotal results 54.84%