URLhaus Database

You are currently viewing the URLhaus database entry for http://185.244.36.221/arm7 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2902480
URL: http://185.244.36.221/arm7
URL Status:Offline
Host: 185.244.36.221
Date added:2024-06-23 11:42:04 UTC
Last online:2024-06-28 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2024-06-23 11:43:05 UTC to abuse{at}spectraip[dot]nl)
Takedown time:5 days, 8 hours, 42 minutes Bad (down since 2024-06-28 20:25:22 UTC)
Tags:CHE elf geofenced mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-06-25n/aelf 9b3729cff8e91b119ce625b74621678b71c9e5edb540078a70ffc9248afa5216n/aMirai
2024-06-24n/aelf 3a8038c5c9841662552e945aedd2c7a70166c449fc36e807820da05ca652ec6fVirustotal results 16.67%Mirai
2024-06-23n/aelf 91fa601fc12cdf088658d708440c522d8c5525234021f33137f91e530e01248cn/aMirai
2024-06-23n/aelf 87a3fff1105af03dfa6d36b15fca1f8d0c7950f53dd5f14c277af01d0a2f960en/aMirai
2024-06-23n/aelf 78050027dc1bfef0c79d420c3cc7957965450775c487302baf57ab70d95c9fc5Virustotal results 40.91%Mirai