URLhaus Database

You are currently viewing the URLhaus database entry for http://45.125.66.103//jwwofba5 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3277440
URL: http://45.125.66.103//jwwofba5
URL Status:Offline
Host: 45.125.66.103
Date added:2024-11-05 18:51:06 UTC
Last online:2024-11-14 10:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2024-11-05 18:52:15 UTC to admin{at}serveroffer[dot]lt)
Takedown time:8 days, 16 hours, 3 minutes Bad (down since 2024-11-14 10:56:00 UTC)
Tags:32 arm elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-11-14n/aelf 955ec5fc1dc0fd9c0dd342e1585c994f5b067c807335a8dd58436cf5487b0db3n/aMirai
2024-11-13n/aelf 358ada73d2101850b7d6d9ed3e3ae851ca213c6a846391f3c4c4d484a2cd8f14n/aMirai
2024-11-12n/aelf dca9c6bdadd1a24c517f4468ff97e8586add67fe8e6809d195ed9bd3ce7f62a6Virustotal results 34.38%Mirai
2024-11-12n/aelf 3ae6ee2ed91f24dbb9bd7afde50e9b905c3df0cf2c30aed962ba454c49d4419fn/aMirai
2024-11-09n/aelf 42bbfdceb79ccb7fec15d0f958e65585368719ef6fff4de902242169ca92d85bn/aMirai
2024-11-07n/aelf 76174ab8b9b1a32bb455c6c7691f72f9c5a67bd45bee8136d7e825956f558965n/aMirai
2024-11-06n/aelf 146ad334cb255dc4bf22c5243060f610f944f980507e55777e7f27a92fd8a89en/aMirai
2024-11-05n/aelf c1412372c47cfe7e43a858fed41294320689936121fcf70288542e235aff0007Virustotal results 62.50%Mirai