URLhaus Database

You are currently viewing the URLhaus database entry for http://77.111.101.78/bins/jew.arm5 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3337611
URL: http://77.111.101.78/bins/jew.arm5
URL Status:Offline
Host: 77.111.101.78
Date added:2024-12-09 04:01:09 UTC
Last online:2024-12-18 04:XX:XX UTC
Threat:Malware download Malware download
Reporter: cesnet_certs
Abuse complaint sent (?): Yes (2024-12-09 04:02:13 UTC to report{at}abuseradar[dot]com)
Takedown time:9 days, 0 hours, 51 minutes Bad (down since 2024-12-18 04:53:40 UTC)
Tags:mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-12-17n/aelf 4ebf2b70fc4c297151431a905879cd843cd2e572567a833b6d5da1c289d0b2b0Virustotal results 50.79%Mirai
2024-12-12n/aelf 63720ceb399d006acf3a1037070146695e5aee46b9bd5f91978dcd7f5651b596n/aMirai
2024-12-09n/aelf 73ecb52edc1b6c76ce45ed5f5dc1f46d7816206f5db8299dc64fdc49e2b30be0Virustotal results 50.79%Mirai