URLhaus Database

You are currently viewing the URLhaus database entry for http://vbtgsze.r-e.kr/bins/byte.arm6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3377105
URL: http://vbtgsze.r-e.kr/bins/byte.arm6
URL Status:Offline
Host: vbtgsze.r-e.kr
Date added:2024-12-26 09:59:07 UTC
Last online:2025-01-15 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-12-30 17:57:10 UTC to abuse{at}proton66[dot]ru)
Takedown time:21 days, 7 hours, 55 minutes Bad (down since 2025-01-16 17:56:05 UTC)
Tags:botnetdomain elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-01-16n/aelf f7cbd9e5ce8f493df263db2b9176fbf00550b44b9084979093f3ebec72ac3820Virustotal results 61.90%Mirai
2025-01-16n/aelf 468102585e559b086dc9108c6a067edc570a29020221bf40777222e91f943caan/aMirai
2025-01-13n/aelf d163b0c2ad94d4223812fc00f5c5b3c7fc9b449d0648e348bf3b5bace4caf151n/aMirai
2024-12-26n/aelf 7f089801a37f1d9a83a5103c8f9b1c6fc00f9ce699cb812cc23704aea8d46c8cVirustotal results 55.56%Mirai
2024-12-26n/aelf 17e9fa02a2efcfe6326769a80cb2458bacc5f28f8cb0a68e305af3f5c4904c45Virustotal results 58.73%Mirai