URLhaus Database

You are currently viewing the URLhaus database entry for http://83.222.191.91/oops/Kloki.ppc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3397139
URL: http://83.222.191.91/oops/Kloki.ppc
URL Status:Offline
Host: 83.222.191.91
Date added:2025-01-11 13:20:14 UTC
Last online:2025-01-21 08:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2025-01-11 13:21:14 UTC to abuse{at}4media[dot]bg)
Takedown time:9 days, 18 hours, 51 minutes Bad (down since 2025-01-21 08:12:48 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-01-19n/aelf 372a95c2cfbeb4a7495585f4f839942e1f099bb3734c7e300e9a595fc51fa346n/aMirai
2025-01-18n/aelf 6636a4480c2952e377e46b2344b15d2120bfac7d345d2db729ace65790f377dan/aMirai
2025-01-14n/aelf b8fb124043b6406a2810bbd85b43f8af96d2e55e4c01a9d574ae9508eb3de9f6Virustotal results 4.84%Mirai
2025-01-11n/aelf dfa0c95348765c1b6347a5cd007cfe59e7208b3787bf779e6ea2e47d407f6fe9Virustotal results 49.21%Mirai