URLhaus Database

You are currently viewing the URLhaus database entry for http://83.222.191.91:8080/oops/Kloki.arm6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3397152
URL: http://83.222.191.91:8080/oops/Kloki.arm6
URL Status:Offline
Host: 83.222.191.91
Date added:2025-01-11 13:20:15 UTC
Last online:2025-01-21 10:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2025-01-11 13:21:14 UTC to abuse{at}4media[dot]bg)
Takedown time:9 days, 20 hours, 54 minutes Bad (down since 2025-01-21 10:15:48 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-01-19n/aelf c9cdaf1220728bc52be27339ea9a386495f7831b7605321b8321c6cc10320ecan/aMirai
2025-01-18n/aelf 8acad8d8078fb0408eda2dc962435e6d96269edf5e9aa963033e66a3c0669815Virustotal results 25.40%Mirai
2025-01-14n/aelf 4f717dfd2a079f475a71771194d4538a841d4826ef27d0b18b5b3ae4cc18e269n/aMirai
2025-01-11n/aelf 954b58091fd10e8b40909cf411f1e203fed9f7fce39764facf29c2beb44add30Virustotal results 49.15%Mirai