URLhaus Database

You are currently viewing the URLhaus database entry for http://87.120.125.72/arm7 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3401782
URL: http://87.120.125.72/arm7
URL Status:Offline
Host: 87.120.125.72
Date added:2025-01-15 14:50:06 UTC
Last online:2025-02-05 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2025-01-15 14:51:10 UTC to abuse{at}ekabi[dot]net)
Takedown time:21 days, 1 hours, 18 minutes Bad (down since 2025-02-05 16:09:30 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-01-23n/aelf 37ff3b2d3357a406afa4f9ff2949778586e97fe90e4370210475eabae27d1dc1n/aMirai
2025-01-19n/aelf 587da8b2bd23a6379d81265164da4f21ac1a351b7fd6d5feff006b92f20b2f90Virustotal results 30.16%Mirai
2025-01-15n/aelf afc0627242198ccd0e9fc1ae99c8298d83269b5e4e98b30854168c7737f31ceeVirustotal results 61.29%Mirai