URLhaus Database

You are currently viewing the URLhaus database entry for http://87.120.125.72/hikarm5 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3404573
URL: http://87.120.125.72/hikarm5
URL Status:Offline
Host: 87.120.125.72
Date added:2025-01-18 12:57:05 UTC
Last online:2025-02-05 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2025-01-18 12:58:09 UTC to abuse{at}ekabi[dot]net)
Takedown time:18 days, 3 hours, 22 minutes Bad (down since 2025-02-05 16:20:12 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-01-27n/aelf f848d708a97881c3375f1aeb65c4a753fcaa4ef86249e80651393dd648fe88bdn/a
2025-01-26n/aelf 39e852e1834254f84652f710936b3a3c889905981adeec64bb01c5bdda17b0c4n/a
2025-01-19n/aelf db5e1ccd1e613b22845c127e4ad08178b312b14fa5df96da530c1aa08fd0fad8Virustotal results 38.10%Mirai
2025-01-18n/aelf 923f5a3c967c2cbf489a541c2837010b6014f62d5514a90b0ee07702eaff1b62Virustotal results 23.81%Mirai