URLhaus Database

You are currently viewing the URLhaus database entry for http://83.222.191.91/oops/Kloki.i686 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3404705
URL: http://83.222.191.91/oops/Kloki.i686
URL Status:Offline
Host: 83.222.191.91
Date added:2025-01-18 16:04:12 UTC
Last online:2025-01-21 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2025-01-18 16:05:13 UTC to abuse{at}4media[dot]bg)
Takedown time:2 days, 17 hours, 39 minutes Poor (down since 2025-01-21 09:44:29 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-01-21n/aelf 1501849443d1d7854879b7d0083577bfdf9f053fe4bd71d63aee05477799260en/aMirai
2025-01-19n/aelf ef2c3a5af2266e147fa68bb6b20f5ed2f4c7bec1b131b3294bc7cb7a9b3b17f3Virustotal results 14.29%Mirai
2025-01-18n/aelf 6e57e49cbbfd91c334c88aec815f3f60144a6261bfac7c7154be77ff209a060cn/aMirai