URLhaus Database

You are currently viewing the URLhaus database entry for http://176.65.140.135/efea6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3430688
URL: http://176.65.140.135/efea6
URL Status:Offline
Host: 176.65.140.135
Date added:2025-02-07 06:41:06 UTC
Last online:2025-03-12 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-02-07 06:42:07 UTC to abuse{at}dolphinhost[dot]net)
Takedown time:1 month, 3 days, 2 hours, 34 minutes Bad (down since 2025-03-12 09:16:31 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-07n/aelf 11c0436f0741bb589a1498e00793e89c2b1736bda1d576c12eb07fb2bf916383n/aMirai
2025-03-05n/aelf b5b1a58ceaefb7f23f7c9968cbc7259846cb6fbb4bc937425e10c44504698d58n/aMirai
2025-03-05n/aelf d392b63426a3a8b9c574b7ffbd3d80ff24ad2b5922f731d54d9368ac5f09459an/aMirai
2025-03-04n/aelf dd89a711b83e38b66793e04b498b0ea42728f55d3e539992d1ca8a57cbe104e1n/aMirai
2025-02-28n/aelf aacbd4f0a7f2c1112b53b3fbbf32f385493825f8e74cff94a089c00ae441ee40n/aMirai
2025-02-07n/aelf bc64edc10bed383682e7583b41249c47dc8b5533d23fe907dd0115078b1bb770Virustotal results 62.30%Mirai