URLhaus Database

You are currently viewing the URLhaus database entry for http://176.65.134.5/zerarm7 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3470185
URL: http://176.65.134.5/zerarm7
URL Status:Offline
Host: 176.65.134.5
Date added:2025-03-07 06:00:08 UTC
Last online:2025-03-10 21:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-03-07 06:01:05 UTC to abuse{at}dolphinhost[dot]net)
Takedown time:3 days, 15 hours, 35 minutes Bad (down since 2025-03-10 21:36:47 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-10n/aelf a1d4783a0f02214fea4f9554f62dd48a055a8578ed7084d9486989e8d2d807cdn/aMirai
2025-03-07n/aelf 912bfae6bac55c7a62b01ba0926e88ddae64c892757e6e7e26f94ff032422b6cn/aMirai
2025-03-07n/aelf f819eeaa9c04049f917a0197adb9bd72f003a8c7f45099a4831af701901a316aVirustotal results 48.39%Mirai