URLhaus Database

You are currently viewing the URLhaus database entry for http://42.112.26.36/harm5 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3473799
URL: http://42.112.26.36/harm5
URL Status:Offline
Host: 42.112.26.36
Date added:2025-03-11 09:35:06 UTC
Last online:2025-04-07 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-03-11 09:36:07 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:27 days, 11 hours, 7 minutes Bad (down since 2025-04-07 20:43:53 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-20n/aelf 870d527697d89efef27b0ddf4a5eb74c4efc6539d6abc5e77772f58179ffb6c5Virustotal results 46.88%Mirai
2025-03-15n/aelf 184cce981a15ab96ec76015cce7e8c694752cde3c47cefafc0a585deb3eb6188n/aMirai
2025-03-11n/aelf f5dae450bbd248357302192f33e1eb9d0f07905efdd8902323b31c0bcbb1998fVirustotal results 33.33%Mirai