URLhaus Database

You are currently viewing the URLhaus database entry for http://87.120.253.44/test.bot.mips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3477736
URL: http://87.120.253.44/test.bot.mips
URL Status:Offline
Host: 87.120.253.44
Date added:2025-03-14 20:57:04 UTC
Last online:2025-03-29 04:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-03-14 20:58:06 UTC to abuse{at}neterra[dot]net)
Takedown time:14 days, 7 hours, 52 minutes Bad (down since 2025-03-29 04:50:55 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-16n/aelf ab861db4376e339056ef61f05549c32683feef6d2126ec394a423bd43a6bd22an/aMirai
2025-03-16n/aelf 3a2053d41043b3cff886ad463ab1bf7296cb55e005f7081e92f29850c45fa32fn/aMirai
2025-03-16n/aelf eac005a4cbb7ce7ea3e71c701512c819c290c1c54bb56d0997fe9d5196537d43n/aMirai
2025-03-16n/aelf 23596df8e8fb0c517bb4c4b0284966c03263063e0fbba741b660daa0069547ddn/aMirai
2025-03-14n/aelf e5386f6997ab7d75bff46fd94f10e3af44b79ab733d5c31f21644ea76f453257n/aMirai