URLhaus Database

You are currently viewing the URLhaus database entry for http://176.65.134.201:8080/efea6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3487139
URL: http://176.65.134.201:8080/efea6
URL Status:Offline
Host: 176.65.134.201
Date added:2025-03-23 09:28:36 UTC
Last online:2025-03-28 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: tolisec
Abuse complaint sent (?): Yes (2025-03-23 09:36:05 UTC to abuse{at}dolphinhost[dot]net)
Takedown time:5 days, 12 hours, 51 minutes Bad (down since 2025-03-28 22:27:26 UTC)
Tags:elf geofenced mirai link ua-wget USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-28n/aelf 9ee8890752bdb16935d0cc7e392d79ab9ae03ff2da2b7ca8eac9ee1d9d8f2704Virustotal results 19.15%Mirai
2025-03-23n/aelf 596166c25a105d48e23ed949ab3e7023cc006a1a7774908520af05351c5ff607Virustotal results 25.40%Mirai