URLhaus Database

You are currently viewing the URLhaus database entry for http://176.65.141.183/main_arm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3494891
URL: http://176.65.141.183/main_arm
URL Status:Offline
Host: 176.65.141.183
Date added:2025-03-29 15:27:04 UTC
Last online:2025-04-21 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2025-03-29 15:27:14 UTC to abuse{at}dolphinhost[dot]net)
Takedown time:22 days, 19 hours, 46 minutes Bad (down since 2025-04-21 11:13:42 UTC)
Tags:censys elf mirai link moobot

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-04-16n/aelf dcb50cb8051684e5a00aa177dc76a7d16f6402050fc478a608f6c9b87a621119n/aMirai
2025-04-09n/aelf a8bcf344dffc31b3b5fd2cdb0877c50d525dfc6f3372ae9ccc83e3484fc09f4fVirustotal results 53.97%Mirai
2025-04-07n/aelf 9b9aae4a28f8e28eaeeb3bc35c600d4e0066a61b3d683cfab60aca90613ac332n/aMirai
2025-04-04n/aelf 69b204e64e4930675fcf1a0eef9df4f809c129e35f718996d596558c6ab45606Virustotal results 55.56%Mirai
2025-04-01n/aelf 969a58563cd2ec14ea8d2d9ccf30b1cb02d121d2f4870cbe919ba1f95dc1a395Virustotal results 54.69%Mirai
2025-03-29n/aelf d8a59bae8ff97402f1102b7fedd1807e06d302373c6d6caf331c75a310702dfcn/aMirai