URLhaus Database

You are currently viewing the URLhaus database entry for http://103.188.82.240/lol.arm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3531641
URL: http://103.188.82.240/lol.arm
URL Status:Offline
Host: 103.188.82.240
Date added:2025-05-01 06:59:12 UTC
Last online:2025-05-17 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-05-01 07:00:09 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:16 days, 9 hours, 17 minutes Bad (down since 2025-05-17 16:17:43 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-05-17lol.armelf a5f373d08117f2649b6e5eb1cdd2594fdddc2a2000c19a98718de3b924f0fce1Virustotal results 11.11%Mirai
2025-05-06lol.armelf a7b9e084a84254b429cebc597e724bf3823aa2859a485ef46a5b4e52c6c0ba17Virustotal results 7.94%Mirai
2025-05-02lol.armelf e895bb5c94060cde6bcc1cd34d814210992ae64e8181f0135a1570ace9efac54n/aMirai
2025-05-01lol.armelf 10f742833a10ae0b0b1f54181757333b5ff7383cad0831575f03c4b9a1aa331bn/aMirai