URLhaus Database

You are currently viewing the URLhaus database entry for http://87.248.150.68:84/sparc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3608791
URL: http://87.248.150.68:84/sparc
URL Status:Offline
Host: 87.248.150.68
Date added:2025-08-22 05:47:19 UTC
Last online:2025-09-18 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2025-08-22 05:48:17 UTC to abuse-208161{at}tana[dot]ir)
Takedown time:27 days, 14 hours, 52 minutes Bad (down since 2025-09-18 20:40:50 UTC)
Tags:elf geofenced mirai link ua-wget USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-03n/aelf b8e1835879b4aeb84fcaf19d9775adb28848bc031e0634df5f092cc27136fa5en/aMirai
2025-09-02n/aelf 7ebbd28aa52b11ddfb6313bb95fec2fb4aeaaa9a8f79f4c9596ec1f9a28a55e6n/aMirai
2025-08-31n/aelf a4d338e7fd178dc94c2e9b8261681d9beddb362d4ff19ebb770d0234d2106aden/aMirai
2025-08-31n/aelf 2bab151d5714bbf7299dcc6eafbaae027e5f484aa979aad305cebfd05fdb7f2aVirustotal results 15.62%Mirai
2025-08-29n/aelf d36b9ab632c6b180939b55fe14811422b093a87f183e1af74c6af32149d96b47n/aMirai
2025-08-22n/aelf 30bc378b38a5d12bac4518351be72fa9132669852b6a2c1478c57b7f544c9611Virustotal results 17.19%Mirai