URLhaus Database

You are currently viewing the URLhaus database entry for http://163.61.39.201/x86_64 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3609494
URL: http://163.61.39.201/x86_64
URL Status:Offline
Host: 163.61.39.201
Date added:2025-08-23 00:54:10 UTC
Last online:2025-09-06 21:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2025-08-23 00:55:13 UTC to abuse{at}rapidfibernet[dot]in)
Takedown time:14 days, 20 hours, 7 minutes Bad (down since 2025-09-06 21:02:23 UTC)
Tags:elf geofenced mirai link ua-wget USA x86

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-02n/aelf c39196e5ab865850c997492cc40ea9e9533ce1bcf915b255647f4ad82418be25Virustotal results 29.23%Mirai
2025-08-31n/aelf 14fcc4a7bb14ec2d99b42c05249f27e8abd7b71ecba7a4c95f541891ba0ec0d8Virustotal results 29.23%Mirai
2025-08-31n/aelf b42296aa49398cd15e299a69a5c148f1ee6a067a32291e87961f1921b487749dVirustotal results 23.08%Mirai
2025-08-28n/aelf ab7fd9b59fda874718d1bf12a34750a754e58212bd37cc2ae0becbe939fda808n/aMirai
2025-08-27n/aelf fe47bc1c98fa84078cdf441066eb902777dcc6a2b3d3e60b84c9126fa5bfbc3cVirustotal results 25.81%Mirai
2025-08-26n/aelf bebe60a59467902919f2c799e78c37af3370753e7cd16abac733a88ef1cbc574Virustotal results 29.23%Mirai
2025-08-24n/aelf 299688062622654720813a8a159a307f9deb4f0aa4ffe74a1ef1545871fd6c51n/aMirai
2025-08-24n/aelf 9c6498d1d2c195caaa305b69a1505e01ebd5ce914ca9006265c72ba254550474n/aMirai
2025-08-23n/aelf ec584662b57765804c48e3f19f66ff46d1f0e7095437556370bcb0e5d3463965Virustotal results 21.54%Mirai
2025-08-23n/aelf f8272968f43c464323883ad39abbddcf21b94ec8f286556c02c964c707ffdcb3n/aMirai