URLhaus Database

You are currently viewing the URLhaus database entry for http://42.112.26.45/a/aarch64 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3692808
URL: http://42.112.26.45/a/aarch64
URL Status:Offline
Host: 42.112.26.45
Date added:2025-11-01 08:40:14 UTC
Last online:2025-11-07 08:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-11-01 08:41:14 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:5 days, 23 hours, 45 minutes Bad (down since 2025-11-07 08:26:37 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-11-04n/aelf 2b9cecae7515cba206f1de033cccecd36ab9017b3116409abc9364aca4a3c522Virustotal results 23.44%Mirai
2025-11-03n/aelf 4f693dfe3fe989c54dae6f3c286ef8d67b25b9827342873e1fd6a467f8184970Virustotal results 23.44%Mirai
2025-11-03n/aelf 71399f4b9f556c0ffe2b375b1de04baeef886dbd5c1275622bb65477ea26dfccVirustotal results 21.31%Mirai
2025-11-03n/aelf 9ff218d40f0810b1f8dfaa9f667432fb278fb8d53cc33e89bd20eca0406691b6Virustotal results 23.44%Mirai
2025-11-02n/aelf 08c86b2501593c81c46e902381a5760d28dd5fc2ad89a986001395bb61e0dc6eVirustotal results 22.22%Mirai
2025-11-01n/aelf 76c35e732c6e4c71a1a40e8ab1cf079d69e6f0b564324fd65d66efc27ecee62an/aMirai