URLhaus Database

You are currently viewing the URLhaus database entry for http://130.12.180.64/po which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3740314
URL: http://130.12.180.64/po
URL Status:Offline
Host: 130.12.180.64
Date added:2025-12-22 16:36:10 UTC
Last online:2026-01-15 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2026-01-01 01:41:10 UTC to abuse{at}virtualine[dot]org)
Takedown time:14 days, 19 hours, 1 minutes Bad (down since 2026-01-15 20:42:49 UTC)
Tags:mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-01-01posh a8d35c9ad788b7ce2a5327d4e0716c956bd7310407313c96e378d6549df18acbn/aMirai
2026-01-01posh 72f78ab333e0ee1a87754dfb1660a68153141c9af3fc9bb610350304819494c0n/aMirai