URLhaus Database

You are currently viewing the URLhaus database entry for http://130.12.180.85/file/data.x86 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3746581
URL: http://130.12.180.85/file/data.x86
URL Status:Offline
Host: 130.12.180.85
Date added:2025-12-30 18:53:08 UTC
Last online:2026-01-15 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2025-12-30 18:54:11 UTC to abuse{at}virtualine[dot]org)
Takedown time:16 days, 1 hours, 40 minutes Bad (down since 2026-01-15 20:34:40 UTC)
Tags:elf geofenced mirai link ua-wget USA x86

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-01-14data.x86elf 64f5f2374b543302a981c2618ef3768458272ad1a347e56f3b3b11a2c29e3052n/aMirai
2026-01-12data.x86elf ac4cfd34e2876ab19b329c93ec3f1e0601bc5e4c2c8ee03528c42ba46782fa2en/aMirai
2026-01-11n/aelf c687e8c860278aabdb8d23c98cdd524680f8e21eff397f0c43ca9bbdd9983085n/aMirai
2026-01-10n/aelf 825d6242750ed1f0d422c2d304ee7090141ffb9cb10e59cd411a77d0ad5cdd09n/aMirai
2026-01-08n/aelf 52319c56605e1f12526fa13556a9ae6fd900ffa18de7234b7c649eee0258a07dn/aMirai
2026-01-08n/aelf a35731cd48227aebbc82e9a9d760fb57525ca3497d15251bfdf0f63b47ab8f67n/aMirai
2026-01-06n/aelf e579a5bad3e5df52d049382839b3ab438f3cc84cf74c68067a0aaef00ebd2ee9n/aMirai
2026-01-06n/aelf e0a56b0fce8db473777e0f734b65bdd0d186c14587ea2de9976b9ecb0c263c79n/aMirai
2026-01-05n/aelf 834902545a07526370e08a65cc73e97223554da3d3d60cd7ac35ef248eec00f9n/a
2026-01-05n/aelf 4828cdeeb726ac3ac178441bce69ef804373522045bce9f917fee59269535b6bn/aMirai
2026-01-04n/aelf fb6455974b9301657f973358fc3408a1e8b913c1eddee8177cdeb85032515c7dn/aMirai
2026-01-03n/aelf f60d835a43bafa4fdfc48e2dcb94b4bc9938d1f7b3b5266e5630b85c6de783bcn/a
2026-01-01n/aelf df6368c3e38fd3027439ce6033ca0d0d86cd04b02c4fac6ef89caafa620b5720n/a
2026-01-01n/aelf a1c7498d684376625623202a620c3e2b50a9222d8aeb1aa48ec1c7ddd9b526efn/a
2025-12-30n/aelf bae9c4c7bb707d8a62694eb5f5188c280885219da1d773fbfa0af48e041034e0n/a