URLhaus Database

You are currently viewing the URLhaus database entry for http://130.12.180.69/x86_64 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3775373
URL: http://130.12.180.69/x86_64
URL Status:Offline
Host: 130.12.180.69
Date added:2026-02-10 07:59:22 UTC
Last online:2026-02-27 02:XX:XX UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2026-02-10 08:00:18 UTC to abuse{at}virtualine[dot]org)
Takedown time:16 days, 18 hours, 10 minutes Bad (down since 2026-02-27 02:10:52 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-02-25n/aelf 7f261643ff3f873f0a4e59ef047e351ab9d854abd11c567a99ad14d999d73afan/aMirai
2026-02-20n/aelf 23898e7a76c1debd123f0ce425a279260dee181a7c66e0f5abbd9c8e66a510cfn/aMirai
2026-02-19n/aelf 9393ddf5ecb9939dd3ce2ce99372f374fd65b7a6ed4bd4d844e922a507b2866en/aMirai
2026-02-17n/aelf edef7d69487c4dbf42ad5cc162b734d9e00a0579e5a2966ea0129557cbdaee4cn/aMirai
2026-02-10n/aelf 8b8f4ab153e1ad148a17077606bc108a4c8cf3122125f5cc61a733c5c68f34ecn/aMirai