URLhaus Database

You are currently viewing the URLhaus database entry for http://130.12.180.151/file/data.aarch64 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3777990
URL: http://130.12.180.151/file/data.aarch64
URL Status:flame Online (spreading malware for 2 days, 6 hours, 18 minutes)
Host: 130.12.180.151
Date added:2026-02-14 21:36:13 UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-02-14 21:37:10 UTC to abuse{at}virtualine[dot]org)
Tags:arm elf geofenced mirai link ua-wget USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-02-17n/aelf 8ac4ee7362fa7a9f3104986d568842e795b2a5bbbc9707e43da0a0b01a0eac84n/aMirai
2026-02-17n/aelf 673de3bb81e79fba3aface878f02c458611e4e2a2379b04767460905140c676en/aMirai
2026-02-15n/aelf 68ecdd1eb9ab0caff1227717b21508d64db456aeebd7552f6efc515ead7876c7n/a
2026-02-14n/aelf a8c7a7ba537b7c2cb95fe6e8066e67fb258e11ca0a75686e3026aef0d219a949n/aMirai