URLhaus Database

You are currently viewing the URLhaus database entry for http://176.65.139.11/bot.aarch64 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3828983
URL: http://176.65.139.11/bot.aarch64
URL Status:Offline
Host: 176.65.139.11
Date added:2026-04-22 18:32:20 UTC
Last online:2026-04-25 23:XX:XX UTC
Threat:Malware download Malware download
Reporter: tolisec
Abuse complaint sent (?): Yes (2026-04-22 18:33:15 UTC to abuse{at}stormindustries[dot]llc)
Takedown time:3 days, 4 hours, 47 minutes Bad (down since 2026-04-25 23:20:26 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-04-25n/aelf 83d48118c00aad4d9115e5db627cfae457a622a40dcafa4e923dd61fef88d04fn/aMirai
2026-04-24n/aelf f33f514789690e94270aa5fd512983c31512f6ba6d22ad026a24a34c4f21a0fcn/aMirai
2026-04-22n/aelf 0383995467c4dabd74033b3d1850ed4dc1f34034c0117d8ab84a9bcd31c87e45n/aMirai