URLhaus Database

You are currently viewing the URLhaus database entry for http://130.12.182.77/main.x86-i686 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3898668
URL: http://130.12.182.77/main.x86-i686
URL Status:flame Online (spreading malware for 3 days, 5 hours, 29 minutes)
Host: 130.12.182.77
Date added:2026-08-07 21:21:16 UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-08-07 21:22:14 UTC to abuse{at}abusehandler[dot]net)
Tags:elf opendir ua-wget x86

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-11n/aelf bf856f82da6d59b49cf76df8be0ce10fd3abda52dda587b5108b68133cea9486n/a
2026-08-10n/aelf 39124e4f7013e8ba5c158b4afdb9a73c1df451367cf8b724cc2fea49eaf809can/a
2026-08-10n/aelf 740aeea5b11d71914ecabc889848ac1feeaeab299dc22a9fcaa222fe09947150n/a
2026-08-09n/aelf e701670353f9ef639667fa195194cc92bf4a42477baa87870bdd1057041fdb0en/a
2026-08-07n/aelf 84ebfb4b1c8c375ed9feb70c75651a4fc49feaa8c4acabd0a39048a0b2f0b4abn/a