URLhaus Database

You are currently viewing the URLhaus database entry for http://130.12.182.77/main.e6500 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3898682
URL: http://130.12.182.77/main.e6500
URL Status:flame Online (spreading malware for 3 days, 11 hours, 2 minutes)
Host: 130.12.182.77
Date added:2026-08-07 21:21:16 UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-08-07 21:22:15 UTC to abuse{at}abusehandler[dot]net)
Tags:elf opendir PowerPC ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-11n/aelf af5b3a6932d54e5e97ddbc59fb132762b7127545e0e085c847e79aa31d07ebbcn/a
2026-08-10n/aelf 50ee481e238a2b5719f66d41b7ce40ec0e791e34e3e0cba3bbd97a994401435dn/a
2026-08-09n/aelf b4e0a60ab9fedee7f14a96d4656353ea5d69548419af61bb209745a208785e3dn/a
2026-08-07n/aelf 84798233fabd3ce3ad0fc51625578c42445838385078062cc5e9cfd1efc81c0cn/a