URLhaus Database

You are currently viewing the URLhaus database entry for http://83.222.191.146/arm4 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3379343
URL: http://83.222.191.146/arm4
URL Status:Offline
Host: 83.222.191.146
Date added:2024-12-28 10:03:05 UTC
Last online:2024-12-31 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2024-12-28 10:04:11 UTC to abuse{at}4media[dot]bg)
Takedown time:3 days, 2 hours, 26 minutes Bad (down since 2024-12-31 12:31:07 UTC)
Tags:elf gafgyt link mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-12-28n/aelf 1a742066ad19b17d888000e4afc3ae71232c46846604f2ef9385d92a45c7908en/aMirai
2024-12-28n/aelf d48b53691ba5b09d6e7f94fb628e6490dce9a83dea2de9acbedc04c18216cddbn/aMirai
2024-12-28n/aelf cf7c0fd271cb9de74b44dfc63cbb5a770340dc19552afdaa1dd17379161ec781n/aMirai
2024-12-28n/aelf 34e15dfdfd1d07b0245df506c1a308bdad77ca669c4a82eb4589fe80d92df9d7n/aGafgyt
2024-12-28n/aelf 272c4729feb2bfcd1c15935560706da5e857d6d151b8fedc804e3b6f16bef9efn/aGafgyt