URLhaus Database

You are currently viewing the URLhaus database entry for http://154.205.128.91/arm6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3469830
URL: http://154.205.128.91/arm6
URL Status:Offline
Host: 154.205.128.91
Date added:2025-03-06 21:09:05 UTC
Last online:2025-04-16 14:XX:XX UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2025-03-06 21:10:07 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:1 month, 10 days, 17 hours, 48 minutes Bad (down since 2025-04-16 14:58:31 UTC)
Tags:elf gafgyt link mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-04-14n/aelf 198783c5a2a79fa601aeab32c54580f9c94b661c2fd6045671307891b00ea165n/aMirai
2025-04-14n/aelf 5f42803eab74d911c451ba243f92fa339781b0abb7c2cd77fe7840d087ce84f2n/aGafgyt
2025-04-13n/aelf 9da3c630ce22353b536d88f1ef41fbc73541330b76574400265510ed180a6eddn/aGafgyt
2025-04-12n/aelf 4fb7290fb970bb17e593349dee682b90e519ad7a8339dfbee30dafcf39022d29n/aGafgyt
2025-04-10n/aelf 75bcbdf36f7846d3d02c370cb9e4b12f7d804e7db8932c8c26a15b046089b1f6n/aMirai
2025-04-06n/aelf 0863ccfab8853a558ca1953362c94c8e47d18d52f15832935a6cc1ae185d4e5en/aGafgyt
2025-04-02n/aelf 3e858e55adcfa66c0c46eade15e62cd53010bd8790de2cd88cdf2367598737c2n/aGafgyt
2025-04-02n/aelf 260f2b3a065c109d606f751b30be701413826d929f71176b39d603ffb37dbed4n/aGafgyt
2025-03-29n/aelf a260fb0c25a3b030907177f21a85c29b4f0b7bb4aa5ff20280daaa9455f8fae0Virustotal results 23.44%
2025-03-11n/aelf c99284b189ad50ea184e8080f9d1e2a6e2865398eeaae7e3efb5c9afcf9fcfa2Virustotal results 21.88%Mirai
2025-03-09n/aelf bba1677aec264e520eb580b5b8a435d9834cad10efe221298bc850f445f69252n/aMirai
2025-03-08n/aelf 2e6eea5d1ec9a8162d4610b4a6bd6203144243bfea3ae21f50fdb8f62977bfefn/aMirai
2025-03-06n/aelf 0b8e54513c28978b5ac7fdec845b691357a249fe6fd74284d4f3432a3c0d6689n/aMirai