URLhaus Database

You are currently viewing the URLhaus database entry for http://213.232.114.169/armv6l which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3579959
URL: http://213.232.114.169/armv6l
URL Status:Offline
Host: 213.232.114.169
Date added:2025-07-10 00:33:13 UTC
Last online:2025-08-08 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2025-07-10 00:34:13 UTC to report-abuse+xtom{at}virmach[dot]com)
Takedown time:29 days, 17 hours, 24 minutes Bad (down since 2025-08-08 17:58:35 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-07-14n/aelf 062f4c8cd05261b1e10a9b79c5a70eee7c5cde71f99ee9760a8490f7f347fc6dn/aMirai
2025-07-13n/aelf a489ae5e07be27126e97362599acececd83375bd050a09fe13812d1cc83edabdn/aMirai
2025-07-11n/aelf 6bd4e70006598f0c1ed9e08bf7dadc6318e57774b54dbca58ea5b2aee5943c5an/aMirai
2025-07-10n/aelf 591517e2823ea4eefa6243bd6c8212fa9348d84a8a009f7a3878d5fa6ce41a64n/aMirai