URLhaus Database

You are currently viewing the URLhaus database entry for http://93.123.109.218/test/armv4l which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3581095
URL: http://93.123.109.218/test/armv4l
URL Status:Offline
Host: 93.123.109.218
Date added:2025-07-11 06:36:26 UTC
Last online:2025-07-19 00:XX:XX UTC
Threat:Malware download Malware download
Reporter: xqtsmvjnxuurv
Abuse complaint sent (?): Yes (2025-07-11 06:37:12 UTC to dmzhostabuse{at}gmail[dot]com)
Takedown time:7 days, 18 hours, 4 minutes Bad (down since 2025-07-19 00:42:08 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-07-13n/aelf db751fd8db933b446652fa0b5f116c18c5790add5140e9302bb3a36bfd785e1cn/aMirai
2025-07-12n/aelf 1c244f63f1e4f1f446d7a8f90abe57e964dcf82f1d039917aadeb91c967a021cVirustotal results 30.16%Mirai
2025-07-11n/aelf cdbc51fe148f6049365cfcb0be0a23b3f20fa2cf4afc5011bb29c0856f9f8653n/aMirai
2025-07-11n/aelf 2fcd3e7b40f0383847165c280658305d03f7c8b754f04299a313cb8d693534c9Virustotal results 53.12%Mirai