URLhaus Database

You are currently viewing the URLhaus database entry for http://196.251.66.32/HBTs/top1miku.arm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3581121
URL: http://196.251.66.32/HBTs/top1miku.arm
URL Status:Offline
Host: 196.251.66.32
Date added:2025-07-11 06:51:16 UTC
Last online:2025-07-17 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-07-11 06:52:13 UTC to abuse{at}nybula[dot]com)
Takedown time:6 days, 10 hours, 45 minutes Bad (down since 2025-07-17 17:37:49 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-07-15top1miku.armelf 92117e88e20232d0fe9f1fd7fb7d12ea5adecf19b18e227ce6ce83d9f4376a99Virustotal results 26.56%Mirai
2025-07-15top1miku.armelf 45496e3b4eb7086a58792e4fc434c686bee43b8f465e5c4568260360bf4f81f8n/aMirai
2025-07-14top1miku.armelf 8c85e573042e68f3ab3388228d7e24b85ba605781fc5def7c296a99b2318ee8en/aMirai
2025-07-14top1miku.armelf acab764c4921e0662fc5222f302c033d3a238c76a4f15b4a7e47a1bc08063b32n/aMirai
2025-07-13top1miku.armelf f1d2df92e44fe9a68a17f0e2e0cc471d9618b327434515603f42007c6b396973Virustotal results 25.00%Mirai
2025-07-13top1miku.armelf 8f992cb28bed2ddcb00f84a8b84ab0476e2930f3fe2ddcb900f185b7f2158767n/aMirai
2025-07-13top1miku.armelf 8b104a3beb80fdca00d22daca0ee8425fc8aac87e5773ec0ae132611d5c1048dn/aMirai
2025-07-12top1miku.armelf 46034abe90dd93def5ea3757b1dcae0c24dba7927ed0b1f8dc8bedf3b9eee764Virustotal results 58.73%Mirai
2025-07-11top1miku.armelf 6b552a26f755c2a59374ad00883534a2687def709af56045502f81d42a2a640dn/aMirai