URLhaus Database

You are currently viewing the URLhaus database entry for http://89.116.20.194:81/armv5l which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3587311
URL: http://89.116.20.194:81/armv5l
URL Status:Offline
Host: 89.116.20.194
Date added:2025-07-21 07:19:11 UTC
Last online:2025-08-25 14:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-07-21 07:20:15 UTC to abuse{at}hostinger[dot]com)
Takedown time:1 month, 5 days, 6 hours, 53 minutes Bad (down since 2025-08-25 14:14:00 UTC)
Tags:elf gafgyt link mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-08-10n/aelf 4f586b94ffdd1276d511378c0d2806ee203190b22c39065f236df3194ef9a66dVirustotal results 33.87%Mirai
2025-08-09n/aelf 286cabdc872dda01bebbb55ef041fa75e2bd66339de286e8a133ad5852d8d3c1n/aMirai
2025-08-05n/aelf b864887bddb4cd424cbe870bcb50ba26ecd01194bcfd203de36b810a89a043f3n/aMirai
2025-08-03n/aelf 2c612a40ef588574215454f42441657cdfc37f25910464e7300b535e394f9ff0n/aGafgyt
2025-08-02n/aelf ef428421d2ef6c4ec7842555cfbd357732132ff9c2f31d22fd1ddaacbf6a3fa6Virustotal results 30.16%Gafgyt
2025-07-27n/aelf 7fa1fe8c09f717f938ffe4f48c511a1f503aa77fe4bf783fec5b4a4131079ee6n/aGafgyt
2025-07-26n/aelf b6e13045a0ac54f4ad8572aefd8898961df7c6cff0b65bc94071f82e9c877835n/aMirai
2025-07-26n/aelf 72825a4c99d510d4423d0cffb790ab17dd732ee12b14ca9da3939fb990345b1fn/aMirai
2025-07-24n/aelf 49f1f628992ffa56b38da56952fa205bfde2979da143957e260ca87c12598770n/aMirai
2025-07-23n/aelf e6fd7a675d99a6ffceada7faf590577bae9985c9cab7e8ea5423e218aa3b02a7n/aMirai
2025-07-22n/aelf b5bfc329e4886ab6c40263bf2913861e6dc4e81ba2203f0a82d3a4bd169f4dddn/aMirai
2025-07-21n/aelf bc7643b3daa1a3c77d7fe61f098d500300971fc70f99a5312144809a620f8238Virustotal results 26.56%Mirai
2025-07-21n/aelf 757deff992fdd7a5168deb8acba7a0643ff450b4bf0fbde408de40cc2dd914adVirustotal results 26.56%Gafgyt