URLhaus Database

You are currently viewing the URLhaus database entry for http://163.61.39.201/arm5 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3609492
URL: http://163.61.39.201/arm5
URL Status:Offline
Host: 163.61.39.201
Date added:2025-08-23 00:54:10 UTC
Last online:2025-09-04 08:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2025-08-23 00:55:13 UTC to abuse{at}rapidfibernet[dot]in)
Takedown time:12 days, 7 hours, 38 minutes Bad (down since 2025-09-04 08:33:33 UTC)
Tags:arm elf geofenced mirai link ua-wget USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-02n/aelf ff2d4387cb624cfb0eb01dfe59d09c8acc09eec41873016cc1590b6cffdd10c7n/aMirai
2025-09-02n/aelf 19132671ed27e9c358b764349cba5c43bee9fcf9b6ab044aa60a4227dfe42d72n/aMirai
2025-09-02n/aelf 1f0794050edc65ec0943e6193d44b3ddcdc4e1eb5d49001f12cb6db757b9fec5n/aMirai
2025-08-31n/aelf 107023ace930aa4fbb713099aa8c75b9cdbabe67c3e09ea43e5e32d015bd9f4bn/aMirai
2025-08-31n/aelf c0e2cc713dcb80a66dc7a8e800ec712372ad9db1eba4572f6d82988d6421a547n/aMirai
2025-08-28n/aelf a8510ab75d914864e847e31e09a6cb61a271d5220a3af33246dfd6cdbde0ae43n/aMirai
2025-08-27n/aelf ad8099e6870345a9c0f4db9b1900e685fc4b9de4511c396d741cc30b4a4c8ff9n/aMirai
2025-08-26n/aelf 2ed4d00f52c2cfa75ddfd02e3bb442fae9d970ed9357e726c75fc2a333155235n/aMirai
2025-08-25n/aelf 708e6da032f974dab041382bc9c4082e42501bb4c5441380f1bd2adf24d32a2en/aMirai
2025-08-24n/aelf 03eaf8733eaea56e9372fcc4d0a76cab97cb81b598b984b100ad516920e1e6ddn/aMirai
2025-08-23n/aelf 344e9676296e60157be36ed6463dcc724d948b664de96871bb33a92c910d743dVirustotal results 23.44%Mirai
2025-08-23n/aelf 5e76f12bdb38d4fe58733949348481103e0d38f32f79c8fa60a444803fcdaf7fn/aMirai