URLhaus Database

You are currently viewing the URLhaus database entry for http://160.250.134.51/arm4 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3622518
URL: http://160.250.134.51/arm4
URL Status:Offline
Host: 160.250.134.51
Date added:2025-09-12 10:13:27 UTC
Last online:2025-10-04 02:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-09-12 10:14:11 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:21 days, 16 hours, 32 minutes Bad (down since 2025-10-04 02:46:44 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-21n/aelf 8a235a9336092da5a5fd75dc7c04bf109a796cab8cbe52666f972c2c5f3ff285Virustotal results 35.94%Mirai
2025-09-21n/aelf 5daf2a2054ae1885948bd4743817b13318fdb5e45b6ff3d2b8cf4555e9b4e06cn/aMirai
2025-09-18n/aelf 44f5dc9b45f8c14261379de5105cbe76aad1c9074bb239b139b1dfeb8a8b407dVirustotal results 26.09%Mirai
2025-09-14n/aelf 81b2fd48e5f5989438174a756a4d2f62cdc85843dfa1afcc0efaf8be65a1414eVirustotal results 17.19%Mirai
2025-09-12n/aelf d569e9b685ea3cd1c81daad967f6b9e127e4fb31febe17c2eebf90a40482954aVirustotal results 37.50%Mirai