URLhaus Database

You are currently viewing the URLhaus database entry for http://160.250.134.51/arm/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3624738
URL: http://160.250.134.51/arm/
URL Status:Offline
Host: 160.250.134.51
Date added:2025-09-15 21:05:25 UTC
Last online:2025-10-04 01:XX:XX UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2025-09-15 21:06:14 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:18 days, 4 hours, 20 minutes Bad (down since 2025-10-04 01:26:23 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-21n/aelf 8a235a9336092da5a5fd75dc7c04bf109a796cab8cbe52666f972c2c5f3ff285Virustotal results 35.94%Mirai
2025-09-21n/aelf 5daf2a2054ae1885948bd4743817b13318fdb5e45b6ff3d2b8cf4555e9b4e06cVirustotal results 17.19%Mirai
2025-09-18n/aelf 44f5dc9b45f8c14261379de5105cbe76aad1c9074bb239b139b1dfeb8a8b407dVirustotal results 26.09%Mirai
2025-09-15n/aelf 81b2fd48e5f5989438174a756a4d2f62cdc85843dfa1afcc0efaf8be65a1414eVirustotal results 50.00%Mirai