URLhaus Database

You are currently viewing the URLhaus database entry for http://91.92.243.93/arm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3713272
URL: http://91.92.243.93/arm
URL Status:flame Online (spreading malware for 1 day, 18 hours, 7 minutes)
Host: 91.92.243.93
Date added:2025-11-21 05:39:12 UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2025-11-21 05:40:16 UTC to abuse{at}lanedo[dot]net)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-11-22n/aelf eab70fccd41a736af2bc864620851e5e025edc7e26253531d60909feb9ba6d45n/aMirai
2025-11-22n/aelf f19ff893e286a24d995a9225b03b28703247798a204d7846cc59e99b7db2b21an/aMirai
2025-11-21n/aelf 5230d1a78cec93cf3ba8fdb6d99c35570d8a238e5e5645565378797177c9912cVirustotal results 8.06%Mirai
2025-11-21n/aelf c9e46cbc51056a78044f4dd808e7c7d47fd176897f2ca82d6cb04b80c35fed43n/aMirai