URLhaus Database

You are currently viewing the URLhaus database entry for http://84.247.129.206/arm4 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3732954
URL: http://84.247.129.206/arm4
URL Status:Offline
Host: 84.247.129.206
Date added:2025-12-13 09:43:17 UTC
Last online:2025-12-15 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-12-13 09:44:14 UTC to abuse{at}contabo[dot]de)
Takedown time:1 day, 23 hours, 53 minutes Poor (down since 2025-12-15 09:37:24 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-12-15n/aelf 9d1f5585211fcaaadac45c80d471bf9f99d706d2c474c1b90c42fb9981b631f2n/aMirai
2025-12-15n/aelf 1f4e1a4e1edc8acb2309b6b06cf72228970ce6166defb2fd0bc7ea9604e1cb61n/aMirai
2025-12-14n/aelf becf79eaeab2a9a5ff9c2c3f0ba102287aecb6369a0d234b5817dd241977dd53n/aMirai
2025-12-14n/aelf d0cbff8122a88c3b1418914942130d217d75d38778bee7d6b2ad4396820e4b86n/aMirai
2025-12-13n/aelf 9a2715c54d3741d6d4dbbc1bb4455cc31fac4fb3189632ac2eddc2bef2c7e47en/aMirai