URLhaus Database

You are currently viewing the URLhaus database entry for http://86.54.42.154/bins/mirai.arm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3735507
URL: http://86.54.42.154/bins/mirai.arm
URL Status:flame Online (spreading malware for 6 days, 22 hours, 11 minutes)
Host: 86.54.42.154
Date added:2025-12-17 17:52:17 UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-12-17 17:53:16 UTC to abuse{at}globaldata-cloud[dot]com)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-12-24mirai.armelf 66a7246aa03a4a1712f3b7b72db23d3bf89c062179c623e7751324efcf732bb6n/aMirai
2025-12-24mirai.armelf d09137901a7084c429b955987f4de62b59c19032bb8635c8ced2f493eab2ca50n/aMirai
2025-12-24mirai.armelf c2194e29e2e4ee5869ec2b95332ee8cd2b7e48f4a12f7974d8f045fbbb59456dn/aMirai
2025-12-24mirai.armelf 6cd5a535225676f63ee43ebb113e6d88fdad35e5c25967eb8bc14915b7e54eadn/aMirai
2025-12-17mirai.armelf bf60add9a14dc076f37c41b15843fc37927f03c2a360e1b434f11a89707a62c4n/aMirai