URLhaus Database

You are currently viewing the URLhaus database entry for http://91.92.240.38/armv6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3748912
URL: http://91.92.240.38/armv6
URL Status:flame Online (spreading malware for 1 month, 4 days, 4 hours, 34 minutes)
Host: 91.92.240.38
Date added:2026-01-02 07:09:08 UTC
Threat:Malware download Malware download
Reporter: s1dhy
Abuse complaint sent (?): Yes (2026-01-02 07:10:14 UTC to abuse{at}lanedo[dot]net)
Tags:mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-02-05n/aelf 88615f7d7e2b67a28e5ec2a1ba6dfd302bec926f093b9efae9b341b452b63167n/aMirai
2026-01-26n/aelf 8127e35aed6dca734cb85e5c62a7d9bd05963a605bafc853004b0feaf9deb441n/aMirai
2026-01-26n/aelf d040dff0efe994688e9cd49bc066f1354e3eaba3103b407d1a97da0e03d87d4an/aMirai
2026-01-23n/aelf a5313fd8042da2e3e9a9c63a3bfeca153116d9e4ceff2e055beeb7f931a36644n/aMirai
2026-01-19n/aelf b5c8616e43730bd42313c078f4e07d5ba01e01de9d944e8dbec8c0550e9ca0e7n/aMirai
2026-01-16n/aelf adbbddbdffa918ae5305bba4dec49616200b418d86394afe45dcc979b439d5c5n/aMirai
2026-01-12n/aelf 7d4d02fd723ea1d015597d81b9ccf134916125ffc0af929174d7dc7fcc27b3ban/aMirai
2026-01-12n/aelf aec6c005b2976017c0b8655aa3ff28dffb4d616c2dd9c132186f7b3e5bd51598n/aMirai
2026-01-05n/aelf 28296a84e8af74b68c4f324b1880f740db296216aa20a5f0adc255a1851908d4n/aMirai
2026-01-04n/aelf 49a9fe989569e30072b57e5ba13045380c80d79dd5c4f9e927d4bd287d545146n/aMirai
2026-01-02n/aelf 7461133dfdc6a0b85a291f6bf3a7766489f8cd886acfa99614eea1f089b2b504n/aMirai