URLhaus Database

You are currently viewing the URLhaus database entry for http://196.251.107.133/bins/parm6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3791145
URL: http://196.251.107.133/bins/parm6
URL Status:Offline
Host: 196.251.107.133
Date added:2026-03-07 00:02:22 UTC
Last online:2026-05-06 00:XX:XX UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2026-03-07 00:03:15 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:2 months, 0 days, 0 hours, 12 minutes Bad (down since 2026-05-06 00:15:48 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-04-18n/aelf bc0cb910005577e7c03e54c3330eb941224c795b4cbd9b1ae7efa9fc1c721893n/aMirai
2026-04-17n/aelf ceb108d4d8497ed2f0c8b1a2a65d746aa4a4ac6525ae32997d99ff195f6149bdn/aMirai
2026-04-17n/aelf 4edeae03f3af043be3114545846c2731a2b1e5e71f7780ad8046ca6877647727n/aMirai
2026-04-15n/aelf c44a67d273a2469dd4a2e3bd425fd6fb96182d16f9fca3c429c6407293d48db9n/aMirai
2026-04-14n/aelf 5598c38cb4f620c43bd4921b590346b91f61c7c6e131aa4da25c89e6de887b17n/aMirai
2026-03-07n/aelf a440e99058ffc70197aa54fa7210b2be4fcb5d5362d93337c03a207ee74bb37bn/aMirai