URLhaus Database

You are currently viewing the URLhaus database entry for http://217.60.245.90/bins/micro.arm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3842293
URL: http://217.60.245.90/bins/micro.arm
URL Status:Offline
Host: 217.60.245.90
Date added:2026-05-08 18:29:15 UTC
Last online:2026-05-22 18:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2026-05-08 18:30:19 UTC to abuse{at}awas[dot]ovh)
Takedown time:14 days, 0 hours, 16 minutes Bad (down since 2026-05-22 18:47:04 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-05-21micro.armelf 4edeaabbecb0eac98ab1f84594f8f353e2bbb7f93dfeef95a5f8ed1778d56ad3n/aMirai
2026-05-21micro.armelf 4f67bde280eaf7776ae64b6d5c176bde8d25dc563265749b7acacb980e32667dn/aMirai
2026-05-20micro.armelf d7d6972f2bb6cda73d75badb922035b6725914613a375773fc1d246da9d2368fn/aMirai
2026-05-19micro.armelf 1fbe4f8ac21737ccd26f5533896233c27e4cfb3003f3390427df6413a96c3834n/aMirai
2026-05-18micro.armelf e7adccb11b312f5725800543326f21aa3205998d6634d2e9344e3ff2efed5a42n/aMirai
2026-05-15micro.armelf ecf703a9629655bf495fc6e716754212408945b138765006f1427e885f94bbf0n/aMirai
2026-05-11micro.armelf e0832a17872866098d8e69c016590282286c91220ffe970e0d94708972fd93e6n/aMirai
2026-05-09micro.armelf 12064052c5a9df7368d51c7d328546d2445617e06cdf0b1a95d62909dd0ef06cn/aMirai
2026-05-08micro.armelf b93f3b9e7d11a6b71120eee31b2142514fd79e012b739adb1aba46056f9d1b6dn/aMirai