URLhaus Database

You are currently viewing the URLhaus database entry for http://5.83.134.26/arm4 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3862883
URL: http://5.83.134.26/arm4
URL Status:flame Online (spreading malware for 3 days, 1 hours, 35 minutes)
Host: 5.83.134.26
Date added:2026-06-11 05:27:07 UTC
Threat:Malware download Malware download
Reporter: meowton
Abuse complaint sent (?): Yes (2026-06-12 02:07:11 UTC to abuse{at}ghostnet[dot]de)
Tags:botnet mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-06-14n/aelf 9adca1b49be8f5ea97b4906c3302e19c147436abe1db932ee3d9fbf4a94d198bn/a
2026-06-13n/aelf 066b20f0e906e117fe8c375b9e08496409ea6d2f7e7e5a1a288cf6b97bbae031n/aMirai
2026-06-12n/aelf 6ca52ee29bbb9b4192debb2d92797b77217a7465ad09a18f0343d2c227467f8an/aMirai
2026-06-12n/aelf cbc569dc1b472d6c8c01c9a50e28a8753289c65a57ba9c79ac79f59d958c6e1bn/aMirai
2026-06-12n/aelf 4bd0fddc41f71cd2b6f6fb20006aaa94a54f0e3ab2e132807f8b6de388d263den/aMirai