URLhaus Database

You are currently viewing the URLhaus database entry for http://91.199.133.133:8080/real_arm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3892834
URL: http://91.199.133.133:8080/real_arm
URL Status:Offline
Host: 91.199.133.133
Date added:2026-07-28 03:55:19 UTC
Last online:2026-07-31 08:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-07-28 03:56:21 UTC to abuse{at}alexhost[dot]com)
Takedown time:3 days, 4 hours, 10 minutes Bad (down since 2026-07-31 08:06:48 UTC)
Tags:arm elf mirai link opendir ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-07-30n/aelf afae69b53881fed76460f309197b222e6766562c01089e5007b5aece9dc8a4ean/aMirai
2026-07-29n/aelf 8f51da6e72b00cb4c261c86ed00fd384c59cb6bce92f3f2ab9afa8a6902f9c78n/aMirai
2026-07-29n/aelf 933f5b863d31390bd0ece05b5161a9e4c7dd440f2bc5c519f3ccb3f59a9f2437n/aMirai
2026-07-28n/aelf 614d5f1badd839cd7f699a7ea337b348be57d01d7d454e8e60c062d3934377e7n/aMirai
2026-07-28n/aelf fc19c4f3bb420fbc3d14f64e45648bf0515ac81cc1b780fca424a1c835cba069n/aMirai