🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

URLhaus Database

You are currently viewing the URLhaus database entry for http://31.77.227.121/bins/parm6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3902561
URL: http://31.77.227.121/bins/parm6
URL Status:Offline
Host: 31.77.227.121
Date added:2026-08-12 05:23:17 UTC
Last online:2026-08-19 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-08-12 05:24:17 UTC to abuse{at}rocket-cloud[dot]org)
Takedown time:7 days, 10 hours, 57 minutes Bad (down since 2026-08-19 16:21:19 UTC)
Tags:arm elf mirai link opendir ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-19n/aelf bab11bb9f36e7dd17379ab68b72d6baf0e960bac0f122ed6a6146022d4b04f3en/aMirai
2026-08-19n/aelf bbf06e686a21c016fa6976df3749befbd1cccd224b6907cf6e34f5752a3037b2n/aMirai
2026-08-14n/aelf b20f7d9fe9143a2cb2650f33f2d63f93f0d03a171da810e42d4a256de4d81bd5n/aMirai
2026-08-14n/aelf 6a4436cb422083961d7d30eaa4db60aa139e6ee0fa24a87b1cc030bc473b698fn/aMirai
2026-08-14n/aelf 21307a114b40735ca3f57e44da680f48bd2f14b827ccf746ea2c9ee891d9caa6n/aMirai
2026-08-14n/aelf cc3572431079fbb69b0e9d79771feed3524480e662777605a1033ade4c3aeb1dn/aMirai
2026-08-13n/aelf fcf4bbb0033f7e89fff66afff9750f7bdafd9eb3789ad9d5aa3862b73a26fde4n/aMirai
2026-08-13n/aelf 3fa6280b8fb6e208c0e67fae05e4c94cb3ea41c83f9a497f9b6664d00d78fdf2n/aMirai
2026-08-12n/aelf a0129b2ba0b0214e0124c7901b01a8c0b012280a63a192b6c836bde13b2eeab2n/aMirai