URLhaus Database

You are currently viewing the URLhaus database entry for http://31.77.227.121/bins/parm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3902565
URL: http://31.77.227.121/bins/parm
URL Status:Offline
Host: 31.77.227.121
Date added:2026-08-12 05:23:17 UTC
Last online:2026-08-19 21:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-08-12 05:24:17 UTC to abuse{at}rocket-cloud[dot]org)
Takedown time:7 days, 16 hours, 0 minutes Bad (down since 2026-08-19 21:25:12 UTC)
Tags:arm elf mirai link opendir ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-19n/aelf acc97ab9a0fe7575d22f96f894ccb01d025541e8032e38ff78c16583e5e74b8fn/aMirai
2026-08-15n/aelf 5fa395bbe688fbbd6364f3d58fb14a8c1dca63933491e475b8740f77e1401b3dn/aMirai
2026-08-14n/aelf b6302dd1ea53511e853c7f0ea55f0efa63646f4b8ea109aa1702be906e456bb0n/aMirai
2026-08-14n/aelf 2d61c03914700905c0013c7f69be7ef1fd5b59d2e5509bd574d5e851a02db9een/aMirai
2026-08-13n/aelf a4ccbcdd44c30191f58859c5603b10ed95f5d02013f631c6852c709e52fb501en/aMirai
2026-08-13n/aelf 71e4766ce75e78d7da603d17f7dbd34e2b8dbd9369ab787d00c40c7c54ed7334n/aMirai
2026-08-12n/aelf 2f21742b9d10df0f6852b39c7f869533b7e3f9ffee80c79ade7b9a15a44de0c9n/aMirai