🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

URLhaus Database

You are currently viewing the URLhaus database entry for http://160.119.71.134/n2/armv4l which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3903309
URL: http://160.119.71.134/n2/armv4l
URL Status:flame Online (spreading malware for 25 days, 21 hours, 58 minutes)
Host: 160.119.71.134
Date added:2026-08-13 19:40:30 UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-08-13 19:41:15 UTC to abusepoc{at}afrinic[dot]net)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-09-08n/aelf ce117467c9cf24287a7c87c780c1527118748299f32c8a69bf535d5ee4dba2a3n/a
2026-09-07n/aelf 44d4e73e3ec5d260f2e943fd53dbd373dee12451a784b782001a5050aadc5739n/a
2026-09-05n/aelf 4f499bf2819c03bfe63916f411a0a6dbb17d8bdf0ac085ecd875661d3b3cb86dn/aMirai
2026-09-02n/aelf 84086fcf6f9dd77c34bcfc2c7f4077336a29fdf6c6ad7200025f24f24362faffn/a
2026-08-13n/aelf 98c3a5f5142672e5206dbe7c7858541f215686cf836a11ce729763de21db96f2n/aMirai