🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

URLhaus Database

You are currently viewing the URLhaus database entry for http://176.65.139.234/main_arm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3916566
URL: http://176.65.139.234/main_arm
URL Status:flame Online (spreading malware for 6 days, 16 hours, 1 minutes)
Host: 176.65.139.234
Date added:2026-09-15 00:03:13 UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2026-09-16 21:54:12 UTC to abuse{at}stormindustries[dot]llc)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-09-19n/aelf 77499c3d1ef497cb165678b2f822aab7538027ec530d3f0de08eb58cfd5f70e6n/aMirai
2026-09-19n/aelf 4d3e723dd205de57bbe5f488f97e48ec82d83114c958078f310838f3aa365e2fn/aMirai
2026-09-18n/aelf 928a12d27645e92b92bed11c845834ad6720b3d729c310d12dee6e1fea2b5bc8n/aMirai
2026-09-18n/aelf 5cc05926ae91ee8461bf97382f098684bbf44888ed9e5a85efce71c639d494fbn/aMirai
2026-09-17n/aelf 34431659c7b37339b7d9774204d55b4fc68d3e970eaa76056e8be11d6eec7780n/aMirai
2026-09-16n/aelf b8db8261f4a8eb1b844ee0a72f599ed50be16647b86fb85b987ee65858871c79n/aMirai