URLhaus Database

You are currently viewing the URLhaus database entry for http://160.187.246.174/dwrioej/neon.mips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3543222
URL: http://160.187.246.174/dwrioej/neon.mips
URL Status:Offline
Host: 160.187.246.174
Date added:2025-05-14 08:31:09 UTC
Last online:2025-06-08 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-05-14 08:32:10 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:25 days, 3 hours, 46 minutes Bad (down since 2025-06-08 12:18:46 UTC)
Tags:elf gafgyt link mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-06-07neon.mipself ae4dd9e52d19fb43bd52329ed391b40f73b906dc6d454cf151f18a893cc3c4fdn/aMirai
2025-06-01neon.mipself 8f35b0a5126e26c9f88317cc2ada26bca61e7e007b2de077b9c9a1183ce4a2dan/aMirai
2025-05-22neon.mipself c0db05759af45ffc88241a189d117f12db678d5a0cb46f7e33f0f74e0ae7875dVirustotal results 35.94%Mirai
2025-05-20neon.mipself 0c98e8eb14bacff5690f62d74fcc77fa95d93f672a7bba42bd5f7c1044166896n/aMirai
2025-05-18neon.mipself d615ca2c39b63b48af8042c2d564a48c3bde2f28a44cc2c7de216e712b9985d2n/a
2025-05-17neon.mipself 6a4173af56b4b115255de9b2419792bf89a200a9c408091236c5e7dce295405cn/aMirai
2025-05-17neon.mipself 6bd8852bd265387018ca2cf832e825bc4adb56bb3f310c628c16c466da409313n/aMirai
2025-05-17neon.mipself 946c442256cf460be5041f33fac11bc8c2695f4b5a0bfe76de67efb431eab99bn/aMirai
2025-05-17neon.mipself bbf65c778530b141ba887eca219165a6f2f474fbf338cee7d6312620f7e1ef1dn/aMirai
2025-05-16neon.mipself a0bd6414792ff26846ee83a37bfcc112aee5a8bdf7b2ecf2d96e4f5c25975ae6n/aMirai
2025-05-16neon.mipself 06e2412de89317b5bd12aaced95dd3d2aea7ba508fe05fab6df372e2a76d8308Virustotal results 39.68%Mirai
2025-05-15neon.mipself 8b32b440aca9518b037d0ad8098038539dc88c203d5860d536092a23d5fb2a8dVirustotal results 40.32%Mirai
2025-05-15neon.mipself aa4293c0f9709c9c689a9ea4d1d1d9694831db8318a22e4abac8836902901f7dn/aMirai
2025-05-14neon.mipself d21072e62667cb30be2f3f272e3c2a8de6f4fff84e98737fa2a095dc1b4b1f7dVirustotal results 37.10%Mirai
2025-05-14neon.mipself 5b0f6c2c5ee7ea3d3b5e6c6f4ee217bc2736fe812f3be788acab2e98514d52f0n/aGafgyt