URLhaus Database

You are currently viewing the URLhaus database entry for http://160.30.44.120/neon.mips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3560375
URL: http://160.30.44.120/neon.mips
URL Status:Offline
Host: 160.30.44.120
Date added:2025-06-10 15:54:05 UTC
Last online:2025-07-09 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-06-10 15:55:10 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:28 days, 19 hours, 24 minutes Bad (down since 2025-07-09 11:19:35 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-06-30neon.mipself f77e4acbd6326bd6ebfed249313eb3f99069751a025f978e7e1a88e9c711a1f6Virustotal results 33.33%Mirai
2025-06-20neon.mipself 3450382e4b73b700b8ba4006e11ea7064b83a97f7e2a61a7242dd79eafe89d50n/aMirai
2025-06-20neon.mipself a407e83e6f6f637994efd808f7113a3c8e9393b73c50602d3757e0d8e72059f1n/aMirai
2025-06-20neon.mipself 58d9b96eee45fe2fabdca5f5cab587ba9580317237fd9cc52d6c1f6f5cfb40cfVirustotal results 50.00%Mirai
2025-06-19neon.mipself c70a242568c3a62e49621875da5ac930ed0c3b16dee9c5ecc866b49c278c03f3Virustotal results 50.00%Mirai
2025-06-15neon.mipself 9fa12363094ef8f7be3f812ece0881c67c0e7e83fe6d7496c531ffdb88c623a8Virustotal results 54.69%Mirai
2025-06-15neon.mipself 08e050f7e85e3dc24bc0ac62e5b62adc1072b385d360fd759f53ed87a3d41b2en/aMirai
2025-06-14neon.mipself ecd04bc612b59e0e0e245fa516aec0e49ab54bc3075e143cf25833c338c4c121Virustotal results 35.94%Mirai
2025-06-13neon.mipself fb1655632627f08abb6ec9f3c8ef466f7cd889fd47f7ee9f458190b35be842ebn/a 
2025-06-10neon.mipself 53080977da520701cf97dfc3af17c9cfb4a54e0f0f19a22a2ef19c4dc3c5aa6cVirustotal results 34.92%Mirai