URLhaus Database

You are currently viewing the URLhaus database entry for http://94.154.35.154/mipsel.urbotnetisass which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3618252
URL: http://94.154.35.154/mipsel.urbotnetisass
URL Status:Offline
Host: 94.154.35.154
Date added:2025-09-06 06:05:14 UTC
Last online:2025-11-22 08:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2025-09-06 06:06:21 UTC to abuse{at}pitline[dot]net,abusep{at}kharkiv[dot]com)
Takedown time:2 months, 17 days, 2 hours, 22 minutes Bad (down since 2025-11-22 08:28:54 UTC)
Tags:elf geofenced mirai link ua-wget USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-10-12n/aelf 9b01970e468137eceb8f401e6f20a643826cb19b724a73de07c5d4abee718237Virustotal results 32.81%Mirai
2025-10-03n/aelf c1e005b1b8677832f758fdfb42b7cede658dd6b8289a7ba17b6b0a77d2eff151Virustotal results 32.81%Mirai
2025-10-02n/aelf 2379c69f172f643205131e83319935078468456cc2036190fb92f6b8020dcf7fn/aMirai
2025-10-02n/aelf 847334684dd29fe6b9147da2a65add52baae6a1e976293fd908d46fccdcd62c5n/aMirai
2025-09-26n/aelf 6d2e8b51214552f72b811f89a3db82bff852e029a7cd5f0756c74964ed7fd153n/aMirai
2025-09-24n/aelf b7c10e64b657600a912babfeb2a02e87cf1e01087be300bd0287f21d176e403an/aMirai
2025-09-24n/aelf 4fe787cf9908b0031c344d33d8808db07faa4a411aee1e9a2f6006275e2a1f4cn/aMirai
2025-09-24n/aelf 6426d287b7a00e970a4ce3d0d1e73be9c44da5faf6e29bf6658d56d2475b1b49n/aMirai
2025-09-24n/aelf 5b83b4a31570ca128ac854dfbd98959c4e543b421bd1d3345b91bd8a78502206n/aMirai
2025-09-23n/aelf 1ba3b2845b7771e6a68ea4ade54d29eb63f60a95c866df78766aa8f1fd071a09n/aMirai
2025-09-22n/aelf e1c425083b259ee2cffad4c98d540adb3f74d78c9d74e18a1d3807a7f60a46d5n/aMirai
2025-09-22n/aelf 9eefed95434f5c56e8f76e53f876ca0f240a83cf71b2027809f92211e9bd8080Virustotal results 31.25%Mirai
2025-09-21n/aelf a060b49c7c50f1133d3ad2218c7ff266e7b637e64bdc68a4d2cfc460f0075d9bn/aMirai
2025-09-20n/aelf 007e5dc71d719cca62c058bb806143c2d7627f80d204c25494229d012d535cb4n/aMirai
2025-09-19n/aelf 4dcdbd21914f34f1c0b2a323da5a6840e7665ed56dc18b43a1638b721a1c2248n/aMirai
2025-09-18n/aelf f692fc8b862f4ab4c96c4dc9da877667245cfba00d686736d67fc20e40bf3301n/aMirai
2025-09-14n/aelf 56ca29b158fe145953ba0165b56af3b0e533b8b155581e37174037abea8f3c60n/aMirai
2025-09-13n/aelf 19adf6285b1504c96400173287c0b0bdb8d0e071c3dff9706a67ea36a6e543a4Virustotal results 31.25%Mirai
2025-09-12n/aelf 6b469574f60e7119dbc3b5a128caa8fbce342534d9f781a7e95cb9fc8c43c8bdn/aMirai
2025-09-12n/aelf 6bf02c0a0b01dbbeb4059785dd26ecbb5c34fb48f8855901e06ac94183776505Virustotal results 29.69%Mirai
2025-09-11n/aelf 8db72cf3c17c8e2ce37789cc8c7f1403a8f8ae0d790cc9df566365e20268c2d0n/aMirai
2025-09-11n/aelf 103a878e20f9a3924abb9e1fc4ebada0a6eb8adc74ca59035ff1e14805d20ae1n/aMirai
2025-09-10n/aelf 1ebc071c0427f1b7706c00d84940fde795b95d0f50500e4824694d7daccc5c80n/aMirai
2025-09-10n/aelf 251e7e866484d05293bbba6850511153f3855ffb47d8b70c3363e90171946ee2n/aMirai
2025-09-10n/aelf 36dd257bea506555a7a2f5a30228781e4949651e48dfba6c6ea3878ef30ad51bn/aMirai
2025-09-09n/aelf bbfdf082b7de3b1d4fd2602f5a4a0137a0f3dd2099887323580154de46696329n/aMirai
2025-09-09n/aelf a5c44aa92b87b12119a41edd0c41a45c8b1ff85802e1d5134a6ac96c4b2275e6n/aMirai
2025-09-08n/aelf 3e4ed3b1aa3d793e4a0aaf8e4a45678aa057809c01ac778bd869207b25e4d32bn/aMirai
2025-09-08n/aelf 144e32cb797b233ea1ae27387da7378cec65e9816201bb68956ec51a2934bf97n/aMirai
2025-09-06n/aelf 4b8a0355b145ca5c0dd5a31f02ee61e8735134558a767d7e373ccca1257980c5Virustotal results 31.25%Mirai