URLhaus Database

You are currently viewing the URLhaus database entry for http://192.142.10.111/d/xd.m68k which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3681278
URL: http://192.142.10.111/d/xd.m68k
URL Status:Offline
Host: 192.142.10.111
Date added:2025-10-18 22:56:09 UTC
Last online:2025-10-20 08:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2025-10-18 22:57:12 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:1 day, 9 hours, 7 minutes Poor (down since 2025-10-20 08:04:33 UTC)
Tags:elf geofenced m68k mirai link opendir ua-wget USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-10-20n/aelf e6d33ead4aaa2a2bc31956b4a121b9ce3aaf81599528416d514a749ee2d9dd04n/aMirai
2025-10-19n/aelf ef0093a369db2bd740583e5b10c5ddbd396b3171077c49db983339299abae9c5n/aMirai
2025-10-19n/aelf 745a4eb7f5fa309348f83450a6e64d7b905a2391efa175d0a57889ced1c80c26n/aMirai
2025-10-18n/aelf 605f50cb8a73d9cc98c680595f3dfb7b022bb66264a3f1e50b20ec75809143acn/aMirai