URLhaus Database

You are currently viewing the URLhaus database entry for http://94.154.35.154/mips.uhavenobotsxd which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3686386
URL: http://94.154.35.154/mips.uhavenobotsxd
URL Status:flame Online (spreading malware for 26 days, 23 hours, 36 minutes)
Host: 94.154.35.154
Date added:2025-10-24 23:37:09 UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2025-10-24 23:38:14 UTC to abuse{at}pitline[dot]net,abusep{at}kharkiv[dot]com)
Tags:elf geofenced mips mirai link ua-wget USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-11-20n/aelf 32ed54ada1301070e35d2f16dc923ee745b8512e7886f0826a5acaad80ab82a1Virustotal results 25.40%Mirai
2025-11-19n/aelf a9b11c952f91f0cdd4d4169877d62d1b1b0a1c81cbc1a635e16c7f1be53900a1n/aMirai
2025-11-19n/aelf 3ee5b01289888546241b7b3a1ef7f34e75532b8cac12f367cab0189babf40ac7n/aMirai
2025-11-19n/aelf dd98fa91a6f8638fba531acf7f667fc9c92dc06304cc580f8a50b930aeafcea3n/aMirai
2025-11-19n/aelf 1a909997d810ae9685922f59d207c16dd31d1783f1601f5388486b1506091c23n/aMirai
2025-11-17n/aelf f0f09db0805e3b397bcdf14abf5e3e19765ab6a90f09481dcdcd1b0032b8b9eeVirustotal results 20.31%Mirai
2025-11-10n/aelf 6ff4104e75291a35837560d5ac7a4250a1b165b52305f00df69188c28564cedcn/aMirai
2025-11-09n/aelf 1218d989c7dfeefb8909c0aef17d086d857eb639e9c1d416768eaec1202e4301n/aMirai
2025-11-09n/aelf 0359df51be8821b2fa226be5259f1e25bbcfad4f6af786f196f26b7c4155a46dVirustotal results 23.44%Mirai
2025-11-08n/aelf 3d0c83e0795c934d581fe460df746898387d264a2996bb079e30847e98935383n/aMirai
2025-11-08n/aelf a3854f56d0ee10f335d4315bbe1c02abd547376c20bcd8e3e5de8406b091a561n/aMirai
2025-11-08n/aelf bc3afb18a36d71bf98ff4dbf873244ccfa7498912928cbfdd4d6adcfebc07ff6n/aMirai
2025-11-08n/aelf 05b390df3072f93e2b84c782f27d6e5a8f84e5fe5a6b96733693e62f1fd56a1bVirustotal results 25.42%Mirai
2025-11-07n/aelf 6ac89e7cd37d2565b309750ae90b4b369db2993434d34fc8bacccfbc00947242Virustotal results 23.44%Mirai
2025-11-06n/aelf 7a35de4e02055866110cd24b1f1a206a1f6ff61ad340e20b7262b31a82ef6ecbn/aMirai
2025-11-06n/aelf e0e596b6574f3dd64a93227c55a73fd095451f287f309b5fe12f165045ea8810n/aMirai
2025-10-26n/aelf 1d27373d25cc12e0cfe5a408917a566f1f901c6abc6466a06d427deffecde6aaVirustotal results 23.44%Mirai
2025-10-26n/aelf e1a9a620e179b54ab31c63ef60eb0cdcf0c007fe8abb4070b091f98bf8eb9e1eVirustotal results 23.44%Mirai
2025-10-25n/aelf e325c816348cace67da6bde0a216deb9eac5efb323bdc4aa1d0a27f0017c4557n/aMirai
2025-10-24n/aelf 161110ac7b0d4bc481c2b10147554ed12a48fcd4e22cfbd4a0c1d3fc54cc0df3n/aMirai