URLhaus Database

You are currently viewing the URLhaus database entry for http://93.88.204.28/x86 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3716336
URL: http://93.88.204.28/x86
URL Status:flame Online (spreading malware for 2 days, 23 hours, 8 minutes)
Host: 93.88.204.28
Date added:2025-11-25 09:03:11 UTC
Threat:Malware download Malware download
Reporter: threatquery
Abuse complaint sent (?): Yes (2025-11-25 09:04:14 UTC to abuse{at}vdska[dot]online,ripe{at}interlir[dot]com)
Tags:32-bit elf HailBot mirai link Mozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-11-27n/aelf 6382a8453de7da60f5803084b57f4c2eae393356bff00d9f3322402aa902530bn/aMirai
2025-11-27n/aelf bfc39c390d9e4865af342214b7c0a39d0467a149dd20d9b8f386dfdcc66a9535Virustotal results 16.92%Hailbot
2025-11-27n/aelf 75d6febca32aabd342447ee22c0da1d09fe2f0115fa170ecb393e0a7eed5411cn/aMirai
2025-11-26n/aelf 6d17a8e707db52efedfa7d1f39a3e2397795b4268298614955592e54aa4d62abn/aMirai
2025-11-25n/aelf 3c851b2d5ce23951eff1e62b28255b984f01958e93a5b3fdb9f7f7b6fd30a670n/aMirai
2025-11-25n/aelf 0dc402ffa991f2119918edb5806450ceb51e8293e7bd67570f7fe87866dbeeefn/aMirai