URLhaus Database

You are currently viewing the URLhaus database entry for http://86.54.42.154/.4 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3747456
URL: http://86.54.42.154/.4
URL Status:Offline
Host: 86.54.42.154
Date added:2025-12-31 23:54:33 UTC
Last online:2026-01-05 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2026-01-01 18:27:11 UTC to abuse{at}globaldata-cloud[dot]com)
Takedown time:4 days, 1 hours, 52 minutes Bad (down since 2026-01-05 20:19:22 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-01-05n/aelf c45c086fb4b2752f7c307c53887b44515a2071c1ff9c7fbf68e3d6f8c02c0a36n/aMirai
2026-01-05n/aelf d997eef23ccb85e95e02ae68d47ad19fb2aa22380988002bca5de2cbe7727bdbn/aMirai
2026-01-04n/aelf 38ab7721fdd10d6d940485e35d4860a9534f6f9e54de254570bf039198f5f740n/aMirai
2026-01-03n/aelf 7212ea8ef83078217dd9175e966d3ed28b51de53fe3dcf1ef2421b274737d101n/aMirai
2026-01-01n/aelf 15b26f93781de5da95dedd2bea2cd0280b9154e9f43bf583559a53bfcf10edb8n/aMirai