URLhaus Database

You are currently viewing the URLhaus database entry for http://64.89.163.109/israel.mips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3773397
URL: http://64.89.163.109/israel.mips
URL Status:Offline
Host: 64.89.163.109
Date added:2026-02-07 04:05:07 UTC
Last online:2026-02-22 08:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-02-07 07:26:13 UTC to noc{at}miteflux[dot]co[dot]uk)
Takedown time:15 days, 0 hours, 46 minutes Bad (down since 2026-02-22 08:12:48 UTC)
Tags:elf geofenced mips mirai link opendir ua-wget USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-02-16israel.mipself e5e0f77dd13498fb006a54ed1c4979519e36c2cd49b384f487833b364af7042dn/aMirai
2026-02-15israel.mipself 35da258e88ce760cf947b49b4369ec3fc9f4b4cbed21335d851886ddf49287c4n/aMirai
2026-02-15israel.mipself 23694ed81863f217b6e105ff3673a2918de10433ce1ef985c141976d54cc85a3n/aMirai
2026-02-14israel.mipself 7a5101b02f9bee20a8b6647ee25799d958fcbb06d378dc55295a1c37e9ad51c7n/aMirai
2026-02-07israel.mipself e75b5cdd7dd8c9e41a0d56edd6a0ec02e090d815f36a59abb386f32843f20387n/aMirai