URLhaus Database

You are currently viewing the URLhaus database entry for http://64.89.163.109/israel.m68k which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3773401
URL: http://64.89.163.109/israel.m68k
URL Status:flame Online (spreading malware for 9 days, 2 hours, 20 minutes)
Host: 64.89.163.109
Date added:2026-02-07 04:05:09 UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-02-07 04:06:11 UTC to noc{at}miteflux[dot]co[dot]uk)
Tags:elf geofenced m68k mirai link opendir ua-wget USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-02-15n/aelf 18d949b6b7c9f4a72c7bf6f18a28e179e5153b1cc0feac4cff580705212dc4e1n/aMirai
2026-02-15n/aelf 7ecf6ab0e161520f2359ccd1519077bcd50c640b9d682c3ecb68afa87fd022b9n/aMirai
2026-02-14n/aelf 5021ff1f9a0d8aa6c5057ec412d1217f7cdce0d7214122e856c6ce7c44077e55n/aMirai
2026-02-14n/aelf da453804c6974c36d91d72de3c1f542c5729f22f268b621eff2feddfc6b13a11n/aMirai
2026-02-14n/aelf a33f6b45971ef20cee23f527b41193a99904a70e81871d55e9a71013c6dda262n/aMirai
2026-02-14n/aelf 5c796a121909151e3ff6a07c27bcd02bd76191118f801b67f8ef5885303e7159n/aMirai
2026-02-07n/aelf a31c5de996a00a2b443abb29fc0a225d4e4939ce29e640921520208f75fe6231n/aMirai