URLhaus Database

You are currently viewing the URLhaus database entry for http://88.214.20.14/bins/tux.arm7 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3795202
URL: http://88.214.20.14/bins/tux.arm7
URL Status:Offline
Host: 88.214.20.14
Date added:2026-03-13 12:18:13 UTC
Last online:2026-03-19 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: juroots
Abuse complaint sent (?): Yes (2026-03-13 12:18:36 UTC to report-abuse+xtom{at}virmach[dot]com)
Takedown time:5 days, 21 hours, 13 minutes Bad (down since 2026-03-19 09:31:45 UTC)
Tags:mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-03-19n/aelf b9e8cd9320f061f32562cdee60bb13978bea3c2ac09f73f7a851e2439a582eban/aMirai
2026-03-16n/aelf 9ee133f3a3b6e320789a7f8a23559aa4128107e6038ce4b447b2acb8291ea4d4n/aMirai
2026-03-16n/aelf 01cbaaa24b9edf6b9c5a5b1410f9d5744303c27e3bd8403677c2fd6708ae5e4en/aMirai
2026-03-14n/aelf c7be2a712d076b44d81e5d1bbe1a81838db6a77852292433d263c9b7ea27e1a6n/aMirai
2026-03-13n/aelf aa050e06f2c3d7a93938e3fe475767915a6cf8c9781914342e6410efddd24f4bn/aMirai
2026-03-13n/aelf 7100455b16c755055d1f6c1ab747c2939715d538a6de3ea4103bc4db480f3032n/aMirai
2026-03-13n/aelf 96c220fae443d4594ab8237909bc51bb56822b929cb6f75b198f267b6d0b0d72n/aMirai