URLhaus Database

You are currently viewing the URLhaus database entry for http://88.214.20.14/bins/tux.x86 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3795204
URL: http://88.214.20.14/bins/tux.x86
URL Status:flame Online (spreading malware for 5 days, 20 hours, 32 minutes)
Host: 88.214.20.14
Date added:2026-03-13 12:18:14 UTC
Threat:Malware download Malware download
Reporter: juroots
Abuse complaint sent (?): Yes (2026-03-13 12:18:36 UTC to report-abuse+xtom{at}virmach[dot]com)
Tags:mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-03-19n/aelf 8e3fbaf4ec55d76b024caf027583049edd71b9ffef4ebce5e81efd3595f52e36n/aMirai
2026-03-18n/aelf fdee63a51689cc813fe877d030c10d7d4d973489009864bb6bae0ba2820fb6d7n/aMirai
2026-03-17n/aelf 07f723c4962c92c4330570edf20ef05570a6cd9c60c05d692f1676529d3e5239n/aMirai
2026-03-16n/aelf c96cf343257b729e56e8e3ba041fdcf95ed8e2b3808771bd2a78401e8f1a01d4n/aMirai
2026-03-16n/aelf 4e51e9939761fa2348056923c01c52c22f7504db578032cd60ced6fc6fd6ef21n/aMirai
2026-03-14n/aelf eaef59e21e4e6a5f100b887d56b85e3bc34c2925266b57618da55f374f811b69n/aMirai
2026-03-13n/aelf 9802431934ffbab1b76936ca12d7b230ff1857dd5041bebe1bd0afb80f9c2d05n/aMirai
2026-03-13n/aelf e87700e1c78335c9165eb5aeea10f4bbd2c9dd3ba8fa5f2d45203f0e6da20b8an/aMirai
2026-03-13n/aelf 8159667020e7e7aab5799edfefdc63c62592aacea5731f32c6429d7a253cd9a5n/aMirai