URLhaus Database

You are currently viewing the URLhaus database entry for http://88.214.20.14/bins/tux.mips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3795205
URL: http://88.214.20.14/bins/tux.mips
URL Status:Offline
Host: 88.214.20.14
Date added:2026-03-13 12:18:14 UTC
Last online:2026-03-19 08:XX:XX UTC
Threat:Malware download Malware download
Reporter: juroots
Abuse complaint sent (?): Yes (2026-03-13 12:18:36 UTC to report-abuse+xtom{at}virmach[dot]com)
Takedown time:5 days, 20 hours, 34 minutes Bad (down since 2026-03-19 08:52:59 UTC)
Tags:mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-03-19tux.mipself 191b736968ac5dd358fd81a6c179619d095255df7d465dc4649ffc515dd82218n/aMirai
2026-03-17tux.mipself d7a7b855c05ef1b4680cb0a011cd6dc5331552953a90053af1341446b703f017n/aMirai
2026-03-16tux.mipself 2e8a12c2cdff149fb99a2b8bcc45b80615810d69fc3034cedd6e0a9eff5d5463n/aMirai
2026-03-16tux.mipself a9c17380091a7393278d5a6e712e10eb5895894bcc581a6fe0572a4fd63e7f15n/aMirai
2026-03-14tux.mipself 4ddee2cee3b8d5962206ae72808d59925805a01d3fdf0a12772ccd13a8a7f779n/aMirai
2026-03-13tux.mipself 46bf209aa5c943566643639ac09c1ef82ef6cc0a9f82560824bd2c9d1a899ee0n/aMirai
2026-03-13tux.mipself 2ff8195d7c0da1be32c58f9bcb878ff7fb08c61ce0c2ee899e0812ee11dd2502n/aMirai
2026-03-13tux.mipself 31523d704bdebe4be4a6bed20ae517721328f9605d63be633e9c2b68750b7aafn/aMirai