URLhaus Database

You are currently viewing the URLhaus database entry for http://83.168.110.191/iran.sparc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3812841
URL: http://83.168.110.191/iran.sparc
URL Status:flame Online (spreading malware for 2 months, 6 days, 21 hours, 56 minutes)
Host: 83.168.110.191
Date added:2026-04-06 08:13:21 UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2026-04-06 08:14:15 UTC to ripe{at}skypass[dot]tech)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-06-08n/aelf fc6d6fbc6ea5c6b4eb5c9032f1f99f4d799fffc563baa68c601b01285f90bb66n/a
2026-05-31n/aelf 95077aa12ee9e710746f896a03728e2bbd0199eb24d228ffc9254f8721e0684bn/aMirai
2026-05-30n/aelf 01ef286a87b81715f406aeff9d234b97ed5bdc7701fa35c66f34cde2e6c7c80fn/aMirai
2026-05-29n/aelf 2f7f824aa12445a4328bb2450b83606435b15a0a08670687469dac18050b1159n/aMirai
2026-05-28n/aelf e189b788323941cc88d18dcc254e2832a2adff272d079d9c3e3889d19a163ce8n/aMirai
2026-05-27n/aelf c5f1144f4e4b3fd1cd5d668a44900b94308d1371da44496e3cf664503644a0b9n/aMirai
2026-05-08n/aelf 3b55733eaf68fbb92691ec5df6192f90a2467feb8ac8581f4123dc13752e671bn/aMirai
2026-04-19n/aelf 12beb3771da4789f865c242118545b0e6e3493022eeb600c481ec203715f6084n/aMirai
2026-04-15n/aelf 7ae60105127245b497ac611187bae5f0c4ca6a9f8de8bfe509ee97ca65c18d0fn/aMirai
2026-04-15n/aelf 9d76b150e46633898f491ca374e06ccc0030d41a939a3ada7e19348eec0a4a00n/aMirai
2026-04-13n/aelf 2b4d8e7bcaf850ead0283268ea0c5500c95e33c16283bba502506025e071928dn/aMirai
2026-04-06n/aelf 4a38b31b4ab29b7e5da48d77ddec5aae6f8795ca2455fbdf2d1659120b0404ccn/aMirai