URLhaus Database

You are currently viewing the URLhaus database entry for http://94.154.43.10/bins/pm68k which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3878356
URL: http://94.154.43.10/bins/pm68k
URL Status:flame Online (spreading malware for 1 month, 1 days, 0 hours, 45 minutes)
Host: 94.154.43.10
Date added:2026-06-30 04:49:25 UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2026-06-30 04:50:29 UTC to abuse{at}pitline[dot]net,abusep{at}kharkiv[dot]com)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-07-27n/aelf e9897eff21ced56a8b21770f8f716de8fb0058245e084cbc46efaff43aee999en/aMirai
2026-07-26n/aelf a1603956bbcef1b38c55082a22754f04203fae16b24b7ad868413184ba68a08bn/aMirai
2026-07-23n/aelf a258fb76db86b4462c68601585118c767b4439ad182dc5c79e631944deb6a9bdn/aMirai
2026-07-11n/aelf 7962d4d40d4c1f13e88e5fef4b5c46a80538a898b559e34c8661d52dbe7b7549n/aMirai
2026-06-30n/aelf cf7e212ae5050a7bb8faaf8f505f35e4afb8da77cd1af1ca2202c731db726500n/aMirai