URLhaus Database

You are currently viewing the URLhaus database entry for http://31.77.227.121/bins/pmips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3902564
URL: http://31.77.227.121/bins/pmips
URL Status:Offline
Host: 31.77.227.121
Date added:2026-08-12 05:23:17 UTC
Last online:2026-08-19 21:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-08-12 05:24:17 UTC to abuse{at}rocket-cloud[dot]org)
Takedown time:7 days, 16 hours, 3 minutes Bad (down since 2026-08-19 21:27:42 UTC)
Tags:elf mips mirai link opendir ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-19n/aelf 823df24ee788716971b43e2b03c6822194a76d19ef12653d439914c589d51033n/aMirai
2026-08-14n/aelf 896f63d1435cd22055e0e9c1d240fb51291d8e870ce4e1df89c2922ffdd713ffn/aMirai
2026-08-14n/aelf c150892bb38fe2a88cb73f862c5b572099949bd5cb08ce6731e419c2779f5fecn/aMirai
2026-08-14n/aelf 3fde28b25714bbca2ecf98bdb1254ee5b5e13c067849eac09bd6339b3c36a6b9n/aMirai
2026-08-13n/aelf 9fc78883ee19abc031e2aff0181266ef1f76662d85313cb9a1edb76cdb7ed9f2n/aMirai
2026-08-13n/aelf 8cfb9a33dd9e40f1912c9332b91c3308e4a59883824dcfd900bc90c86ee7df9cn/aMirai
2026-08-12n/aelf f05be81ef3b3bd033eddcadd88985efe1f441c579e3723a155cc5be3866e70b9n/aMirai