🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

URLhaus Database

You are currently viewing the URLhaus database entry for http://176.65.139.139/x86 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3906995
URL: http://176.65.139.139/x86
URL Status:flame Online (spreading malware for 1 month, 14 days, 15 hours, 48 minutes)
Host: 176.65.139.139
Date added:2026-08-22 14:12:22 UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2026-08-22 14:13:20 UTC to abuse{at}stormindustries[dot]llc)
Tags:176-65-139-139 elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-10-05n/aelf 6cc6e4b218bf4a9c97b0a95fc007c17de5687fa3f4fbb04f1d5f71b3f099ef7fn/aMirai
2026-10-04n/aelf 489cbebb3535f702f95549ea2ec70dea622944fbf188a951cd89ad80e5bb3fc0n/aMirai
2026-09-01n/aelf 75f62aa417c15742ed6f4610caf34aff93e8f50ed432b884b0f38a4a30030a22n/aMirai
2026-09-01n/aelf c6b8b6530e5e43df058648b4004b66aa992cdbfdadc879a4ffe8f56f2c8dc63cn/aMirai
2026-08-22n/aelf 7b0fec9dc952de2ff789094282c1d2c5071cb3ac68a52bc9537842b85bd89dafn/aMirai