URLhaus Database

You are currently viewing the URLhaus database entry for http://103.163.119.220/Aqua.mips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3333343
URL: http://103.163.119.220/Aqua.mips
URL Status:flame Online (spreading malware for 1 year, 4 month, 3 days, 8 hours, 5 minutes)
Host: 103.163.119.220
Date added:2024-12-06 13:12:24 UTC
Threat:Malware download Malware download
Reporter: lontze7
Abuse complaint sent (?): Yes (2024-12-06 13:13:58 UTC to hm-changed{at}vnnic[dot]vn)
Tags:mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-05-28Aqua.mipself e3006197f81212aff359f5f3411e49f6934fa76d62d7ba509405282d2db14d61n/aMirai
2025-04-20Aqua.mipself 74709e2a6cba5dedde5ce6a7ea609860111222ef86451881c5a1e9b7bb43cbbdn/a
2025-03-14n/aelf 5d6dc27bf47f5874326dcef8ebdbc0f7b1d9d6c652852a21e4b51898988cae23n/aMirai
2025-03-07n/aelf 0e864dfbd2379ceee456b21002b6e9b79bb82a35b73ea7fc8dd0956ddf98b3f7n/aMirai
2025-03-07n/aelf 06e08a407e1fc329e3d0f4ecf1d057b2dfc1abffd27e5a530ac9b2ef96af5038n/aMirai
2025-03-05n/aelf b5f4bd653d231e93d21cb176cbfba2de1d4dbc7d7a88390cbbf00602e4df7d24n/aMirai
2025-02-04n/aelf b317554e5ec52f13fbedd570686059615aa30a0169e426b627dced8e39f93c98n/aMirai
2025-01-26n/aelf 3ac4da1400e963f2cd468784cc5a331e0d19660d6ed7b629eb8962129b3f5661n/aMirai
2025-01-26n/aelf 6fc7099004abfe99fe4e0c6ab07dc5b35d024d1f814da16adf23a4d56be9c374n/aMirai
2025-01-20n/aelf c19418c91dfdaa879570ab9e0363554a61b5d98c636e54a4d5caf1e2391fa723n/aMirai
2024-12-29n/aelf 31db865d26a47c3daf550d6ce680ac0835d4efa477263ce050843951c2a8559an/aMirai
2024-12-06n/aelf dc045b05c333a207dabe632efe6e6e80b77de8e393d8207659fcd3e8e5e5a493Virustotal results 40.62%Mirai