URLhaus Database

You are currently viewing the URLhaus database entry for http://103.163.119.220/Aqua.i686 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3333355
URL: http://103.163.119.220/Aqua.i686
URL Status:flame Online (spreading malware for 1 year, 4 month, 2 days, 20 hours, 7 minutes)
Host: 103.163.119.220
Date added:2024-12-06 13:12:26 UTC
Threat:Malware download Malware download
Reporter: lontze7
Abuse complaint sent (?): Yes (2024-12-06 13:13:58 UTC to hm-changed{at}vnnic[dot]vn)
Tags:mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-05-08n/aelf f4691466174b450d9b9f33deedf53e6e8d120110c2c2167cd498da3467c8c843n/aMirai
2025-04-25n/aelf 6be755e68f34ae826a1c19472b8e31549189dc23b2df634db0f575831820cd01n/aMirai
2025-04-18n/aelf b71316e02ce137d4d7854d6a409bd3a6d9ffbdc71c8be5cf6dc1666f13cfa545n/aMirai
2025-03-18n/aelf f9b76dc79b4952027dc7a211d5c9c0abe1901072b53745738e4c9632db9bcb1cn/aMirai
2025-03-16n/aelf 487a2a51a62945307cebe5f2d8905c44bcc912c0b8f24006789cd4b79a1ec56cn/aMirai
2025-02-04n/aelf c5ab417873e3d652dcafef48e9876df9f062d87b4013b4a1dd310845232ce688n/aMirai
2025-01-14n/aelf 05fd36fdb90d371b4a4ce8ae48e52e01327043967b7995cdafbc79f03cf38bbfn/aMirai
2024-12-06n/aelf 21cc237264256d2f140c10ea96a474750b6b0f33015f552343f677a04d7d721bVirustotal results 42.19%Mirai