URLhaus Database

You are currently viewing the URLhaus database entry for http://103.163.119.220/Aqua.x86 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3333357
URL: http://103.163.119.220/Aqua.x86
URL Status:flame Online (spreading malware for 1 year, 4 month, 3 days, 13 hours, 4 minutes)
Host: 103.163.119.220
Date added:2024-12-06 13:12:26 UTC
Threat:Malware download Malware download
Reporter: lontze7
Abuse complaint sent (?): Yes (2024-12-06 13:13:58 UTC to hm-changed{at}vnnic[dot]vn)
Tags:mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-05-08n/aelf 60c38fd74da7f2458746e82cb45d2568fb5744fe4dd4800c3963958d1ac1c642n/aMirai
2025-03-03n/aelf 64989d128d8c4ae4aa95a736c5ff61ff3694c1616110d2e6a2f9a706c185aeb7n/aMirai
2025-01-26n/aelf 1b64c761ba74fbf3cb67bdcd985a06411b8f6d617cff44c386cce5b01cf4212bn/aMirai
2025-01-10n/aelf 81d97050c89ebeb1d8de14a8ca16e44bebd96dd45e47a51a073cfbebb603eb23n/aMirai
2024-12-06n/aelf 3635c8827967fbc547a639fa881a5022069256dc3b49509fbe007014a967931eVirustotal results 41.54%Mirai