URLhaus Database

You are currently viewing the URLhaus database entry for http://103.163.119.220/Aqua.mpsl which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3333359
URL: http://103.163.119.220/Aqua.mpsl
URL Status:flame Online (spreading malware for 1 year, 4 month, 2 days, 20 hours, 7 minutes)
Host: 103.163.119.220
Date added:2024-12-06 13:12:27 UTC
Threat:Malware download Malware download
Reporter: lontze7
Abuse complaint sent (?): Yes (2024-12-06 13:13:58 UTC to hm-changed{at}vnnic[dot]vn)
Tags:mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-09n/aelf 338fc8aa23c3445d002228da7f0474a94c388138b82985d315bcbd5aa35733can/aMirai
2025-01-25n/aelf 415bd59dbaaa793f71cd591625582f293a00efd4fdf424d5a524cf576a2ee19cn/aMirai
2025-01-09n/aelf fee3d3b15b3f516fdfe9b3a665703eb0073284852cf0fc527f807e8116725a5dn/aMirai
2024-12-08n/aelf ca196e3419967c97800588f7a569b2d7a61fda84777a57423699f394ea55b14dn/aMirai
2024-12-06n/aelf 3200d75f9b0b640085a4f5ba89ab5caf9753a0978efa7321a404dd43312ca8e8Virustotal results 39.06%Mirai