URLhaus Database

You are currently viewing the URLhaus database entry for http://160.191.245.128/mips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3433743
URL: http://160.191.245.128/mips
URL Status:Offline
Host: 160.191.245.128
Date added:2025-02-09 19:37:06 UTC
Last online:2025-03-06 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2025-02-09 19:38:04 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:24 days, 22 hours, 17 minutes Bad (down since 2025-03-06 17:55:28 UTC)
Tags:censys elf mirai link moobot

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-02-24n/aelf 859bf0ab1e056057e423b613b1bdf557f4c5f55cfd39c770385e3aa978b0b9can/aMirai
2025-02-22n/aelf 921106957c9aa9e8b02afc6ad000e7b4ba3375f8acf268031467da87086c3a94n/aMirai
2025-02-21n/aelf 1ffcf82a533bd9121b75926f2d55cdeed282528910c59135e0aa3ed6fb0d56c6n/aMirai
2025-02-19n/aelf ffe407efd4b6bc8c2b35b1ea2b2e99f860818d3a8d2a923a5ddffc3cc030c484n/aMirai
2025-02-09n/aelf 7e0dd7c15b549050b2273e44f97d2418ebea56ef27ce2660a9d228f88b850bf6n/aMirai