URLhaus Database

You are currently viewing the URLhaus database entry for http://103.149.252.178/skibidi/cutex86_64 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3562367
URL: http://103.149.252.178/skibidi/cutex86_64
URL Status:Offline
Host: 103.149.252.178
Date added:2025-06-15 21:53:08 UTC
Last online:2025-07-01 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2025-06-15 21:54:09 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:15 days, 19 hours, 7 minutes Bad (down since 2025-07-01 17:01:52 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-06-30n/aelf a6880d908d5fa479ce234db7beed1598d5c8e9304696d3af7dc8cfee07a55e7en/aMirai
2025-06-30n/aelf d5a3f32567d026b8af40102db17912a6e8638304377edcb9dd6ed3972b3d158eVirustotal results 38.46%Mirai
2025-06-29n/aelf a263b9d473c716d100b83276cb6d8df77cd39016b3716cb7069828298a1ad5ben/aMirai
2025-06-27n/aelf dcf79d68228bb95fe49c4e3a9d0167aaef4abd8946bae55855d825b68b19cc26n/aMirai
2025-06-26n/aelf 727c34b81f58ac4db5d0b69ceb6e95e939757d1bc0283efb35162de738af8d19n/aMirai
2025-06-24n/aelf 3670ea315b36c9aae45c728df6eddeb7d47805814f8b647e3f2f3fb32aea999aVirustotal results 41.54%Mirai
2025-06-18n/aelf f013dbc9341989fe459aadd1cc6d0c7d298340610cf0a8088188645f30c723ecn/aMirai
2025-06-15n/aelf 9093915808f27172659d6ab46187567e4f8b28f45356c62758b52e2a61d07d83n/aMirai