URLhaus Database

You are currently viewing the URLhaus database entry for http://103.149.252.178/skibidi/cutesh4 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3562370
URL: http://103.149.252.178/skibidi/cutesh4
URL Status:Offline
Host: 103.149.252.178
Date added:2025-06-15 21:53:12 UTC
Last online:2025-07-01 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2025-06-15 21:54:09 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:15 days, 18 hours, 44 minutes Bad (down since 2025-07-01 16:38:20 UTC)
Tags:elf gafgyt link mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-06-30n/aelf 245daaf02866c349c32028beeaec0c428a85ad4a0fe3df40449ad0cdd2942db6n/aMirai
2025-06-29n/aelf 4d146dbb822e08c424db81e2ab87651ee77d654aed585aac4e8c7c0d535a861fn/aMirai
2025-06-27n/aelf db65c6ad097c998d7cab2fd9bce177aa17f74a8179ac36a67c62f845285612b0Virustotal results 46.88%Mirai
2025-06-24n/aelf b0a36734e44d56d521461e69cfca84e640de9188897efb0d90314f990c8c0ff2n/aMirai
2025-06-22n/aelf d04bbb9659a80ecf697e7cf34f1e6345d4a0858ea658a91635f02f2f892b19ean/aMirai
2025-06-22n/aelf 013726974f60d0bfa68a94feb5b8d3c4228d944280e6820b8401713dbd82bb5dVirustotal results 17.24%Mirai
2025-06-18n/aelf 5dca4fe4b232b4d02085128123592927a599d1bd8af4365f56180b117aeaf636n/a
2025-06-15n/aelf 684b58dea0c16b1f3a7f926a877f9e42e121c793ee8b66dfa38852671b88d473n/aGafgyt