URLhaus Database

You are currently viewing the URLhaus database entry for http://196.251.66.32/HBTs/top1miku.mips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3581123
URL: http://196.251.66.32/HBTs/top1miku.mips
URL Status:Offline
Host: 196.251.66.32
Date added:2025-07-11 06:51:16 UTC
Last online:2025-07-24 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-07-11 06:52:13 UTC to abuse{at}nybula[dot]com)
Takedown time:13 days, 16 hours, 1 minutes Bad (down since 2025-07-24 22:53:15 UTC)
Tags:elf gafgyt link mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-07-19top1miku.mipself a77e7186ad2e7b858f23a9f1d3d5d6365481fcf8bf212a6d49b50ba9f9ae046fn/aGafgyt
2025-07-15top1miku.mipself 02caf575d834e72d3343ef99aecfdc3e68b5b35cc53593c6c6ec26d8768d55f8Virustotal results 37.50%Mirai
2025-07-15top1miku.mipself 31d27402724ac6f7fab6f2adcf2ad2cc9ba0820565564b3c768380449ed9c596n/aMirai
2025-07-14top1miku.mipself b2214748e9a473533a402500adbb87a416aa494091073b8c7f2347e2a59fcebbVirustotal results 32.81%Mirai
2025-07-14top1miku.mipself 3de3fa9555bee8fa8a2162bde42cc025e3f10908075f847c14053620d6b7e92dn/aMirai
2025-07-13top1miku.mipself c697e5c5656ea60635605aef01fcbf8b80347d36e53a62c527b9848e41d0b8adn/aMirai
2025-07-13top1miku.mipself b211a02e19aa0cf11e416dcf9d0c1420f90579da8d48020c28cd34692eff8bcen/aMirai
2025-07-12top1miku.mipself 57bbb030235e2afafdc683489d9b84ce169bd12d826d436b0243a428838b61f5Virustotal results 57.14%Mirai
2025-07-11top1miku.mipself 89c459ee7f62be968b834b670b01060471f0b6157e1ce47c290c660c12524bb9Virustotal results 60.94%Mirai