URLhaus Database

You are currently viewing the URLhaus database entry for http://196.251.66.32/HBTs/top1miku.sh4 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3581186
URL: http://196.251.66.32/HBTs/top1miku.sh4
URL Status:Offline
Host: 196.251.66.32
Date added:2025-07-11 06:52:18 UTC
Last online:2025-07-24 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-07-11 06:53:24 UTC to abuse{at}nybula[dot]com)
Takedown time:13 days, 15 hours, 34 minutes Bad (down since 2025-07-24 22:27:26 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-07-19n/aelf b3f1e7014dfba66c06190cfa803ea2dc947f59a0b6f437f3ec6f9263b34cb4a0n/aMirai
2025-07-15n/aelf a8d51fe1b62bd3d53618ff9f7b73cf5e4066e5cc967ea5941e547a95bf3b6329n/aMirai
2025-07-15n/aelf 1af1c58955035fd0c4aac671172e93c6877c134ce594c1a8b65923710bbf78cfn/aMirai
2025-07-14n/aelf c03ffaadd807c770d621afa87c7d0dcf52d26bcb4520eba4ee726a241524b0f6n/aMirai
2025-07-14n/aelf 6a5601622d21d8aca8a181f144cd46f44b733dbf75b98bf11b9050c71325c704n/aMirai
2025-07-13n/aelf 172c790d36595bf00b967d38933448ddb2c7c043a39f369415ad0246d1a096c5n/aMirai
2025-07-13n/aelf a879e2d82e0b2b59ae91a6ccc90415d6890cb5ea3d5c754ba105e15a3d98760en/aMirai
2025-07-13n/aelf e77a135b83f377b177d86ccc74abbb58b4952f807bae23b11be051ee26ee9359n/aMirai
2025-07-12n/aelf 2cfe64d7d9c24a5e5578ea54bbaefecb9d6802bed2a22f25d352f7a19cd5f895Virustotal results 59.38%Mirai
2025-07-11n/aelf eca3ff7488fc750b4bd557d2bc2db5cc26610ef9a3b95f1d6c71243750bde040Virustotal results 63.49%Mirai