URLhaus Database

You are currently viewing the URLhaus database entry for http://196.251.66.32/HBTs/top1miku.ppc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3581234
URL: http://196.251.66.32/HBTs/top1miku.ppc
URL Status:Offline
Host: 196.251.66.32
Date added:2025-07-11 06:52:26 UTC
Last online:2025-07-17 15:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-07-11 06:53:24 UTC to abuse{at}nybula[dot]com)
Takedown time:6 days, 8 hours, 27 minutes Bad (down since 2025-07-17 15:21:13 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-07-15top1miku.ppcelf 4adaa8fbc175e4a169c4767bc147fe1b288888cddfa4f1b39abc3fe250806ff7n/aMirai
2025-07-15top1miku.ppcelf cc40672845e5a59b82d76cafa2263cb9b2ed7dc79dbce9c0098519b32dd709d2n/aMirai
2025-07-14top1miku.ppcelf 1055dce2a0f39d4e6b373309d70488642ef2d191a77d0fb7871c5589ef085d1bn/aMirai
2025-07-14top1miku.ppcelf 4aa38ca536d1951334b14cb44966c1b5ede193404ce37051f5915ba7c9d966c8n/aMirai
2025-07-13top1miku.ppcelf fd1f94a779cf7564f45d95bb34c653432b830c1adacf2dc290a8f514a24511cfn/aMirai
2025-07-13top1miku.ppcelf 054b0f6e0588ee0c56eb3628526da58d9c32f4bebb80fbf67d4604a246acbe52n/aMirai
2025-07-13top1miku.ppcelf 6756a5228ca1d00e15f15fbd50022f0c6adec8c953aeeafbd918170c05f3caddn/aMirai
2025-07-12top1miku.ppcelf f3b6653ac6e4ac1b1bf39357ff60e9deb8ffa30f7042166dbb80812265ecfb62Virustotal results 57.81%Mirai
2025-07-11top1miku.ppcelf a81ff40ec35b634d74033f78560cbf679f3c8c06c83a2616c32801263941ef5cVirustotal results 60.94%Mirai