URLhaus Database

You are currently viewing the URLhaus database entry for http://42.112.26.45/t/mips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3619882
URL: http://42.112.26.45/t/mips
URL Status:Offline
Host: 42.112.26.45
Date added:2025-09-08 13:33:19 UTC
Last online:2025-10-10 04:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-09-08 13:34:11 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:1 month, 1 days, 15 hours, 4 minutes Bad (down since 2025-10-10 04:38:38 UTC)
Tags:elf gafgyt link mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-29n/aelf 172f9ed2d70b8d7244d57a67d8d9fee3ef1c6b358e8caf7a5d7ec6cf72536422n/aGafgyt
2025-09-22n/aelf 6dce441b0e72571a06a88a2deff3e7f48202ffcaadae7c59ff5dfe4b71f89499Virustotal results 14.06%Gafgyt
2025-09-21n/aelf 7cd5fb5b6d94ac2acf16f8904f6f307f47710df1d51129d55e70590a52dcf823Virustotal results 32.81%Mirai
2025-09-18n/aelf fa96cf95515c5e6f86084aa51099fb5e5c0cec71c651bf08ec7b53b2a3029705Virustotal results 31.75%Mirai
2025-09-16n/aelf fd75057993af111cf29aeb0924554d01ad28c071fb20cf9700831fd4402fbaf2Virustotal results 32.81%Mirai
2025-09-15n/aelf 68b4d415e14684a4894fe7386dd48c2a1e081313f8dfb227bc8e4fad9b2a8f08n/aMirai
2025-09-14n/aelf 049f1bd6cabe4f7f2355d75547cb96fd7a2951b71899049932812ca2f81d0f69n/aMirai
2025-09-13n/aelf e40c6fdca0d1feddd8358fdf82744315fe7e3f8512fd5edb2b946967798e58f9n/aMirai
2025-09-13n/aelf a1e3868cd05e4af35711546d91d56527f21e448d9ee075a1b0e9c02a31188de8n/aMirai
2025-09-11n/aelf 3c49de25e5bf45572154d076f86e35b2ecba09f057641d6953302c8c706bf8f3n/aMirai
2025-09-11n/aelf 2e9e4a16603654d6da46bd1a4884fae72a5817fb772007a5e822cc5d63c43eb0n/aMirai
2025-09-11n/aelf 66c7502ff375bbbfbfb58c22e3cace095173223ae92f24e73371f645595ab17fVirustotal results 32.81%Mirai
2025-09-10n/aelf b161dba5790533d43d1f14c7a906ba69746cf9433ffb5d27ddcf7ee0c201d8fbVirustotal results 33.33%Mirai
2025-09-10n/aelf 2aef512df33be0b36a71e753fc6884bded09c40af4c2b6383737faed7911bc53Virustotal results 32.81%Mirai
2025-09-10n/aelf d8d31aefe9c2b860668bc353070dd39c9cc471ee0e177244d14aecd627843530Virustotal results 28.00%Mirai
2025-09-09n/aelf 6235ab84723f8d3b42a4e8406677c3ed7b2c1da46c1293c0d9991f6a61570473Virustotal results 33.33%Mirai
2025-09-08n/aelf ad828e1fde54f6e01277aacf0c97de740155ec3971363a1c015900ea26cf08f7n/aMirai
2025-09-08n/aelf 2bee2770db816b1900715e039b9a49511abb416241523d91a11b23fcd01f4032Virustotal results 32.81%Mirai
2025-09-08n/aelf 03288429e16438ba16eec99776d665e20cbe68b923e54eb4f1c09e0b51750e20Virustotal results 32.81%Mirai