URLhaus Database

You are currently viewing the URLhaus database entry for http://91.92.242.241/mpsl which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3657685
URL: http://91.92.242.241/mpsl
URL Status:Offline
Host: 91.92.242.241
Date added:2025-10-05 13:50:16 UTC
Last online:2025-11-03 00:XX:XX UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2025-10-05 13:51:18 UTC to abuse{at}metaspinner[dot]net)
Takedown time:28 days, 10 hours, 45 minutes Bad (down since 2025-11-03 00:36:57 UTC)
Tags:DEU elf geofenced mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-11-01n/aelf aab33a262ba425ea4a4b522839d538b6baf70ac3c154f4a530a111a0fce27f7fn/aMirai
2025-10-21n/aelf 1256e0395961d0f20f2a13f143e14885bcaaf4cf72072204bb03eb60f6ebba50n/aMirai
2025-10-20n/aelf a0566edb8bce667febaba04bcb3cfd8dc5e5de1d7f0d779f1fefdd2c9b31e654n/aMirai
2025-10-17n/aelf 27a0c6088db0b068c73dad7f869bb6a73d14b02dd00147a60108df5e926da19en/aMirai
2025-10-16n/aelf d56ea7db7c0beeb93bae4bcb2c0795078d6f43aceddab4a5ea91ceb5dc39d25bn/aMirai
2025-10-16n/aelf 02475e873bc919113893dadc2193314504222d0a6ef99781fa60e66b393b28f7n/aMirai
2025-10-15n/aelf 4967306c75cdb5a90e9d2817906bd10f3c41bb917f7e484b902ebd72326f0926n/aMirai
2025-10-12n/aelf 419ff20a89b64318f2056f8b519557a9305934ec5390bd7433476587b2e84128n/aMirai
2025-10-12n/aelf c53ac94c854dd79a6900ffe27fc37a63c88105d9d5b73b1339a7718ed0e060a7n/aMirai
2025-10-10n/aelf 5e990336c9c7e5b0996354752be5ff2c67820de54fb9d1e620e99a18aa143a7bn/aMirai
2025-10-05n/aelf e65f3842ea114c22f851c0d7ec576436cca59bd142b724564d3dc1b8c631a1a4n/aMirai