URLhaus Database

You are currently viewing the URLhaus database entry for http://143.20.185.225/00101010101001/debug which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3671101
URL: http://143.20.185.225/00101010101001/debug
URL Status:Offline
Host: 143.20.185.225
Date added:2025-10-13 17:14:10 UTC
Last online:2025-11-16 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-10-13 17:15:14 UTC to report{at}abuseradar[dot]com)
Takedown time:1 month, 4 days, 4 hours, 59 minutes Bad (down since 2025-11-16 22:14:48 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-10-21n/aelf 3d25080f5909b0990967899f802d4b645649e6a1f049ac68ad4d6d93d3c85850Virustotal results 40.00%Mirai
2025-10-16n/aelf 6557adad4edc6f49e02528b11abbee66862efa900d65c36e16eaca534e1dda95Virustotal results 41.54%Mirai
2025-10-13n/aelf f53fd04707e7b63e69182616a1632ef5b48b4e1968d8afbbd45bf6cfb03330c6Virustotal results 55.38%Mirai