URLhaus Database

You are currently viewing the URLhaus database entry for http://130.12.180.28/Fantazy/Fantazy.mips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3750060
URL: http://130.12.180.28/Fantazy/Fantazy.mips
URL Status:Offline
Host: 130.12.180.28
Date added:2026-01-04 09:44:12 UTC
Last online:2026-01-22 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: tolisec
Abuse complaint sent (?): Yes (2026-01-04 09:45:16 UTC to abuse{at}virtualine[dot]org)
Takedown time:18 days, 10 hours, 40 minutes Bad (down since 2026-01-22 20:25:59 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-01-07Fantazy.mipself 9997ba3aad89be8f8371620b5b841eaa71da6f32368d84363bab6dd57303929cn/aMirai
2026-01-06Fantazy.mipself e7766504710cdcb0e741ed0c4e1349ef8a968599470b9df52a9a22dc1e9fe140n/aMirai
2026-01-04Fantazy.mipself 9b492cadd1638eafb59a865169671bb00a912dc4e675d08ac2fe039f1cc712b0n/aMirai