URLhaus Database

You are currently viewing the URLhaus database entry for http://weifang.serveftp.com/HideChaotic/ub8ehJSePAfc9FYqZIT6.m68k which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3757630
URL: http://weifang.serveftp.com/HideChaotic/ub8ehJSePAfc9FYqZIT6.m68k
URL Status:Offline
Host: weifang.serveftp.com
Date added:2026-01-13 17:45:26 UTC
Last online:2026-02-07 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2026-02-07 06:07:12 UTC to abuse{at}alexhost[dot]com)
Takedown time:24 days, 12 hours, 56 minutes Bad (down since 2026-02-07 06:43:09 UTC)
Tags:botnetdomain mirai link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-01-21n/aelf 702c5ff22698a3df5ba6e08e8325fb311726df2408e85e9bfbf07058a23fcfb4n/aMirai
2026-01-21n/aelf 430d6b2164deb058fe20f483b99f033ef1e4487451e1b80413d1883edcfab45bn/aMirai
2026-01-18n/aelf 66f7600cf0370fd03ee9b358dc21d006779ac84b0d6e9556b5363c8cb2929636n/aMirai
2026-01-18n/aelf f19abd5bbba5abcbcae96d9ee825fafd7842662f223547ee5978b58d58e15035n/aMirai
2026-01-17n/aelf f52ba4e1d7b209b1bc466b661af72da8a7c96505364ead5afe9ea232f1b6e98cn/aMirai
2026-01-13n/aelf 01a818ba418ec11bf427485e0231f252687dc274b4ad680f977a8446afc960b2n/aMirai