URLhaus Database

You are currently viewing the URLhaus database entry for http://5.175.223.124/data.mipsel-uclibc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3793322
URL: http://5.175.223.124/data.mipsel-uclibc
URL Status:flame Online (spreading malware for 9 days, 23 hours, 14 minutes)
Host: 5.175.223.124
Date added:2026-03-10 02:16:08 UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-03-10 02:17:13 UTC to abuse{at}ghostnet[dot]de)
Tags:elf geofenced mips mirai link ua-wget USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-03-11n/aelf 9435f5f34f606fe496c779c808b033d86c63b2a71a2b7d3c6617c43df9226762n/aMirai
2026-03-10n/aelf bb2f0788e93f795b141cc5701199d865f2c4a39b27b8a3675316df34b4468ff5n/aMirai
2026-03-10n/aelf 183c7a7607fb4bfbdedc8ac29f56dc44833c79d671bb20f6e88ed2dd32a12578n/aMirai
2026-03-10n/aelf 3f41bed9b6be25373a6076f71fd6f4c1555ba5c59dee7e3fc1d9069715a39284n/aMirai