URLhaus Database

You are currently viewing the URLhaus database entry for http://5.175.223.124/data.mipsel-uclibc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3793322
URL: http://5.175.223.124/data.mipsel-uclibc
URL Status:Offline
Host: 5.175.223.124
Date added:2026-03-10 02:16:08 UTC
Last online:2026-03-30 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-03-10 02:17:13 UTC to abuse{at}ghostnet[dot]de)
Takedown time:20 days, 20 hours, 20 minutes Bad (down since 2026-03-30 22:37:19 UTC)
Tags:elf geofenced mips mirai link ua-wget USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-03-26n/aelf 04c81f45441c3a817bb5e655abf3b48768e1b175c68945b9cc4e9b461429c806n/aMirai
2026-03-21n/aelf b1d86d54963c570d9d9cf61ae25e06823721812762062ad0d057b0fde64e015fn/aMirai
2026-03-11n/aelf 9435f5f34f606fe496c779c808b033d86c63b2a71a2b7d3c6617c43df9226762n/aMirai
2026-03-10n/aelf bb2f0788e93f795b141cc5701199d865f2c4a39b27b8a3675316df34b4468ff5n/aMirai
2026-03-10n/aelf 183c7a7607fb4bfbdedc8ac29f56dc44833c79d671bb20f6e88ed2dd32a12578n/aMirai
2026-03-10n/aelf 3f41bed9b6be25373a6076f71fd6f4c1555ba5c59dee7e3fc1d9069715a39284n/aMirai