URLhaus Database

You are currently viewing the URLhaus database entry for http://43.228.157.130/static/ciubuc_m68k which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3816140
URL: http://43.228.157.130/static/ciubuc_m68k
URL Status:flame Online (spreading malware for 4 days, 0 hours, 46 minutes)
Host: 43.228.157.130
Date added:2026-04-11 09:46:21 UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2026-04-11 09:47:12 UTC to admin{at}pointtoserver[dot]com)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-04-12n/aelf 1d977d7afd661f4d0ffa11ad557345d4ac519a36f6aedeffa655bb7ae563def0n/aMirai
2026-04-12n/aelf ffe12ef5b7c080234d6d5d46f0cfca724faddf648e9c7615512a13f2bac2d471n/aMirai
2026-04-12n/aelf 8cc676bfac21aa0a60e62f7818dce2727345cde399eec17d4c1212d91ef5cac8n/aMirai
2026-04-11n/aelf 6c22d9c5c1efee5ffbc202d03c758c86929d5c3b05d2ccb8fd1bbd8a3f0748d6n/aMirai
2026-04-11n/aelf 9bb2730b71470149ed0bab3bda8ed31f17ce8fbf1972cb71edb8774d3b7b9b43n/aMirai
2026-04-11n/aelf bc4d8a7bde5c8d1ecbde11dc96e8e946076b633090b74b61374cdf3bbfed0a82n/aMirai
2026-04-11n/aelf 3fd676b5eb9bf1889abfa11368e18094ebc12a5a4f9d9fba366ce30adc4a6955n/aMirai