URLhaus Database

You are currently viewing the URLhaus database entry for http://43.228.157.130/static/ciubuc_sh4 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3816141
URL: http://43.228.157.130/static/ciubuc_sh4
URL Status:Offline
Host: 43.228.157.130
Date added:2026-04-11 09:46:21 UTC
Last online:2026-04-14 05:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2026-04-11 09:47:12 UTC to admin{at}pointtoserver[dot]com)
Takedown time:2 days, 19 hours, 23 minutes Poor (down since 2026-04-14 05:11:05 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-04-12n/aelf d125d2588b3037975c1a339f1576ac2285d28ef888c61e3d01f9d15205696c27n/aMirai
2026-04-12n/aelf ab02befc1a358b5dea125988bf4a9280cccde9d9826548fda5e1558171debb9en/aMirai
2026-04-12n/aelf 43d1311c51fd07e6a5e9d1b2b0d3926cfd3c6c757d1cbb59e6a4291a176a15d6n/aMirai
2026-04-11n/aelf 36da3c70b3f775a897e2a17753d7a2343282f6393d174e447fc7848379cc217cn/aMirai
2026-04-11n/aelf 974908931f93cfe7d743be2d42c2cc944c8454dd50cc0c13255085be2da7d147n/aMirai