URLhaus Database

You are currently viewing the URLhaus database entry for http://43.228.157.130/static/ciubuc_arm5 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3816149
URL: http://43.228.157.130/static/ciubuc_arm5
URL Status:Offline
Host: 43.228.157.130
Date added:2026-04-11 09:47:09 UTC
Last online:2026-04-20 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2026-04-11 09:48:14 UTC to admin{at}pointtoserver[dot]com)
Takedown time:9 days, 1 hours, 24 minutes Bad (down since 2026-04-20 11:12:29 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-04-12n/aelf 3276925185936efe3d3d6c2695e9f953311c7e4968b6a31c4c331ab38a1b1967n/aMirai
2026-04-12n/aelf 1104f9fe83821e3e549c3cdd10df27018a65c70a308085bcc41f6dc02795752fn/aMirai
2026-04-12n/aelf 9558f1ee3bdc97792b2425715d1ff85d8eaba21ef49d8ce947a674202a9b5e80n/aMirai
2026-04-11n/aelf 873a2d51d36dc6bd9848f5ad0f16e58afd832fd35c80531dc64c768ed1671cbfn/aMirai
2026-04-11n/aelf 8d31441e92b735e9a664b8a0adc5f723f1b35297caec4f0d41aa6d12eb32e2ean/aMirai
2026-04-11n/aelf 3342c3265f8c4770b6ffd6ea7ee34671af34cfbb1ee6d39f6874d98c3b010c60n/aMirai
2026-04-11n/aelf edb284bfdb8e529696da2a9473fb77438a1020f69fbf571f36b6a00bb9d347e7n/aMirai