URLhaus Database

You are currently viewing the URLhaus database entry for http://43.228.157.130/static/ciubuc_i486 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3816151
URL: http://43.228.157.130/static/ciubuc_i486
URL Status:flame Online (spreading malware for 2 days, 5 hours, 39 minutes)
Host: 43.228.157.130
Date added:2026-04-11 09:47:22 UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2026-04-11 09:48:14 UTC to admin{at}pointtoserver[dot]com)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-04-12n/aelf 0fdc80f795f77d395072d7fa5b6cda4753d552ab4d0a366317ac2be060a09417n/aMirai
2026-04-12n/aelf af3117c86a635d825c826206296722a99e0e4641c9e7f2a6f91dc63c992f0fabn/aMirai
2026-04-12n/aelf 3f941e25b0bd671da7be9eaa0e1f743d4bd4f7324cf12c4a31c1dd8061fd7f75n/aMirai
2026-04-11n/aelf 6182f2b194463e395a15736ecfda65b86c0cf7a90650d5229aebae5193688263n/aMirai
2026-04-11n/aelf 6778881b2ad8f19c826cd3c188e757ef2353264aac2d711c1cd8190cb35fa297n/aMirai
2026-04-11n/aelf 64b3b2dd86f82d98bba82adb00737ddcf188620a3ee9f9bfcb467901e05365d1n/aMirai
2026-04-11n/aelf c1f398778007bf23c8701827adf961bee2087d3c88802e6e6e724c0a0d607d18n/aMirai