URLhaus Database

You are currently viewing the URLhaus database entry for http://43.228.157.130/static/ciubuc_mips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3816152
URL: http://43.228.157.130/static/ciubuc_mips
URL Status:flame Online (spreading malware for 4 days, 23 hours, 56 minutes)
Host: 43.228.157.130
Date added:2026-04-11 09:48:14 UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2026-04-11 09:49:12 UTC to admin{at}pointtoserver[dot]com)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-04-12n/aelf 5073f18d5b8b7f98e7fc8159c81d4b7bc1e744714a424ed292f2e54e5e352003n/aMirai
2026-04-12n/aelf a6c9da2cdb69b12da6df6b0997f48d089935a08410015e601cfa08880f401907n/aMirai
2026-04-12n/aelf 410498090afa41352ae2da53b4ecd74e9f40061863c056f1e581f3c5108f0f8an/aMirai
2026-04-11n/aelf 2525678c2711c2eb8c3016a5528e34a6847272a390dd33506bfc817b081f74abn/aMirai
2026-04-11n/aelf a42563b839b97321eb5c54828242d4f499deb4b49cb57e58463fda859d31322bn/aMirai
2026-04-11n/aelf ed880df982b594ff3d31781a79db4917aa5a96b222e2147e8e6af3e5ec25b6c2n/aMirai
2026-04-11n/aelf abec5f80d1676d11578388af5d6ce58613271b5bf44f15afcaeacc5c4277ecffn/aMirai