URLhaus Database

You are currently viewing the URLhaus database entry for http://46.8.78.55:8080/systemctl/bin.mipsel which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3847403
URL: http://46.8.78.55:8080/systemctl/bin.mipsel
URL Status:flame Online (spreading malware for 10 days, 13 hours, 50 minutes)
Host: 46.8.78.55
Date added:2026-05-15 15:49:13 UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2026-05-15 15:50:18 UTC to abuse{at}cloudbackbone[dot]net)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-05-26n/aelf 8058bad2662970ca319e830e507accfb3ba11eb7d03bebfab5d54e2f598eba67n/aMirai
2026-05-22n/aelf 19c2334ddcb853b649ddaa050d75ed105f10a174ef63008ab551e884e4606c4cn/aMirai
2026-05-22n/aelf 0c7fea3f760473961934e8ed6c4924588894a25c169849213dcea260192f7200n/aMirai
2026-05-21n/aelf b3a89cf33392269e48d33f58f8d2241e2987903a09a462561899748bc66c619an/aMirai
2026-05-18n/aelf b47494d1bf71d36cd689e11d4620e61748a91199431c5bd3ac8f3e50879e1b6dn/aMirai
2026-05-15n/aelf 2bd87e9554f51fe80ebf48480ee003c7c3594fe3045256e413d896b86fad8591n/aMirai