URLhaus Database

You are currently viewing the URLhaus database entry for http://179.43.182.70/mipsel which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3850773
URL: http://179.43.182.70/mipsel
URL Status:flame Online (spreading malware for 7 days, 5 hours, 42 minutes)
Host: 179.43.182.70
Date added:2026-05-20 16:38:40 UTC
Threat:Malware download Malware download
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2026-05-20 16:39:29 UTC to support{at}PRIVATELAYER[dot]COM)
Tags:DDoSAgent gafgyt link mirai link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-05-27n/aelf 6ab2f89ea340ad724cde6dd0ac1043790aef84b000a9a18e5bbb8853e832f9c8n/aMirai
2026-05-26n/aelf e18cff4653b4926388bae9a73d4e2c4b4fec54f254d1e79850ab79b9d7b40962n/aGafgyt
2026-05-26n/aelf 4dd237e75be1d37f1abf249378030a4d54880e6c9b708599365e0fe14ed7455fn/aGafgyt
2026-05-20n/aelf b56023af561e3b3ec15afbf9a7ff10be0a17b310a6576897678707115889a566n/aDDoSAgent