URLhaus Database

You are currently viewing the URLhaus database entry for http://198.144.179.82/mpsl which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3904517
URL: http://198.144.179.82/mpsl
URL Status:flame Online (spreading malware for 1 day, 0 hours, 32 minutes)
Host: 198.144.179.82
Date added:2026-08-16 21:16:33 UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-08-16 21:17:14 UTC to abuse{at}colocrossing[dot]com,net-abuse-global{at}hostpapa[dot]com)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-17n/aelf 94a123f711aecbb931963dcdccd918336a1ed2ce0455a7c3e122c55482fe1399n/aMirai
2026-08-17n/aelf 7c97e6710bc6531199ef0cfddb15b339c3138f1b8f7d83ed04b00bc3beb49e76n/aMirai
2026-08-16n/aelf 7a4ec49e15f8a707fbad1497b4481f9cf4ad8ddf1efcd8bfee52b953467e3dedn/aMirai