URLhaus Database

You are currently viewing the URLhaus database entry for http://vps.atlas101.us.kg:7768/flutter.x86_64 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3904705
URL: http://vps.atlas101.us.kg:7768/flutter.x86_64
URL Status:flame Online (spreading malware for 2 days, 10 hours, 56 minutes)
Host: vps.atlas101.us.kg
Date added:2026-08-17 05:38:09 UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Abused domain (phishing)
SURBL :Blocked
Quad9 :Blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: tp0x
Abuse complaint sent (?): Yes (2026-08-17 05:39:16 UTC to abuse{at}tech-ties[dot]net)
Tags:mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-19n/aelf 9273645ed48f2d5fe261af57dbfb6e7e40977e6620e32c6da841ed87cbeef110n/aMirai
2026-08-19n/aelf 87bd40e9975f43929703c27cd9494314ca02d28f02d2dd0066e4e708f9c98006n/aMirai
2026-08-18n/aelf dfba50b6cba1167e2720b9efff27b352730d85981154d685c27456bb51e71a78n/aMirai
2026-08-17n/aelf 5537f0345c0d67d98c28609e1f8ea4f4e81460bdf7c96c1e62a81d457518489en/aMirai