URLhaus Database

You are currently viewing the URLhaus database entry for http://vps.atlas101.us.kg:7768/flutter.mips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3904709
URL: http://vps.atlas101.us.kg:7768/flutter.mips
URL Status:Offline
Host: vps.atlas101.us.kg
Date added:2026-08-17 05:38:09 UTC
Last online:2026-08-21 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Abused domain (malware)
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: tp0x
Abuse complaint sent (?): Yes (2026-08-21 05:11:20 UTC to abuse{at}pitline[dot]net,abusep{at}kharkiv[dot]com)
Takedown time:4 days, 8 hours, 51 minutes Bad (down since 2026-08-21 14:31:12 UTC)
Tags:mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-21flutter.mipself 9cce743cdcd606fd7e5d4958a09a777f31e0b63f0df38df81f5a51180ccff2a5n/aMirai
2026-08-19flutter.mipself 595d2c2250abaf70cc91cd6b316966f6ba7569dcdd6c252d11d1ef374e25267bn/aMirai
2026-08-19flutter.mipself 00c311eeec60d2203d27c5ea55a1fc302658951b90c4c7bd6600f91ec8993db0n/aMirai
2026-08-19flutter.mipself c431380b1465da626d50446f275926d59414a3187050116b12c870fc7883c508n/aMirai
2026-08-18flutter.mipself 9a6f43f03b242b81af4d9f4368463a9fa5700c00f16cbfc2b8cae20ef23b3114n/aMirai
2026-08-17flutter.mipself 562cf6d6cc50b4f1fc7117315ca8c08797c934e11619eb1a30fab168aa90f0ban/aMirai