URLhaus Database

You are currently viewing the URLhaus database entry for http://160.191.245.128/ppc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3433737
URL: http://160.191.245.128/ppc
URL Status:Offline
Host: 160.191.245.128
Date added:2025-02-09 19:37:05 UTC
Last online:2025-03-06 14:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2025-02-09 19:38:04 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:24 days, 18 hours, 54 minutes Bad (down since 2025-03-06 14:32:06 UTC)
Tags:censys elf mirai link moobot

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-02-24n/aelf 4c69ccc4c590186eb6045441e1a97ecfa3ef83956e8acde302e8fbc29603cee9n/aMirai
2025-02-22n/aelf 14e440abe5f6167be7010a292186bfab41bbf3fdc76684857d4534cba8cb73f0n/aMirai
2025-02-21n/aelf 9bcd95230051938d13c2b1af18fe6f1c9f87b8407bae44b35cab6288275b330fn/aMirai
2025-02-20n/aelf de1bf5f71fe96a1acd344ba80ac3e64bdbd352c929c73870ff0e0023f3c490e0n/aMirai
2025-02-09n/aelf 436b9fab4b17ab7bd314820ecc9a23305dcd1f0177465bc17c73cf0f1375221fn/aMirai