URLhaus Database

You are currently viewing the URLhaus database entry for http://160.30.44.120/neon.powerpc-440fp which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3561586
URL: http://160.30.44.120/neon.powerpc-440fp
URL Status:Offline
Host: 160.30.44.120
Date added:2025-06-12 16:48:33 UTC
Last online:2025-07-09 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2025-06-13 20:24:08 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:25 days, 15 hours, 21 minutes Bad (down since 2025-07-09 11:45:45 UTC)
Tags:censys elf mirai link opendir ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-06-30n/aelf ce170ef64daa43aff21cb7dc0dc9c9d2209aebaec5457935023aad89bbabc054n/aMirai
2025-06-20n/aelf 4c255a91e27a0a94b6bb7510aea9998dbb2fe956522988a3b939ca2a02238423n/aMirai
2025-06-20n/aelf 7bfcbbc89b7c42e8d48cdad28a2a80e789122fd279581af104840b8adf6027abVirustotal results 54.69%Mirai
2025-06-20n/aelf ef7655855006613cd03197f08ea098eb4a316781db9da0c11f8255cea6e0da22n/aMirai
2025-06-20n/aelf df04e74254963d66af45c0c3ec732398801ee6f4db19c92b04a322f3656f2262n/aMirai
2025-06-19n/aelf 87a85652ff5a5f597a5b00effd3e7baa6b870135c1ff6587ca34da99915bf85bVirustotal results 53.12%Mirai
2025-06-15n/aelf c92d72ab25ed0fa049d3ba53c66f0c50263c867845ca2d4762f279d9d34b5e3fVirustotal results 52.38%Mirai
2025-06-13n/aelf b3a13b2af6f129c3b5efb32fd434f7c1f1c3083dcbbcfac4c393d1d7874b770cVirustotal results 47.62%Mirai