URLhaus Database

You are currently viewing the URLhaus database entry for http://185.208.158.140/bins/powerpc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3576621
URL: http://185.208.158.140/bins/powerpc
URL Status:Offline
Host: 185.208.158.140
Date added:2025-07-05 13:05:08 UTC
Last online:2025-07-15 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-07-05 13:06:11 UTC to abuse{at}globaldata-cloud[dot]com)
Takedown time:10 days, 4 hours, 3 minutes Bad (down since 2025-07-15 17:09:18 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-07-12n/aelf cefd6e28cd1c138a151a1721dbbe1a53b410424b259179faa792fcc8063952ban/aMirai
2025-07-11n/aelf 544cbcf87d9a592fbbb8f931e3b8e93afb1ff24655e7d6905da7b35d055ee6b9n/aMirai
2025-07-09n/aelf 219906d79878db64864b0df75ca5229007dfc89516265f01aaed5101887da9f8Virustotal results 53.12%Mirai
2025-07-05n/aelf 36d4485e59a43a4bd936bd636007d2dafb5a136b42d6859934db2e147f96dee0Virustotal results 62.90%Mirai