URLhaus Database

You are currently viewing the URLhaus database entry for http://154.201.82.47:808/linux_ppc64 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3581032
URL: http://154.201.82.47:808/linux_ppc64
URL Status:Offline
Host: 154.201.82.47
Date added:2025-07-11 06:35:58 UTC
Last online:2025-11-05 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2025-07-11 06:36:13 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:3 months, 27 days, 6 hours, 13 minutes Bad (down since 2025-11-05 12:49:48 UTC)
Tags:Kaiji opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-10-15n/aelf 67485dee9af527bfe02b5aa8c453683ef751612de7d4c5a6f662b079ca202972n/aKaiji
2025-08-11n/aelf 94ea60ce05f0b6e6b0e2767c7b0ea3399c8f107a141e5178b56a2f2c6ea640a0n/a
2025-08-11n/aelf ba24c08dce307003ff7ea10441b0faf83223362cd3c4714426383d79ee652b6bn/a
2025-07-11n/aelf 677c371b9af1ba72f0565c931960a4515ba915dd51b537f370b0a7b83a6a3b5dn/aKaiji