URLhaus Database

You are currently viewing the URLhaus database entry for http://91.92.242.241/ppc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3657704
URL: http://91.92.242.241/ppc
URL Status:Offline
Host: 91.92.242.241
Date added:2025-10-05 13:51:18 UTC
Last online:2025-11-02 23:XX:XX UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2025-10-05 13:52:19 UTC to abuse{at}metaspinner[dot]net)
Takedown time:28 days, 9 hours, 24 minutes Bad (down since 2025-11-02 23:17:11 UTC)
Tags:DEU elf geofenced mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-11-01n/aelf df55f393fb3f9ff46a160e942c8b7960d9317f032f35e054628bcddca08486a8n/aMirai
2025-10-21n/aelf 4dbd63a0119cb8fbd7ac57334ff3c7f3566dae70b75a2e7c175d3768e1c6b9c1n/aMirai
2025-10-20n/aelf 9e733e07004badb2ee65056004f25a92cefbc6d77151187da8ee91553fae294cn/aMirai
2025-10-17n/aelf a80b8f4aad5c2cb64518c3b3620ae8d1bd38f3a1b4abafa92298d9862e59884an/aMirai
2025-10-16n/aelf 458152b470d3d782f36a5e4c81f1cb59ff7b2194c52952dd47953d3bd1be3591n/aMirai
2025-10-16n/aelf 357b6b145fa941bed9f0f2a643d94d7363b2880e7e5762280c7b4b933df4570fn/aMirai
2025-10-15n/aelf 72ff451d0ee64b5a8cdacef64701e2a8ad5d92258861686bd44f34b066e5cb7fn/aMirai
2025-10-12n/aelf 380e60409bca38fa43b78ec02c2b21e1d18168b2c89989ad4d1aefc35fa9ad06n/aMirai
2025-10-12n/aelf 205dcf866b35138c99975f4272523fb3639cb5d3301871250b4efca280783b06n/aMirai
2025-10-10n/aelf 9e37c6280a199c7a8cd0fb9d7249b86fdca79914ddd98ef8b7bea49f6434e96an/aMirai
2025-10-05n/aelf 7a8e1ee9dd0e857eab6a19fbd52bc2123dd0fc1cc5ba520436871381604cbb8fn/aMirai