URLhaus Database

You are currently viewing the URLhaus database entry for http://91.92.240.38/powerpc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3748053
URL: http://91.92.240.38/powerpc
URL Status:flame Online (spreading malware for 12 days, 5 hours, 55 minutes)
Host: 91.92.240.38
Date added:2026-01-01 12:50:26 UTC
Threat:Malware download Malware download
Reporter: ClearlyNotB
Abuse complaint sent (?): Yes (2026-01-01 12:51:16 UTC to abuse{at}lanedo[dot]net)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-01-12n/aelf 2134e305ef5138fbf6a839bf1aa47e9a96aaaeb380608632381b229c8ae201e0n/aMirai
2026-01-12n/aelf 05dc42a9a2c53b527e3fbd7b9896c8f158726e2a4be0f7a6e4b120a233c35e6an/aMirai
2026-01-05n/aelf 943f01df1b8f78c6e32ffcf8d7c42d0ee899f0dd301da4b009d25899a2534c53n/aMirai
2026-01-04n/aelf 6f0e227e059bb85a008d615ceb05c5c242a60b95cc038bf804565a17da2cc0d2n/aMirai
2026-01-02n/aelf 3ca8b2afb0d98ac41d957488161302d34b21d1c2767a7dc94eedcbbee8209e5fn/aMirai
2026-01-01n/aelf 5dcb0c03379edeba229f7d7a92661b58972a04526575941890403e4daebf9036n/aMirai