URLhaus Database

You are currently viewing the URLhaus database entry for http://216.9.225.23/titanjr.ppc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3838518
URL: http://216.9.225.23/titanjr.ppc
URL Status:flame Online (spreading malware for 23 days, 7 hours, 34 minutes)
Host: 216.9.225.23
Date added:2026-05-04 12:32:38 UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2026-05-04 12:33:17 UTC to info{at}whitelabelservices[dot]us)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-05-11titanjr.ppcelf a3406ab40a30d6959180a558242c55bae9ffdd6cb72c38450294bff870ec70ebn/aMirai
2026-05-10titanjr.ppcelf 429882997568346a590225ef6298dd5043e2c45ff2010d58e5f6178419cd55c2n/aMirai
2026-05-09titanjr.ppcelf c592617e12d131d98f8258da1cbe33b427bdb165e6986b5e79f8dda65af610acn/aMirai
2026-05-06titanjr.ppcelf 173959b279c04556e5fd8998a4e0820296b5ca296f25cd03a2f58b4ad6278b72n/aMirai
2026-05-04titanjr.ppcelf 6e3777e14c40520476acad6e89e9a15f1b46f57ce16b4cb9c561bb8d3e3b788an/aMirai