URLhaus Database

You are currently viewing the URLhaus database entry for http://95.155.151.113/d/xd.ppc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3894053
URL: http://95.155.151.113/d/xd.ppc
URL Status:Offline
Host: 95.155.151.113
Date added:2026-07-30 02:38:14 UTC
Last online:2026-08-16 13:XX:XX UTC
Threat:Malware download Malware download
Reporter: botnetkiller
Abuse complaint sent (?): Yes (2026-07-30 02:39:19 UTC to report{at}abuseradar[dot]com)
Takedown time:17 days, 11 hours, 15 minutes Bad (down since 2026-08-16 13:55:05 UTC)
Tags:elf mirai link opendir PowerPC ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-08xd.ppcelf ee6a1407df1393298e114b6af10062739ba8bb2bb476d2cf7e0c9bf5b66b5eecn/aMirai
2026-08-07xd.ppcelf af228d098b639432aec922f1cab742d72f1cda07e9bafc1289e2d1da99dec7can/aMirai
2026-08-05xd.ppcelf 4d6387cc077dce1889995f555ec74ed5fa3f66ead3e453b069031e89cfd5226an/aMirai
2026-08-04xd.ppcelf f0376aa12f1820f24d8ad8f6004f5322c0b6c7cd2c9a1ac2a971d528b3d06f21n/aMirai
2026-08-02xd.ppcelf f73e07daa7a1016efd4ee10266960549d4e2f85d0bc840d4c6a0a632e19e6c05n/aMirai
2026-08-01xd.ppcelf 6b659aa475b4a9e6b12cca0a09ba66b207226ab904754c4f3080a91eda00f48fn/aMirai
2026-07-30xd.ppcelf a2da49f221ea054d054ad6864fa443ffafd25a21ffc643a30257980963f36c7an/aMirai