URLhaus Database

You are currently viewing the URLhaus database entry for http://botnet.nguyennghi.info/mpsl which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2557037
URL: http://botnet.nguyennghi.info/mpsl
URL Status:Offline
Host: botnet.nguyennghi.info
Date added:2023-03-03 20:00:33 UTC
Last online:2023-10-03 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: tolisec
Abuse complaint sent (?): Yes (2023-09-02 06:47:06 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:7 months, 3 days, 23 hours, 7 minutes Bad (down since 2023-10-03 19:08:53 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-09-02n/aelf ce3145d91cbfea57ef2e7e7102e9968fa30ceaade20a246118fd734c66e4c79en/a 
2023-08-16n/aelf 2e6cbed3ea492454d108b0646a07dcd1512a487ded644572e9361eaec31b427fn/a 
2023-07-26n/aelf c9b2680e7f4d7e1aa403a030617718a2812b7f6252e7dc0dc5838db54651b6cen/aMirai
2023-07-07n/aelf 699e3c1c49dc668266ff8cff88d88d22084ab88bb8e66ff93f4ec9521ea75af5n/a 
2023-07-02n/aelf 5eaba5ae54871df1cbd6d3d07da7aa51494d978688bb69531c068e78a1f5967an/a 
2023-06-08n/aelf e9992feb2c467626f7780b63e31cc93c86d2896f028b94768a1677d7d69de7e6n/a 
2023-06-04n/aelf 4970d7f2123cc91f09c1046edfcca639abb59e192b093fddecd5af1502c7f064n/a 
2023-05-15n/aelf d090ccecae3f6741b722a27f4b991a1fd8d92886583b977cc007e0db83b08168n/a 
2023-05-09n/aelf 249decc6833cdceb6de900de7ad7a18a3db155b5e03cc3dc690de3e6a6c28262n/a 
2023-04-26n/aelf 184608031961f162c02a1be838e21fb084e44c82f7ebfc3a8754a08b109d3f09n/a 
2023-04-22n/aelf 156e95aa1afd59b65389f7d0ff6f0a0a72a5fe934c204ecbbab7364bb608462fn/a 
2023-04-12n/aelf 8a658cd558ca3eec9bef18ecb4975fa26824b1a8a0f010cb19200f614a56442fn/a 
2023-03-19n/aelf c5908f004483a1a97143b91471ff00e1652b55e6f20285308fa38c0e7287494dVirustotal results 60.00%Mirai
2023-03-16n/aelf bb3130fc2b0ff0c475fc41af085dc7514a3b9b323d0aa59a5a724b39e8aa5751Virustotal results 70.00%Mirai
2023-03-03n/aelf 1790cdb81e5751510190df985c9536f0df6999f7706d2b44ae90cadb2e2801b9n/aMirai