URLhaus Database

You are currently viewing the URLhaus database entry for http://botnet.nguyennghi.info/arm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2557043
URL: http://botnet.nguyennghi.info/arm
URL Status:Offline
Host: botnet.nguyennghi.info
Date added:2023-03-03 20:00:34 UTC
Last online:2023-09-13 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: tolisec
Abuse complaint sent (?): Yes (2023-09-02 07:17:05 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:7 months, 3 days, 23 hours, 13 minutes Bad (down since 2023-10-03 19:14:35 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-09-02n/aelf b874e3e360a8e9c9ba9a035b451fa0c69e1315fed1438e49a5968fc93da9c822n/a 
2023-08-16n/aelf 838177bdff0878a9282bbe913daab68ccb5505768ab072ab6b9fc4c45064f55fn/a 
2023-07-26n/aelf 75dc319cc0bfe122a22d786ebfbebb21b05c53d13ec4b5eb08ec56b9f91e3bf1n/aMirai
2023-07-07n/aelf c38a1d81f95edff77e6145998aaf2b79ce5cbcbc989f67a3b3b90d0e9cf98a30n/a 
2023-07-01n/aelf 03bc282834f5d695d26f6a93a1aa617521b44d18ad3a4216fde85e180df651f0n/a 
2023-06-08n/aelf db31e7ffb4d8e937d4726317ac2986d9fa76269e9b4c7b0b25c5bd4f8e357aden/a 
2023-06-04n/aelf fc273dcc4eca8a9943e3bf7066d2bfa7d1cb459c924f7bf3691c2e82d08ac562n/a 
2023-05-15n/aelf f0e9bcabdceaf2a6f9bb7f9507a4bfba192393372bcaf476213d4190699c4106n/a 
2023-05-09n/aelf 1cdf23679b377a26cc9d13d26928f99393490ad792c3065b41a1df308577b275n/a 
2023-04-26n/aelf 60d8e0c25ad810cd359d3bee52ced31417710c8e01798dfdac511df0a6119799n/a 
2023-04-22n/aelf cd6cac4f804a0ddf5ab0f1ae2e66673515dcfa4fe5cf2252a5a7c76e30055d4bn/a 
2023-04-12n/aelf a4bad0705d3c9b35c591f34d53b9c815087403cd31012bc6225a7faa3e75c78fn/a 
2023-03-19n/aelf 3118903e1bbc225ee5147411ed3f524514ab9f5afbf5b7cf3eb9e5f5e2e7beebVirustotal results 54.39%Mirai
2023-03-12n/aelf 5547725f48c00ef4b5f7605ce2c32529aeb440174a3f6def5fba46e639dc735bVirustotal results 63.33%Mirai
2023-03-03n/aelf 2e4dbd7b626e35da1f545749fe141f1939a07e886cc1bc8db62010d72e2b6700n/aMirai