URLhaus Database

You are currently viewing the URLhaus database entry for http://bonet.networkbn.com/arm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2765487
URL: http://bonet.networkbn.com/arm
URL Status:Offline
Host: bonet.networkbn.com
Date added:2024-02-20 13:06:12 UTC
Last online:2024-02-29 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-02-29 04:15:09 UTC to admin{at}serveroffer[dot]lt)
Takedown time:24 days, 0 hours, 6 minutes Bad (down since 2024-03-15 13:13:21 UTC)
Tags:elf mirai link moobot

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-03-13n/aelf 70cd405b91de1d9c719cda38dcd62a171a32179d486d321f8b774e8dffd2714aVirustotal results 65.08%MooBot
2024-03-01n/aelf c712d9fec48fc06d72d793e8b545453b0d74d2389c81f975673ff9dde94e2372Virustotal results 41.94% 
2024-03-01n/aelf 3b7e160f74da04963f6070298f26363c09d1646dee81185752a547206faa5ca9n/a 
2024-02-27n/aelf 2a73e5ffa843b1788f1d16ae297bb4b0ae10fbebc3e78ddb9296a5c8b0659556n/a 
2024-02-27n/aelf ba7730bb92140cb638e825b8ede6b008d05d7615e929b56cbec5740901a607ebn/a 
2024-02-21n/aelf c39c7dced3d6a5c19a86f9699eb15f52354d53ce2a0740a66093bc1e93cf5d27n/a 
2024-02-20n/aelf 2c9548ca6298f438d4ab3464c7c1fdb93db4a5e1a005227d7bdaf8616f91c11fVirustotal results 66.13% 
2024-02-20n/aelf f0df1969eb7f51f46596bd6b7bd8530939fd1a8775c58713359194aea471dd26Virustotal results 48.33%Mirai