URLhaus Database

You are currently viewing the URLhaus database entry for http://bn.networkbn.click/condi/bot.arm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2787724
URL: http://bn.networkbn.click/condi/bot.arm
URL Status:Offline
Host: bn.networkbn.click
Date added:2024-03-20 14:31:13 UTC
Last online:2024-04-12 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-04-11 21:18:05 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:25 days, 10 hours, 51 minutes Bad (down since 2024-04-17 09:08:59 UTC)
Tags:elf mirai link moobot

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-04-16n/aelf 9e5cbaecec6ca3b1e09d9422682c6df24d29f7a6389cf9fec4f4e3fc9543cc9aVirustotal results 47.54%Mirai
2024-03-26n/aelf d3701af69558337e6e91ca22b171fbbeb48454135ae1f77f1009080b77b25c71Virustotal results 43.94%Mirai
2024-03-26n/aelf 2a0459f21b7dc26c02e9a34bd21df9934b8d74e3bf90bdfddd0829afa5f4b13cn/a 
2024-03-25n/aelf 6104674bfa58ac11c697062d6068c568384f13037d1a146dbe25cd001104ca8bVirustotal results 63.49%Mirai
2024-03-22n/aelf 8ae88956722b2860096ef0eb7d2b4b24329f4ef9486da9c32385063a39cc4b04Virustotal results 42.86%Mirai