URLhaus Database

You are currently viewing the URLhaus database entry for http://secure-network-rebirthltd.ru/arm4 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2803853
URL: http://secure-network-rebirthltd.ru/arm4
URL Status:Offline
Host: secure-network-rebirthltd.ru
Date added:2024-04-07 15:44:04 UTC
Last online:2024-05-05 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-05-05 01:10:11 UTC to abuse{at}4media[dot]bg)
Takedown time:27 days, 8 hours, 39 minutes Bad (down since 2024-05-05 01:43:20 UTC)
Tags:elf gafgyt link mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-05-03n/aelf 0a7152d883e631171667ec169a0d078f337ee4754eb4d33abcd15e251b93b50fVirustotal results 53.12% 
2024-04-15n/aelf 28596abc47444f790dbebac0c30693617630e3c32597b693ea2c5550ede8d95cn/a 
2024-04-15n/aelf 5bf375d9f87b5825f6d3939411247ad9271dd3711dc9a475744a559ea2f00ff6n/a 
2024-04-15n/aelf be29e98093b9e3119e47056767bc72d38ae07f61e54e35a88516b6626da08fa6n/a 
2024-04-15n/aelf 1223e87be923d41b5c797c436c10fe574a908ccdcffafb1695b135e094b30982n/a 
2024-04-15n/aelf f14756634e90ae9736cbaf229c24f95a20f5c6cb41748e72be1ccd76da3ffc5bn/a 
2024-04-15n/aelf 5fec7ccf61fc963b009a377c280d122b5b07461112e1632de2057fe01458e185n/a 
2024-04-14n/aelf 873d4e89dad0a7e856081ed4418f9ddd03e6f40cb2ed2bccf3ca36c78992f4c8n/a 
2024-04-14n/aelf 7b9d5c85e552270fedee8a9e1a87b117542b87c28b40f7da041b1bcd74f21015n/a 
2024-04-14n/aelf 3d66e6334b96b782b295b25ec8dbe4417a5b3c435e6cba8542be739b7be7a180Virustotal results 21.31%Gafgyt
2024-04-14n/aelf 218c4fbea4b1c0ec5ef2e7304413c19e2704af5ecd5509a8745fdd4e09b468fbn/a 
2024-04-14n/aelf aead71f5da9946457ac94292c20a74ee2a628eecfc062481356715eb575ab980Virustotal results 33.33%Mirai
2024-04-13n/aelf a255c2a2eda7fbb0d7bffefa715ca2c99a740b6be42bb2a57ce306297b42f485n/a 
2024-04-13n/aelf 5db85552c22f63c1c018f9c5d4eea8b5151d9c019bad9477161c3e5a36a14458n/a 
2024-04-13n/aelf e7cff509324fda37efc85cf1b60f1fa4440b5adf40d13724c59f49b00cedcd09n/a 
2024-04-13n/aelf 55fd625cd2ba02607d61ca41899c25d30e77946f2a8ad0acd7080902609703e1n/a 
2024-04-13n/aelf 5afa3c07a815e25aaf6c8a1b73e00d5d5c051d9eafd11f2784fae8fb52412a82n/a 
2024-04-12n/aelf c826cd524e306947f26f9453828caada7a04c3fc9fb66297b76f473862603ab9n/a 
2024-04-12n/aelf 77cafa5f7486e657a9c9561abf7361630b24f2eda26b59ba0ef4c7043b266fean/a 
2024-04-11n/aelf 1cb4ee8e4d88a9a8411c61c41063f8e2788fd3cfcf5b6088788bc3d8c5057a25n/a 
2024-04-11n/aelf 85e4f8f14e55bd68ea548fbbbd110d00edad97f262cd2e058213fbb6482df6a5n/a 
2024-04-11n/aelf 132e55ce1a9ccca0ff6877d921386f0d82c295ca15e3aded4e6df62cfc4f7a00Virustotal results 46.03% 
2024-04-10n/aelf 10e5c9d86e138f2ef9e39f2c067fff2d468e91e23d760156b3f3dadb3e3da5dfn/a 
2024-04-10n/aelf 3980b01f52ee6681631acdf76c38b41e07b9d6d208ac2ce05a1d9cc89e6ec3c1n/a 
2024-04-10n/aelf 9471a8ed19def94f9f39aea1e8c1d9837a5d489b7ec14fe9362b88af09303a28n/a 
2024-04-10n/aelf 4975f0eed59e144769cf2089c7633dc2a973ee834522d7edafe887c71c779757n/a 
2024-04-09n/aelf 97c86a17993432e6d800615c00622b8470beb088813b849df5495ce0de092396Virustotal results 34.92%Mirai
2024-04-07n/aelf 45b52f8ff47eb676662dc0b019eb4183a356be94add3f71bc1a86df99ce9ecafVirustotal results 33.33%Gafgyt
2024-04-07n/aelf 025797cf6cffc5c4b7d62adbc1756175cfcdead77d91219804a5e1ec34b41230n/a 
2024-04-07n/aelf c5a4de50f5162b0355e8a833e2ad4f4464e2cdc13793079250fb13979a57d99bn/a 
2024-04-07n/aelf da7c4b5c4283a005845d8fdaaac377d3a8282b8fed28e3f105eedb49729c357en/a 
2024-04-07n/aelf 6aba2a63fe5ee0caee2e5a50fbd8a5c71fe49e22f86d106ca4c52e0a7f01eaa8n/a