URLhaus Database

You are currently viewing the URLhaus database entry for http://94.156.177.146/389242390482/nuklear.arm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3275745
URL: http://94.156.177.146/389242390482/nuklear.arm
URL Status:Offline
Host: 94.156.177.146
Date added:2024-11-04 17:27:07 UTC
Last online:2024-12-01 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: tolisec
Abuse complaint sent (?): Yes (2024-11-04 17:28:08 UTC to abuse{at}virtualine[dot]org)
Takedown time:26 days, 16 hours, 13 minutes Bad (down since 2024-12-01 09:41:47 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-11-07n/aelf 56f7b319fcba3b0dadc568dbb20a0c477b55f57e746e41fb6fc254a959a16ca8n/aMirai
2024-11-07n/aelf e86d3ae60e967741de3c0685567dc4ba301a723a0b7c7433cccd5fbab9e56efbVirustotal results 61.29%Mirai
2024-11-06n/aelf 2f808167cf78470b510c17752bfb568927d6dc1d41e2b6404a213061c08f7c77Virustotal results 59.38%Mirai
2024-11-06n/aelf 82583255a033241bb4001e58ac153aa146e5b6c8e066189194e9b56cbb90729cVirustotal results 60.32%Mirai
2024-11-05n/aelf 6a4f0c194ff955c49428fd391a73eed5477541588feddbfde6a1f5acea1489afVirustotal results 62.50%Mirai
2024-11-05n/aelf b1944cf3ad34fbdac323ab7876f43647045cf16c1666a3aa45f622cb1c3eed6bVirustotal results 62.50%Mirai
2024-11-05n/aelf ccaf02dd0be0f3177499a5b3a8547253f41ee628fd83ddf3d3b048c4b997914fn/aMirai
2024-11-04n/aelf 8585172698c2e58c4b6166bef849523fefee6cf4f5c47f4a38d0c69f5fe1b321n/aMirai