URLhaus Database

You are currently viewing the URLhaus database entry for http://94.156.177.146/389242390482/nuklear.arm6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3275752
URL: http://94.156.177.146/389242390482/nuklear.arm6
URL Status:Offline
Host: 94.156.177.146
Date added:2024-11-04 17:27:08 UTC
Last online:2024-12-01 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: tolisec
Abuse complaint sent (?): Yes (2024-11-04 17:28:08 UTC to abuse{at}virtualine[dot]org)
Takedown time:26 days, 15 hours, 45 minutes Bad (down since 2024-12-01 09:13:56 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-11-07n/aelf 45a5513c3f9e61ef9f25fc5424bfd8a3a27bc62c00e35988234ef1df87d8ebcen/aMirai
2024-11-07n/aelf 536bd0994808e30a35ad9f0849ae9acce14f04377cbaaeb44ac0fbc6277fb09eVirustotal results 60.94%Mirai
2024-11-06n/aelf feb169fe5d994daa39d3924a772910035539a7c61096ea873e793428c515d627n/aMirai
2024-11-06n/aelf 784abb3b0ee6da36ed9118f7c0926a3589b4df466e34fd16abd2e463e1565c11Virustotal results 61.90%Mirai
2024-11-05n/aelf df0558e99e9bac6835ed459267967612eb868c44e3d4869d1146073a0bcfce73n/aMirai
2024-11-05n/aelf bbf6e2e6c035f46121463a2d226dc379b90118ec483703a75c710737e0391fc1Virustotal results 63.33%Mirai
2024-11-05n/aelf 250ed43a761664b61a3e4fc769dce3e65b7026595de71af8092112e95097d50dVirustotal results 64.06%Mirai
2024-11-04n/aelf d520049ad7e751fc1c136b6c05c63f7a63b91ec8ee748ab3028bb4c870f99db7n/aMirai