URLhaus Database

You are currently viewing the URLhaus database entry for http://cnc.carteldesinaloa.ru/389242390482/nuklear.mips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3276015
URL: http://cnc.carteldesinaloa.ru/389242390482/nuklear.mips
URL Status:Offline
Host: cnc.carteldesinaloa.ru
Date added:2024-11-04 21:18:08 UTC
Last online:2024-11-29 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2024-11-29 05:35:13 UTC to abuse{at}amazonaws[dot]com)
Takedown time:24 days, 8 hours, 33 minutes Bad (down since 2024-11-29 05:52:13 UTC)
Tags:botnetdomain elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-11-07n/aelf 16fafa45c4cad07fa0f348b446a1136ed3fd6197e4ffbcf74fefdd54c4ee88b6n/aMirai
2024-11-07n/aelf edfd174cf49138f5553663ddbcdec79b71072354aab6c38ecc03679f8bf956d0n/aMirai
2024-11-06n/aelf e492b5708793102cee55a2cc995d72535e8d70c2ae0c16d9b80f0b1f0b9a1a79n/aMirai
2024-11-06n/aelf fb84e0892887bdbab60a028f59376c0aa390f31392e078d921436ff5bef48f74Virustotal results 62.50%Mirai
2024-11-06n/aelf d8bfa095e3cad27661c08757bcc817fa29dbf56deb15f9b07b2f74889ce58d38Virustotal results 64.06%Mirai
2024-11-05n/aelf b969393c9ed3b0323c2ddc3534d537f4711d5dffe78279d3b2a023251bb391c6Virustotal results 65.00%Mirai
2024-11-05n/aelf beff634b63878924e8c02f4548ef1978c6615073599644a9add8cd8a9125d838Virustotal results 64.06%Mirai
2024-11-05n/aelf f64606d565ce30900ba92c42d8d07b9ad9e10fda7e101ad42b56ee6d21ee5709n/aMirai
2024-11-05n/aelf 8266d5e6347d3428edbe5d3f79437508f4fc8342c910d16905f353c512f0941aVirustotal results 59.68%Mirai
2024-11-04n/aelf f405c65d62efed97928b8b32fd85d1f8006030bfd60827fe0fe9f8a5e0171af0Virustotal results 60.94%Mirai