URLhaus Database

You are currently viewing the URLhaus database entry for http://cnc.carteldesinaloa.ru/389242390482/nuklear.arm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3276020
URL: http://cnc.carteldesinaloa.ru/389242390482/nuklear.arm
URL Status:Offline
Host: cnc.carteldesinaloa.ru
Date added:2024-11-04 21:18:08 UTC
Last online:2024-11-29 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2024-11-29 05:35:14 UTC to abuse{at}amazonaws[dot]com)
Takedown time:24 days, 8 hours, 40 minutes Bad (down since 2024-11-29 05:59:22 UTC)
Tags:botnetdomain elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-11-07n/aelf 56f7b319fcba3b0dadc568dbb20a0c477b55f57e746e41fb6fc254a959a16ca8Virustotal results 59.38%Mirai
2024-11-06n/aelf 2f808167cf78470b510c17752bfb568927d6dc1d41e2b6404a213061c08f7c77Virustotal results 59.38%Mirai
2024-11-06n/aelf 82583255a033241bb4001e58ac153aa146e5b6c8e066189194e9b56cbb90729cVirustotal results 60.32%Mirai
2024-11-05n/aelf 6a4f0c194ff955c49428fd391a73eed5477541588feddbfde6a1f5acea1489afVirustotal results 62.50%Mirai
2024-11-05n/aelf b1944cf3ad34fbdac323ab7876f43647045cf16c1666a3aa45f622cb1c3eed6bVirustotal results 62.50%Mirai
2024-11-05n/aelf 32d995b6e6c7936eb393989e78e32fe650815cd4f29de5d79da84e93f160abcen/aMirai
2024-11-05n/aelf ccaf02dd0be0f3177499a5b3a8547253f41ee628fd83ddf3d3b048c4b997914fVirustotal results 64.06%Mirai
2024-11-04n/aelf 8585172698c2e58c4b6166bef849523fefee6cf4f5c47f4a38d0c69f5fe1b321Virustotal results 64.06%Mirai