URLhaus Database

You are currently viewing the URLhaus database entry for http://hailcocks.ru/nsharm7 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3289047
URL: http://hailcocks.ru/nsharm7
URL Status:Offline
Host: hailcocks.ru
Date added:2024-11-13 14:56:07 UTC
Last online:2024-12-21 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2024-12-17 20:21:12 UTC to abuse{at}fiberway[dot]fr)
Takedown time:1 month, 26 days, 15 hours, 50 minutes Bad (down since 2025-01-09 06:47:32 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-01-05n/aelf aabec6b4032d7f0f573efc18bf1d530de4ea258dff35ab772702f7b50104a4a3Virustotal results 22.22%Mirai
2024-12-28n/aelf c9b6fa1602a64cf77e5744f895e31db8557dbd588e7efafa7aaada3a53cc4422Virustotal results 56.45%Mirai
2024-12-21n/aelf 4d315e63c562b354627d6b169e197d5cf108f318b446dac59c8edff283314e9dVirustotal results 31.75%Mirai
2024-12-21n/aelf 260e59098b69b177f0529ae6f78226477670235d0595568a7d9eccb521972b8fn/aMirai
2024-12-20n/aelf a41620a962349468235a9c697a0e3b4b54de42eb5a5982b5a0409de23323e3c6n/aMirai
2024-12-03n/aelf d61a780122551b1e8368a0c927437ac324eaa4c59584ba4b5cb1ef94adfd1ca9n/aMirai
2024-11-13n/aelf aec31ea8b5774e626aa6e6f37136225faeefff45fbfae7371ea397462709d4edVirustotal results 51.56%Mirai