URLhaus Database

You are currently viewing the URLhaus database entry for http://hailcocks.ru/nsharm6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3289052
URL: http://hailcocks.ru/nsharm6
URL Status:Offline
Host: hailcocks.ru
Date added:2024-11-13 14:56:07 UTC
Last online:2024-12-22 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2024-12-17 14:10:18 UTC to abuse{at}fiberway[dot]fr)
Takedown time:1 month, 26 days, 16 hours, 6 minutes Bad (down since 2025-01-09 07:03:31 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-01-05n/aelf beec35a66074e5a8f487aef06291f334786245fed4dd4cbd61788544c2aeef79Virustotal results 22.22%Mirai
2024-12-28n/aelf 579c98324fa689bddce5d8d4d4b6dcf3f70f2b169aa0d552057d2756345cc1adVirustotal results 52.38%Mirai
2024-12-21n/aelf 8671c416ddde7ea4b6275630ade867f4398dd9aed29cdaa122362704e8eaa27cVirustotal results 32.14%Mirai
2024-12-21n/aelf 90de2f2a69ff919cf01cbfdf8081353bea609397cc4266c7b9ee048624b0c454n/aMirai
2024-12-20n/aelf dbc33ff7d18b1332cbefd02a8ef1c85416c532d9ecb90745c0c642e79631d3aen/aMirai
2024-12-03n/aelf c00ec023e952d094d6cb036b7415c48af953e49130797200b99dda72505daac2n/aMirai
2024-11-13n/aelf c6cf71b4ed65266222f1d13132bf3c20914774813f9aac403c2e16345c5d4b35Virustotal results 50.00%Mirai