URLhaus Database

You are currently viewing the URLhaus database entry for http://hailcocks.ru/l which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3289076
URL: http://hailcocks.ru/l
URL Status:Offline
Host: hailcocks.ru
Date added:2024-11-13 15:16:07 UTC
Last online:2024-12-21 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2024-12-19 09:54:12 UTC to abuse{at}fiberway[dot]fr)
Takedown time:1 month, 26 days, 15 hours, 43 minutes Bad (down since 2025-01-09 07:00:13 UTC)
Tags:mirai link sh ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-12-29n/ash c305957986b613ec837b696eb8465d598dd88935a190d0eb42a29a1a52f99151n/aMirai
2024-12-28n/ash 8b74bac1dc0ad868efdfcbd2dff29f0d56c827bf33b3e3af0c30a7d544b2875aVirustotal results 21.67%
2024-12-19n/ash d77eef3f6cc6fb2c26fa27cc7360ef7c03482c672216ad960910f4b5a9c0ad4aVirustotal results 24.59%
2024-11-22n/ash d971f8b38db02b6d51aad52cbb733d49b1751a709c1b75f7bfe3f9c08662dd39Virustotal results 38.71%
2024-11-14n/ash 47b674a10b858e4d6708fc613030c3d98e4ff7fc3c25dfefb38366bb2ffeca30Virustotal results 22.22%
2024-11-13n/ash a909843aac250b8580f42dadcb806cd38a1157f96e2b93f8d94d7c3db9f9d2cbVirustotal results 40.32%Mirai