URLhaus Database

You are currently viewing the URLhaus database entry for http://hailcocks.ru/nshkarm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3336045
URL: http://hailcocks.ru/nshkarm
URL Status:Offline
Host: hailcocks.ru
Date added:2024-12-08 07:44:14 UTC
Last online:2024-12-17 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2024-12-17 14:11:12 UTC to abuse{at}fiberway[dot]fr)
Takedown time:1 month, 1 days, 23 hours, 44 minutes Bad (down since 2025-01-09 07:29:39 UTC)
Tags:alex HailBot HailBotSkidRip HailCock HailCockBotnet kamru mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-01-05n/aelf fe144d26e628b5acc082229d2a61959de36042b9987e9267b22b37d755eced84n/aMirai
2024-12-28n/aelf 3f8fcccb52fe16c238ab075559457d5cdbd80c4454e8e59bcf203cb198e17bacn/aMirai
2024-12-21n/aelf 0344668f82dc5fd042c26dc76e1d37c54f0ce3bcd50e8f66d4445f893227f349n/aMirai
2024-12-20n/aelf 82382f6c525bb2d1fa1a22f59fc6c3454e3e2078d987c755e029bd92b4463c84n/aMirai
2024-12-17n/aelf aef5642907d2349271ba29b866800d26beb5eb8831bcc217529e6585b242bc89n/aMirai
2024-12-08n/aelf 9e5b6e85bd5a0f30d44157e4969650e97e7d893572650b8f05c22d0c6e3bfdb9n/aMirai