URLhaus Database

You are currently viewing the URLhaus database entry for http://hailcocks.ru/nshkarm7 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3336083
URL: http://hailcocks.ru/nshkarm7
URL Status:Offline
Host: hailcocks.ru
Date added:2024-12-08 07:47:03 UTC
Last online:2024-12-21 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2024-12-17 18:26:13 UTC to abuse{at}fiberway[dot]fr)
Takedown time:28 days, 18 hours, 55 minutes Bad (down since 2025-01-09 09:37:21 UTC)
Tags:alex HailBot HailBotSkidRip HailCock HailCockBotnet kamru mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-01-05n/aelf d5ae8ac2164600de41bbcdc5dbfaa404988d5fc2b69e7c0b5f69474b892a3d37n/aMirai
2024-12-28n/aelf 14e58a300fa5a68506e4607ce3feb520e9278c1eb5602af4fa91cc2caf72892dn/aMirai
2024-12-21n/aelf 60e8fe252180f6eed332b8722e756557d765ab99f9d89079138ff6953d2f23cbn/aMirai
2024-12-21n/aelf 113899243306ab9b0e83af8ccac3c285bf84f62d76e248d8b0c0ac8b47d05721n/aMirai
2024-12-20n/aelf 659a3f750bf48969cceb9a870716b5eb461e94b89ea7d447ac1ee65468b682a9n/aMirai
2024-12-17n/aelf fab0eb14b73a711652d460c3f9091b76d4d99372d0e53ae5643358a5743f6e32n/aMirai
2024-12-11n/aelf 274b803e811dd6201c80a1fcec595b0b8722df12092e96e02698086ac63085c9Virustotal results 53.12%Mirai