URLhaus Database

You are currently viewing the URLhaus database entry for http://mta179.insuretn.com/bins/nabarm6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3424004
URL: http://mta179.insuretn.com/bins/nabarm6
URL Status:Offline
Host: mta179.insuretn.com
Date added:2025-02-02 07:36:09 UTC
Last online:2025-03-10 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-02-02 07:37:05 UTC to abuse{at}proton66[dot]ru)
Takedown time:1 month, 6 days, 0 hours, 15 minutes Bad (down since 2025-03-10 07:52:45 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-10n/aelf d1f7091e65e3cea53e527847feda6ef42072389f77b87c9d1b8b8057fce9c14bVirustotal results 27.42%Mirai
2025-03-07n/aelf 4140f9ab23973bd0e0f658271372d0499e4f8b7598390fe1038da5f4526e7754Virustotal results 46.03%Mirai
2025-03-04n/aelf a5f4f7ef7c796d351341732eb369ee26f83be842acdfc301fe9bf341c2c872efn/aMirai
2025-03-03n/aelf 4a9ccfdd8144c224eef857d55af94933bef42f1781e392019c2a5ed0da6fb8a0Virustotal results 28.57%Mirai
2025-02-28n/aelf 1098854125ec7c75de27a411a53dbe6099f936b6c6bcef3da56d757b1cd2d50aVirustotal results 61.90%Mirai
2025-02-10n/aelf 126a6d574aed152cbb570a9614d8b421111daa411eb8e2507b6ff5af804aa1d2n/aMirai
2025-02-02n/aelf 2ea8bb9ed2f1e36abb39ec9592f2dd2ce216c2ecd34b22b91af528908d4b817cVirustotal results 50.79%Mirai