URLhaus Database

You are currently viewing the URLhaus database entry for http://mta179.insuretn.com/arm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3424032
URL: http://mta179.insuretn.com/arm
URL Status:Offline
Host: mta179.insuretn.com
Date added:2025-02-02 07:36:14 UTC
Last online:2025-03-10 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-02-02 07:37:05 UTC to abuse{at}proton66[dot]ru)
Takedown time:1 month, 5 days, 20 hours, 8 minutes Bad (down since 2025-03-10 03:45:35 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-10n/aelf 06cd477d71445530f3bb6ec717e553569719b20cdaac7243640a275f051af2d8Virustotal results 38.71%Mirai
2025-03-06n/aelf fc96aa360ca3f3318444f338f9131a9a43c00beb3e812e639cfe80f07219c9a7Virustotal results 38.71%Mirai
2025-03-04n/aelf aef00fe8ef3cf0f188b4e9e8e90d345bdcc21a4221998920edea40decca409fcVirustotal results 41.27%Mirai
2025-02-25n/aelf db44b037acdf696014dd0c8d43172d9feabe51dd2f3b1c065a710ac6d8e11767Virustotal results 41.27%Mirai
2025-02-14n/aelf 2f66b28645b910c0fcb7a751e9a0dad86fd2be825d07f45dd6ab086ec2eeafc0Virustotal results 61.90%Mirai
2025-02-10n/aelf 3ac4757c406bac2bedd2771c5c137607e2788099782ca939cb40c32aa2c71343n/aMirai
2025-02-02n/aelf 84ca99bb1f95fe4f5852da9fdd22886ded819bf9200124dca5bcf81d1cbce409Virustotal results 61.90%Mirai