URLhaus Database

You are currently viewing the URLhaus database entry for http://mta179.insuretn.com/nabspc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3424046
URL: http://mta179.insuretn.com/nabspc
URL Status:Offline
Host: mta179.insuretn.com
Date added:2025-02-02 07:36:14 UTC
Last online:2025-03-10 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-02-02 07:37:05 UTC to abuse{at}proton66[dot]ru)
Takedown time:1 month, 5 days, 18 hours, 22 minutes Bad (down since 2025-03-10 01:59:22 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-07n/aelf 68c995ad2ea91eef22408001c7201bc28d631457c6d48cb48ff97980aea92e6eVirustotal results 34.92%Mirai
2025-03-04n/aelf d500673f4f4ea06c7e4a8fe08c21ac14cd5aaa069099647fd75f9465e36ef0d2n/aMirai
2025-03-03n/aelf fdc380cc97d1c92b013e42e558349442e91ac3a68843181aabe443ed26d9eeb5Virustotal results 26.98%Mirai
2025-02-28n/aelf 320f0b497f5bd12afc113d3debc4e410892c3cc1c4fcd604b1ee5af331478bc9Virustotal results 57.14%Mirai
2025-02-10n/aelf 5c151550e1fd4064ff6096f44c2220bdc6025df83141a0996d9f1eff9c3a37a2n/aMirai
2025-02-02n/aelf dbe31e3307007615c2770eb8316d885fd5026f83ae8211b4e81b37f056c45ce0Virustotal results 46.03%Mirai