URLhaus Database

You are currently viewing the URLhaus database entry for http://mta179.insuretn.com/bins/splarm6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3424070
URL: http://mta179.insuretn.com/bins/splarm6
URL Status:Offline
Host: mta179.insuretn.com
Date added:2025-02-02 07:36:18 UTC
Last online:2025-03-10 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-02-02 07:37:06 UTC to abuse{at}proton66[dot]ru)
Takedown time:1 month, 6 days, 5 hours, 16 minutes Bad (down since 2025-03-10 12:53:39 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-10n/aelf f2128b77af9e414b09f8427f9b1efee438971b7a99478031cb81eb99df1831e1Virustotal results 38.71%Mirai
2025-03-06n/aelf a22981dc1d2bf6b1cb09ed0ec46e21eb26d4283a908244a2892cdf0b0d4b5ec0Virustotal results 39.68%Mirai
2025-03-04n/aelf dabe79faa74caf5dca7468dc2740b4c217eff3869895b89fddc5c1e64c9c97fdVirustotal results 37.10%Mirai
2025-03-03n/aelf 34fd2c5a45a9533b25a5f5525c986e7324a657ee82946964ee5ec8aeac189cf2n/aMirai
2025-02-28n/aelf 5f105925e2048327d787693281f7f3afede7194c98da2b523b906537b986aa7eVirustotal results 61.90%Mirai
2025-02-10n/aelf a222a71e1398bebb8202f488125a8d3c24294815637dcc179848d3b725a33455Virustotal results 40.32%Mirai
2025-02-02n/aelf 111abc3db2c1729c75889dd3bab7166a95c3544b0be5bacee5a1388a1d1c3c52Virustotal results 60.32%Mirai