URLhaus Database

You are currently viewing the URLhaus database entry for http://mta179.insuretn.com/zerarm6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3424083
URL: http://mta179.insuretn.com/zerarm6
URL Status:Offline
Host: mta179.insuretn.com
Date added:2025-02-02 07:36:19 UTC
Last online:2025-03-10 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-02-02 07:37:06 UTC to abuse{at}proton66[dot]ru)
Takedown time:1 month, 5 days, 19 hours, 55 minutes Bad (down since 2025-03-10 03:32:06 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-10n/aelf 3c9153684fdd8f24950e5632b66fdbe251e2c86f9f91c21cde855526af4c17c4n/aMirai
2025-03-06n/aelf 6b61b56c9724311b257d541eb344237e754ef9c7da2e92ce4b423648e0393812Virustotal results 41.94%Mirai
2025-03-04n/aelf 42dea81c12d0deb5f1f3a1ad6f4269ea74e4bcba3670cb1bf0fe6206ab7a487bn/aMirai
2025-03-03n/aelf 78f5ce99fbb811e71a55f1401080932edb511aebfe3ce87077d4b36953548f18Virustotal results 40.00%Mirai
2025-02-25n/aelf 3213a351c592d54b2dd94c6735d0b29ae750b1bd51fcda5ed178ebbbecc4fecen/aMirai
2025-02-02n/aelf ee9dcbf64fc5a2ab863749d22eebb1dfd1a9f85ed8b3cc2ccebd86bed670ec1aVirustotal results 60.32%Mirai