URLhaus Database

You are currently viewing the URLhaus database entry for http://mta179.insuretn.com/bins/spc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3424098
URL: http://mta179.insuretn.com/bins/spc
URL Status:Offline
Host: mta179.insuretn.com
Date added:2025-02-02 07:36:20 UTC
Last online:2025-03-10 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-02-02 07:37:06 UTC to abuse{at}proton66[dot]ru)
Takedown time:1 month, 5 days, 20 hours, 10 minutes Bad (down since 2025-03-10 03:47:48 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-10n/aelf 3aa1d026ee53ee5a28402ca88d0dd08568cefc831aad924ea8123152bf6d529cVirustotal results 39.68%Mirai
2025-03-07n/aelf 4b7e002022269bff7334ec6174d91723412db36b319cc970e3e3707ac433b3baVirustotal results 53.97%Mirai
2025-03-04n/aelf 6c99b723928fd60d563cedce24e16c3fec67cdf17244e7c2351e6d282f33b524Virustotal results 37.10%Mirai
2025-03-03n/aelf c6937e49ab4c342fecf7394e5426cf5783ae944b681479b5f8611976d43a8735Virustotal results 39.68%Mirai
2025-02-25n/aelf b6ba19fc841560e9382c65139ed5522e47f5309b126cb3900b6b4731fa408a06n/aMirai
2025-02-10n/aelf 160d9b404d6e0a1dc8c804956c513a8737bb0d3ebf40acb6a064300fd100223aVirustotal results 39.68%Mirai
2025-02-02n/aelf a48d1e8da54072235452f73a5376c267a952f9d05962b9c65e951d0f16b97014Virustotal results 55.56%Mirai