URLhaus Database

You are currently viewing the URLhaus database entry for http://mta179.insuretn.com/bins/nabx86 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3436400
URL: http://mta179.insuretn.com/bins/nabx86
URL Status:Offline
Host: mta179.insuretn.com
Date added:2025-02-11 18:22:07 UTC
Last online:2025-03-10 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2025-02-11 18:23:05 UTC to abuse{at}proton66[dot]ru)
Takedown time:26 days, 16 hours, 52 minutes Bad (down since 2025-03-10 11:15:51 UTC)
Tags:botnetdomain mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-10n/aelf 049941c6c5af46bf841f6c74df053d9863f1e9b3f1badf93c7e5c1ff390dd834Virustotal results 26.56%Mirai
2025-03-07n/aelf df328e1ec2ef2844f67426ad0dcea1b844de261cee24a94a83365cdccb89cb8dVirustotal results 51.56%Mirai
2025-03-04n/aelf e37248b5b512020ca93a057d343ceb20711e717885fb8ccd7c605884f0a4e522n/aMirai
2025-03-03n/aelf 3c5e14b5b0a5372169700a0f9e2dcd992c7afe541657c5dbb26d711df9a017e3Virustotal results 28.12%Mirai
2025-02-28n/aelf c8163e3566737e7f3d7807542acce8b1d63a90d79bcd5593f818d9dfea6f8f23Virustotal results 60.94%Mirai
2025-02-14n/aelf f98d4e91255704c682357e6f154b46d2d304a125dc37e05dacbbe9a54acf6fe5Virustotal results 60.94%Mirai
2025-02-11n/aelf 40357bbc1beef844aeefefa3185816ef3e151b72656d50adc651190f8a8ff676Virustotal results 34.38%Mirai