URLhaus Database

You are currently viewing the URLhaus database entry for http://cnc.zinomc.com/bot.arm5 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3605913
URL: http://cnc.zinomc.com/bot.arm5
URL Status:Offline
Host: cnc.zinomc.com
Date added:2025-08-18 15:36:13 UTC
Last online:2025-12-24 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Abused domain (botnet C&C)
SURBL :Blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-12-20 12:25:22 UTC to mh[dot]kctipl{at}gmail[dot]com)
Takedown time:4 months, 7 days, 21 hours, 21 minutes Bad (down since 2025-12-24 12:59:01 UTC)
Tags:botnetdomain elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-12-20n/aelf d8284dd82a55c4fb5cb7fab57466c082f01ca386516d9445fedbd7cd737fa081n/aMirai
2025-12-16n/aelf b8acdd5d254393e9ecf6913e0fddddaedd420ffb7a35e4a6505c8d749395c3a0n/aMirai
2025-12-05n/aelf 87414bef833c27a34168605b059291cd4d60bf78ce809108fbdb0dc128b229b0n/aMirai
2025-12-04n/aelf 3e12f6f6af32ea4d54176d6af7996882ac19af5ac045ee6225e04becd3d5cd29n/aMirai
2025-11-01n/aelf 2f774e472182d428e784122d4401c1df7fc5dbec1e9ac30bef96b33a45648f26n/aMirai
2025-10-22n/aelf 3864cf52dd47a4950dee861b28a57a3c7736d1cb12ec351fc10d5359def95fe5n/aMirai
2025-10-21n/aelf 9074f136e29c67e1d8dfc7d361a8059f4d7838bbab81ec6487fa6c5414b31a45n/aMirai
2025-10-21n/aelf 60ff6d5493d80fa7fdf066932949a90d144dadb9de5c440abf19fe7378cac53bn/aMirai
2025-10-03n/aelf 7529f89e46386e9e44e8d57962d6e4f028e693f021db5659ae2634e0914b3896n/aMirai
2025-08-26n/aelf 536dec62cd5b7d5025282c34443eb2e8c1e5847a0ccdfdba302e9be84055b236Virustotal results 45.31%Mirai
2025-08-21n/aelf bd567b4ce8b9f4815c467afd8417ffb02d1ff76204092469e87bcfe61369bf91n/aMirai
2025-08-18n/aelf ec0649e91fc6ed93a0bbcc45295eb3130a583e47410467c050ed7c5acc72e384n/aMirai