URLhaus Database

You are currently viewing the URLhaus database entry for http://cnc.zinomc.com/bot.arm6 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3605922
URL: http://cnc.zinomc.com/bot.arm6
URL Status:Offline
Host: cnc.zinomc.com
Date added:2025-08-18 15:36:22 UTC
Last online:2025-12-24 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Abused domain (botnet C&C)
SURBL :Blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-12-20 13:10:31 UTC to mh[dot]kctipl{at}gmail[dot]com)
Takedown time:4 months, 8 days, 1 hours, 6 minutes Bad (down since 2025-12-24 16:44:01 UTC)
Tags:botnetdomain elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-12-20n/aelf 41aa6a6223ab8f210b40e2ea22a2389b7cfce7c3f17836b2b73a8b7577adae6an/aMirai
2025-12-16n/aelf 2e7c37769624e6dfef412f4c0db57fc2c206c7833efee583a51f41d9057e262dn/aMirai
2025-12-05n/aelf f71c1b8e06a86ad75a36cc48947e5d12cb1a299931624edc4483f02a5ffaa969n/aMirai
2025-12-04n/aelf cd0edf1cab5ad5844a0cb0b26c4dafaaacb3ef81694e41422bfe488b15017b56n/aMirai
2025-11-02n/aelf d6c755e34742867d9f66a83a1b522377a37a393e2a56689a2a65924b97cee726n/aMirai
2025-10-22n/aelf f517173b2feab978d16335a3d0183637ea61fcee2cabff309bf581d74e8c6e25n/aMirai
2025-10-21n/aelf 8072fcea6c878103b8c9b10b09eafd03245ed706bc7884c6943c907dbf4191b4n/aMirai
2025-10-21n/aelf be62d2bbe5f0e9b6e03439499b6dc48cd7c50469f2a242371a896109944252ccn/aMirai
2025-10-03n/aelf c15d14d50ae216fda9a3d54271944233ee30803af826648b35b1b188893dd39bn/aMirai
2025-08-26n/aelf 0d1e9700c0d921ad7473eb60517c55e7d1b70e120f8bfac8961a48af5c9b0b5fVirustotal results 43.75%Mirai
2025-08-21n/aelf 5c044bdd09ba6dfbfb161f54b358bd95d0d0cfed17edf7f9f92b8bccbcef965aVirustotal results 56.25%Mirai
2025-08-18n/aelf 258dbb25728d4e06362fba6daa15e3d9f54353b83af1f17e8b4ed0a4a1ecaf17n/aMirai