URLhaus Database

You are currently viewing the URLhaus database entry for http://mangotruff.redirectme.net/bins/spc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3660253
URL: http://mangotruff.redirectme.net/bins/spc
URL Status:Offline
Host: mangotruff.redirectme.net
Date added:2025-10-06 12:08:12 UTC
Last online:2025-10-25 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-10-24 23:30:17 UTC to reports{at}magnates[dot]co[dot]za)
Takedown time:18 days, 23 hours, 29 minutes Bad (down since 2025-10-25 11:39:17 UTC)
Tags:botnetdomain elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-10-24n/aelf 42f80e8c2cac9525e54082cf50c908ecb75989a5dfad82df501bed294ad996d2Virustotal results 42.19%Mirai
2025-10-17n/aelf 13c97d8f958d27a1953d9bea35c47ea33d4cfe8bfbbf0a8634c63546bcbcdc5cn/aMirai
2025-10-16n/aelf a5a6a45984dcfefb0a11158ff8c341430bb60bc260770b829931e54a46c6161bVirustotal results 32.00%Mirai
2025-10-15n/aelf 28e30ab04c6a7acea90b3ef1d0a9fb7e8ec780227843aa5a8824bf0e278114ebn/aMirai
2025-10-15n/aelf 9d4d0707d5fa5462fda8a31358ea60bf6fb5aeab1cf39d88ae0b7b1c114d8fa5n/aMirai
2025-10-06n/aelf d6578083df9a05918fcc859164fdafed04bf4e889096ebf8e228a2fcb7b091b2Virustotal results 44.62%Mirai