URLhaus Database

You are currently viewing the URLhaus database entry for http://mangotruff.redirectme.net/bins/ppc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3660255
URL: http://mangotruff.redirectme.net/bins/ppc
URL Status:Offline
Host: mangotruff.redirectme.net
Date added:2025-10-06 12:08:19 UTC
Last online:2025-10-25 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-10-24 19:38:12 UTC to reports{at}magnates[dot]co[dot]za)
Takedown time:18 days, 22 hours, 28 minutes Bad (down since 2025-10-25 10:38:03 UTC)
Tags:botnetdomain elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-10-24n/aelf e21bb3b6fe3a958929652e87c353d84c955ed31a5d15d88dcd68aa74821cfa16n/aMirai
2025-10-17n/aelf d3d51b2147cca08a91fb74721dc3445c6ae820d4fab93d401c09de033bd04c8bn/aMirai
2025-10-16n/aelf 5c5471a01dfedfee6717e9a5fed3f7c9ebc37754392e719a2e72bd656908d8dfVirustotal results 41.54%Mirai
2025-10-15n/aelf 09716b569fe605b2a6c7423a2ca70e83e36c97800fda77df8b5eecc2be256320n/aMirai
2025-10-14n/aelf ea32b386b60aca13dc19502672765d447c32124d7f8481eb802a1d42be8b146bn/aMirai
2025-10-06n/aelf 5d6f9f878a008d7ec7c20b98c4b09cce855129fbca1996c2a53493cebae2d807Virustotal results 42.19%Mirai