URLhaus Database

You are currently viewing the URLhaus database entry for http://draft22.redirectme.net/00101010101001/debug which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3727059
URL: http://draft22.redirectme.net/00101010101001/debug
URL Status:Offline
Host: draft22.redirectme.net
Date added:2025-12-06 07:43:19 UTC
Last online:2025-12-13 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Abused domain (botnet C&C)
SURBL :Blocked
Quad9 :Blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-12-06 07:44:21 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:6 days, 21 hours, 9 minutes Bad (down since 2025-12-13 04:54:14 UTC)
Tags:botnetdomain elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-12-12n/aelf d74de53c40975409d73268c4e471345d508ef8c23c3ee644cbeab132a75ba382n/aMirai
2025-12-10n/aelf c22439948b14dd0e82356816dfaa676425af65da8efe84158c0e00e0b275095cVirustotal results 40.68%Mirai
2025-12-09n/aelf fb8dc7f6629a8bd451031e9a944ad1b771f18d4c1b62e0dab6b2ae4c9a18a3eeVirustotal results 44.62%Mirai
2025-12-06n/aelf 7f669b370b8bce7fe8b7c5bdad6db3678cece3b75e6cd55ec686515bb325cc4fVirustotal results 41.54%Mirai
2025-12-06n/aelf f0d7396218d9fa16db9240edf3e9c57365b772a7bc43841285b7746b1aa4bb92n/aMirai