URLhaus Database

You are currently viewing the URLhaus database entry for http://disrupt.anondns.net/arc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3859697
URL: http://disrupt.anondns.net/arc
URL Status:Offline
Host: disrupt.anondns.net
Date added:2026-06-06 10:39:10 UTC
Last online:2026-06-13 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Abused domain (botnet C&C)
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: burger
Abuse complaint sent (?): Yes (2026-06-06 10:40:16 UTC to abuse{at}ghostnet[dot]de)
Takedown time:6 days, 15 hours, 45 minutes Bad (down since 2026-06-13 02:25:38 UTC)
Tags:mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-06-12n/aelf d7cfa2477400b0ec2777794bed1d1b6510b48ac7ea85e371b850308e8751e36en/aMirai
2026-06-12n/aelf 41b79ef9aeb8d422ae5be89e2311beeb85298c195a1830faf1e30f53e021e16bn/aMirai
2026-06-12n/aelf 4464d02e2aff702f539b7e762592a345c92cf8b9ee631a650b6f64c09e7f6fc2n/aMirai
2026-06-11n/aelf 12a756c8fe01ff0ca04bbdab21a5c1e307aa9de63b93d7ccd60d954b772ce49fn/aMirai
2026-06-10n/aelf 01262fe94f63ae9b41e8a06e45f3bdb4aed3a7a83baaf24610e7d75e0c7fe777n/aMirai
2026-06-10n/aelf 135a73138fbb74b4e9fb90d1f5ae286c227848e25747fe57f7f60f53405f0878n/aMirai
2026-06-06n/aelf 3de8411494ccf1f02a88fcc09b51e328fdab2fb551aedb7f1a8f0fc075ed6e58n/aMirai