URLhaus Database

You are currently viewing the URLhaus database entry for http://nuklearcnc.duckdns.org/bins/morte.sh4 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3464809
URL: http://nuklearcnc.duckdns.org/bins/morte.sh4
URL Status:Offline
Host: nuklearcnc.duckdns.org
Date added:2025-03-03 20:59:07 UTC
Last online:2025-03-24 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2025-03-23 14:22:06 UTC to abuse{at}dolphinhost[dot]net)
Takedown time:1 month, 7 days, 6 hours, 36 minutes Bad (down since 2025-04-10 03:36:32 UTC)
Tags:botnetdomain elf mirai link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-04-09n/aelf 37862b510e51a5a578053f62afa314c72f96f8f55001b08642ac38664a0cba11n/aMirai
2025-04-09n/aelf 697f7efdc45fdb94dc1195c00030edb797e8d85f79fd58c341b2cd381a4b8d47n/aMirai
2025-04-08n/aelf 2a94903d79a0969e78bdf235b354041588812402da73d908d9857185045c9e5en/aMirai
2025-04-07n/aelf 4c65ec258670513d9c8cafdaa8a02f8b27c499d20a2eaff5b0cd199d25db2ef2Virustotal results 31.25%Mirai
2025-04-06n/aelf 2a92b9d8018685d9d9db232c73a27476f1175cf7f62a5bc99a7d1016746c4d7fVirustotal results 34.38%Mirai
2025-03-29n/aelf 2ae65015a345307cbaf5de983b7fc0afdfdb41133102a8f5332f40970f80333bn/aMirai
2025-03-27n/aelf 254d1a4ddeb95d4680f3edcb7d3ebf4cf6b421f7f4103c3fa9c1bc1bf60c3714n/aMirai
2025-03-26n/aelf 07d65a8aa78cfff73a31de6998d45ba1ec70d4e26be038ecbee1147caa4c3a53n/aMirai
2025-03-26n/aelf 362d2619d2318fc32c1d845004892a7557375b6cd2b9c079e27c0988d6f85516n/aMirai
2025-03-24n/aelf e531ea4d09e107c6eb119613aa6ddf18eed2577fb5f025882fd7d456b774c985n/aMirai
2025-03-23n/aelf 131f936760e0d6bd8a91765fdf63bc55a668f77e05e86ba29e14ae265118c037n/aMirai
2025-03-12n/aelf 6c3a059b488d6dff0097a9e41acc5a6e0560d8f76f0516c4a372a3fbad7022fen/aMirai
2025-03-11n/aelf 1e588fb5a7b608174daeed487da197174f184cf080b0f88c44b725e8d9a43ff2n/aMirai
2025-03-11n/aelf d14b4951915b5c7e9261c8d0715996188c7a9a90c85eee552ab3be19836393f3n/aMirai
2025-03-11n/aelf 71b38c40f2f32fc32d513186d63ec79c1e2e8b35b65da274ca813ddf2d130fc3n/aMirai
2025-03-09n/aelf b9350f66c25f1384deda5011191803573e8b1b211399e10d93d8d917acc96cc3n/aMirai
2025-03-09n/aelf 2cb24723a39124c055304e3750d57421996522245976bcc6723f649f476ee05an/aMirai
2025-03-07n/aelf a6bd98890669afbafe11719fd210b60f3e0846b404440b5a87ab0042830f0307n/aMirai
2025-03-06n/aelf 8751426b643244c601a8796376e61f21e90e1976d979fbfa4a98a17ba5ad176dn/aMirai
2025-03-04n/aelf d37c0b1475c718342325f8c205a8853471320050ff8277babb94c6ab550030ecn/aMirai
2025-03-03n/aelf ce97ea713cbc74ac4ec149b2f32cb5ce74e5cb9e1a70e7d8c86f9b7f9c7f41dbVirustotal results 41.27%Mirai