URLhaus Database

You are currently viewing the URLhaus database entry for http://176.65.142.252/bins/morte.mpsl which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3487832
URL: http://176.65.142.252/bins/morte.mpsl
URL Status:Offline
Host: 176.65.142.252
Date added:2025-03-24 05:08:09 UTC
Last online:2025-04-10 04:XX:XX UTC
Threat:Malware download Malware download
Reporter: tolisec
Abuse complaint sent (?): Yes (2025-03-24 05:09:07 UTC to abuse{at}dolphinhost[dot]net)
Takedown time:16 days, 23 hours, 7 minutes Bad (down since 2025-04-10 04:17:04 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-04-09morte.mpslelf 824e1994e8c1b10c8b7aed4633c33de2f00232e3c05f41d821308773ebd46d60Virustotal results 36.51%Mirai
2025-04-09morte.mpslelf 849cc86999fa6b02dee800a51cb41ba65c0ea2b56b49159bc3186e62952b8fdan/aMirai
2025-04-08morte.mpslelf dab8ce4876a85a85d9218c9f9a88a8555b5d6e8d908d4ab5193719d0794bbc68n/aMirai
2025-04-07morte.mpslelf 0e8a5361959bef83ea2f86ec6b31347be8c56b3437907d22bb56e3100375d7dcn/aMirai
2025-04-06morte.mpslelf 78963d4b7aca6f644b096321f0a3cf48d3060046d73fef0ac1939c0e7bf5bec7Virustotal results 37.93%Mirai
2025-03-29n/aelf dd0657c930e77a7531da4b3cf8ded3b54cd477ae047b2e9dabad048ffbf48f78n/aMirai
2025-03-27n/aelf c7c8de131f2fa574eff930f354050dc32e54f1111b641e4adf4672b6b2409be4n/aMirai
2025-03-26n/aelf 387ccd62a1e5d03bff273b6f2a894f85c9218ca423a9d235d92d7d0eca02f1a8n/aMirai
2025-03-26n/aelf 74544729b691740fc58368838ea618ebde25dd82214e6ad2b246cf77c4ed8ac1n/aMirai
2025-03-24n/aelf b958155c5623b7d18b18588ab9de5f838eb984d2ab124e83acfdbcd022164b3aVirustotal results 35.94%Mirai