URLhaus Database

You are currently viewing the URLhaus database entry for http://176.65.142.252/bins/morte.m68k which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3487833
URL: http://176.65.142.252/bins/morte.m68k
URL Status:Offline
Host: 176.65.142.252
Date added:2025-03-24 05:08:09 UTC
Last online:2025-04-10 04:XX:XX UTC
Threat:Malware download Malware download
Reporter: tolisec
Abuse complaint sent (?): Yes (2025-03-24 05:09:08 UTC to abuse{at}dolphinhost[dot]net)
Takedown time:16 days, 22 hours, 55 minutes Bad (down since 2025-04-10 04:04:40 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-04-09n/aelf 4c4e314d65e8f7580165b9d30ff9579d7ceb4d64b21ebfc6bc3e538c5626e539n/aMirai
2025-04-09n/aelf 09e574d81187e63b0d3214b07d6b57880045fa3bd79b73d80f8affd7cff14e68n/aMirai
2025-04-08n/aelf 849500abfe8a4ef926362224ebc2306ce6d45e3d15033b43883fa5de7e3c8f2fn/aMirai
2025-04-07n/aelf b376065ba7e7b0f8342fbdf4f097203e88e4aee7117fa4b2b5165f002342b90fn/aMirai
2025-04-06n/aelf 50112e751740be8c5b937ae7681f7c49e233fa6b240f878a7ca2ed0c06d6b017n/aMirai
2025-03-29n/aelf 63e89dc0296fc9125e23388b196e33d5f697d608bdef1c4a168150399f3b9850n/aMirai
2025-03-27n/aelf 8a00995a209c05bf05021409fd885d0b08199e743461d43d0645ac05c1127d19n/aMirai
2025-03-26n/aelf 26e499f74e37a4c46787ca830cd5f47b36a675066214e0d81c18aa0063874c6cn/aMirai
2025-03-26n/aelf 0f7d560d5510f9e005c4c91b58070a77c7978b207eaf5cddabdcaf6caeaa1342n/aMirai
2025-03-26n/aelf c9909f626749db5120ce349db7fa72cbf8843b780bb58da30aa9c108cd285e84n/aMirai
2025-03-24n/aelf 20acbbf35f2700cb982331dbc1988ff42935b5de746699598703e63ee5d8b5b7Virustotal results 45.16%Mirai