URLhaus Database

You are currently viewing the URLhaus database entry for http://176.65.142.252/bins/morte.ppc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3487834
URL: http://176.65.142.252/bins/morte.ppc
URL Status:Offline
Host: 176.65.142.252
Date added:2025-03-24 05:08:09 UTC
Last online:2025-04-10 03:XX:XX UTC
Threat:Malware download Malware download
Reporter: tolisec
Abuse complaint sent (?): Yes (2025-03-24 05:09:08 UTC to abuse{at}dolphinhost[dot]net)
Takedown time:16 days, 22 hours, 47 minutes Bad (down since 2025-04-10 03:56:48 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-04-09morte.ppcelf d293d55e8bcca07c8f98dbb61d2160c92895d30789844da6562f3f9edd2d75c6n/aMirai
2025-04-09morte.ppcelf ec2bdda34375a5b836961cd3ec9edfa7429148ed643b0011ccdd82995591dba0n/aMirai
2025-04-08morte.ppcelf 1b43e6860329af7ab9eba160dd5db05699ae492caf9ab9ff8eea9a66f1edc99an/aMirai
2025-04-07morte.ppcelf abe28f2d8a0258e8fa7fc00d631f9d7b0090a1272ce431eedc89713cdf0a1977Virustotal results 25.00%Mirai
2025-04-06morte.ppcelf 1de762ba5e266291c62d7b578bc04fef99ac6e0f84c20a4b4d95fcd74967a402n/aMirai
2025-03-29n/aelf 8af1165b560939a5a567a449698824fa14ad0302045aa528b42e03019debb442n/aMirai
2025-03-27n/aelf 54fcac0616a5f53f9d001204891d3552d7f9e0bbe1e02488b6a560c67e529687n/aMirai
2025-03-26n/aelf 45118dad236e697d947334975c658f02d794cc6ab5d3481eacb3e2636b51f5cfn/aMirai
2025-03-26n/aelf 6dc63c2065576f78dc2c0656b6934236abc2690845cf564ebe7023d0fdad4457n/aMirai
2025-03-24n/aelf 935e80ce0b2258c4351577bb910aefa50a1e5c98eff2d49df44abf751798789bVirustotal results 40.62%Mirai