URLhaus Database

You are currently viewing the URLhaus database entry for http://jbvpshosti.com/00101010101001/morte.arm5 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3569468
URL: http://jbvpshosti.com/00101010101001/morte.arm5
URL Status:Offline
Host: jbvpshosti.com
Date added:2025-06-22 19:44:11 UTC
Last online:2025-06-26 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Botnet C&C domain
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2025-06-26 02:35:13 UTC to abuse{at}cheapy[dot]host)
Takedown time:7 days, 20 hours, 34 minutes Bad (down since 2025-06-30 16:19:57 UTC)
Tags:mirai link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-06-30n/aelf 96a6df3504ddb9ee47de1ff9f38c9111023b67e9a9ff18aff16e05cf8b9063d9n/aMirai
2025-06-26n/aelf 3787d0648bb4e0e2d82af1f5266b705455fb98e365ad422fb26eb27f6a44235dn/aMirai
2025-06-25n/aelf 0a28f422c1496568f9b8ab151648722fb3ccfc8cc7cb3aa2dcb4f76cdb17fb1bVirustotal results 25.40%Mirai
2025-06-24n/aelf 3d64e4176f9a46c4e4ea585eb77631f73cedcdb3bd22969a9df90eee6168db0dn/aMirai
2025-06-22n/aelf 7c93d0fa6fbd0cd6d45f96d7a0677fec79cd536b610103f39b0caf3e885141f2n/aMirai