URLhaus Database

You are currently viewing the URLhaus database entry for http://196.251.87.244/00101010101001/morte.sh4 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3571540
URL: http://196.251.87.244/00101010101001/morte.sh4
URL Status:Offline
Host: 196.251.87.244
Date added:2025-06-30 13:59:09 UTC
Last online:2025-07-05 10:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2025-06-30 14:00:12 UTC to abuse{at}cheapy[dot]host)
Takedown time:4 days, 20 hours, 53 minutes Bad (down since 2025-07-05 10:53:52 UTC)
Tags:elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-07-04n/aelf e0fadfca7d4f0704722720c739c817d05fa639fdbb6edbd961d0083f73342c80Virustotal results 53.12%Mirai
2025-07-02n/aelf 3ac55582c30cd90889ecfb69122aade02cd1230ffe4eb14ccdfcb7523c26e960Virustotal results 51.56%Mirai
2025-06-30n/aelf 19e842db10dafc39f97052f123c55e33b64c18cdbd609fbf44333bb772d84ecbn/aMirai
2025-06-30n/aelf 2d94c64dce6e28c028a34b95fe189a8131e904ca45148e2b484e269b2df55bbaVirustotal results 54.69%Mirai