URLhaus Database

You are currently viewing the URLhaus database entry for http://196.251.69.95/00101010101001/morte.arm7 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3579384
URL: http://196.251.69.95/00101010101001/morte.arm7
URL Status:Offline
Host: 196.251.69.95
Date added:2025-07-09 06:29:35 UTC
Last online:2025-07-18 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-07-09 11:24:12 UTC to abuse{at}cheapy[dot]host)
Takedown time:9 days, 6 hours, 22 minutes Bad (down since 2025-07-18 17:46:58 UTC)
Tags:elf mirai link opendir ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-07-15n/aelf 2d7ac5ba36cc73adcfc53e78fbe8e156a7bbbcaaec8e833d83f3e562d8030a94Virustotal results 22.22%Mirai
2025-07-15n/aelf 70346d3bf6389fbe88df0cdf9a28a90615e2d90d1b1a584aeec044ee8469cc48Virustotal results 21.88%Mirai
2025-07-14n/aelf d5f9dd11504420bd5b4fb116aa83e8fb0be49cc9154e9f59e511c2d24e18f5b0Virustotal results 29.69%Mirai
2025-07-13n/aelf 622a47dc0386f4128ce665be02e6a395f003e5c74c2c073a718891c3a07adcd2Virustotal results 24.56%Mirai
2025-07-13n/aelf f9b556873c9349d2743ed8d8cfe0fa6c5b3ef20805e00fe1fcc0b9912b5d2a56Virustotal results 20.31%Mirai
2025-07-12n/aelf 49ec3f05ac24010de460b149855681826a68cf47ef45fd9f1c4f261c26deeabcn/aMirai
2025-07-11n/aelf 779e5e5a2ecf10bc45b631effecdd01c1d1b5e81ef67a49c2e5eec980e0d26f5Virustotal results 19.67%Mirai
2025-07-09n/aelf 927e6fd57dbb2f8381119a41c76f9ceb10d52d49d0eee0608f9a16fe236e41f1Virustotal results 23.44%Mirai